Comparing version 10.0.0 to 10.0.1
{ | ||
"name": "ssri", | ||
"version": "10.0.0", | ||
"version": "10.0.1", | ||
"description": "Standard Subresource Integrity library -- parses, serializes, generates, and verifies integrity metadata according to the SRI spec.", | ||
@@ -50,7 +50,7 @@ "main": "lib/index.js", | ||
"dependencies": { | ||
"minipass": "^3.1.1" | ||
"minipass": "^4.0.0" | ||
}, | ||
"devDependencies": { | ||
"@npmcli/eslint-config": "^3.0.1", | ||
"@npmcli/template-oss": "4.5.1", | ||
"@npmcli/eslint-config": "^4.0.0", | ||
"@npmcli/template-oss": "4.10.0", | ||
"tap": "^16.0.1" | ||
@@ -63,4 +63,4 @@ }, | ||
"//@npmcli/template-oss": "This file is partially managed by @npmcli/template-oss. Edits may be overwritten.", | ||
"version": "4.5.1" | ||
"version": "4.10.0" | ||
} | ||
} |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
37506
0
+ Addedminipass@4.2.8(transitive)
- Removedminipass@3.3.6(transitive)
- Removedyallist@4.0.0(transitive)
Updatedminipass@^4.0.0