Override undici to >=7.24.0 to resolve GHSA-v9p9-hfj2-hcw8 (WebSocket 64-bit length overflow). The vulnerable version was pulled in transitively via jsdom@28.1.0. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
32 lines
732 B
JSON
32 lines
732 B
JSON
{
|
|
"private": true,
|
|
"packageManager": "pnpm@10.6.0",
|
|
"pnpm": {
|
|
"overrides": {
|
|
"undici": ">=7.24.0"
|
|
}
|
|
},
|
|
"devDependencies": {
|
|
"@biomejs/biome": "2.0.0",
|
|
"@vitest/coverage-v8": "^3.2.4",
|
|
"jscpd": "^4.0.8",
|
|
"knip": "^5.85.0",
|
|
"lefthook": "^1.11.0",
|
|
"typescript": "^5.8.0",
|
|
"vitest": "^3.0.0"
|
|
},
|
|
"scripts": {
|
|
"prepare": "lefthook install",
|
|
"format": "biome format --write .",
|
|
"format:check": "biome format .",
|
|
"lint": "biome lint .",
|
|
"lint:fix": "biome lint --write .",
|
|
"typecheck": "tsc --build",
|
|
"test": "vitest run",
|
|
"test:watch": "vitest",
|
|
"knip": "knip",
|
|
"jscpd": "jscpd",
|
|
"check": "pnpm audit --audit-level=high && knip && biome check . && tsc --build && vitest run && jscpd"
|
|
}
|
|
}
|