sheriff icon indicating copy to clipboard operation
sheriff copied to clipboard

refactor: switch from js-yaml package to yaml

Open dsanders11 opened this issue 3 months ago • 1 comments

Alternative to #103. js-yaml is largely unmaintained these days (previous release was 4 years ago until this week), and yaml is a regularly maintained, zero-dependency alternative.

dsanders11 avatar Nov 14 '25 23:11 dsanders11

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedyaml@​2.8.110010010083100

View full report

socket-security[bot] avatar Nov 14 '25 23:11 socket-security[bot]