Bump content-security-policy-parser from 0.4.1 to 0.6.0
Bumps content-security-policy-parser from 0.4.1 to 0.6.0.
Changelog
Sourced from content-security-policy-parser's changelog.
0.6.0 - 2024-02-10
Changed
- Breaking: Parse into a
Mapinstead of an object- Breaking: Follow the CSP parser spec more closely. See #12
0.5.0 - 2024-01-26
Fixed
- Fix prototype pollution bug when parsing
__proto__. See #11Removed
- Breaking: Drop support for old Node versions. Node 18+ is now required
Commits
927f9220.6.0ae911bfType-check both outputs when building5e828a7Minor: avoid long comment linesf4c7b25Improve test for vertical tabs86b2b2aMention spec in README1776e99Improve JSDoc documentationa051a85Clean up README code examplede4580fRemove files no longer needed by Deno0b7f2ebUpdate GitHub Actions workflow for Denoe45afabFollow the CSP parser spec more closely- Additional commits viewable in compare view
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.
@dependabot rebase
@dependabot rebase
@dependabot rebase
@dependabot rebase
Codecov Report
:white_check_mark: All modified and coverable lines are covered by tests.
:white_check_mark: Project coverage is 98.28%. Comparing base (0d89604) to head (42061fe).
:warning: Report is 1 commits behind head on master.
Additional details and impacted files
@@ Coverage Diff @@
## master #12844 +/- ##
=======================================
Coverage 98.28% 98.28%
=======================================
Files 265 265
Lines 10661 10661
Branches 3271 3271
=======================================
Hits 10478 10478
Misses 170 170
Partials 13 13
:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.
:rocket: New features to boost your workflow:
- :snowflake: Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
- :package: JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.