Allan Leary
e0fcb7412f
Add Node 26 support alongside Node 24 ( #2397 )
...
- Widen engines range to >=24 <27
- Test against Node 24 and 26 in CI (build/deploy artefacts remain on 24)
- Replace unmaintained 'cbor' dependency with 'cbor2': the cbor package's
synchronous encode relies on a single stream read() returning the whole
encoding, which breaks on Node 26 where readable streams return one
buffer at a time
- Remove stale dependabot ignore for the removed cbor package
- Update Node.js support notes in README and AGENTS
2026-07-28 14:57:50 +01:00
dependabot[bot]
3034d63f90
chore (deps): bump the minor-updates group with 5 updates ( #2500 )
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: GCHQDeveloper581 <63102987+GCHQDeveloper581@users.noreply.github.com> (removed jq-web update, and added it to dependabot.yml block list)
2026-06-05 10:26:43 +01:00
GCHQDeveloper581
5383da81f8
Make dependabot quieter ( #2467 )
...
* group remaining update categories
* add cooldowns
2026-05-28 14:51:05 +01:00
GCHQDeveloper581
98bb5f117d
Bump webpack-dev-server to 5.2.4 ( #2417 )
2026-05-28 09:38:25 +01:00
Blank0120
6a3a370bb1
update bson ( #2425 )
...
Co-authored-by: GCHQDeveloper581 <63102987+GCHQDeveloper581@users.noreply.github.com> (update of dependabot excluded packages)
2026-05-23 12:42:40 +01:00
GCHQDeveloper581
0bb5472e50
[StepSecurity] Apply security best practices ( #2378 )
...
Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
Co-authored-by: StepSecurity Bot <bot@stepsecurity.io>
2026-05-14 14:59:07 +01:00
GCHQDeveloper581
d5a0b87194
Update dependabot for Node 24. ( #2361 )
...
- Reenable update of github actions
- Unpin some packages
2026-05-07 14:15:49 +01:00
GCHQDeveloper581
d591d2be1b
Update dependabot.yml ( #2326 )
...
Ignore jimp-1.6.1 (broken) when searching for updates.
2026-04-17 14:16:51 +01:00
GCHQDeveloper581
19bc8169ce
Configure dependabot updates ( #2259 )
2026-03-19 10:13:03 +00:00