feat: migrate to tailwindcss@v4 and upgrade all pkgs #13

Merged
tygrdev merged 3 commits from tailwind-v4 into main 2025-03-13 04:11:36 +01:00
Owner
No description provided.
netlify[bot] commented 2025-03-13 03:57:10 +01:00 (Migrated from github.com)

Deploy Preview for katarogu-app ready!

Name Link
Latest commit 3f02292e19
Latest deploy log https://app.netlify.com/sites/katarogu-app/deploys/67d24c31b5ea6100082a3acf
Deploy Preview https://deploy-preview-13--katarogu-app.netlify.app
Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site configuration.

### <span aria-hidden="true">✅</span> Deploy Preview for *katarogu-app* ready! | Name | Link | |:-:|------------------------| |<span aria-hidden="true">🔨</span> Latest commit | 3f02292e19f391ae0f5473ec506a0fb8c1a964f9 | |<span aria-hidden="true">🔍</span> Latest deploy log | https://app.netlify.com/sites/katarogu-app/deploys/67d24c31b5ea6100082a3acf | |<span aria-hidden="true">😎</span> Deploy Preview | [https://deploy-preview-13--katarogu-app.netlify.app](https://deploy-preview-13--katarogu-app.netlify.app) | |<span aria-hidden="true">📱</span> Preview on mobile | <details><summary> Toggle QR Code... </summary><br /><br />![QR Code](https://app.netlify.com/qr-code/eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJ1cmwiOiJodHRwczovL2RlcGxveS1wcmV2aWV3LTEzLS1rYXRhcm9ndS1hcHAubmV0bGlmeS5hcHAifQ.GVSH96yZadJp3PCVykI-wv3x8krQGVL6OaFAnN_I0R8)<br /><br />_Use your smartphone camera to open QR code link._</details> | --- <!-- [katarogu-app Preview](https://deploy-preview-13--katarogu-app.netlify.app) --> _To edit notification comments on pull requests, go to your [Netlify site configuration](https://app.netlify.com/sites/katarogu-app/configuration/notifications#deploy-webhooks)._
socket-security[bot] commented 2025-03-13 03:57:21 +01:00 (Migrated from github.com)

New, updated, and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@node-rs/argon2@1.7.0, 2.0.02.0.2 None 0 21 kB broooooklyn
npm/@radix-ui/react-aspect-ratio@1.1.01.1.2 None +1 32.9 kB chancestrickland
npm/@radix-ui/react-avatar@1.1.11.1.3 None +4 91.3 kB chancestrickland
npm/@radix-ui/react-checkbox@1.1.21.1.4 None +10 187 kB chancestrickland
npm/@radix-ui/react-dialog@1.1.21.1.6 None +23 743 kB chancestrickland
npm/@radix-ui/react-dropdown-menu@2.1.22.1.6 None +36 1.72 MB chancestrickland
npm/@radix-ui/react-icons@1.3.01.3.2 None 0 0 B
npm/@radix-ui/react-label@2.1.02.1.2 None +1 30.8 kB andy-hook, benoitgrelard, chancestrickland, ...3 more
npm/@radix-ui/react-select@2.1.22.1.6 None +36 1.61 MB andy-hook, benoitgrelard, chancestrickland, ...3 more
npm/@radix-ui/react-slot@1.0.21.1.2 None +1 37.6 kB andy-hook, benoitgrelard, chancestrickland, ...3 more
npm/@tailwindcss/postcss@4.0.13 Transitive: environment, filesystem, shell +9 852 kB adamwathan, malfaitrobin, reinink, ...1 more
npm/@types/node@22.7.922.13.10 None +1 2.4 MB types
npm/@types/nodemailer@6.4.166.4.17 None 0 92.4 kB types
npm/@types/react-dom@18.3.119.0.4 None 0 20.8 kB types
npm/@types/react@18.3.1219.0.10 None +1 2.05 MB types
npm/arctic@2.0.13.5.0 None +2 177 kB pilcrowonpaper
npm/class-variance-authority@0.7.00.7.1 None 0 22.1 kB joebell93
npm/eslint-config-next@15.0.115.2.2 Transitive: environment, eval, filesystem +196 19.2 MB
npm/eslint@9.13.09.22.0 Transitive: eval, filesystem, shell, unsafe +85 6.7 MB
npm/input-otp@1.2.41.4.2 None 0 111 kB guilhermerodz
npm/jsx-email@2.0.112.7.1 Transitive: filesystem, network, shell, unsafe +391 65.5 MB shellscape
npm/lucide-react@0.453.00.479.0 None 0 32.8 MB ericfennis
npm/minio@8.0.28.0.4 Transitive: environment, eval +57 11 MB minio
npm/mongodb@6.10.06.14.2 None +11 7.29 MB dariakp, dbx-node, durran, ...2 more
npm/next-themes@0.3.00.4.6 None 0 33.8 kB paco, trm217
npm/next@14.2.2115.2.2 None +13 115 MB rauchg, timneutkens, vercel-release-bot
npm/nodemailer@6.9.156.10.0 None 0 0 B
npm/postcss@8.4.478.5.3 None +3 405 kB ai
npm/react-dom@18.3.119.0.0 None +1 84.2 kB
npm/react@18.3.119.0.0 None 0 0 B
npm/sonner@1.5.02.0.1 None 0 163 kB emilkowalski
npm/swr@2.2.52.3.3 Transitive: environment +2 306 kB vercel-release-bot
npm/tailwind-merge@2.5.43.0.2 None 0 824 kB dcas
npm/tailwindcss@3.4.0, 3.4.144.0.13 None 0 0 B
npm/typescript@5.6.35.8.2 None 0 22.9 MB typescript-bot
npm/usehooks-ts@3.1.03.1.1 None +1 265 kB junscuzzy
npm/vaul@1.1.01.1.2 None 0 184 kB emilkowalski

View full report↗︎

**New, updated, and removed dependencies detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) | Package | New capabilities | Transitives | Size | Publisher | |:--- |:--- |:--- |:--- |:--- | | [npm/@node-rs/argon2@1.7.0](https://socket.dev/npm/package/@node-rs/argon2/overview/1.7.0), [2.0.0](https://socket.dev/npm/package/@node-rs/argon2/overview/2.0.0) ➜ [2.0.2](https://socket.dev/npm/package/@node-rs/argon2/overview/2.0.2) | None | <a href="https://socket.dev/npm/package/@node-rs/argon2/dependencies/2.0.2">`0`</a> | 21 kB | <a href="https://socket.dev/npm/user/broooooklyn">broooooklyn</a> | | [npm/@radix-ui/react-aspect-ratio@1.1.0](https://socket.dev/npm/package/@radix-ui/react-aspect-ratio/overview/1.1.0) ➜ [1.1.2](https://socket.dev/npm/package/@radix-ui/react-aspect-ratio/overview/1.1.2) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-aspect-ratio/dependencies/1.1.2">`+1`</a> | 32.9 kB | <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a> | | [npm/@radix-ui/react-avatar@1.1.1](https://socket.dev/npm/package/@radix-ui/react-avatar/overview/1.1.1) ➜ [1.1.3](https://socket.dev/npm/package/@radix-ui/react-avatar/overview/1.1.3) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-avatar/dependencies/1.1.3">`+4`</a> | 91.3 kB | <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a> | | [npm/@radix-ui/react-checkbox@1.1.2](https://socket.dev/npm/package/@radix-ui/react-checkbox/overview/1.1.2) ➜ [1.1.4](https://socket.dev/npm/package/@radix-ui/react-checkbox/overview/1.1.4) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-checkbox/dependencies/1.1.4">`+10`</a> | 187 kB | <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a> | | [npm/@radix-ui/react-dialog@1.1.2](https://socket.dev/npm/package/@radix-ui/react-dialog/overview/1.1.2) ➜ [1.1.6](https://socket.dev/npm/package/@radix-ui/react-dialog/overview/1.1.6) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-dialog/dependencies/1.1.6">`+23`</a> | 743 kB | <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a> | | [npm/@radix-ui/react-dropdown-menu@2.1.2](https://socket.dev/npm/package/@radix-ui/react-dropdown-menu/overview/2.1.2) ➜ [2.1.6](https://socket.dev/npm/package/@radix-ui/react-dropdown-menu/overview/2.1.6) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-dropdown-menu/dependencies/2.1.6">`+36`</a> | 1.72 MB | <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a> | | [npm/@radix-ui/react-icons@1.3.0](https://socket.dev/npm/package/@radix-ui/react-icons/overview/1.3.0) ➜ [1.3.2](https://socket.dev/npm/package/@radix-ui/react-icons/overview/1.3.2) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-icons/dependencies/1.3.2">`0`</a> | 0 B | | | [npm/@radix-ui/react-label@2.1.0](https://socket.dev/npm/package/@radix-ui/react-label/overview/2.1.0) ➜ [2.1.2](https://socket.dev/npm/package/@radix-ui/react-label/overview/2.1.2) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-label/dependencies/2.1.2">`+1`</a> | 30.8 kB | <a href="https://socket.dev/npm/user/andy-hook">andy-hook</a>, <a href="https://socket.dev/npm/user/benoitgrelard">benoitgrelard</a>, <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a>, ...3 more | | [npm/@radix-ui/react-select@2.1.2](https://socket.dev/npm/package/@radix-ui/react-select/overview/2.1.2) ➜ [2.1.6](https://socket.dev/npm/package/@radix-ui/react-select/overview/2.1.6) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-select/dependencies/2.1.6">`+36`</a> | 1.61 MB | <a href="https://socket.dev/npm/user/andy-hook">andy-hook</a>, <a href="https://socket.dev/npm/user/benoitgrelard">benoitgrelard</a>, <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a>, ...3 more | | [npm/@radix-ui/react-slot@1.0.2](https://socket.dev/npm/package/@radix-ui/react-slot/overview/1.0.2) ➜ [1.1.2](https://socket.dev/npm/package/@radix-ui/react-slot/overview/1.1.2) | None | <a href="https://socket.dev/npm/package/@radix-ui/react-slot/dependencies/1.1.2">`+1`</a> | 37.6 kB | <a href="https://socket.dev/npm/user/andy-hook">andy-hook</a>, <a href="https://socket.dev/npm/user/benoitgrelard">benoitgrelard</a>, <a href="https://socket.dev/npm/user/chancestrickland">chancestrickland</a>, ...3 more | | [npm/@tailwindcss/postcss@4.0.13](https://socket.dev/npm/package/@tailwindcss/postcss/overview/4.0.13) | Transitive: <a href="https://socket.dev/npm/package/@tailwindcss/postcss/alerts/4.0.13?tab=dependencies&alert_name=envVars">environment</a>, <a href="https://socket.dev/npm/package/@tailwindcss/postcss/alerts/4.0.13?tab=dependencies&alert_name=filesystemAccess">filesystem</a>, <a href="https://socket.dev/npm/package/@tailwindcss/postcss/alerts/4.0.13?tab=dependencies&alert_name=shellAccess">shell</a> | <a href="https://socket.dev/npm/package/@tailwindcss/postcss/dependencies/4.0.13">`+9`</a> | 852 kB | <a href="https://socket.dev/npm/user/adamwathan">adamwathan</a>, <a href="https://socket.dev/npm/user/malfaitrobin">malfaitrobin</a>, <a href="https://socket.dev/npm/user/reinink">reinink</a>, ...1 more | | [npm/@types/node@22.7.9](https://socket.dev/npm/package/@types/node/overview/22.7.9) ➜ [22.13.10](https://socket.dev/npm/package/@types/node/overview/22.13.10) | None | <a href="https://socket.dev/npm/package/@types/node/dependencies/22.13.10">`+1`</a> | 2.4 MB | <a href="https://socket.dev/npm/user/types">types</a> | | [npm/@types/nodemailer@6.4.16](https://socket.dev/npm/package/@types/nodemailer/overview/6.4.16) ➜ [6.4.17](https://socket.dev/npm/package/@types/nodemailer/overview/6.4.17) | None | <a href="https://socket.dev/npm/package/@types/nodemailer/dependencies/6.4.17">`0`</a> | 92.4 kB | <a href="https://socket.dev/npm/user/types">types</a> | | [npm/@types/react-dom@18.3.1](https://socket.dev/npm/package/@types/react-dom/overview/18.3.1) ➜ [19.0.4](https://socket.dev/npm/package/@types/react-dom/overview/19.0.4) | None | <a href="https://socket.dev/npm/package/@types/react-dom/dependencies/19.0.4">`0`</a> | 20.8 kB | <a href="https://socket.dev/npm/user/types">types</a> | | [npm/@types/react@18.3.12](https://socket.dev/npm/package/@types/react/overview/18.3.12) ➜ [19.0.10](https://socket.dev/npm/package/@types/react/overview/19.0.10) | None | <a href="https://socket.dev/npm/package/@types/react/dependencies/19.0.10">`+1`</a> | 2.05 MB | <a href="https://socket.dev/npm/user/types">types</a> | | [npm/arctic@2.0.1](https://socket.dev/npm/package/arctic/overview/2.0.1) ➜ [3.5.0](https://socket.dev/npm/package/arctic/overview/3.5.0) | None | <a href="https://socket.dev/npm/package/arctic/dependencies/3.5.0">`+2`</a> | 177 kB | <a href="https://socket.dev/npm/user/pilcrowonpaper">pilcrowonpaper</a> | | [npm/class-variance-authority@0.7.0](https://socket.dev/npm/package/class-variance-authority/overview/0.7.0) ➜ [0.7.1](https://socket.dev/npm/package/class-variance-authority/overview/0.7.1) | None | <a href="https://socket.dev/npm/package/class-variance-authority/dependencies/0.7.1">`0`</a> | 22.1 kB | <a href="https://socket.dev/npm/user/joebell93">joebell93</a> | | [npm/eslint-config-next@15.0.1](https://socket.dev/npm/package/eslint-config-next/overview/15.0.1) ➜ [15.2.2](https://socket.dev/npm/package/eslint-config-next/overview/15.2.2) | Transitive: <a href="https://socket.dev/npm/package/eslint-config-next/alerts/15.2.2?tab=dependencies&alert_name=envVars">environment</a>, <a href="https://socket.dev/npm/package/eslint-config-next/alerts/15.2.2?tab=dependencies&alert_name=usesEval">eval</a>, <a href="https://socket.dev/npm/package/eslint-config-next/alerts/15.2.2?tab=dependencies&alert_name=filesystemAccess">filesystem</a> | <a href="https://socket.dev/npm/package/eslint-config-next/dependencies/15.2.2">`+196`</a> | 19.2 MB | | | [npm/eslint@9.13.0](https://socket.dev/npm/package/eslint/overview/9.13.0) ➜ [9.22.0](https://socket.dev/npm/package/eslint/overview/9.22.0) | Transitive: <a href="https://socket.dev/npm/package/eslint/alerts/9.22.0?tab=dependencies&alert_name=usesEval">eval</a>, <a href="https://socket.dev/npm/package/eslint/alerts/9.22.0?tab=dependencies&alert_name=filesystemAccess">filesystem</a>, <a href="https://socket.dev/npm/package/eslint/alerts/9.22.0?tab=dependencies&alert_name=shellAccess">shell</a>, <a href="https://socket.dev/npm/package/eslint/alerts/9.22.0?tab=dependencies">unsafe</a> | <a href="https://socket.dev/npm/package/eslint/dependencies/9.22.0">`+85`</a> | 6.7 MB | | | [npm/input-otp@1.2.4](https://socket.dev/npm/package/input-otp/overview/1.2.4) ➜ [1.4.2](https://socket.dev/npm/package/input-otp/overview/1.4.2) | None | <a href="https://socket.dev/npm/package/input-otp/dependencies/1.4.2">`0`</a> | 111 kB | <a href="https://socket.dev/npm/user/guilhermerodz">guilhermerodz</a> | | [npm/jsx-email@2.0.11](https://socket.dev/npm/package/jsx-email/overview/2.0.11) ➜ [2.7.1](https://socket.dev/npm/package/jsx-email/overview/2.7.1) | Transitive: <a href="https://socket.dev/npm/package/jsx-email/alerts/2.7.1?tab=dependencies&alert_name=filesystemAccess">filesystem</a>, <a href="https://socket.dev/npm/package/jsx-email/alerts/2.7.1?tab=dependencies&alert_name=networkAccess">network</a>, <a href="https://socket.dev/npm/package/jsx-email/alerts/2.7.1?tab=dependencies&alert_name=shellAccess">shell</a>, <a href="https://socket.dev/npm/package/jsx-email/alerts/2.7.1?tab=dependencies">unsafe</a> | <a href="https://socket.dev/npm/package/jsx-email/dependencies/2.7.1">`+391`</a> | 65.5 MB | <a href="https://socket.dev/npm/user/shellscape">shellscape</a> | | [npm/lucide-react@0.453.0](https://socket.dev/npm/package/lucide-react/overview/0.453.0) ➜ [0.479.0](https://socket.dev/npm/package/lucide-react/overview/0.479.0) | None | <a href="https://socket.dev/npm/package/lucide-react/dependencies/0.479.0">`0`</a> | 32.8 MB | <a href="https://socket.dev/npm/user/ericfennis">ericfennis</a> | | [npm/minio@8.0.2](https://socket.dev/npm/package/minio/overview/8.0.2) ➜ [8.0.4](https://socket.dev/npm/package/minio/overview/8.0.4) | Transitive: <a href="https://socket.dev/npm/package/minio/alerts/8.0.4?tab=dependencies&alert_name=envVars">environment</a>, <a href="https://socket.dev/npm/package/minio/alerts/8.0.4?tab=dependencies&alert_name=usesEval">eval</a> | <a href="https://socket.dev/npm/package/minio/dependencies/8.0.4">`+57`</a> | 11 MB | <a href="https://socket.dev/npm/user/minio">minio</a> | | [npm/mongodb@6.10.0](https://socket.dev/npm/package/mongodb/overview/6.10.0) ➜ [6.14.2](https://socket.dev/npm/package/mongodb/overview/6.14.2) | None | <a href="https://socket.dev/npm/package/mongodb/dependencies/6.14.2">`+11`</a> | 7.29 MB | <a href="https://socket.dev/npm/user/dariakp">dariakp</a>, <a href="https://socket.dev/npm/user/dbx-node">dbx-node</a>, <a href="https://socket.dev/npm/user/durran">durran</a>, ...2 more | | [npm/next-themes@0.3.0](https://socket.dev/npm/package/next-themes/overview/0.3.0) ➜ [0.4.6](https://socket.dev/npm/package/next-themes/overview/0.4.6) | None | <a href="https://socket.dev/npm/package/next-themes/dependencies/0.4.6">`0`</a> | 33.8 kB | <a href="https://socket.dev/npm/user/paco">paco</a>, <a href="https://socket.dev/npm/user/trm217">trm217</a> | | [npm/next@14.2.21](https://socket.dev/npm/package/next/overview/14.2.21) ➜ [15.2.2](https://socket.dev/npm/package/next/overview/15.2.2) | None | <a href="https://socket.dev/npm/package/next/dependencies/15.2.2">`+13`</a> | 115 MB | <a href="https://socket.dev/npm/user/rauchg">rauchg</a>, <a href="https://socket.dev/npm/user/timneutkens">timneutkens</a>, <a href="https://socket.dev/npm/user/vercel-release-bot">vercel-release-bot</a> | | [npm/nodemailer@6.9.15](https://socket.dev/npm/package/nodemailer/overview/6.9.15) ➜ [6.10.0](https://socket.dev/npm/package/nodemailer/overview/6.10.0) | None | <a href="https://socket.dev/npm/package/nodemailer/dependencies/6.10.0">`0`</a> | 0 B | | | [npm/postcss@8.4.47](https://socket.dev/npm/package/postcss/overview/8.4.47) ➜ [8.5.3](https://socket.dev/npm/package/postcss/overview/8.5.3) | None | <a href="https://socket.dev/npm/package/postcss/dependencies/8.5.3">`+3`</a> | 405 kB | <a href="https://socket.dev/npm/user/ai">ai</a> | | [npm/react-dom@18.3.1](https://socket.dev/npm/package/react-dom/overview/18.3.1) ➜ [19.0.0](https://socket.dev/npm/package/react-dom/overview/19.0.0) | None | <a href="https://socket.dev/npm/package/react-dom/dependencies/19.0.0">`+1`</a> | 84.2 kB | | | [npm/react@18.3.1](https://socket.dev/npm/package/react/overview/18.3.1) ➜ [19.0.0](https://socket.dev/npm/package/react/overview/19.0.0) | None | <a href="https://socket.dev/npm/package/react/dependencies/19.0.0">`0`</a> | 0 B | | | [npm/sonner@1.5.0](https://socket.dev/npm/package/sonner/overview/1.5.0) ➜ [2.0.1](https://socket.dev/npm/package/sonner/overview/2.0.1) | None | <a href="https://socket.dev/npm/package/sonner/dependencies/2.0.1">`0`</a> | 163 kB | <a href="https://socket.dev/npm/user/emilkowalski">emilkowalski</a> | | [npm/swr@2.2.5](https://socket.dev/npm/package/swr/overview/2.2.5) ➜ [2.3.3](https://socket.dev/npm/package/swr/overview/2.3.3) | Transitive: <a href="https://socket.dev/npm/package/swr/alerts/2.3.3?tab=dependencies&alert_name=envVars">environment</a> | <a href="https://socket.dev/npm/package/swr/dependencies/2.3.3">`+2`</a> | 306 kB | <a href="https://socket.dev/npm/user/vercel-release-bot">vercel-release-bot</a> | | [npm/tailwind-merge@2.5.4](https://socket.dev/npm/package/tailwind-merge/overview/2.5.4) ➜ [3.0.2](https://socket.dev/npm/package/tailwind-merge/overview/3.0.2) | None | <a href="https://socket.dev/npm/package/tailwind-merge/dependencies/3.0.2">`0`</a> | 824 kB | <a href="https://socket.dev/npm/user/dcas">dcas</a> | | [npm/tailwindcss@3.4.0](https://socket.dev/npm/package/tailwindcss/overview/3.4.0), [3.4.14](https://socket.dev/npm/package/tailwindcss/overview/3.4.14) ➜ [4.0.13](https://socket.dev/npm/package/tailwindcss/overview/4.0.13) | None | <a href="https://socket.dev/npm/package/tailwindcss/dependencies/4.0.13">`0`</a> | 0 B | | | [npm/typescript@5.6.3](https://socket.dev/npm/package/typescript/overview/5.6.3) ➜ [5.8.2](https://socket.dev/npm/package/typescript/overview/5.8.2) | None | <a href="https://socket.dev/npm/package/typescript/dependencies/5.8.2">`0`</a> | 22.9 MB | <a href="https://socket.dev/npm/user/typescript-bot">typescript-bot</a> | | [npm/usehooks-ts@3.1.0](https://socket.dev/npm/package/usehooks-ts/overview/3.1.0) ➜ [3.1.1](https://socket.dev/npm/package/usehooks-ts/overview/3.1.1) | None | <a href="https://socket.dev/npm/package/usehooks-ts/dependencies/3.1.1">`+1`</a> | 265 kB | <a href="https://socket.dev/npm/user/junscuzzy">junscuzzy</a> | | [npm/vaul@1.1.0](https://socket.dev/npm/package/vaul/overview/1.1.0) ➜ [1.1.2](https://socket.dev/npm/package/vaul/overview/1.1.2) | None | <a href="https://socket.dev/npm/package/vaul/dependencies/1.1.2">`0`</a> | 184 kB | <a href="https://socket.dev/npm/user/emilkowalski">emilkowalski</a> | [**View full report↗︎**](https://socket.dev/dashboard/org/nord-studio/diff/c45fcec5-a794-4315-bb26-d5f1512711a2/4fc52f68-c73a-4643-b911-c8cb29bd1fd6) <!-- overview-comment -->
socket-security[bot] commented 2025-03-13 03:57:22 +01:00 (Migrated from github.com)

🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎

To accept the risk, merge this PR and you will not be notified again.

Alert Package NoteSourceCI
Possible typosquat attack npm/emoji-regex-xs@1.0.0 ⚠︎

View full report↗︎

Next steps

What is a typosquat?

Package name is similar to other popular packages and may not be the package you want.

Use care when consuming similarly named packages and ensure that you did not intend to consume a different package. Malicious packages often publish using similar names as existing popular packages.

Take a deeper look at the dependency

Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev.

Remove the package

If you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency.

Mark a package as acceptable risk

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of ecosystem/package-name@version specifiers. e.g. @SocketSecurity ignore npm/foo@1.0.0 or ignore all packages with @SocketSecurity ignore-all

  • @SocketSecurity ignore npm/emoji-regex-xs@1.0.0
**🚨 Potential security issues detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) To accept the risk, merge this PR and you will not be notified again. <table> <thead> <tr> <th align="left">Alert</th> <th align="left">Package</th> <th align="left">Note</th><th align="left">Source</th><th align="left">CI</th> </tr> </thead> <tbody> <tr> <td align="left"> <a href="https://socket.dev/npm/package/emoji-regex-xs/alerts/1.0.0?alert_name=didYouMean"> Possible typosquat attack </a> </td> <td align="left"> <a href="https://socket.dev/npm/package/emoji-regex-xs/overview/1.0.0"> npm/emoji-regex-xs@1.0.0 </a> </td> <td align="left"> <ul> <li><strong>Did you mean:</strong> <a href="https://socket.dev/npm/package/emoji-regex">emoji-regex~~-xs~~</a></li> </ul> </td><td align="left"> <ul> <li><a href="https://github.com/nord-studio/katarogu/pull/13/files#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519"><code>package.json</code></a></li> <li><a href="https://github.com/nord-studio/katarogu/pull/13/files#diff-32824c984905bb02bc7ffcef96a77addd1f1602cff71a11fbbfdd7f53ee026bb"><code>pnpm-lock.yaml</code></a></li> </ul> </td><td align="left"><span title="Warn: Pass CI Check">⚠︎</span> </td> </tr> </tbody> </table> [**View full report↗︎**](https://socket.dev/dashboard/org/nord-studio/diff/c45fcec5-a794-4315-bb26-d5f1512711a2/4fc52f68-c73a-4643-b911-c8cb29bd1fd6) ### Next steps <details> <summary> <strong> What is a typosquat? </strong> </summary> <p>Package name is similar to other popular packages and may not be the package you want.</p> <p>Use care when consuming similarly named packages and ensure that you did not intend to consume a different package. Malicious packages often publish using similar names as existing popular packages.</p> </details> <details> <summary> <strong> Take a deeper look at the dependency </strong> </summary> <p> Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev. </p> </details> <details> <summary> <strong> Remove the package </strong> </summary> <p> If you happen to install a dependency that Socket reports as <a href="https://socket.dev/npm/issue/malware">Known Malware</a> you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency. </p> </details> <details> <summary> <strong>Mark a package as acceptable risk</strong> </summary> <p>To ignore an alert, reply with a comment starting with <code>@SocketSecurity ignore</code> followed by a space separated list of <code>ecosystem/package-name@version</code> specifiers. e.g. <code>@SocketSecurity ignore npm/foo@1.0.0</code> or ignore all packages with <code>@SocketSecurity ignore-all</code></p> <ul> <li><code>@SocketSecurity ignore npm/emoji-regex-xs@1.0.0</code></li> </ul> </details>
Sign in to join this conversation.
No description provided.