Skip to content

Conversation

mcmire
Copy link
Contributor

@mcmire mcmire commented Mar 21, 2025

  • Add latest versions of ESLint, MetaMask ESLint packages, and Prettier
  • Rename build-test GitHub workflow to build-lint-test, and add linting to the steps
  • Reformat all code, data, documentation, and configuration files to address new lint violations

- Add latest versions of ESLint, MetaMask ESLint packages, and Prettier
- Rename `build-test` GitHub workflow to `build-lint-test`, and add
  linting to the steps
- Reformat all code, data, documentation, and configuration files to
  address new lint violations
@socket-security
Copy link

New dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@emnapi/[email protected] environment, eval 0 438 kB toyobayashi
npm/@emnapi/[email protected] environment 0 219 kB toyobayashi
npm/@es-joy/[email protected] None 0 121 kB brettz9
npm/@eslint-community/[email protected] None +1 414 kB eslint-community-bot, michaeldeboey
npm/@eslint-community/[email protected] None 0 473 kB eslint-community-bot
npm/@eslint/[email protected] None 0 315 kB eslintbot, openjsfoundation
npm/@eslint/[email protected] None 0 55.1 kB eslintbot
npm/@eslint/[email protected] None 0 65.1 kB eslintbot
npm/@eslint/[email protected] None +2 197 kB
npm/@eslint/[email protected] None 0 0 B
npm/@eslint/[email protected] None 0 57 kB eslintbot, openjsfoundation
npm/@eslint/[email protected] None 0 77.3 kB eslintbot
npm/@humanfs/[email protected] None 0 72.7 kB nzakas
npm/@humanfs/[email protected] None +1 89.5 kB nzakas
npm/@humanwhocodes/[email protected] unsafe 0 21.2 kB nzakas
npm/@humanwhocodes/[email protected] None 0 65 kB nzakas
npm/@metamask/[email protected] unsafe 0 98.4 kB metamaskbot
npm/@metamask/[email protected] unsafe 0 130 kB metamaskbot
npm/@napi-rs/[email protected] None 0 8.04 MB broooooklyn
npm/@nodelib/[email protected] filesystem 0 22.2 kB mrmlnc
npm/@nodelib/[email protected] filesystem 0 11.8 kB mrmlnc
npm/@nodelib/[email protected] None 0 26.4 kB mrmlnc
npm/@pkgr/[email protected] None 0 8.87 kB i1stg, jounqin
npm/@tybys/[email protected] environment, network 0 770 kB toyobayashi
npm/@types/[email protected] None 0 8.49 kB types
npm/@types/[email protected] None 0 25.8 kB types
npm/@types/[email protected] None 0 31.7 kB types
npm/@typescript-eslint/[email protected] None 0 0 B
npm/@typescript-eslint/[email protected] None 0 0 B
npm/@typescript-eslint/[email protected] Transitive: environment +1 435 kB
npm/@typescript-eslint/[email protected] None 0 267 kB bradzacher, jameshenry
npm/@typescript-eslint/[email protected] None 0 0 B
npm/@unrs/[email protected] None 0 2.26 MB jounqin
npm/@unrs/[email protected] None 0 2.58 MB jounqin
npm/@unrs/[email protected] None 0 2.92 MB jounqin
npm/@unrs/[email protected] None 0 2.35 MB jounqin
npm/@unrs/[email protected] None 0 2.54 MB jounqin
npm/@unrs/[email protected] None 0 2.55 MB jounqin
npm/@unrs/[email protected] None 0 2.94 MB jounqin
npm/@unrs/[email protected] None 0 2.96 MB jounqin
npm/@unrs/[email protected] None 0 2.07 MB jounqin
npm/@unrs/[email protected] None 0 2.44 MB jounqin
npm/@unrs/[email protected] None 0 2.79 MB jounqin
npm/[email protected] None 0 24.4 kB rreverser
npm/[email protected] None 0 547 kB marijn
npm/[email protected] eval +1 942 kB esp
npm/[email protected] None 0 13.6 kB joshuakgoldberg
npm/[email protected] environment, filesystem 0 172 kB vitaly
npm/[email protected] None 0 44.6 kB jonschlinkert
npm/[email protected] None 0 6.33 kB sindresorhus
npm/[email protected] None 0 35 kB sindresorhus
npm/[email protected] None 0 366 kB yavorskiys
npm/[email protected] None 0 8.11 kB thlorenz
npm/[email protected] None 0 9.75 kB sindresorhus
npm/[email protected] None 0 3.96 kB sindresorhus
npm/[email protected] None 0 106 kB eslint
npm/[email protected] None 0 213 kB evilebottnawi, jhnns, sokra, ...1 more
npm/[email protected] None 0 91.3 kB guybedford
npm/[email protected] None 0 3.79 kB sindresorhus
npm/[email protected] filesystem 0 53.1 kB ota-meshi
npm/[email protected] None 0 20.8 kB lydell
npm/[email protected] Transitive: environment +1 58.5 kB ljharb
npm/[email protected] None 0 409 kB eslint-community-bot
npm/[email protected] Transitive: environment +4 1.31 MB jounqin
npm/[email protected] None 0 2.09 MB gajus
npm/[email protected] None +1 557 kB eslint-community-bot, weiran.zsd
npm/[email protected] None 0 34.5 kB bpscott, jounqin, lydell, ...3 more
npm/[email protected] None 0 96.6 kB eslint-community-bot
npm/[email protected] None 0 155 kB eslintbot, ivolodin, nzakas, ...1 more
npm/[email protected] None 0 36.1 kB eslintbot
npm/[email protected] Transitive: environment, filesystem, shell +2 26.1 kB
npm/[email protected] None +1 1.07 MB michaelficarra
npm/[email protected] None 0 13.5 kB michaelficarra
npm/[email protected] None 0 50.6 kB michaelficarra
npm/[email protected] None 0 52.3 kB luin
npm/[email protected] filesystem +1 111 kB mrmlnc
npm/[email protected] None 0 17 kB esp
npm/[email protected] None 0 9.44 kB hiddentao
npm/[email protected] None 0 45.9 kB matteo.collina
npm/[email protected] filesystem 0 45.2 kB thecodrr
npm/[email protected] filesystem 0 16 kB jaredwray
npm/[email protected] None 0 16.7 kB jonschlinkert
npm/[email protected] None 0 11.8 kB sindresorhus
npm/[email protected] filesystem 0 29.3 kB jaredwray
npm/[email protected] None 0 31.5 kB webreflection
npm/[email protected] None 0 4.54 kB sindresorhus
npm/[email protected] None 0 116 kB hirokiosame
npm/[email protected] None 0 5.51 kB fisker
npm/[email protected] None +1 21.3 kB phated
npm/[email protected] None 0 177 kB sindresorhus
npm/[email protected] None 0 53.6 kB kael
npm/[email protected] None 0 4.69 kB sindresorhus
npm/[email protected] None 0 6.22 kB jonschlinkert
npm/[email protected] None 0 9.62 kB jonschlinkert
npm/[email protected] None 0 4.08 kB sindresorhus
npm/[email protected] None 0 405 kB vitaly
npm/[email protected] None 0 245 kB jsdoc-type-pratt-parser
npm/[email protected] None 0 5.4 kB dominictarr
npm/[email protected] None 0 19.6 kB esp
npm/[email protected] None 0 14.2 kB samn
npm/[email protected] None 0 27.8 kB jaredwray
npm/[email protected] None +1 46.1 kB gkz
npm/[email protected] filesystem 0 7.02 kB sindresorhus
npm/[email protected] None 0 54.1 kB jdalton
npm/[email protected] None 0 8.9 kB zensh
npm/[email protected] None 0 56.6 kB doowb
npm/[email protected] None 0 5.65 kB megawac
npm/[email protected] None 0 50.2 kB gkz
npm/[email protected] None 0 7.75 kB sindresorhus
npm/[email protected] None 0 7.24 kB sindresorhus
npm/[email protected] None 0 3.92 kB sindresorhus
npm/[email protected] None 0 39.1 kB tomeraberbach
npm/[email protected] filesystem 0 3.92 kB sindresorhus
npm/[email protected] None 0 90 kB mrmlnc
npm/[email protected] None 0 36.7 kB gkz
npm/[email protected] None 0 9.58 kB bpscott
npm/[email protected] None 0 5.55 kB matzkoh
npm/[email protected] None 0 33.5 kB google-wombot
npm/[email protected] filesystem, unsafe 0 4.64 kB sindresorhus
npm/[email protected] None 0 15 kB hirokiosame
npm/[email protected] None 0 11.7 kB matteo.collina
npm/[email protected] None 0 20.2 kB jounqin
npm/[email protected] None 0 6.56 kB feross
npm/[email protected] None 0 26 kB chrisackerman
npm/[email protected] None 0 2.69 kB keithamus
npm/[email protected] None 0 115 kB keithamus
npm/[email protected] None 0 3.47 kB kemitchell
npm/[email protected] None 0 12.3 kB kemitchell
npm/[email protected] None 0 12.9 kB kemitchell, shinnn
npm/[email protected] None 0 0 B
npm/[email protected] None 0 6.96 kB sindresorhus
npm/[email protected] environment 0 59.8 kB jounqin
npm/[email protected] None 0 46.9 kB sokra
npm/[email protected] None +1 85.2 kB
npm/[email protected] None 0 22.9 kB jonschlinkert
npm/[email protected] None 0 356 kB joshuakgoldberg
npm/[email protected] None 0 470 kB garycourt
npm/[email protected] None 0 11.8 kB jonschlinkert
npm/[email protected] None 0 6.03 kB sindresorhus

View full report↗︎

@socket-security
Copy link

🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎

To accept the risk, merge this PR and you will not be notified again.

Alert Package NoteSourceCI
New author npm/[email protected] 🚫
Network access npm/@tybys/[email protected] 🚫
Network access npm/@emnapi/[email protected] 🚫

View full report↗︎

Next steps

What is new author?

A new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.

Scrutinize new collaborator additions to packages because they now have the ability to publish code into your dependency tree. Packages should avoid frequent or unnecessary additions or changes to publishing rights.

What is network access?

This module accesses the network.

Packages should remove all network access that is functionally unnecessary. Consumers should audit network access to ensure legitimate use.

Take a deeper look at the dependency

Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev.

Remove the package

If you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency.

Mark a package as acceptable risk

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of ecosystem/package-name@version specifiers. e.g. @SocketSecurity ignore npm/[email protected] or ignore all packages with @SocketSecurity ignore-all

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant