Skip to content

chore: Bump lavamoat from 11.0.0 to 11.1.0#3965

Closed
dependabot[bot] wants to merge 3 commits intomainfrom
dependabot/npm_and_yarn/main/lavamoat-11.1.0
Closed

chore: Bump lavamoat from 11.0.0 to 11.1.0#3965
dependabot[bot] wants to merge 3 commits intomainfrom
dependabot/npm_and_yarn/main/lavamoat-11.1.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 16, 2026

Bumps lavamoat from 11.0.0 to 11.1.0.

Release notes

Sourced from lavamoat's releases.

lavamoat: v11.1.0

11.1.0 (2026-04-15)

Features

  • lavamoat-node: modernize resolve in lavamoat classic, opt-in only (#1928) (21f8d97)

Bug Fixes

Dependencies

  • The following workspace dependencies were updated
    • dependencies
      • lavamoat-core bumped from ^18.0.1 to ^18.0.2
      • lavamoat-tofu bumped from ^9.0.0 to ^9.0.1

lavamoat: v11.0.1

11.0.1 (2026-04-02)

Bug Fixes

  • deps: update dependency resolve to v1.22.11 (#1920) (5ed6202)

Dependencies

  • The following workspace dependencies were updated
    • dependencies
      • lavamoat-core bumped from ^18.0.0 to ^18.0.1
Changelog

Sourced from lavamoat's changelog.

11.1.0 (2026-04-15)

Features

  • lavamoat-node: modernize resolve in lavamoat classic, opt-in only (#1928) (21f8d97)

Bug Fixes

Dependencies

  • The following workspace dependencies were updated
    • dependencies
      • lavamoat-core bumped from ^18.0.1 to ^18.0.2
      • lavamoat-tofu bumped from ^9.0.0 to ^9.0.1

11.0.1 (2026-04-02)

Bug Fixes

  • deps: update dependency resolve to v1.22.11 (#1920) (5ed6202)

Dependencies

  • The following workspace dependencies were updated
    • dependencies
      • lavamoat-core bumped from ^18.0.0 to ^18.0.1
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [lavamoat](https://github.com/LavaMoat/lavamoat/tree/HEAD/packages/lavamoat-node) from 11.0.0 to 11.1.0.
- [Release notes](https://github.com/LavaMoat/lavamoat/releases)
- [Changelog](https://github.com/LavaMoat/LavaMoat/blob/main/packages/lavamoat-node/CHANGELOG.md)
- [Commits](https://github.com/LavaMoat/lavamoat/commits/lavamoat-v11.1.0/packages/lavamoat-node)

---
updated-dependencies:
- dependency-name: lavamoat
  dependency-version: 11.1.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Apr 16, 2026
@dependabot dependabot Bot requested a review from a team as a code owner April 16, 2026 06:06
@dependabot dependabot Bot added the javascript Pull requests that update javascript code label Apr 16, 2026
@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:06 Inactive
@socket-security
Copy link
Copy Markdown

socket-security Bot commented Apr 16, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updated@​babel/​types@​7.28.4 ⏵ 7.29.098 +110081 +193100
Updatedlavamoat@​11.0.0 ⏵ 11.1.09810010096 +2100

View full report

@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:07 Inactive
@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:08 Inactive
@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:11 Inactive
@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:11 Inactive
@dependabot dependabot Bot temporarily deployed to default-branch April 16, 2026 06:15 Inactive
@codecov
Copy link
Copy Markdown

codecov Bot commented Apr 16, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 98.55%. Comparing base (c2d6c7d) to head (fb091ab).
⚠️ Report is 6 commits behind head on main.

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #3965   +/-   ##
=======================================
  Coverage   98.55%   98.55%           
=======================================
  Files         428      428           
  Lines       12349    12349           
  Branches     1942     1942           
=======================================
  Hits        12171    12171           
  Misses        178      178           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@FrederikBolding
Copy link
Copy Markdown
Member

@dependabot recreate

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 4, 2026

Superseded by #3978.

@dependabot dependabot Bot closed this May 4, 2026
@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/main/lavamoat-11.1.0 branch May 4, 2026 08:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants