Skip to content

Conversation

@electron-builder-release-bot
Copy link
Contributor

@electron-builder-release-bot electron-builder-release-bot bot commented Nov 15, 2025

This PR was opened by the Changesets release GitHub action. When you're ready to do a release, you can merge this and the packages will be published to npm automatically. If you're not ready to do a release yet, that's fine, whenever you add more changesets to master, this PR will be updated.

Releases

[email protected]

Minor Changes

Patch Changes

Updated 5 dependencies

030269b 16c8fa1

[email protected]

Minor Changes

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 4 dependencies

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Minor Changes

  • Feat: allowing negative patterns to be provided for signExts as signing overrides #9335 16c8fa1 @mmaietta

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 2 dependencies

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 2 dependencies

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b b741b72 d8ad468 811d13d 16c8fa1 2e0837b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 2 dependencies

030269b

[email protected]

Patch Changes

  • Chore: bumping version packages of all packages to trigger Trusted Signing provedance release #9362 030269b @mmaietta
Updated 1 dependency

030269b

@socket-security
Copy link

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedtoml@​3.0.01001009975100
Addedyargs@​17.7.29810010087100

View full report

@socket-security
Copy link

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn Medium
Deprecated by its maintainer: npm uuid

Reason: Please upgrade to version 7 or higher. Older versions may use Math.random() in certain circumstances, which is known to be problematic. See https://v8.dev/blog/math-random for details.

From: pnpm-lock.yamlnpm/[email protected]

ℹ Read more on: This package | This alert | What is a deprecated package?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at [email protected].

Suggestion: Research the state of the package and determine if there are non-deprecated versions that can be used, or if it should be replaced with a new, supported solution.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/[email protected]. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@mmaietta mmaietta linked an issue Nov 18, 2025 that may be closed by this pull request
@mmaietta mmaietta merged commit 27653af into master Nov 18, 2025
26 checks passed
@mmaietta mmaietta deleted the changeset-release/master branch November 18, 2025 13:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Building takes forever

2 participants