Skip to content

Commit 9c71407

Browse files
build(deps): bump @sigstore/sign from 3.1.0 to 4.0.1
Bumps [@sigstore/sign](https://github.com/sigstore/sigstore-js) from 3.1.0 to 4.0.1. - [Release notes](https://github.com/sigstore/sigstore-js/releases) - [Commits](https://github.com/sigstore/sigstore-js/compare/@sigstore/[email protected]...@sigstore/[email protected]) --- updated-dependencies: - dependency-name: "@sigstore/sign" dependency-version: 4.0.1 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent 7cb0fac commit 9c71407

File tree

2 files changed

+40
-132
lines changed

2 files changed

+40
-132
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -57,7 +57,7 @@
5757
"@octokit/core": "^5.2.2",
5858
"@octokit/plugin-rest-endpoint-methods": "^10.4.1",
5959
"@sigstore/bundle": "^4.0.0",
60-
"@sigstore/sign": "^3.1.0",
60+
"@sigstore/sign": "^4.0.1",
6161
"async-retry": "^1.3.3",
6262
"csv-parse": "^6.1.0",
6363
"gunzip-maybe": "^1.4.2",

yarn.lock

Lines changed: 39 additions & 131 deletions
Original file line numberDiff line numberDiff line change
@@ -1134,7 +1134,7 @@ __metadata:
11341134
"@octokit/plugin-rest-endpoint-methods": "npm:^10.4.1"
11351135
"@sigstore/bundle": "npm:^4.0.0"
11361136
"@sigstore/rekor-types": "npm:^3.0.0"
1137-
"@sigstore/sign": "npm:^3.1.0"
1137+
"@sigstore/sign": "npm:^4.0.1"
11381138
"@types/gunzip-maybe": "npm:^1.4.2"
11391139
"@types/he": "npm:^1.2.3"
11401140
"@types/js-yaml": "npm:^4.0.9"
@@ -1298,15 +1298,6 @@ __metadata:
12981298
languageName: node
12991299
linkType: hard
13001300

1301-
"@isaacs/fs-minipass@npm:^4.0.0":
1302-
version: 4.0.1
1303-
resolution: "@isaacs/fs-minipass@npm:4.0.1"
1304-
dependencies:
1305-
minipass: "npm:^7.0.4"
1306-
checksum: 10/4412e9e6713c89c1e66d80bb0bb5a2a93192f10477623a27d08f228ba0316bb880affabc5bfe7f838f58a34d26c2c190da726e576cdfc18c49a72e89adabdcf5
1307-
languageName: node
1308-
linkType: hard
1309-
13101301
"@istanbuljs/load-nyc-config@npm:^1.0.0":
13111302
version: 1.1.0
13121303
resolution: "@istanbuljs/load-nyc-config@npm:1.1.0"
@@ -1694,16 +1685,16 @@ __metadata:
16941685
languageName: node
16951686
linkType: hard
16961687

1697-
"@npmcli/agent@npm:^3.0.0":
1698-
version: 3.0.0
1699-
resolution: "@npmcli/agent@npm:3.0.0"
1688+
"@npmcli/agent@npm:^4.0.0":
1689+
version: 4.0.0
1690+
resolution: "@npmcli/agent@npm:4.0.0"
17001691
dependencies:
17011692
agent-base: "npm:^7.1.0"
17021693
http-proxy-agent: "npm:^7.0.0"
17031694
https-proxy-agent: "npm:^7.0.1"
1704-
lru-cache: "npm:^10.0.1"
1695+
lru-cache: "npm:^11.2.1"
17051696
socks-proxy-agent: "npm:^8.0.3"
1706-
checksum: 10/775c9a7eb1f88c195dfb3bce70c31d0fe2a12b28b754e25c08a3edb4bc4816bfedb7ac64ef1e730579d078ca19dacf11630e99f8f3c3e0fd7b23caa5fd6d30a6
1697+
checksum: 10/1a81573becc60515031accc696e6405e9b894e65c12b98ef4aeee03b5617c41948633159dbf6caf5dde5b47367eeb749bdc7b7dfb21960930a9060a935c6f636
17071698
languageName: node
17081699
linkType: hard
17091700

@@ -2055,15 +2046,6 @@ __metadata:
20552046
languageName: node
20562047
linkType: hard
20572048

2058-
"@sigstore/bundle@npm:^3.1.0":
2059-
version: 3.1.0
2060-
resolution: "@sigstore/bundle@npm:3.1.0"
2061-
dependencies:
2062-
"@sigstore/protobuf-specs": "npm:^0.4.0"
2063-
checksum: 10/21b246ec63462e8508a8d001ca5d7937f63b6e15d5f2947ee2726d1e4674fb3f7640faa47b165bfea1d5b09df93fbdf10d1556427bba7e005e7f3a65b87f89b2
2064-
languageName: node
2065-
linkType: hard
2066-
20672049
"@sigstore/bundle@npm:^4.0.0":
20682050
version: 4.0.0
20692051
resolution: "@sigstore/bundle@npm:4.0.0"
@@ -2073,17 +2055,10 @@ __metadata:
20732055
languageName: node
20742056
linkType: hard
20752057

2076-
"@sigstore/core@npm:^2.0.0":
2077-
version: 2.0.0
2078-
resolution: "@sigstore/core@npm:2.0.0"
2079-
checksum: 10/ec1deae9430eeff580ad0f4ef2328b4eb7252db04587474fe9423d97736134ad79ee83aa2dfbc1fccfb18420c249e26e6e72e7176b592d7013eae5379dcb124d
2080-
languageName: node
2081-
linkType: hard
2082-
2083-
"@sigstore/protobuf-specs@npm:^0.4.0":
2084-
version: 0.4.3
2085-
resolution: "@sigstore/protobuf-specs@npm:0.4.3"
2086-
checksum: 10/05bcb534b6096c095185c74b1718af89666299444490d84d35610f590bc4e2bf1a6a29c2c4f18598ddbd3a8a43c95f0a89faa98c05b44ff0be1dcd8b39f7e323
2058+
"@sigstore/core@npm:^3.0.0":
2059+
version: 3.0.0
2060+
resolution: "@sigstore/core@npm:3.0.0"
2061+
checksum: 10/b6dd1d0de2843d9fcad77f1052e2de795772f126b8dbcda887d36b5d6ea691f708dd64c13317ca98e1dd4987895098c4142c55a083f4e2cbcf1a1e75c95f650d
20872062
languageName: node
20882063
linkType: hard
20892064

@@ -2101,17 +2076,17 @@ __metadata:
21012076
languageName: node
21022077
linkType: hard
21032078

2104-
"@sigstore/sign@npm:^3.1.0":
2105-
version: 3.1.0
2106-
resolution: "@sigstore/sign@npm:3.1.0"
2079+
"@sigstore/sign@npm:^4.0.1":
2080+
version: 4.0.1
2081+
resolution: "@sigstore/sign@npm:4.0.1"
21072082
dependencies:
2108-
"@sigstore/bundle": "npm:^3.1.0"
2109-
"@sigstore/core": "npm:^2.0.0"
2110-
"@sigstore/protobuf-specs": "npm:^0.4.0"
2111-
make-fetch-happen: "npm:^14.0.2"
2083+
"@sigstore/bundle": "npm:^4.0.0"
2084+
"@sigstore/core": "npm:^3.0.0"
2085+
"@sigstore/protobuf-specs": "npm:^0.5.0"
2086+
make-fetch-happen: "npm:^15.0.2"
21122087
proc-log: "npm:^5.0.0"
21132088
promise-retry: "npm:^2.0.1"
2114-
checksum: 10/e0ce0aa52b572eefa06a8260a7329f349c56217f2bbb6f167259c6e02e148987073e0dddc5e3c40ea4aafc89b8b0176e2617fb16f9c8c50cf0c1437b6c90fca4
2089+
checksum: 10/41b2bcb8fb767a6b242e59659b3dc20bd43000637c594a469e9cece5201d24b3a697220b70829edfd527087e1ed7b8c41837031b65de345f7d4c7941d9ef7b35
21152090
languageName: node
21162091
linkType: hard
21172092

@@ -3257,23 +3232,22 @@ __metadata:
32573232
languageName: node
32583233
linkType: hard
32593234

3260-
"cacache@npm:^19.0.1":
3261-
version: 19.0.1
3262-
resolution: "cacache@npm:19.0.1"
3235+
"cacache@npm:^20.0.1":
3236+
version: 20.0.1
3237+
resolution: "cacache@npm:20.0.1"
32633238
dependencies:
32643239
"@npmcli/fs": "npm:^4.0.0"
32653240
fs-minipass: "npm:^3.0.0"
3266-
glob: "npm:^10.2.2"
3267-
lru-cache: "npm:^10.0.1"
3241+
glob: "npm:^11.0.3"
3242+
lru-cache: "npm:^11.1.0"
32683243
minipass: "npm:^7.0.3"
32693244
minipass-collect: "npm:^2.0.1"
32703245
minipass-flush: "npm:^1.0.5"
32713246
minipass-pipeline: "npm:^1.2.4"
32723247
p-map: "npm:^7.0.2"
32733248
ssri: "npm:^12.0.0"
3274-
tar: "npm:^7.4.3"
32753249
unique-filename: "npm:^4.0.0"
3276-
checksum: 10/ea026b27b13656330c2bbaa462a88181dcaa0435c1c2e705db89b31d9bdf7126049d6d0445ba746dca21454a0cfdf1d6f47fd39d34c8c8435296b30bc5738a13
3250+
checksum: 10/b52a3ed18539608092f69db00cb0dba8c888876a6a9efebd3e275fec4d884df025372d018bc05560df9a4f36a08b880b9cbe03edaf52686789513228d0204bc9
32773251
languageName: node
32783252
linkType: hard
32793253

@@ -3411,13 +3385,6 @@ __metadata:
34113385
languageName: node
34123386
linkType: hard
34133387

3414-
"chownr@npm:^3.0.0":
3415-
version: 3.0.0
3416-
resolution: "chownr@npm:3.0.0"
3417-
checksum: 10/b63cb1f73d171d140a2ed8154ee6566c8ab775d3196b0e03a2a94b5f6a0ce7777ee5685ca56849403c8d17bd457a6540672f9a60696a6137c7a409097495b82c
3418-
languageName: node
3419-
linkType: hard
3420-
34213388
"ci-info@npm:^3.2.0":
34223389
version: 3.3.0
34233390
resolution: "ci-info@npm:3.3.0"
@@ -5116,23 +5083,7 @@ __metadata:
51165083
languageName: node
51175084
linkType: hard
51185085

5119-
"glob@npm:^10.2.2":
5120-
version: 10.4.5
5121-
resolution: "glob@npm:10.4.5"
5122-
dependencies:
5123-
foreground-child: "npm:^3.1.0"
5124-
jackspeak: "npm:^3.1.2"
5125-
minimatch: "npm:^9.0.4"
5126-
minipass: "npm:^7.1.2"
5127-
package-json-from-dist: "npm:^1.0.0"
5128-
path-scurry: "npm:^1.11.1"
5129-
bin:
5130-
glob: dist/esm/bin.mjs
5131-
checksum: 10/698dfe11828b7efd0514cd11e573eaed26b2dff611f0400907281ce3eab0c1e56143ef9b35adc7c77ecc71fba74717b510c7c223d34ca8a98ec81777b293d4ac
5132-
languageName: node
5133-
linkType: hard
5134-
5135-
"glob@npm:^11.0.0":
5086+
"glob@npm:^11.0.0, glob@npm:^11.0.3":
51365087
version: 11.0.3
51375088
resolution: "glob@npm:11.0.3"
51385089
dependencies:
@@ -6244,19 +6195,6 @@ __metadata:
62446195
languageName: node
62456196
linkType: hard
62466197

6247-
"jackspeak@npm:^3.1.2":
6248-
version: 3.4.3
6249-
resolution: "jackspeak@npm:3.4.3"
6250-
dependencies:
6251-
"@isaacs/cliui": "npm:^8.0.2"
6252-
"@pkgjs/parseargs": "npm:^0.11.0"
6253-
dependenciesMeta:
6254-
"@pkgjs/parseargs":
6255-
optional: true
6256-
checksum: 10/96f8786eaab98e4bf5b2a5d6d9588ea46c4d06bbc4f2eb861fdd7b6b182b16f71d8a70e79820f335d52653b16d4843b29dd9cdcf38ae80406756db9199497cf3
6257-
languageName: node
6258-
linkType: hard
6259-
62606198
"jackspeak@npm:^4.1.1":
62616199
version: 4.1.1
62626200
resolution: "jackspeak@npm:4.1.1"
@@ -6894,13 +6832,6 @@ __metadata:
68946832
languageName: node
68956833
linkType: hard
68966834

6897-
"lru-cache@npm:^10.0.1":
6898-
version: 10.4.3
6899-
resolution: "lru-cache@npm:10.4.3"
6900-
checksum: 10/e6e90267360476720fa8e83cc168aa2bf0311f3f2eea20a6ba78b90a885ae72071d9db132f40fda4129c803e7dcec3a6b6a6fbb44ca90b081630b810b5d6a41a
6901-
languageName: node
6902-
linkType: hard
6903-
69046835
"lru-cache@npm:^10.2.0":
69056836
version: 10.2.0
69066837
resolution: "lru-cache@npm:10.2.0"
@@ -6915,6 +6846,13 @@ __metadata:
69156846
languageName: node
69166847
linkType: hard
69176848

6849+
"lru-cache@npm:^11.1.0, lru-cache@npm:^11.2.1":
6850+
version: 11.2.2
6851+
resolution: "lru-cache@npm:11.2.2"
6852+
checksum: 10/fa7919fbf068a739f79a1ad461eb273514da7246cebb9dca68e3cd7ba19e3839e7e2aaecd9b72867e08038561eeb96941189e89b3d4091c75ced4f56c71c80db
6853+
languageName: node
6854+
linkType: hard
6855+
69186856
"lru-cache@npm:^5.1.1":
69196857
version: 5.1.1
69206858
resolution: "lru-cache@npm:5.1.1"
@@ -6980,12 +6918,12 @@ __metadata:
69806918
languageName: node
69816919
linkType: hard
69826920

6983-
"make-fetch-happen@npm:^14.0.2":
6984-
version: 14.0.3
6985-
resolution: "make-fetch-happen@npm:14.0.3"
6921+
"make-fetch-happen@npm:^15.0.2":
6922+
version: 15.0.2
6923+
resolution: "make-fetch-happen@npm:15.0.2"
69866924
dependencies:
6987-
"@npmcli/agent": "npm:^3.0.0"
6988-
cacache: "npm:^19.0.1"
6925+
"@npmcli/agent": "npm:^4.0.0"
6926+
cacache: "npm:^20.0.1"
69896927
http-cache-semantics: "npm:^4.1.1"
69906928
minipass: "npm:^7.0.2"
69916929
minipass-fetch: "npm:^4.0.0"
@@ -6995,7 +6933,7 @@ __metadata:
69956933
proc-log: "npm:^5.0.0"
69966934
promise-retry: "npm:^2.0.1"
69976935
ssri: "npm:^12.0.0"
6998-
checksum: 10/fce0385840b6d86b735053dfe941edc2dd6468fda80fe74da1eeff10cbd82a75760f406194f2bc2fa85b99545b2bc1f84c08ddf994b21830775ba2d1a87e8bdf
6936+
checksum: 10/66097eae91615d1ac817127b9a20b9a17a1cb18c6b52ad24ffa03f45f3a9300af03f3368c52bbe88060ba9bf73c4ec1e0f2a209d1598bb906cdb34f75d3600b4
69996937
languageName: node
70006938
linkType: hard
70016939

@@ -7253,7 +7191,7 @@ __metadata:
72537191
languageName: node
72547192
linkType: hard
72557193

7256-
"minizlib@npm:^3.0.1, minizlib@npm:^3.1.0":
7194+
"minizlib@npm:^3.0.1":
72577195
version: 3.1.0
72587196
resolution: "minizlib@npm:3.1.0"
72597197
dependencies:
@@ -7694,16 +7632,6 @@ __metadata:
76947632
languageName: node
76957633
linkType: hard
76967634

7697-
"path-scurry@npm:^1.11.1":
7698-
version: 1.11.1
7699-
resolution: "path-scurry@npm:1.11.1"
7700-
dependencies:
7701-
lru-cache: "npm:^10.2.0"
7702-
minipass: "npm:^5.0.0 || ^6.0.2 || ^7.0.0"
7703-
checksum: 10/5e8845c159261adda6f09814d7725683257fcc85a18f329880ab4d7cc1d12830967eae5d5894e453f341710d5484b8fdbbd4d75181b4d6e1eb2f4dc7aeadc434
7704-
languageName: node
7705-
linkType: hard
7706-
77077635
"path-scurry@npm:^2.0.0":
77087636
version: 2.0.0
77097637
resolution: "path-scurry@npm:2.0.0"
@@ -8913,19 +8841,6 @@ __metadata:
89138841
languageName: node
89148842
linkType: hard
89158843

8916-
"tar@npm:^7.4.3":
8917-
version: 7.5.1
8918-
resolution: "tar@npm:7.5.1"
8919-
dependencies:
8920-
"@isaacs/fs-minipass": "npm:^4.0.0"
8921-
chownr: "npm:^3.0.0"
8922-
minipass: "npm:^7.1.2"
8923-
minizlib: "npm:^3.1.0"
8924-
yallist: "npm:^5.0.0"
8925-
checksum: 10/4848cd2fa2fcaf0734cf54e14bc685056eb43a74d7cc7f954c3ac88fea88c85d95b1d7896619f91aab6f2234c5eec731c18aaa201a78fcf86985bdc824ed7a00
8926-
languageName: node
8927-
linkType: hard
8928-
89298844
"test-exclude@npm:^6.0.0":
89308845
version: 6.0.0
89318846
resolution: "test-exclude@npm:6.0.0"
@@ -9777,13 +9692,6 @@ __metadata:
97779692
languageName: node
97789693
linkType: hard
97799694

9780-
"yallist@npm:^5.0.0":
9781-
version: 5.0.0
9782-
resolution: "yallist@npm:5.0.0"
9783-
checksum: 10/1884d272d485845ad04759a255c71775db0fac56308764b4c77ea56a20d56679fad340213054c8c9c9c26fcfd4c4b2a90df993b7e0aaf3cdb73c618d1d1a802a
9784-
languageName: node
9785-
linkType: hard
9786-
97879695
"yargs-parser@npm:^21.1.1":
97889696
version: 21.1.1
97899697
resolution: "yargs-parser@npm:21.1.1"

0 commit comments

Comments
 (0)