Repository navigation
chore(deps-dev): bump typescript-eslint from 8.70.1 to 8.71.0 - #292
Conversation
Bumps [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) from 8.70.1 to 8.71.0. - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.71.0/packages/typescript-eslint) --- updated-dependencies: - dependency-name: typescript-eslint dependency-version: 8.71.0 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
dhensby
left a comment
There was a problem hiding this comment.
Dependabot Review: typescript-eslint 8.71.0
Package Changes
| Package | Change | Bump | Dependency type |
|---|---|---|---|
typescript-eslint |
8.70.1 → 8.71.0 | minor | dev (direct) |
Supply-Chain Verification ✅
Every package version that is new in package-lock.json (compared with merge-base 3fba2b4):
| Package | Version | Scope | npm publish (UTC) | Publisher | Evidence | Result |
|---|---|---|---|---|---|---|
@typescript-eslint/eslint-plugin |
8.71.0 | dev | 2026-09-28 17:13:54Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
ignore |
7.0.12 | dev | 2026-10-02 12:24:54Z | kael |
No provenance. Tag 7.0.12 by kaelzhang. No GitHub release. Tagged commit 2026-10-02 12:11:59Z; npm publish 13 min later. |
✅ |
@typescript-eslint/parser |
8.71.0 | dev | 2026-09-28 17:09:20Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/project-service |
8.71.0 | dev | 2026-09-28 17:10:11Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/scope-manager |
8.71.0 | dev | 2026-09-28 17:10:56Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/tsconfig-utils |
8.71.0 | dev | 2026-09-28 17:10:36Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/type-utils |
8.71.0 | dev | 2026-09-28 17:13:41Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/types |
8.71.0 | dev | 2026-09-28 17:10:05Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/typescript-estree |
8.71.0 | dev | 2026-09-28 17:09:07Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/utils |
8.71.0 | dev | 2026-09-28 17:10:33Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
@typescript-eslint/visitor-keys |
8.71.0 | dev | 2026-09-28 17:11:14Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
typescript-eslint |
8.71.0 | dev | 2026-09-28 17:12:00Z | GitHub Actions (OIDC) | SLSA provenance verified: typescript-eslint/typescript-eslint@0bbe5e74e2 (refs/heads/main, .github/workflows/release.yml) |
✅ |
- The
resolvedURL andintegrityhash of each new lockfile entry match the registry metadata. - All other packages resolve the same dependency versions as before.
- No new entry has an install script.
- The diff changes only
package-lock.jsonandpackage.json. The only commit is bydependabot[bot].
CI Status ✅
All 15 checks pass on head b711e08: Lint commits, Lint code, Check built files, Run tests, Test coverage, runaction (windows-2022, sql-latest), runaction (windows-2022, sql-2022), runaction (windows-2022, sql-2019), runaction (windows-2022, sql-2017), runaction (windows-2022, sql-2016), runaction (windows-2025, sql-latest), runaction (windows-2025, sql-2022), runaction (windows-2025, sql-2019), runaction (windows-2025, sql-2017), runaction (windows-2025, sql-2016). Skipped: Release.
Breaking Changes / Impact
- Lint tooling, dev only. Minor release with rule fixes. Lint passes in CI.
Approved. All new versions match the registry and their upstream source. The diff changes only dependency files. CI is green.
|
🎉 This PR is included in version 4.0.2 🎉 The release is available on:
Your semantic-release bot 📦🚀 |
Bumps typescript-eslint from 8.70.1 to 8.71.0.
Release notes
Sourced from typescript-eslint's releases.
Changelog
Sourced from typescript-eslint's changelog.
Commits
8695664chore(release): publish 8.71.0Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)