Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

v3 tracking #60

Open
5 tasks done
naugtur opened this issue Jun 13, 2022 · 12 comments
Open
5 tasks done

v3 tracking #60

naugtur opened this issue Jun 13, 2022 · 12 comments
Milestone

Comments

@naugtur
Copy link
Owner

naugtur commented Jun 13, 2022

Remaining open issues before v3 final release

@joebowbeer
Copy link
Contributor

joebowbeer commented Aug 18, 2022

Any update?

npm7 is no longer maintained, right? The last release (npm v7.24.2) was 1 year ago.

Given that Node 16 enters maintenance phase in 60 days, and even it ships with npm v8, is there any need to support npm v7?

What else is blocking this release?

@naugtur
Copy link
Owner Author

naugtur commented Aug 18, 2022

It's about npm7 and above.
I'm waiting with the release to finish a bunch of minor features. Main npm7+ support is done.
I should probably stop waiting...

I'm a bit swamped with lots of other stuff though and help from community has run out, so need to push it over the line myself now.

@joebowbeer
Copy link
Contributor

joebowbeer commented Jan 19, 2023

Can v3 be released without #25 ?

It looks like #25 is a nice-to-have enhancement and not a strict requirement for v3

@naugtur
Copy link
Owner Author

naugtur commented Feb 14, 2023

It's a breaking change so I kept it in scope for v3.
Sorry this is taking so long. It's a "too much life in my life to do opensource outside work" situation. (Nothing compared to zloirock tho)
Thanks for not giving up on audit resolver!

@naugtur
Copy link
Owner Author

naugtur commented Mar 2, 2023

I published npm-audit-resolver@next v3.0.0-8 and it's a release candidate to be the official 3.0.

Please let me know if it works for you!

@naugtur
Copy link
Owner Author

naugtur commented Mar 2, 2023

Oh, I should probably update dependencies to latest while I'm at it.

@jesse-mm
Copy link

jesse-mm commented Apr 9, 2023

Would you have a rough ETA on publishing this release ?

@naugtur
Copy link
Owner Author

naugtur commented Apr 15, 2023

Try now :)

latest is 3.0.0-RC.0 now and the RC part is there just for me to not feel like I need to wait for more testing :D

@jesse-mm
Copy link

Nice! Great work :) 🎉

@aoberoi
Copy link

aoberoi commented Dec 9, 2023

any blockers to releasing as a stable version (as opposed to RC)?

@naugtur
Copy link
Owner Author

naugtur commented Dec 9, 2023 via email

@Fryuni
Copy link

Fryuni commented Dec 10, 2023

Oh, we've been using 3.0.0-rc.0 since it was released and we've had zero problems so far. Resolution is working perfectly for all our use cases and all the vulnerability reports we got from our dependencies, multiple times we ignored them temporarily, others we resolved immediately, and others we ignored permanently with a task on our backlog to take a look.

Both commands have behaved exactly as we expected. So much so that I completely forgot that it was on our list of packages under test to give feedback 😅. But I guess that in itself is a feedback, it works so well that you forget it is there.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

5 participants