Bump follow-redirects from 1.15.6 to 1.16.0 - #6118
Conversation
525667e to
8f72bbf
Compare
Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects) from 1.15.6 to 1.16.0. - [Release notes](https://github.com/follow-redirects/follow-redirects/releases) - [Commits](follow-redirects/follow-redirects@v1.15.6...v1.16.0) --- updated-dependencies: - dependency-name: follow-redirects dependency-version: 1.16.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
8f72bbf to
158efde
Compare
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
5 similar comments
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
Bumps follow-redirects from 1.15.6 to 1.16.0.
Commits
0c23a22Release version 1.16.0 of the npm package.844c4d3Add sensitiveHeaders option.5e8b8d0ci: add Node.js 24.x to the CI matrix7953e22ci: upgrade GitHub Actions to use setup-node@v6 and checkout@v686dc1f8Sanitizing input.21ef28aRelease version 1.15.11 of the npm package.7c88135Roll back tree shaking.6e389baRelease version 1.15.10 of the npm package.5bc496eShake me up before you go-go.694d6b4Bump minimist from 1.2.5 to 1.2.8Note
Low Risk
Lockfile-only dependency update; 1.16.0 adds redirect input sanitization and optional sensitive header handling, which is a minor behavioral change in HTTP client plumbing but low risk for typical usage.
Overview
Updates the lockfile so the hoisted
follow-redirectsdependency moves from 1.15.6 to 1.16.0, with resolved URL and integrity metadata added at the top-level entry. A nested 1.16.0 copy under@zano-project/zano-utils-jsis removed so installs rely on the shared hoisted version (also used transitively viaaxios).This is a routine transitive dependency bump with no application source changes.
Reviewed by Cursor Bugbot for commit 158efde. Bugbot is set up for automated code reviews on this repo. Configure here.