Skip to content

chore(deps): bump isomorphic-dompurify from 3.13.0 to 3.14.0#146

Merged
simongonzalezdc merged 1 commit into
mainfrom
dependabot/npm_and_yarn/isomorphic-dompurify-3.14.0
May 23, 2026
Merged

chore(deps): bump isomorphic-dompurify from 3.13.0 to 3.14.0#146
simongonzalezdc merged 1 commit into
mainfrom
dependabot/npm_and_yarn/isomorphic-dompurify-3.14.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 23, 2026

Bumps isomorphic-dompurify from 3.13.0 to 3.14.0.

Release notes

Sourced from isomorphic-dompurify's releases.

3.14.0: Updated dependencies

What's Changed

  • chore(deps): bump dompurify from 3.4.3 to 3.4.5 by @​dependabot[bot]
  • chore: Allowed esbuild and disallowed lefthook for ci.
  • chore: Added homepage URL to package.json.

Full Changelog: kkomelin/isomorphic-dompurify@3.13.0...3.14.0

Commits
  • fa11d1d chore: bump version to 3.14.0
  • 3706f30 chore(deps): bump dompurify from 3.4.3 to 3.4.5
  • 0f1d8b2 chore: Added homepage URL to package.json.
  • 0c05491 chore: Allowed esbuild and disallowed lefthook for ci.
  • See full diff in compare view


View with Codesmith Autofix with Codesmith
Need help on this PR? Tag @codesmith with what you need. Autofix is disabled.

Summary by CodeRabbit

  • Chores
    • Updated security-related dependencies to the latest version across multiple packages.

Review Change Stack

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 23, 2026

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@coderabbitai
Copy link
Copy Markdown

coderabbitai Bot commented May 23, 2026

📝 Walkthrough

Walkthrough

This PR updates the isomorphic-dompurify dependency from version 3.13.0 to 3.14.0 across two packages: markdown-parser and security. Both manifests receive identical minor version bumps to the same dependency.

Changes

Dependency Updates

Layer / File(s) Summary
isomorphic-dompurify version bump
packages/markdown-parser/package.json, packages/security/package.json
Both packages update isomorphic-dompurify from ^3.13.0 to ^3.14.0.

Estimated code review effort

🎯 1 (Trivial) | ⏱️ ~2 minutes

🚥 Pre-merge checks | ✅ 4 | ❌ 1

❌ Failed checks (1 warning)

Check name Status Explanation Resolution
Description check ⚠️ Warning The PR description lacks required sections from the template such as type of change, testing details, and checklist items. Add missing template sections: select appropriate type of change, describe testing approach, complete the provided checklist, and update the Empower Orchestrator section.
✅ Passed checks (4 passed)
Check name Status Explanation
Title check ✅ Passed The title clearly and concisely summarizes the main change: bumping the isomorphic-dompurify dependency version.
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check.
Linked Issues check ✅ Passed Check skipped because no linked issues were found for this pull request.
Out of Scope Changes check ✅ Passed Check skipped because no linked issues were found for this pull request.

✏️ Tip: You can configure your own custom pre-merge checks in the settings.

✨ Finishing Touches
📝 Generate docstrings
  • Create stacked PR
  • Commit on current branch
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Commit unit tests in branch dependabot/npm_and_yarn/isomorphic-dompurify-3.14.0

Comment @coderabbitai help to get the list of available commands and usage tips.

Bumps [isomorphic-dompurify](https://github.com/kkomelin/isomorphic-dompurify) from 3.13.0 to 3.14.0.
- [Release notes](https://github.com/kkomelin/isomorphic-dompurify/releases)
- [Commits](kkomelin/isomorphic-dompurify@3.13.0...3.14.0)

---
updated-dependencies:
- dependency-name: isomorphic-dompurify
  dependency-version: 3.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/isomorphic-dompurify-3.14.0 branch from 16f075e to 000d993 Compare May 23, 2026 21:38
@simongonzalezdc simongonzalezdc merged commit 4cd10c1 into main May 23, 2026
6 checks passed
@simongonzalezdc simongonzalezdc deleted the dependabot/npm_and_yarn/isomorphic-dompurify-3.14.0 branch May 23, 2026 21:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant