Skip to content

ToKML Fork - Simplify & Security Fixes#1

Open
njwitthoeft wants to merge 9 commits intomasterfrom
plat-2093-security-fixes
Open

ToKML Fork - Simplify & Security Fixes#1
njwitthoeft wants to merge 9 commits intomasterfrom
plat-2093-security-fixes

Conversation

@njwitthoeft
Copy link
Member

What?

  • Mapbox archived (and labeled Banished) many packages in 2024. Many hadn't been updated in years. This package relied on a couple 30-line packages by the same author in the Mapbox org. Each needed security updates. I chose to include the dependency strxml which in turn relies on xml-escape as a vendored file ./src/strxml.js.
  • I retained the tests and got the dev dependencies up to date too.

Why?

tokml hasn't been updated in 10 years, there were no dominant forks, and we want to use it because we know it works.

@njwitthoeft njwitthoeft changed the title [PLAT-2093] ToKML Fork - Simplify & Security Fixes ToKML Fork - Simplify & Security Fixes Feb 6, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant