diff --git a/packages/homepage/.snyk b/packages/homepage/.snyk new file mode 100644 index 00000000000..95548fe4f32 --- /dev/null +++ b/packages/homepage/.snyk @@ -0,0 +1,8 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.19.0 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:lodash:20180130': + - gatsby > webpack-configurator > lodash: + patched: '2020-08-24T07:56:59.196Z' diff --git a/packages/homepage/package.json b/packages/homepage/package.json index 3fbaba1584c..66a91dccfe8 100644 --- a/packages/homepage/package.json +++ b/packages/homepage/package.json @@ -6,7 +6,7 @@ "author": "Ives van Hoorne ", "dependencies": { "algoliasearch": "^3.24.5", - "gatsby": "^1.9.165", + "gatsby": "^2.23.20", "gatsby-link": "^1.6.22", "gatsby-plugin-google-fonts": "^0.0.3", "gatsby-plugin-google-tagmanager": "^1.0.8", @@ -29,7 +29,8 @@ "react-router-dom": "^4.2.2", "react-transition-group": "^2.2.1", "styled-components": "^3.2.1", - "three": "^0.87.1" + "three": "^0.87.1", + "snyk": "^1.381.2" }, "keywords": [ "gatsby" @@ -44,7 +45,9 @@ "start": "gatsby develop", "lint": "echo TODO && exit 0", "format": "prettier --trailing-comma es5 --single-quote --write 'src/**/*.js'", - "test": "echo \"Todo: no test specified\" && exit 0" + "test": "echo \"Todo: no test specified\" && exit 0", + "snyk-protect": "snyk protect", + "prepublish": "npm run snyk-protect" }, "devDependencies": { "extract-text-webpack-plugin": "1.0.1", @@ -57,5 +60,6 @@ "> 1%", "IE >= 11", "last 2 versions" - ] + ], + "snyk": true }