descriptinc / descriptinc/dependicus

[Dependicus] [npm] FYI: isomorphic-dompurify 3.12.0 is available (currently on 3.5.1)

Open
#37 1 comment 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

dependicus
Dominant language
TypeScript
Stars
11
Forks
1
Avg merge
3d 12h
Merged PRs (30d)
5

Description

Makes it possible to use DOMPurify on server and client in the same way.

Summary

  • Current versions in monorepo:
    • 3.5.1 (published 2026-03-17) — used by @dependicus/site-builder, dependicus, dependicus-monorepo +1 more
    • 3.11.0 (published 2026-04-29) — used by dependicus
  • Target version: 3.12.0 (published 2026-05-02)
  • Update type: minor
  • Versions behind: 8
  • Installed size: 24.6 kB
  • Dependency types: prod
  • In catalog: No

How to Update

This dependency is used by 4 packages. Consider adding it to the catalog:

  1. Add to catalog - Edit undefined:
catalog:
  isomorphic-dompurify: 3.12.0
  1. Update each package to use "isomorphic-dompurify": "catalog:" instead of the version number.

  2. Run pnpm install to update the lockfile.

Packages to update:

  • @dependicus/site-builder
  • dependicus
  • dependicus-monorepo
  • packages/dependicus

Alternatively, update each package to "isomorphic-dompurify": "3.12.0" individually.

Upgrade Path

View full diff on GitHub

Links

Notes for coding agents

PR title should be: "Update isomorphic-dompurify from 3.5.1 to 3.12.0"

If the PR body makes claims about the changes in the new version, include URL references to release notes, changelogs, or commit diffs that support those claims.


This issue was automatically created by Dependicus. It will be recreated if closed while the dependency remains non-compliant.

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Inspect the package manifests for @dependicus/site-builder, dependicus, dependicus-monorepo, and packages/dependicus, then locate the catalog configuration because its path is not specified. Review the existing dependency declarations and run pnpm install. Done means all four packages use isomorphic-dompurify 3.12.0 consistently and the lockfile is updated.

Written by the indexing model from the issue text.

Assessment

Tech stack
node.js
Domain
build-system, tooling
Issue type
Refactor
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.