descriptinc / descriptinc/dependicus

[Dependicus] [npm] FYI: isomorphic-dompurify 4.2.0 is available (currently on 3.5.1)

Open
#73 2 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

dependicus
Dominant language
TypeScript
Stars
11
Forks
1
Avg merge
3d 12h
Merged PRs (30d)
5

Description

Makes it possible to use DOMPurify on server and client in the same way.

Summary

  • Current versions in monorepo:
    • 3.5.1 (published 2026-03-17) — used by @dependicus/site-builder, dependicus, dependicus-monorepo +1 more
    • 3.11.0 (published 2026-04-29) — used by dependicus
  • Target version: 4.2.0 (published 2026-09-08)
  • Update type: major
  • Versions behind: 22
  • Installed size: 24.6 kB
  • Dependency types: prod
  • In catalog: No

How to Update

This dependency is used by 4 packages. Consider adding it to the catalog:

  1. Add to catalog - Edit undefined:
catalog:
  isomorphic-dompurify: 4.2.0
  1. Update each package to use "isomorphic-dompurify": "catalog:" instead of the version number.

  2. Run pnpm install to update the lockfile.

Packages to update:

  • @dependicus/site-builder
  • dependicus
  • dependicus-monorepo
  • packages/dependicus

Alternatively, update each package to "isomorphic-dompurify": "4.2.0" individually.

Upgrade Path

View full diff on GitHub

Links

Notes for coding agents

PR title should be: "Update isomorphic-dompurify from 3.5.1 to 4.2.0"

If the PR body makes claims about the changes in the new version, include URL references to release notes, changelogs, or commit diffs that support those claims.


This issue was automatically created by Dependicus. It will be recreated if closed while the dependency remains non-compliant.

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Identify the package manifests for @dependicus/site-builder, dependicus, dependicus-monorepo, and packages/dependicus, then review the isomorphic-dompurify 4.2.0 release notes before changing the dependency references. Run pnpm install and the repository's relevant checks; done means all four packages use the target version or catalog entry and the lockfile is updated.

Written by the indexing model from the issue text.

Assessment

Tech stack
javascript
Domain
build-system, tooling
Issue type
Refactor
Difficulty
3/5
Estimated time
1-2 days
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
64/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.