fix migrations - #71
Conversation
|
The latest updates on your projects. Learn more about Vercel for Git ↗︎
|
|
Caution Review failedThe pull request is closed. WalkthroughThis pull request introduces an import of the Changes
Sequence Diagram(s)sequenceDiagram
participant Client as DB Operation
participant Org as Organization Table
participant PU as PortalUser Table
Client->>Org: Delete/Update Organization record
Org-->>PU: Cascade delete/update triggered on corresponding rows
Poem
📜 Recent review detailsConfiguration used: CodeRabbit UI ⛔ Files ignored due to path filters (2)
📒 Files selected for processing (2)
🪧 TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (Invoked using PR comments)
Other keywords and placeholders
CodeRabbit Configuration File (
|
… (#3412) apps/mcp-server is a standalone npm project (excluded from the bun workspaces). Three open Dependabot alerts, all dev-scope transitives: - #59 (high) + #58 (low): tmp path traversal / symlink write — tmp@0.0.33 via external-editor; patched in tmp>=0.2.6 - #71 (moderate): js-yaml quadratic-complexity DoS — js-yaml@4.1.1 via @eslint/eslintrc; patched in js-yaml>=4.2.0 Add npm overrides (caret-pinned to stay within the safe major): - tmp ^0.2.6 -> resolves 0.2.7 (fileSync API is stable, external-editor works) - js-yaml ^4.2.0 -> resolves 4.3.0 (satisfies eslintrc's ^4.1.1; NOT floated to v5, which would be an unvetted breaking major) Verified: npm audit 0 vulnerabilities; mcp-server build + lint pass. (bun.lock is gitignored and regenerated from package-lock.json at build.) Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
Summary by CodeRabbit