forgejo/package.json
dependabot[bot] 6cf50af1af
Some checks failed
Deploy / deploy (push) Has been cancelled
chore(deps-dev): bump typescript from 6.0.3 to 7.0.2 (#43)
* chore(deps-dev): bump typescript from 6.0.3 to 7.0.2

Bumps [typescript](https://github.com/microsoft/TypeScript) from 6.0.3 to 7.0.2.
- [Release notes](https://github.com/microsoft/TypeScript/releases)
- [Commits](https://github.com/microsoft/TypeScript/commits)

---
updated-dependencies:
- dependency-name: typescript
  dependency-version: 7.0.2
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* fix: regenerate package-lock.json to reflect typescript bump

Update cdk.json to use tsx and regenerate package-lock.json to satisfy CI

* fix: declare and pin tsx runner for CDK app

TypeScript 7's native port is incompatible with ts-node, so cdk.json was
switched to tsx — but it was invoked via `npx`, which fetches an
unpinned copy from the registry at synth/deploy time with no lockfile
entry or integrity check.

Declare tsx as a pinned devDependency (~4.23.0) and invoke the local bin
instead of npx. Update the README's cdk.json section to match. Verified
with `npm run build` (tsc 7.0.2) and `cdk synth` — both green.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Adam Moussa <adam@seahavenind.com>
2026-07-10 17:41:56 -04:00

26 lines
531 B
JSON

{
"name": "forgejo",
"version": "1.0.0",
"bin": {
"app": "bin/app.js"
},
"scripts": {
"build": "tsc",
"cdk": "cdk",
"synth": "cdk synth",
"deploy": "cdk deploy",
"diff": "cdk diff"
},
"devDependencies": {
"@types/node": "^24",
"aws-cdk": "^2.1129.0",
"source-map-support": "^0.5.21",
"tsx": "~4.23.0",
"typescript": "~7.0.2"
},
"dependencies": {
"@aws-cdk/aws-lambda-python-alpha": "2.257.0-alpha.0",
"aws-cdk-lib": "2.261.0",
"constructs": "^10.0.0"
}
}