chore: migrate to Yarn 4.13 and npm policy#1187
Conversation
|
Warning Rate limit exceeded
Your organization is not enrolled in usage-based pricing. Contact your admin to enable usage-based pricing to continue reviews beyond the rate limit, or try again in 7 minutes and 14 seconds. ⌛ How to resolve this issue?After the wait time has elapsed, a review can be triggered using the We recommend that you space out your commits to avoid hitting the rate limit. 🚦 How do rate limits work?CodeRabbit enforces hourly rate limits for each developer per organization. Our paid plans have higher rate limits than the trial, open-source and free plans. In all cases, we re-allow further reviews after a brief timeout. Please see our FAQ for further information. ℹ️ Review info⚙️ Run configurationConfiguration used: Organization UI Review profile: CHILL Plan: Pro Run ID: ⛔ Files ignored due to path filters (1)
📒 Files selected for processing (5)
✨ Finishing Touches🧪 Generate unit tests (beta)
Comment |
Security Follow-up: Yarn 4 migration and dependency hardening
This PR is part of the security follow-up to the axios supply chain attack incident:
https://app.incident.io/payfit/incidents/1562?tab=overview
For security reasons, this PR is scheduled to be merged on Monday, 20th of April.
Reviewer action required
Please follow this decision flow:
Tracking (mandatory)
After your decision/action, please update this spreadsheet:
https://docs.google.com/spreadsheets/d/1Oof2kU6ufydjPt8PzBsw5NC63zSs6IvAeG-vDdMNwIE/edit?usp=sharing
Important context
We cannot guarantee this PR works 100% in every repository.
We had to update around 50 repositories in a very short timeframe due to the security urgency.