chore(deps): bump @microsoft/agent-governance-sdk from 4.0.0 to 5.0.0 in /agent-governance-antigravity-cli - #3683
Conversation
Bumps [@microsoft/agent-governance-sdk](https://github.com/microsoft/agent-governance-toolkit/tree/HEAD/agent-governance-typescript) from 4.0.0 to 5.0.0. - [Release notes](https://github.com/microsoft/agent-governance-toolkit/releases) - [Changelog](https://github.com/microsoft/agent-governance-toolkit/blob/main/CHANGELOG.md) - [Commits](https://github.com/microsoft/agent-governance-toolkit/commits/v5.0.0/agent-governance-typescript) --- updated-dependencies: - dependency-name: "@microsoft/agent-governance-sdk" dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
|
Azure Pipelines: There may be pipelines that require an authorized user to comment /azp run to run. |
PR Review Summary
Verdict: AI review comments are untrusted advisory output. The summary reports workflow-generated completion status only, not model-authored pass/fail claims. |
Dependency Review✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.OpenSSF Scorecard
Scanned Files
|
📦 Dependency diff (SBOM)Comparing main → dependabot/npm_and_yarn/agent-governance-antigravity-cli/microsoft/agent-governance-sdk-5.0.0. Summary: ➕ 0 added · ➖ 0 removed · 🔄 1 bumped 🔄 Bumped
|
| Package | From | To |
|---|---|---|
| %40microsoft/agent-governance-antigravity-cli | 4.0.0 | 5.0.0 |
|
Blocked by
I have opened #3721, which carries this commit cherry-picked unchanged (lockfile and package.json byte-identical, One thing from the audit worth knowing before it lands: the bump does not clear these packages of a No action needed here. A maintainer can close this in favour of #3721. |
Bumps @microsoft/agent-governance-sdk from 4.0.0 to 5.0.0.
Release notes
Sourced from @microsoft/agent-governance-sdk's releases.
Changelog
Sourced from @microsoft/agent-governance-sdk's changelog.
Commits
dbf6d2achore(deps-dev): Bump postcss (#3424)049c2b0chore(deps): Bump axios in /agent-governance-typescript/agent-os-vscode (#3372)f731dc5chore(deps-dev): Bump eslint in /agent-governance-typescript (#3218)63a2b81chore(deps-dev): bump@types/nodein /agent-governance-typescript (#3270)c159b54chore(deps-dev): bump@typescript-eslint/parser(#3275)f27a41dchore(deps): bump js-yaml in /agent-governance-typescript (#3277)8b9a074chore(deps): bump js-yaml in /agent-governance-typescript (#3223)1133147chore(deps-dev): bump@typescript-eslint/parser(#3215)c89b742chore(deps-dev): bump@types/nodein /agent-governance-typescript (#3211)e5693cbchore: bump monorepo version 4.1.0 -> 5.0.0 (#3191)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)