Upgrade `Base64` dependency
Nobody has claimed this yet.
Assessment
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Newbie friendliness
- 52/100
- Issue type
- Refactor
- Clarity
- Mostly clear
- Activity status
- Stale
- Tech stack
- javascript
Research direction
Inspect package-lock.json and the single Base64 use in the http-browserify code, then determine how the dependency is declared and resolved. Done means Base64 1.1.0 is selected without breaking that usage and static analysis sees the Apache 2.0 dependency rather than the WTFPL release.
Written by the indexing model from the issue text.
Description
Is it possible to upgrade the dependency Base64 from the current ~0.2.0 to latest (1.1.0)?
I have verified that Base64 is really only used once in http-browserify code and changing versions wouldn't break anything even though the semver indicates otherwise.
The root cause of my problems is that Base64 v0.2.0 offers WTFPL which is not white listed in our org. So static code analysis tools flag it as a policy violation. Base64 v 1.1.0 , on the other hand allows Apache 2.0 which is white listed in our org.
If there is a way to install the latest version of Base64 and make http-browserify point to this latest version then that could work as well. Note that webpack aliasing won't work since we need to pass static code analysis scrutiny which probably works off package-lock.json
- Dominant language
- JavaScript
- Stars
- 245
- Forks
- 104
- PR merge metrics
- No merged PRs in 30d
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from browserify/http-browserify
-
Difficulty 2/5 1-3 hours Newbie friendliness 42/100
browserify/http-browserify#104 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 48/100
browserify/http-browserify#102 ·
-
Needs Maintainer Open
Difficulty 5/5 Over a week Newbie friendliness 15/100
browserify/http-browserify#99 · 2 reactions ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 38/100
browserify/http-browserify#96 · 2 comments · 1 reaction ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 45/100
All issues in browserify/http-browserify
Similar issues
-
awaiting triage bug Causes friction Hop Gui P1 P2 Transforms
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 70/100
georgestephanis/p2026#40 ·
-
Enatega Customer and Rider app: Add-ons price is not visible to customer after order is placed. Open
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
Margaret-Petersen/food-delivery-app-clone-react-native#1981 ·