Skip to content

Commit e7f91de

Browse files
Shahinyanmshahinyanmclaude
authored
chore(security): npm audit fix — patch hono advisory (lockfile only) (#54)
A new high-severity hono advisory (path traversal / CORS / cookie handling) landed after the last fix. hono is transitive via @modelcontextprotocol/sdk's HTTP stack; token-pilot speaks stdio so the path is unreachable, but the bump clears the audit gate and dependabot. Lockfile only — no shipped/package change. Co-authored-by: shahinyanm <mher.shahinyan@12go.asia> Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
1 parent 815c5bd commit e7f91de

1 file changed

Lines changed: 4 additions & 3 deletions

File tree

package-lock.json

Lines changed: 4 additions & 3 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

0 commit comments

Comments
 (0)