Skip to content

chore: update package download counts#1

Open
github-actions[bot] wants to merge 1 commit intomainfrom
chore/update-package-downloads-20251229-014108
Open

chore: update package download counts#1
github-actions[bot] wants to merge 1 commit intomainfrom
chore/update-package-downloads-20251229-014108

Conversation

@github-actions
Copy link
Copy Markdown

Summary

Automated update of package download statistics from pepy.tech

Details

  • Updates download counts in reference/packages.yml
  • Regenerates provider overview page at src/oss/python/integrations/providers/overview.mdx
  • Generated by GitHub Actions workflow update-package-downloads.yml
  • Scheduled to run every Sunday at 11:59 PM UTC

🤖 This PR was created automatically by GitHub Actions

🤖 Automated update of package download statistics from pepy.tech
and regenerated provider overview page

Generated with GitHub Actions workflow update-package-downloads.yml
Yacklin pushed a commit that referenced this pull request Apr 26, 2026
…-ai#2857)

## Summary
- Add pnpm overrides to resolve the remaining 4 open Dependabot security
alerts in `reference/pnpm-lock.yaml`
- **path-to-regexp** `>=4.0.0 <6.3.0` → `6.3.0` — fixes high-severity
ReDoS via backtracking regular expressions
([#1](https://github.com/langchain-ai/docs/security/dependabot/1))
- **undici** `>=4.5.0 <5.29.0` → `5.29.0` — fixes 3 alerts:
insufficiently random values
([#2](https://github.com/langchain-ai/docs/security/dependabot/2)),
unbounded decompression chain
([langchain-ai#9](https://github.com/langchain-ai/docs/security/dependabot/9)), and
bad certificate DoS
([#4](https://github.com/langchain-ai/docs/security/dependabot/4))

## Test plan
- [x] Verified vulnerable versions (`path-to-regexp@6.1.0`,
`undici@5.28.4`) are no longer in lockfile
- [x] Verified patched versions (`path-to-regexp@6.3.0`,
`undici@5.29.0`) are present
- [x] `pnpm install` succeeds without errors

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants