Skip to content

chore: Bump qs and box-node-sdk#685

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/multi-2ae2edee1d
Open

chore: Bump qs and box-node-sdk#685
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/multi-2ae2edee1d

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 23, 2026

Removes qs. It's no longer used after updating ancestor dependency box-node-sdk. These dependencies need to be updated together.

Removes qs

Updates box-node-sdk from 4.11.0 to 10.10.0

Release notes

Sourced from box-node-sdk's releases.

v10.10.0

Bug Fixes

New Features and Enhancements

v10.9.0

⚠ BREAKING CHANGES

  • Mark id field of AIAgentReference required (box/box-openapi#1629) (box/box-openapi#595) (#1440) (3082fc3)

Bug Fixes

v10.8.0

New Features and Enhancements

v10.7.0

Bug Fixes

  • Update retentionLength field to accept both string and number (box/box-codegen#932) (#1397) (e589c63)

New Features and Enhancements

  • Add max_extension_length field to Retention Policies (box/box-openapi#593) (#1413) (28d1a71)

v10.6.0

⚠ BREAKING CHANGES

  • Align LegalHoldPolicyAssignedItembox/box-openapi#1554#1378)

Bug Fixes

  • Align LegalHoldPolicyAssignedItem with API (box/box-openapi#1554) (box/box-openapi#590) (#1378) (466d6cf)
  • Correct search content type tags to match API (box/box-openapi#591) (#1382) (6f5d307)

New Features and Enhancements

  • Add reference to AI and parent_id to HubsItems (box/box-openapi#588) (#1372) (e55c51f)

... (truncated)

Changelog

Sourced from box-node-sdk's changelog.

10.10.0 (2026-05-15)

Bug Fixes

New Features and Enhancements

10.9.0 (2026-05-06)

⚠ BREAKING CHANGES

  • Mark id field of AIAgentReference required (box/box-openapi#1629) (box/box-openapi#595) (#1440) (3082fc3)

Bug Fixes

10.8.0 (2026-04-30)

New Features and Enhancements

10.7.0 (2026-04-22)

Bug Fixes

  • Update retentionLength field to accept both string and number (box/box-codegen#932) (#1397) (e589c63)

New Features and Enhancements

  • Add max_extension_length field to Retention Policies (box/box-openapi#593) (#1413) (28d1a71)

10.6.0 (2026-04-01)

⚠ BREAKING CHANGES

  • Align LegalHoldPolicyAssignedItembox/box-openapi#1554#1378)

... (truncated)

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels May 23, 2026
@dependabot dependabot Bot requested a review from a team May 23, 2026 12:20
@socket-security
Copy link
Copy Markdown

socket-security Bot commented May 23, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatednpm/​box-node-sdk@​4.11.0 ⏵ 10.10.0100 +25100100 +197100

View full report

Removes [qs](https://github.com/ljharb/qs). It's no longer used after updating ancestor dependency [box-node-sdk](https://github.com/box/box-node-sdk). These dependencies need to be updated together.


Removes `qs`

Updates `box-node-sdk` from 4.11.0 to 10.10.0
- [Release notes](https://github.com/box/box-node-sdk/releases)
- [Changelog](https://github.com/box/box-node-sdk/blob/main/CHANGELOG.md)
- [Commits](box/box-node-sdk@v4.11.0...v10.10.0)

---
updated-dependencies:
- dependency-name: box-node-sdk
  dependency-version: 10.10.0
  dependency-type: direct:production
- dependency-name: qs
  dependency-version:
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/multi-2ae2edee1d branch from 51e5d8a to 2f30bc4 Compare May 29, 2026 07:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants