Skip to content

feat(deps): upgrade aws-cdk-lib - #1868

Merged
aws-cdk-automation merged 2 commits into
mainfrom
github-actions/upgrade-aws-cdk-lib_aws-cdk
Aug 21, 2026
Merged

feat(deps): upgrade aws-cdk-lib#1868
aws-cdk-automation merged 2 commits into
mainfrom
github-actions/upgrade-aws-cdk-lib_aws-cdk

Conversation

@aws-cdk-automation

Copy link
Copy Markdown
Collaborator

Upgrades project dependencies. See details in workflow run.


Automatically created by projen via the "upgrade-aws-cdk-lib_aws-cdk" workflow

Upgrades project dependencies. See details in [workflow run].

[Workflow Run]: https://github.com/aws/aws-cdk-cli/actions/runs/32432024937

------

*Automatically created by projen via the "upgrade-aws-cdk-lib_aws-cdk" workflow*

Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
@github-actions github-actions Bot added the p2 label Aug 21, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

PackageVersionScoreDetails
npm/aws-cdk-lib 2.266.0 🟢 5.9
Details
CheckScoreReason
Code-Review🟢 10all changesets reviewed
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Packaging⚠️ -1packaging workflow not detected
Maintained🟢 1030 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
Dangerous-Workflow⚠️ 0dangerous workflow patterns detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Pinned-Dependencies⚠️ -1internal error: internal error: invalid Dockerfile
License🟢 10license file detected
Branch-Protection🟢 8branch protection is not maximal on development and all release branches
Security-Policy🟢 10security policy file detected
Signed-Releases🟢 85 out of the last 5 releases have a total of 5 signed artifacts.
Binary-Artifacts⚠️ 0binaries present in source code
SAST🟢 9SAST tool detected but not run on all commits
Fuzzing🟢 10project is fuzzed
npm/aws-cdk-lib 2.266.0 🟢 5.9
Details
CheckScoreReason
Code-Review🟢 10all changesets reviewed
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Packaging⚠️ -1packaging workflow not detected
Maintained🟢 1030 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
Dangerous-Workflow⚠️ 0dangerous workflow patterns detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Pinned-Dependencies⚠️ -1internal error: internal error: invalid Dockerfile
License🟢 10license file detected
Branch-Protection🟢 8branch protection is not maximal on development and all release branches
Security-Policy🟢 10security policy file detected
Signed-Releases🟢 85 out of the last 5 releases have a total of 5 signed artifacts.
Binary-Artifacts⚠️ 0binaries present in source code
SAST🟢 9SAST tool detected but not run on all commits
Fuzzing🟢 10project is fuzzed

Scanned Files

  • packages/aws-cdk/package.json
  • yarn.lock

@codecov-commenter

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 91.13%. Comparing base (3a80afa) to head (25b4399).

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #1868   +/-   ##
=======================================
  Coverage   91.13%   91.13%           
=======================================
  Files          80       80           
  Lines       12205    12205           
  Branches     1744     1744           
=======================================
  Hits        11123    11123           
  Misses       1046     1046           
  Partials       36       36           
Flag Coverage Δ
suite.unit 91.13% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@aws-cdk-automation
aws-cdk-automation added this pull request to the merge queue Aug 21, 2026
Merged via the queue into main with commit 7ff50e7 Aug 21, 2026
41 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants