From 8d690e5658f7b8e7943447cf979dc572903da642 Mon Sep 17 00:00:00 2001 From: "D. Rimron-Soutter" Date: Mon, 8 Jun 2026 23:05:10 +0100 Subject: [PATCH] Pin pnpm native builds for supply chain security --- package.json | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/package.json b/package.json index af5c982..ccc91a3 100644 --- a/package.json +++ b/package.json @@ -2,6 +2,10 @@ "name": "next-explorer", "version": "0.2.0", "private": true, + "packageManager": "pnpm@10.18.1", + "engines": { + "node": "24.x" + }, "scripts": { "dev": "PORT=4000 next dev --turbopack", "build": "next build --turbopack", @@ -38,5 +42,13 @@ "eslint": "^9.39.2", "eslint-config-next": "15.5.4", "sass": "^1.97.0" + }, + "pnpm": { + "onlyBuiltDependencies": [ + "@parcel/watcher", + "esbuild", + "sharp", + "unrs-resolver" + ] } }