Skip to content

chore(deps): bump qs and node-vault in /reference-apps/typescript-api-first#192

Merged
NormB merged 1 commit intomainfrom
dependabot/npm_and_yarn/reference-apps/typescript-api-first/multi-3769fe08da
Mar 12, 2026
Merged

chore(deps): bump qs and node-vault in /reference-apps/typescript-api-first#192
NormB merged 1 commit intomainfrom
dependabot/npm_and_yarn/reference-apps/typescript-api-first/multi-3769fe08da

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Mar 12, 2026

Bumps qs to 6.15.0 and updates ancestor dependency node-vault. These dependencies need to be updated together.

Updates qs from 6.14.1 to 6.15.0

Changelog

Sourced from qs's changelog.

6.15.0

  • [New] parse: add strictMerge option to wrap object/primitive conflicts in an array (#425, #122)
  • [Fix] duplicates option should not apply to bracket notation keys (#514)

6.14.2

  • [Fix] parse: mark overflow objects for indexed notation exceeding arrayLimit (#546)
  • [Fix] arrayLimit means max count, not max index, in combine/merge/parseArrayValue
  • [Fix] parse: throw on arrayLimit exceeded with indexed notation when throwOnLimitExceeded is true (#529)
  • [Fix] parse: enforce arrayLimit on comma-parsed values
  • [Fix] parse: fix error message to reflect arrayLimit as max index; remove extraneous comments (#545)
  • [Robustness] avoid .push, use void
  • [readme] document that addQueryPrefix does not add ? to empty output (#418)
  • [readme] clarify parseArrays and arrayLimit documentation (#543)
  • [readme] replace runkit CI badge with shields.io check-runs badge
  • [meta] fix changelog typo (arrayLengtharrayLimit)
  • [actions] fix rebase workflow permissions
Commits
  • d9b4c66 v6.15.0
  • cb41a54 [New] parse: add strictMerge option to wrap object/primitive conflicts in...
  • 88e1563 [Fix] duplicates option should not apply to bracket notation keys
  • 9d441d2 Merge backport release tags v6.0.6–v6.13.3 into main
  • 85cc8ca v6.12.5
  • ffc12aa v6.11.4
  • 0506b11 [actions] update reusable workflows
  • 6a37faf [actions] update reusable workflows
  • 8e8df5a [Fix] fix regressions from robustness refactor
  • d60bab3 v6.10.7
  • Additional commits viewable in compare view

Updates node-vault from 0.10.9 to 0.10.10

Commits
  • b27d395 Merge pull request #281 from nodevault/aviadhahami-patch-1
  • e0a7ac2 Bump version from 0.10.9 to 0.10.10
  • 34750ab Merge pull request #278 from nodevault/copilot/upgrade-postman-request-package
  • c741c04 Address code review: add URL error handling and comment for validateStatus
  • 21b3915 Replace postman-request with axios
  • a3f41cb Initial plan
  • 8adc128 Merge pull request #277 from TorstenEhrhardt/master
  • 11f0a55 Merge branch 'master' into master
  • cef266a Merge pull request #269 from SierraNL/fix-postman-request-version
  • fa6dc74 Update definition file #274
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [qs](https://github.com/ljharb/qs) to 6.15.0 and updates ancestor dependency [node-vault](https://github.com/nodevault/node-vault). These dependencies need to be updated together.


Updates `qs` from 6.14.1 to 6.15.0
- [Changelog](https://github.com/ljharb/qs/blob/main/CHANGELOG.md)
- [Commits](ljharb/qs@v6.14.1...v6.15.0)

Updates `node-vault` from 0.10.9 to 0.10.10
- [Release notes](https://github.com/nodevault/node-vault/releases)
- [Commits](nodevault/node-vault@v0.10.9...v0.10.10)

---
updated-dependencies:
- dependency-name: qs
  dependency-version: 6.15.0
  dependency-type: indirect
- dependency-name: node-vault
  dependency-version: 0.10.10
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Mar 12, 2026
@NormB NormB merged commit 7d2d499 into main Mar 12, 2026
26 of 31 checks passed
@NormB NormB deleted the dependabot/npm_and_yarn/reference-apps/typescript-api-first/multi-3769fe08da branch March 12, 2026 03:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant