-
Notifications
You must be signed in to change notification settings - Fork 57
build(deps): bump the npm_and_yarn group across 1 directory with 8 updates #174
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: master
Are you sure you want to change the base?
Conversation
dependabot
bot
commented
on behalf of github
Nov 14, 2025
•
edited by github-management-service
Loading
edited by github-management-service
…dates Bumps the npm_and_yarn group with 1 update in the / directory: [semantic-release](https://github.com/semantic-release/semantic-release). Updates `semantic-release` from 17.4.7 to 19.0.3 - [Release notes](https://github.com/semantic-release/semantic-release/releases) - [Commits](semantic-release/semantic-release@v17.4.7...v19.0.3) Updates `@octokit/plugin-paginate-rest` from 2.11.0 to 6.1.2 - [Release notes](https://github.com/octokit/plugin-paginate-rest.js/releases) - [Commits](octokit/plugin-paginate-rest.js@v2.11.0...v6.1.2) Updates `@octokit/request-error` from 2.0.5 to 3.0.3 - [Release notes](https://github.com/octokit/request-error.js/releases) - [Commits](octokit/request-error.js@v2.0.5...v3.0.3) Updates `@octokit/request` from 5.4.14 to 6.2.8 - [Release notes](https://github.com/octokit/request.js/releases) - [Commits](octokit/request.js@v5.4.14...v6.2.8) Updates `http-cache-semantics` from 3.8.1 to 4.2.0 - [Commits](https://github.com/kornelski/http-cache-semantics/commits) Updates `marked` from 2.0.1 to 4.3.0 - [Release notes](https://github.com/markedjs/marked/releases) - [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json) - [Commits](markedjs/marked@v2.0.1...v4.3.0) Updates `tar` from 4.4.19 to 6.2.1 - [Release notes](https://github.com/isaacs/node-tar/releases) - [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md) - [Commits](isaacs/node-tar@v4.4.19...v6.2.1) Updates `yargs-parser` from 7.0.0 to 18.1.3 - [Release notes](https://github.com/yargs/yargs-parser/releases) - [Changelog](https://github.com/yargs/yargs-parser/blob/main/CHANGELOG.md) - [Commits](yargs/yargs-parser@v7.0.0...v18.1.3) --- updated-dependencies: - dependency-name: semantic-release dependency-version: 19.0.3 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: "@octokit/plugin-paginate-rest" dependency-version: 6.1.2 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@octokit/request-error" dependency-version: 3.0.3 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: "@octokit/request" dependency-version: 6.2.8 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: http-cache-semantics dependency-version: 4.2.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: marked dependency-version: 4.3.0 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: tar dependency-version: 6.2.1 dependency-type: indirect dependency-group: npm_and_yarn - dependency-name: yargs-parser dependency-version: 18.1.3 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
Resolves intercom/intercom#448833.
Bumps the npm_and_yarn group with 1 update in the / directory: semantic-release.
Updates
semantic-releasefrom 17.4.7 to 19.0.3Commits
58a226ffix(log-repo): use the original form of the repo url to remove the need to ma...17d60d3build(deps): bump npm from 8.3.1 to 8.12.0 (#2447)ab45ab1chore(lint): disabled rules that dont apply to this project (#2408)ea389c3chore(deps): update dependency yargs-parser to 13.1.2 [security] (#2402)fa994dbbuild(deps): bump node-fetch from 2.6.1 to 2.6.7 (#2399)b79116bbuild(deps): bump trim-off-newlines from 1.0.1 to 1.0.36fd7e56build(deps): bump minimist from 1.2.5 to 1.2.62b94bb4docs: update broken link to CI config recipes (#2378)b4bc191docs: Correct circleci workflow (#2365)2c30e26Merge pull request #2333 from semantic-release/nextUpdates
@octokit/plugin-paginate-restfrom 2.11.0 to 6.1.2Release notes
Sourced from
@octokit/plugin-paginate-rest's releases.... (truncated)
Commits
3ba0db6fix(build): replace Pika with esbuild and tsc (#527)9240b2ffix: bump@octokit/types(#528)6c2eeadbuild: update cache (#526)7a92a4ebuild(deps): lock file maintenance20aa882build(deps): lock file maintenance (#522)06d6543feat: many new endpoints (#518)ce80cc3chore(deps): update dependency prettier to v2.8.8 (#520)ded0209build: add script to fixpackage.jsonbefore publishing (#519)abd9deebuild(deps): lock file maintenance6dca030build(deps): lock file maintenance (#516)Updates
@octokit/request-errorfrom 2.0.5 to 3.0.3Release notes
Sourced from
@octokit/request-error's releases.... (truncated)
Commits
82c78fcfix(deps): update dependency@octokit/typesto v9 (#307)77c025dbuild(deps): lock file maintenance (#306)ff02c35chore(deps): update dependency prettier to v2.8.3faa94a9Default branch rename (#304)ef89a55🚧 Workflows have changed (#303)cb67bdcbuild(deps): lock file maintenance (#302)c0dda2cbuild(release.yml): set node-version to lts/*11ec169chore(deps): update dependency prettier to v2.8.2 (#301)aa91a4bbuild(deps): lock file maintenance (#299)e5d6520🚧 Workflows have changed (#300)Updates
@octokit/requestfrom 5.4.14 to 6.2.8Release notes
Sourced from
@octokit/request's releases.... (truncated)
Commits
9c9c6d7Revert "fix(deps): update dependency@octokit/request-errorto v4 (#593)"62f51d6fix(deps): update dependency@octokit/request-errorto v4 (#593)cbd121fdocs: replace references to Skypack CDN with esm.sh (#595)71d7488fix(deps): update dependency@octokit/tsconfigto v2, explicitly mark type ...ab33ea2chore(deps): update dependency esbuild to ^0.18.0 (#590)947d7a5fix(build): replace pika with esbuild and tsc (#584)3df1556fix: addsduplexoption when sending a body792a68fchore(deps): update dependency prettier to v2.8.82970f68ci(action): update actions/add-to-project action to v0.5.0 (#578)cdf3701[fix] addsduplexoption when sending a bodyUpdates
http-cache-semanticsfrom 3.8.1 to 4.2.0Commits
Updates
markedfrom 2.0.1 to 4.3.0Release notes
Sourced from marked's releases.
... (truncated)
Commits
d65cf63chore(release): 4.3.0 [skip ci]28f4342🗜️ build v4.3.0 [skip ci]9b452bcfeat: add preprocess and postprocess hooks (#2730)042dcc5fix: always return promise if async (#2728)3acbb7ffix: fenced code doesn't need a trailing newline (#2756)d1f1319chore(deps-dev): Bump rollup from 3.19.1 to 3.20.0 (#2760)0ced8a5chore(deps-dev): Bump jasmine from 4.5.0 to 4.6.0 (#2758)a5bbe19chore(deps-dev): Bump@babel/corefrom 7.21.0 to 7.21.3 (#2761)00f6e2achore(deps-dev): Bump semantic-release from 20.1.1 to 20.1.3 (#2759)8c7bca8chore(deps-dev): Bump node-fetch from 3.3.0 to 3.3.1 (#2754)Updates
tarfrom 4.4.19 to 6.2.1Release notes
Sourced from tar's releases.
Changelog
Sourced from tar's changelog.
... (truncated)
Commits
bef7b1e6.2.1fe8cd57prevent extraction in excessively deep subfoldersfe7ebfdremove security.md5bc9d406.2.0fe1ef5echangelog 6.2e483220get rid of npm lint stuff689928aci that works outside of npm orgdb6f539file inference improvements for .tbr and .tgz336fa8frefactor: dry and other pr commentseeba222chore: lint fixesUpdates
yargs-parserfrom 7.0.0 to 18.1.3Release notes
Sourced from yargs-parser's releases.
Changelog
Sourced from yargs-parser's changelog.
... (truncated)
Commits
d301a56chore: release 18.1.3 (#269)f7e15b9fix(setArg): options using camel-case and dot-notation populated twice (#268)78014fcchore: release 18.1.2 (#263)41d3f81fix(array, nargs): support -o=--value and --option=--value format (#262)b96b989chore: release 18.1.1 (#259)63810cafix: proto will now be replaced with proto in parse (#258)48b6d9cchore: release 18.1.0 (#257)9c60265feat: introduce single-digit boolean aliases (#255)87e0a21test: use bin to enforce coverage thresholds (#256)88f36c3force releaseMaintainer changes
This version was pushed to npm by oss-bot, a new releaser for yargs-parser since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.