Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump node-notifier from 8.0.1 to 10.0.0 in /ui #569

Merged
merged 1 commit into from
Dec 13, 2021

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 11, 2021

Bumps node-notifier from 8.0.1 to 10.0.0.

Changelog

Sourced from node-notifier's changelog.

v10.0.0

Breaking changes:

Setting NSAllowsArbitraryLoads as false for security reasons within terminal-notifier. Meaning non-https images/loads for terminal-notifier will no longer work. See #362

Fixes

  • fix: options.customPath doesn't work for windows toaster. See #373

v9.0.1

  • Fixes potential security issue with non-escaping input parameters for notify-send.

v9.0.0

Breaking changes:

  • Corrects mapping on snoretoast activate event. See #347.

Patches

  • Fix named pipe in WSL. See #342.
  • fixes possible injection issue for notify-send

v8.0.2

  • Fixes potential security issue with non-escaping input parameters for notify-send.

v8.0.0

Breaking changes:

  • Expire time for notify-send is made to match macOS and Windows with default time of 10 seconds. The API is changed to take seconds as input and converting it to milliseconds before passing it on to notify-send. See #341.

v7.0.2

  • Updates dependencies
  • Fixes issue with haning Windows notifications when disabled (#335)

v7.0.1

  • Fixes import of uuid, removes deprecation warnings

v7.0.0

Features

  • NotifySend support for app-name (#299, see docs)

... (truncated)

Commits
  • 2c237b1 v10.0.0
  • 4b3af8b updates changelog
  • 1265ee3 chore: updates dependencies
  • b9427d4 Merge pull request #374 from mikaelbr/dependabot/npm_and_yarn/hosted-git-info...
  • 14af678 Merge pull request #362 from idhruvs/master
  • 4a4d25c Merge pull request #368 from mikaelbr/dependabot/npm_and_yarn/y18n-4.0.1
  • 61c02ce Bump lodash from 4.17.19 to 4.17.21 (#372)
  • c1b2e66 fix: options.customPath doesn't work for windows toaster (#373)
  • 85a7cc5 Bump hosted-git-info from 2.8.8 to 2.8.9
  • d66249d Bump y18n from 4.0.0 to 4.0.1
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript labels Oct 11, 2021
@dependabot dependabot bot requested a review from markphelps October 11, 2021 02:10
@codecov-commenter
Copy link

codecov-commenter commented Oct 11, 2021

Codecov Report

Merging #569 (85bdb26) into master (befd6c1) will not change coverage.
The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff           @@
##           master     #569   +/-   ##
=======================================
  Coverage   83.43%   83.43%           
=======================================
  Files          16       16           
  Lines        1443     1443           
=======================================
  Hits         1204     1204           
  Misses        207      207           
  Partials       32       32           

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update befd6c1...85bdb26. Read the comment docs.

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch 4 times, most recently from 78ec7ea to 1c6ab90 Compare November 7, 2021 20:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch 4 times, most recently from 632c0ae to f49cca9 Compare November 15, 2021 19:01
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch 11 times, most recently from 0269f7f to 6a6c34c Compare December 1, 2021 14:33
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch 4 times, most recently from 1a4beb2 to 1a480a9 Compare December 8, 2021 17:31
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch from 1a480a9 to 85bdb26 Compare December 13, 2021 23:40
@markphelps markphelps enabled auto-merge (squash) December 13, 2021 23:48
Bumps [node-notifier](https://github.com/mikaelbr/node-notifier) from 8.0.1 to 10.0.0.
- [Release notes](https://github.com/mikaelbr/node-notifier/releases)
- [Changelog](https://github.com/mikaelbr/node-notifier/blob/master/CHANGELOG.md)
- [Commits](mikaelbr/node-notifier@v8.0.1...v10.0.0)

---
updated-dependencies:
- dependency-name: node-notifier
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch from 85bdb26 to 62c0cd7 Compare December 13, 2021 23:50
@markphelps markphelps merged commit c1b58f6 into master Dec 13, 2021
@markphelps markphelps deleted the dependabot/npm_and_yarn/ui/node-notifier-10.0.0 branch December 13, 2021 23:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants