Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps-dev): bump verdaccio from 5.27.0 to 5.27.1 #4068

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 4, 2023

Bumps verdaccio from 5.27.0 to 5.27.1.

Release notes

Sourced from verdaccio's releases.

@​verdaccio/logger-7@​6.0.0-6-next.3

Patch Changes

  • dcb5b929: bump up @​verdaccio/logger-7

verdaccio-aws-s3-storage@11.0.0-6-next.5

Patch Changes

  • 6b1a28de: Fix the prefix used to delete from s3 when unpublishing packages
Changelog

Sourced from verdaccio's changelog.

5.27.1 (2023-12-02)

Bug Fixes

Commits
  • 4047c5b chore(release): 5.27.1
  • 4d1727e chore(deps): update dependency @​types/serve-static to v1.15.5 (#4212)
  • 8a7a3b3 chore(deps): update actions/checkout action to v3.6.0 (#4197)
  • 820e223 chore(deps): update node.js to v18.19.0 (#4198)
  • 8da2957 chore(deps): update actions/checkout digest to f43a0e5 (#4195)
  • 5658681 chore(deps): update actions/setup-node digest to 1a4442c (#4196)
  • 0eeb743 chore: update deps
  • 68742aa chore: update types dependencies
  • 002029a chore(deps): update yarn to v3.7.0 (#4180)
  • 4ec9339 chore(deps): update babel monorepo (#4133)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps [verdaccio](https://github.com/verdaccio/verdaccio) from 5.27.0 to 5.27.1.
- [Release notes](https://github.com/verdaccio/verdaccio/releases)
- [Changelog](https://github.com/verdaccio/verdaccio/blob/v5.27.1/CHANGELOG.md)
- [Commits](verdaccio/verdaccio@v5.27.0...v5.27.1)

---
updated-dependencies:
- dependency-name: verdaccio
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Dec 4, 2023
Copy link

Updated dependencies detected. Learn more about Socket for GitHub ↗︎

Packages Version New capabilities Transitives Size Publisher
verdaccio 5.27.0...5.27.1 None +14/-12 8.27 MB verdaccio.npm

Copy link

relativeci bot commented Dec 4, 2023

Job #10129: Bundle Size — 299.36KiB (0%).

10a91b3(current) vs b210c55 master#10105(baseline)

Warning

Bundle contains 2 duplicate packages – View duplicate packages

Bundle metrics  no changes
                 Current
Job #10129
     Baseline
Job #10105
No change  Initial JS 262.37KiB 262.37KiB
No change  Initial CSS 36.99KiB 36.99KiB
No change  Cache Invalidation 0% 0%
No change  Chunks 3 3
No change  Assets 4 4
No change  Modules 520 520
No change  Duplicate Modules 0 0
No change  Duplicate Code 0% 0%
No change  Packages 24 24
No change  Duplicate Packages 1 1
Bundle size by type  no changes
                 Current
Job #10129
     Baseline
Job #10105
Not changed  JS 262.37KiB 262.37KiB
Not changed  CSS 36.99KiB 36.99KiB

View job #10129 reportView dependabot/npm_and_yarn/master/v... branch activity

@github-actions github-actions bot merged commit 6d60073 into master Dec 4, 2023
26 checks passed
@github-actions github-actions bot deleted the dependabot/npm_and_yarn/master/verdaccio-5.27.1 branch December 4, 2023 00:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants