-
Notifications
You must be signed in to change notification settings - Fork 279
Bump the npm_and_yarn group across 2 directories with 2 updates #2164
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: canary
Are you sure you want to change the base?
Conversation
The latest updates on your projects. Learn more about Vercel for Git ↗︎
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Important
Looks good to me! 👍
Reviewed everything up to 35a9311 in 2 minutes and 22 seconds. Click for details.
- Reviewed
65
lines of code in5
files - Skipped
1
files when reviewing. - Skipped posting
4
draft comments. View those below. - Modify your settings and rules to customize what types of comments Ellipsis leaves. And don't forget to react with 👍 or 👎 to teach Ellipsis.
1. package.json:45
- Draft comment:
The 'packageManager' field still specifies [email protected] while the pnpm dependency has been bumped to 10.0.0. Update 'packageManager' to avoid version inconsistencies. - Reason this comment was not posted:
Comment was not on a location in the diff, so it can't be submitted as a review comment.
2. typescript/apps/fiddle-web-app/package.json:28
- Draft comment:
The 'next' version has been changed from 15.3.4 to 15.2.4, effectively downgrading it. Confirm if this downgrade is intentional. - Reason this comment was not posted:
Decided after close inspection that this draft comment was likely wrong and/or not actionable: usefulness confidence = 0% vs. threshold = 50% According to the rules, we should NOT comment on dependency changes or library versions. The rules explicitly state "Do NOT comment on dependency changes, library versions that you don't recognize, or anything else related to dependencies." Additionally, the comment asks for confirmation of intention, which is also explicitly forbidden by the rules. The version downgrade could potentially cause compatibility issues or bugs that might affect the application's functionality. While version changes can be important, our rules clearly state that dependency changes are out of scope for these reviews. We must trust that the author has properly tested the change. This comment should be removed as it violates two rules: commenting on dependency changes and asking for confirmation of intention.
3. typescript/packages/nextjs-plugin/package.json:40
- Draft comment:
The 'next' dependency here was downgraded from 15.3.3 to 15.2.4. Please verify if this change is correct. - Reason this comment was not posted:
Comment did not seem useful. Confidence is useful =0%
<= threshold50%
This comment is asking the PR author to verify a change in the version of a dependency. According to the rules, comments should not ask the author to confirm or verify changes related to dependencies. Therefore, this comment should be removed.
4. typescript/packages/ui/package.json:49
- Draft comment:
The 'next' dependency has been downgraded from 15.3.3 to 15.2.4. Verify whether this is intended or if it should remain at a higher version. - Reason this comment was not posted:
Comment did not seem useful. Confidence is useful =0%
<= threshold50%
The comment is about a dependency change, specifically a downgrade of the 'next' dependency. The rules specify not to comment on pure dependency changes or library versions that are not recognized. This comment is asking for verification of intention, which is not allowed.
Workflow ID: wflow_DfYoOhzJrDVZkvio
You can customize by changing your verbosity settings, reacting with 👍 or 👎, replying to comments, or adding code review rules.
35a9311
to
538fcd4
Compare
538fcd4
to
9c3f9d4
Compare
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
9c3f9d4
to
f7fe8ea
Compare
51ef06a
to
e845904
Compare
e845904
to
6fcb7f0
Compare
6fcb7f0
to
d722847
Compare
fff2fde
to
4e7eb06
Compare
4e7eb06
to
4889990
Compare
4889990
to
0e495aa
Compare
0e495aa
to
3bde478
Compare
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
Bumps the npm_and_yarn group with 2 updates in the / directory: [pnpm](https://github.com/pnpm/pnpm/tree/HEAD/pnpm) and [next](https://github.com/vercel/next.js). Bumps the npm_and_yarn group with 1 update in the /integ-tests/react directory: [next](https://github.com/vercel/next.js). Updates `pnpm` from 9.12.0 to 10.0.0 - [Release notes](https://github.com/pnpm/pnpm/releases) - [Changelog](https://github.com/pnpm/pnpm/blob/main/pnpm/CHANGELOG.md) - [Commits](https://github.com/pnpm/pnpm/commits/v10.0.0/pnpm) Updates `next` from 15.2.3 to 15.2.4 - [Release notes](https://github.com/vercel/next.js/releases) - [Changelog](https://github.com/vercel/next.js/blob/canary/release.js) - [Commits](vercel/next.js@v15.2.3...v15.2.4) Updates `next` from 15.2.3 to 15.2.4 - [Release notes](https://github.com/vercel/next.js/releases) - [Changelog](https://github.com/vercel/next.js/blob/canary/release.js) - [Commits](vercel/next.js@v15.2.3...v15.2.4) --- updated-dependencies: - dependency-name: pnpm dependency-version: 10.0.0 dependency-type: direct:development dependency-group: npm_and_yarn - dependency-name: next dependency-version: 15.2.4 dependency-type: direct:production dependency-group: npm_and_yarn - dependency-name: next dependency-version: 15.2.4 dependency-type: direct:production dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <[email protected]>
3bde478
to
0e88d9f
Compare
Bumps the npm_and_yarn group with 2 updates in the / directory: pnpm and next.
Bumps the npm_and_yarn group with 1 update in the /integ-tests/react directory: next.
Updates
pnpm
from 9.12.0 to 10.0.0Release notes
Sourced from pnpm's releases.
... (truncated)
Changelog
Sourced from pnpm's changelog.
... (truncated)
Commits
42ecf04
chore(release): 10.0.0c0c63ef
docs: update yearsdde650b
fix: ensure that recursivepnpm update --latest \<pkg>
updates only the spec...c5080de
chore(release): 10.0.0-rc.3cc3bbc9
fix: don't load side-effects cache for packages that are not allowed to be bu...12aebe2
docs:README
add Bluesky link (#8937)9591a18
feat: configurational dependencies (#8915)52204d5
chore: pd should not switch to another version of pnpm (#8930)c7eefdd
fix:pnpm update --filter --latest
should only change relevant packages and...e103abe
chore(release): 10.0.0-rc.2Updates
next
from 15.2.3 to 15.2.4Commits
804aa35
v15.2.4ecb72ee
Match subrequest handling for edge and node (#77474)25f810b
exclude images and static media from dev origin check (#77417)d9bcb83
ensure /__next middleware URLs are included in the origin check (#77416)cfeaa86
remove direct ip/port bypass in dev origin check (#77414)f847302
switch development origin verification to be opt-in rather than opt-out (#77395)Updates
next
from 15.2.3 to 15.2.4Commits
804aa35
v15.2.4ecb72ee
Match subrequest handling for edge and node (#77474)25f810b
exclude images and static media from dev origin check (#77417)d9bcb83
ensure /__next middleware URLs are included in the origin check (#77416)cfeaa86
remove direct ip/port bypass in dev origin check (#77414)f847302
switch development origin verification to be opt-in rather than opt-out (#77395)You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.
Important
Update
pnpm
to 10.0.0 andnext
to 15.2.4 across multiple directories.pnpm
from 9.12.0 to 10.0.0 inpackage.json
.next
from 15.2.3 to 15.2.4 ininteg-tests/react/package.json
,typescript/apps/fiddle-web-app/package.json
,typescript/packages/nextjs-plugin/package.json
, andtypescript/packages/ui/package.json
.pnpm
10.0.0 introduces breaking changes such as not executing lifecycle scripts by default and updates topnpm link
behavior.next
15.2.4 includes minor bug fixes and improvements.This description was created by
for 35a9311. You can customize this summary. It will automatically update as commits are pushed.