Closed dependabot[bot] closed 7 months ago
Unable to locate .performanceTestingBot config file
Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information
Processing PR updates...
Check out the playback for this Pull Request here.
[!IMPORTANT]
Auto Review Skipped
Bot user detected.
To trigger a single review, invoke the
@coderabbitai review
command.
Thank you for using CodeRabbit. We offer it for free to the OSS community and would appreciate your support in helping us grow. If you find it useful, would you consider giving us a shout-out on your favorite social media?
Thanks @dependabot[bot] for opening this PR!
For COLLABORATOR only :
To add labels, comment on the issue
/label add label1,label2,label3
To remove labels, comment on the issue
/label remove label1,label2,label3
PR Details of @dependabot[bot] in auth0-nextjs-auth0 : | OPEN | CLOSED | TOTAL |
---|---|---|---|
5 | 0 | 5 |
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
Package | New capabilities | Transitives | Size | Publisher |
---|---|---|---|---|
npm/jose@4.15.5 | network | 0 |
548 kB | panva |
npm/oidc-provider@8.4.5 | environment Transitive: eval, filesystem, network, unsafe | +63 |
2.98 MB | panva |
🚮 Removed packages: npm/jose@4.15.4, npm/oidc-provider@7.14.3
Superseded by #9.
Bumps the npm_and_yarn group with 4 updates: jose, @koa/cors, oidc-provider and follow-redirects.
Updates
jose
from 4.15.4 to 4.15.5Release notes
Sourced from jose's releases.
Changelog
Sourced from jose's changelog.
Commits
765aafd
chore(release): 4.15.5b36e45e
test: add export check to x509 pem import testse839ecb
test: stop testing JWE RSA1_5 Algorithm1b91d88
fix: add a maxOutputLength option to zlib inflate9ca2b24
build: remove release actionf3035d8
chore: cleanup after releaseUpdates
@koa/cors
from 3.1.0 to 5.0.0Changelog
Sourced from
@koa/cors
's changelog.... (truncated)
Commits
c33bd69
Release 5.0.0f31dac9
Merge pull request from GHSA-qxrj-hx23-xp820f3f948
Release 4.0.0d19090f
refactor: [BREAKING] drop node 8, 10, 12 support (#88)7358ab3
fix: Calling all options even if origin header is not present (#87)b49b085
Release 3.4.3208b86c
Revert "fix: Calling all options even if origin header is not present (#87)"d5456f7
Release 3.4.22e8da5b
fix: Calling all options even if origin header is not present (#87)ea0ca7b
Release 3.4.1Updates
oidc-provider
from 7.14.3 to 8.4.5Release notes
Sourced from oidc-provider's releases.
... (truncated)
Changelog
Sourced from oidc-provider's changelog.
... (truncated)
Commits
3e26073
chore(release): 8.4.5ee633f3
fix(DPoP): mark defaulted dpop_jkt parameter as trustedda3198b
refactor: use doc argument in web_message js code23997c5
fix: add missing opening html tags81c683d
chore(release): 8.4.429b9667
chore: add documentation updates and refactors to future changelogsca0f999
fix(DPoP,PAR,JAR): validate DPoP before invalidating JAR during PAR3f86cc0
refactor: test decoded basic auth tokens for their VSCHAR pattern391885c
chore: bump upload-artifactb583993
Revert "build(deps): bump actions/upload-artifact from 3 to 4" (#1243)Updates
follow-redirects
from 1.15.3 to 1.15.6Commits
35a517c
Release version 1.15.6 of the npm package.c4f847f
Drop Proxy-Authorization across hosts.8526b4a
Use GitHub for disclosure.b1677ce
Release version 1.15.5 of the npm package.d8914f7
Preserve fragment in responseUrl.6585820
Release version 1.15.4 of the npm package.7a6567e
Disallow bracketed hostnames.05629af
Prefer native URL instead of deprecated url.parse.1cba8e8
Prefer native URL instead of legacy url.resolve.72bc2a4
Simplify _processResponse error handling.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show