2lambda123 / sveltejs-kit

MIT License
0 stars 0 forks source link

chore(deps): bump the npm_and_yarn group across 1 directory with 4 updates #6

Closed dependabot[bot] closed 1 month ago

dependabot[bot] commented 1 month ago

Description

In this pull request, the package dependencies of several packages within the project are being updated. The changes mainly involve updating the versions of Rollup, Svelte, and Vite dependencies to their latest compatible versions. These updates are essential to ensure compatibility and take advantage of any bug fixes or new features provided by these dependencies.

Here is a summary of the changes made in this PR:

These updates ensure that the project remains up-to-date with the latest compatible versions of its dependencies, improving stability and performance.

Summary by Sourcery

Chores:

korbit-ai[bot] commented 1 month ago

By default, I don't review pull requests opened by bots. If you would like me to review this pull request anyway, you can request a review via the /korbit-review command in a comment.

cr-gpt[bot] commented 1 month ago

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

performance-testing-bot[bot] commented 1 month ago

Unable to locate .performanceTestingBot config file

git-greetings[bot] commented 1 month ago

Thanks @dependabot[bot] for opening this PR!

For COLLABORATOR only :

sourcery-ai[bot] commented 1 month ago

Reviewer's Guide by Sourcery

This pull request updates several dependencies in the project, including major version bumps for some packages. The changes primarily affect development dependencies and build tools, with no apparent changes to the core application code.

No diagrams generated as the changes look simple and do not need a visual representation.

File-Level Changes

Change Details Files
Update Rollup from 4.14.2 to 4.22.4
  • Update Rollup core package
  • Update related Rollup plugins and dependencies
pnpm-lock.yaml
Update Svelte from 4.2.14/4.2.17 to 4.2.19
  • Update Svelte core package
  • Update Svelte-related dependencies and plugins
pnpm-lock.yaml
Update Vite from 5.2.8 to 5.2.14
  • Update Vite core package
  • Update Vite-related plugins and dependencies
pnpm-lock.yaml
Update cookie package from 0.5.0 to 1.0.1
  • Major version bump for cookie package
  • Update related dependencies using cookie package
pnpm-lock.yaml
Various minor updates to other development dependencies
  • Update ESLint-related packages
  • Update TypeScript-related packages
  • Update other miscellaneous dev dependencies
pnpm-lock.yaml

Tips and commands #### Interacting with Sourcery - **Trigger a new review:** Comment `@sourcery-ai review` on the pull request. - **Continue discussions:** Reply directly to Sourcery's review comments. - **Generate a GitHub issue from a review comment:** Ask Sourcery to create an issue from a review comment by replying to it. - **Generate a pull request title:** Write `@sourcery-ai` anywhere in the pull request title to generate a title at any time. - **Generate a pull request summary:** Write `@sourcery-ai summary` anywhere in the pull request body to generate a PR summary at any time. You can also use this command to specify where the summary should be inserted. #### Customizing Your Experience Access your [dashboard](https://app.sourcery.ai) to: - Enable or disable review features such as the Sourcery-generated pull request summary, the reviewer's guide, and others. - Change the review language. - Add, remove or edit custom review instructions. - Adjust other review settings. #### Getting Help - [Contact our support team](mailto:support@sourcery.ai) for questions or feedback. - Visit our [documentation](https://docs.sourcery.ai) for detailed guides and information. - Keep in touch with the Sourcery team by following us on [X/Twitter](https://x.com/SourceryAI), [LinkedIn](https://www.linkedin.com/company/sourcery-ai/) or [GitHub](https://github.com/sourcery-ai).
code-companion-ai[bot] commented 1 month ago

Processing PR updates...

git-greetings[bot] commented 1 month ago
PR Details of @dependabot[bot] in sveltejs-kit : OPEN CLOSED TOTAL
1 4 5
code-companion-ai[bot] commented 1 month ago

Description has been updated!

socket-security[bot] commented 1 month ago

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@sveltejs/kit@2.7.2 environment, eval Transitive: filesystem +6 1.32 MB svelte-admin
npm/cookie@1.0.1 None 0 46 kB blakeembrey, dougwilson
npm/rollup@4.22.4 None 0 2.27 MB eventualbuddha, lukastaegert, rich_harris, ...2 more
npm/svelte@4.2.19 Transitive: unsafe +15 6.32 MB conduitry, rich_harris, svelte-admin
npm/vite@5.2.14 environment, eval, filesystem, network, shell, unsafe +4 3.97 MB vitebot

🚮 Removed packages: npm/rollup@4.14.2, npm/svelte@4.2.14, npm/vite@5.2.8

View full report↗︎