GCTC-NTGC / TalentCloud

Talent Cloud aspires to be a cross-sectoral initiative testing new realities for talent in-and-out of government. // Nuage de talent s'efforce d'être une initiative intersectorielle mettant à l'essai de nouvelles réalités pour le talent à l'intérieur et à l'extérieur du gouvernement.
http://talent.canada.ca
MIT License
20 stars 12 forks source link

Bump snyk from 1.573.0 to 1.602.0 #5900

Closed dependabot-preview[bot] closed 3 years ago

dependabot-preview[bot] commented 3 years ago

Bumps snyk from 1.573.0 to 1.602.0.

Release notes

Sourced from snyk's releases.

v1.602.0

1.602.0 (2021-05-18)

Bug Fixes

  • latest @​snyk/fix with engines 10+ (e6ec890)

v1.601.0

1.601.0 (2021-05-18)

Bug Fixes

  • @​snyk/pipfile-fix with node 10+ engines (40fce71)

v1.600.0

1.600.0 (2021-05-18)

Bug Fixes

  • protect: correctly extract patches from direct dependencies (7d59bbe)

v1.599.0

1.599.0 (2021-05-18)

Features

  • release snyk fix Pipfile support (f05acca)

v1.598.0

1.598.0 (2021-05-18)

Features

  • install @​snyk/fix-pipenv-pipfile (6788fd6)
  • Pipfile fix support via pipenv (a843d1a)

v1.597.0

1.597.0 (2021-05-18)

Features

  • show only unique vulnerabilities in sarif format (713edf3)

v1.596.0

... (truncated)

Commits
  • bc02602 Merge pull request #1932 from snyk/fix/bump-snyk-fix
  • 7a0c2a3 Merge pull request #1913 from snyk/feat/iac-custom-rules
  • 40f3f68 Merge pull request #1920 from snyk/chore/add-rules-cli-flag
  • e6ec890 fix: latest @​snyk/fix with engines 10+
  • ec41c09 Merge pull request #1931 from snyk/fix/node-10-engines
  • 40fce71 fix: @​snyk/pipfile-fix with node 10+ engines
  • d05ab94 Merge pull request #1923 from snyk/protect/fix-top-level-parsing
  • 1851e37 Merge pull request #1924 from snyk/protect/test-timeout
  • 8b63731 Merge pull request #1928 from snyk/feat/release-pipfile-fix
  • 6dbb915 Merge pull request #1915 from snyk/docs/update-exclude-flag
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)
codecov[bot] commented 3 years ago

Codecov Report

Merging #5900 (e44cee1) into dev (09a0ae4) will not change coverage. The diff coverage is n/a.

Impacted file tree graph

@@            Coverage Diff            @@
##                dev    #5900   +/-   ##
=========================================
  Coverage     50.72%   50.72%           
  Complexity     1803     1803           
=========================================
  Files           448      448           
  Lines         10571    10571           
  Branches        426      426           
=========================================
  Hits           5361     5361           
  Misses         4899     4899           
  Partials        311      311           
dependabot-preview[bot] commented 3 years ago

Superseded by #5904.