Shopify / draggable

The JavaScript Drag & Drop library your grandparents warned you about.
https://shopify.github.io/draggable
MIT License
17.93k stars 1.09k forks source link

Analysis: 97% of dependency updates in this repository can be merged. #567

Open supalarry opened 1 year ago

supalarry commented 1 year ago

Hey there :wave:

Our bot, Adaptly, found that 35 out of 36 currently open dependency update PRs can be merged.
That's 97% right there:

View Safe to Merge PRs1. chore(deps): bump word-wrap from 1.2.3 to 1.2.4 in /examples
2. chore(deps-dev): bump nunjucks from 3.2.2 to 3.2.4 in /examples
3. chore(deps): bump minimist from 1.2.5 to 1.2.8 in /examples
4. chore(deps): bump ua-parser-js from 0.7.22 to 0.7.33 in /examples
5. chore(deps): bump ua-parser-js from 0.7.18 to 0.7.33
6. chore(deps): bump json5 from 1.0.1 to 1.0.2 in /examples
7. chore(deps): bump express from 4.17.1 to 4.18.2 in /examples
8. chore(deps): bump express from 4.16.3 to 4.18.2
9. chore(deps): bump decode-uri-component from 0.2.0 to 0.2.2 in /examples
10. chore(deps): bump decode-uri-component from 0.2.0 to 0.2.2
11. chore(deps): bump loader-utils from 1.1.0 to 1.4.2
12. chore(deps): bump loader-utils from 1.4.0 to 1.4.2 in /examples
13. chore(deps): bump css-what from 2.1.0 to 2.1.3
14. chore(deps): bump terser from 4.8.0 to 4.8.1 in /examples
15. Bump copy-props from 2.0.4 to 2.0.5 in /examples
16. Bump codecov from 3.0.2 to 3.8.3
17. Bump chownr from 1.0.1 to 1.1.4
18. Bump tmpl from 1.0.4 to 1.0.5
19. Bump tar from 4.4.4 to 4.4.19
20. Bump path-parse from 1.0.6 to 1.0.7 in /examples
21. Bump path-parse from 1.0.5 to 1.0.7
22. Bump ini from 1.3.5 to 1.3.8 in /examples
23. Bump ini from 1.3.5 to 1.3.8
24. Bump hosted-git-info from 2.8.8 to 2.8.9 in /examples
25. Bump hosted-git-info from 2.6.0 to 2.8.9
26. Bump lodash from 4.17.10 to 4.17.21
27. Bump lodash from 4.17.20 to 4.17.21 in /examples
28. Bump handlebars from 4.0.11 to 4.7.7
29. Bump ssri from 6.0.1 to 6.0.2 in /examples
30. Bump y18n from 3.2.1 to 3.2.2 in /examples
31. Bump y18n from 3.2.1 to 3.2.2
32. Bump elliptic from 6.5.3 to 6.5.4 in /examples
33. Bump elliptic from 6.4.0 to 6.5.4
34. Bump tree-kill from 1.2.0 to 1.2.2
35. Bump lodash.merge from 4.6.1 to 4.6.2

feels

:mag_right:   How does Adaptly know this?

It analyses changelogs of dependencies updated in a PR.
If no breaking changes are found in the changelogs, PR is marked as safe to merge.

:sparkles: Try Adaptly yourself

Feel free to try Adaptly on your repositories and finally
merge the Dependabot PRs. Let us know if you have any questions.

Best of luck with your projects,
Lauris
lauris@adaptly.dev

supalarry commented 1 year ago

@tsov Adaptly saw that you have merged Dependabot PRs, so this might be useful to you.

tsov commented 1 year ago

@supalarry currently overhauling this repo! Tackling all the non-example dependencies