Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/anywhichway/nano-memoize/network/alerts).
Bumps request to 2.88.0 and updates ancestor dependency codeclimate-test-reporter. These dependencies need to be updated together.
Updates
request
from 2.67.0 to 2.88.0Changelog
Sourced from request's changelog.
... (truncated)
Commits
6420240
2.88.0bd22e21
fix: massive dependency upgrade, fixes all production vulnerabilities925849a
Merge pull request #2996 from kwonoj/fix-uuid7b68551
fix(uuid): import versioned uuid5797963
Merge pull request #2994 from dlecocq/oauth-sign-0.9.0628ff5e
Update to oauth-sign 0.9.010987ef
Merge pull request #2993 from simov/fix-header-testscd848af
These are not going to fail if there is a server listening on those portsa92e138
#515, #2894 Strip port suffix from Host header if the protocol is known. (#2904)45ffc4b
Improve AWS SigV4 support. (#2791)Updates
codeclimate-test-reporter
from 0.2.1 to 0.5.1Commits
7d042e8
0.5.11ad7ea8
Bump to 0.5.15e4b10e
chore: update dependencies with security issues fixes #70c4b55e1
README: update deprecation notice7a8c75f
Update README.mdc37a8da
Update README.md (#63)9fc86ba
Release v0.5.0d936a62
Update engines depedency to node >= 497f1ff2
Upgrade request packagecb80deb
Release 0.4.1Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/anywhichway/nano-memoize/network/alerts).