code-pushup / github-action

GitHub Action for automating feedback from Code PushUp
MIT License
4 stars 0 forks source link

Bump the npm-development group with 3 updates #75

Closed dependabot[bot] closed 3 weeks ago

dependabot[bot] commented 3 weeks ago

Bumps the npm-development group with 3 updates: @types/node, memfs and typescript.

Updates @types/node from 22.7.4 to 22.7.5

Commits


Updates memfs from 4.12.0 to 4.14.0

Release notes

Sourced from memfs's releases.

v4.14.0

4.14.0 (2024-10-13)

Features

  • support stream as source in promises version of writeFile (#1069) (11f8a36)

v4.13.0

4.13.0 (2024-10-07)

Features

Changelog

Sourced from memfs's changelog.

4.14.0 (2024-10-13)

Features

  • support stream as source in promises version of writeFile (#1069) (11f8a36)

4.13.0 (2024-10-07)

Features

Commits


Updates typescript from 5.6.2 to 5.6.3

Release notes

Sourced from typescript's releases.

TypeScript 5.6.3

For release notes, check out the release announcement.

For the complete list of fixed issues, check out the

Downloads are available on:

Commits
  • d48a5cf Bump version to 5.6.3 and LKG
  • fefa70a ๐Ÿค– Pick PR #60083 (Don't issue implicit any when obtai...) into release-5.6 (#...
  • ff71692 [release-5.6] Remove tsbuildInfo specification error now that we need it for ...
  • 1f44dcf ๐Ÿค– Pick PR #60157 (fix automatic type acquisition) into release-5.6 (#60169)
  • See full diff in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions
github-actions[bot] commented 3 weeks ago

Code PushUp

๐Ÿคจ Code PushUp report has both improvements and regressions โ€“ compared target commit 5462a13394c375ecf21a090ac0cfd66eac07a65e with source commit 39ee0f55414078dd457e912ae35ac54751b356d5.

๐Ÿท๏ธ Categories

๐Ÿท๏ธ Category โญ Score
Bug prevention ๐ŸŸข 100
Code style ๐ŸŸข 100
Code coverage ๐ŸŸก 78
Security ๐ŸŸก 69
Updates ๐ŸŸข 98
1 audit changed without impacting score ## ๐Ÿ—ƒ๏ธ Groups All of 12 groups are unchanged. ## ๐Ÿ›ก๏ธ Audits | ๐Ÿ”Œ Plugin | ๐Ÿ›ก๏ธ Audit | ๐Ÿ“ Previous value | ๐Ÿ“ Current value | ๐Ÿ”„ Value change | | :------------------------------------- | :---------------------------------------------------------------------------------------------------- | :--------------------------------: | :---------------------------------------------------: | :-------------------------------------------------------------------------------: | | [JS Packages](https://docs.npmjs.com/) | [Outdated NPM prod dependencies.](https://classic.yarnpkg.com/docs/dependency-types#toc-dependencies) | ๐ŸŸฉ all dependencies are up to date | ๐ŸŸฉ **2 outdated package versions (1 minor, 1 patch)** | ![โ†‘ +โˆžโ€‰%](https://img.shields.io/badge/%E2%86%91%20%2B%E2%88%9E%E2%80%89%25-gray) | 171 other audits are unchanged.