eXist-db / polymer-app-template

A template for Polymerized eXist-db applications
1 stars 1 forks source link

Update bower requirement to ^1.8.4 #10

Closed dependabot-preview[bot] closed 6 years ago

dependabot-preview[bot] commented 6 years ago

Updates the requirements on bower to permit the latest version.

Release notes *Sourced from [bower's releases](https://github.com/bower/bower/releases).* > ## v1.8.4 > - Fixes release 1.8.3 by publishing with npm@3 instead of npm@5 (to include `lib/node_modules`)
Changelog *Sourced from [bower's changelog](https://github.com/bower/bower/blob/master/CHANGELOG.md).* > # Changelog > > ## Newer releases > > Please see: https://github.com/bower/bower/releases > > ## 1.8.0 - 2016-11-07 > > - Download tar archives from GitHub when possible ([#2263](https://github-redirect.dependabot.com/bower/bower/issues/2263)) > - Change default shorthand resolver for github from `git://` to `https://` > - Fix ssl handling by not setting GIT_SSL_NO_VERIFY=false ([#2361](https://github-redirect.dependabot.com/bower/bower/issues/2361)) > - Allow for removing components with url instead of name ([#2368](https://github-redirect.dependabot.com/bower/bower/issues/2368)) > - Show in warning message location of malformed bower.json ([#2357](https://github-redirect.dependabot.com/bower/bower/issues/2357)) > - Improve handling of non-semver versions in git resolver ([#2316](https://github-redirect.dependabot.com/bower/bower/issues/2316)) > - Fix handling of cached releases pluginResolverFactory ([#2356](https://github-redirect.dependabot.com/bower/bower/issues/2356)) > - Allow to type the entire version when conflict occured ([#2243](https://github-redirect.dependabot.com/bower/bower/issues/2243)) > - Allow `owner/reponame` shorthand for registering components ([#2248](https://github-redirect.dependabot.com/bower/bower/issues/2248)) > - Allow single-char repo names and package names ([#2249](https://github-redirect.dependabot.com/bower/bower/issues/2249)) > - Make `bower version` no longer honor `version` in bower.json ([#2232](https://github-redirect.dependabot.com/bower/bower/issues/2232)) > - Add `postinstall` hook ([#2252](https://github-redirect.dependabot.com/bower/bower/issues/2252)) > - Allow for `@` instead of `#` for `install` and `info` commands ([#2322](https://github-redirect.dependabot.com/bower/bower/issues/2322)) > - Upgrade all bundled modules > > ## 1.7.9 - 2016-04-05 > > - Show warnings for invalid bower.json fields > - Update bower-json > - Less strict validation on package name (allow spaces, slashes, and "@") > > ## 1.7.8 - 2016-04-04 > > - Don't ask for git credentials in non-interactive session, fixes [#956](https://github-redirect.dependabot.com/bower/bower/issues/956) [#1009](https://github-redirect.dependabot.com/bower/bower/issues/1009) > - Prevent swallowing exceptions with programmatic api, fixes [#2187](https://github-redirect.dependabot.com/bower/bower/issues/2187) > - Update graceful-fs to 4.x in all dependences, fixes nodejs/node#5213 > - Resolve pluggable resolvers using cwd and fallback to global modules, fixes [#1919](https://github-redirect.dependabot.com/bower/bower/issues/1919) > - Upgrade handlebars to 4.0.5, closes [#2195](https://github-redirect.dependabot.com/bower/bower/issues/2195) > - Replace all % chatacters in defined scripts, instead of only first one, fixes [#2174](https://github-redirect.dependabot.com/bower/bower/issues/2174) > - Update opn package to fix issues with "bower open" command on Windows > - Update bower-config > - Do not interpolate environment variables in script hooks, fixes bower/config#47 > - Update bower-json > - Validate package name more strictly and allow only latin letters, dots, dashes and underscores > - Add support for "save" and "save-exact" in .bowerrc, [#2161](https://github-redirect.dependabot.com/bower/bower/issues/2161) > > ## 1.7.7 - 2016-01-27 > > Revert locations of all files while still packaging `node_modules`. > > It's because people are depending on internals of bower, like > `bower/lib/renderers/StandardRenderer`. We want to preserve this > ... (truncated)
Commits - See full diff in [compare view](https://github.com/bower/bower/commits/v1.8.4)


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot reopen` will reopen this PR - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Automerge options (never/patch/minor, and dev/runtime dependencies) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired) Finally, you can contact us by mentioning @dependabot.

⚠️ Dependabot is rebasing this PR ⚠️

Sit tight and this PR will be updated for you in a minute. If you make any changes yourself then they'll take precedence over the rebase (which will be abandoned).