heybereket / oasis

The chat and forums platform for communities
https://beta.oasis.sh
MIT License
239 stars 54 forks source link

chore(deps): bump sharp from 0.28.3 to 0.30.1 #552

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps sharp from 0.28.3 to 0.30.1.

Changelog

Sourced from sharp's changelog.

v0.30.1 - 9th February 2022

  • Allow use of toBuffer and toFile on the same instance. #3044

  • Skip shrink-on-load for known libjpeg rounding errors. #3066 @​kleisauke

  • Ensure withoutReduction does not interfere with contain/crop/embed. #3081 @​kleisauke

  • Ensure affine interpolator is correctly finalised. #3083 @​kleisauke

v0.30.0 - 1st February 2022

  • Add support for GIF output to prebuilt binaries.

  • Reduce minimum Linux ARM64v8 glibc requirement to 2.17.

  • Verify prebuilt binaries with a Subresource Integrity check.

  • Standardise WebP effort option name, deprecate reductionEffort.

  • Standardise HEIF effort option name, deprecate speed.

  • Add support for IIIF v3 tile-based output.

  • Expose control over CPU effort for palette-based PNG output. #2541

  • Improve animated (multi-page) image resize and extract. #2789 @​kleisauke

  • Expose platform and architecture of vendored binaries as sharp.vendor. #2928

  • Ensure 16-bit PNG output uses correct bitdepth. #2958 @​gforge

  • Properly emit close events for duplex streams. #2976 @​driannaude

  • Expose unlimited option for SVG and PNG input, switches off safety features.

... (truncated)

Commits


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 2 years ago

Superseded by #554.