petities / petitions.eu

Support a petition or start your own petition
https://petities.nl/
12 stars 11 forks source link

Bump rack-attack from 6.2.1 to 6.6.0 #685

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps rack-attack from 6.2.1 to 6.6.0.

Release notes

Sourced from rack-attack's releases.

v6.6.0

Details in CHANGELOG entry.

v6.5.0

Details in CHANGELOG entry.

v6.4.0

Details in CHANGELOG entry.

v6.2.2

Fixed

Changelog

Sourced from rack-attack's changelog.

[6.6.0] - 2022-01-29

Added

  • Ability to have access to the request object instead of only env (still can access env with request.env) when customizing throttle and blocklist responses with new methods Rack::Attack.blocklisted_responder= and Rack::Attack.throttled_responder= which yield the request to your lambda. ([@​NikolayRys])

Deprecated

  • Rack::Attack.blocklisted_response=
  • Rack::Attack.throttled_response=

[6.5.0] - 2021-02-07

Added

  • Added ability to normalize throttle discriminator by setting Rack::Attack.throttle_discriminator_normalizer (@​fatkodima)

    Example:

    Rack::Attack.throttle_discriminator_normalizer = ->(discriminator) { ... }
    

    or disable default normalization with:

    Rack::Attack.throttle_discriminator_normalizer = nil
    

Removed

  • Dropped support for ruby v2.4
  • Dropped support for rails v5.1

[6.4.0] - 2021-01-23

Added

  • Added support for ruby v3.0

Removed

  • Dropped support for ruby v2.3

[6.3.1] - 2020-05-21

Fixed

  • Warning when using ActiveSupport::Cache::RedisCacheStore as a cache store with rails 5.2.4.3 (#482) (@​rofreg)

[6.3.0] - 2020-04-26

... (truncated)

Commits
  • d0ec4de Bump gem version to v6.6.0
  • 3eca60d Merge pull request #556 from zarqman/dalli3-and-rails7
  • 97abc93 test: update rails 7 appraisal after final release
  • 8d9c884 Merge branch 'master' into dalli3-and-rails7
  • d204006 Merge branch 'ruby-3-1'
  • 9ccf628 Merge pull request #565 from orhantoy/include-license-in-gem-build
  • 501ab01 ci: run tests against ruby 3.1
  • aaeff6d feat: deprecate throttled_response and blocklisted_response
  • 8bf9d4e refactor: attempt to make method name more self explanatory and clear
  • c95f962 Include LICENSE in gem build
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 2 years ago

Superseded by #692.