trustpilot / node-trustpilot

HTTP client for Trustpilot
MIT License
32 stars 4 forks source link

Upgrade: Bump yaml, commitlint and semantic-release #105

Closed dependabot[bot] closed 6 months ago

dependabot[bot] commented 1 year ago

Removes yaml. It's no longer used after updating ancestor dependencies yaml, commitlint and semantic-release. These dependencies need to be updated together.

Removes yaml

Updates commitlint from 12.0.1 to 17.6.1

Release notes

Sourced from commitlint's releases.

v17.6.1

17.6.1 (2023-04-14)

Bug Fixes

  • rules: avoid processing strings with case-less Letter category symbols in subject-case (#3586) (70a4450), closes #3585

Full Changelog: https://github.com/conventional-changelog/commitlint/compare/v17.6.0...v17.6.1

v17.6.0

17.6.0 (2023-04-13)

Features

  • rules: expand Latin-only characters limitation for subject-case with Unicode support (#3575) (5f83423)

New Contributors

Full Changelog: https://github.com/conventional-changelog/commitlint/compare/v17.5.1...v17.6.0

v17.5.1

17.5.1 (2023-03-28)

New Contributors

Full Changelog: https://github.com/conventional-changelog/commitlint/compare/v17.5.0...v17.5.1

v17.5.0

17.5.0 (2023-03-22)

Bug Fixes

  • config-pnpm-scopes: refactor to remove peer dependencies (#3564) (f1f3bd5), closes #3556

Features

... (truncated)

Changelog

Sourced from commitlint's changelog.

17.6.1 (2023-04-14)

Note: Version bump only for package commitlint

17.6.0 (2023-04-13)

Note: Version bump only for package commitlint

17.5.1 (2023-03-28)

Note: Version bump only for package commitlint

17.5.0 (2023-03-22)

Note: Version bump only for package commitlint

17.4.4 (2023-02-17)

Note: Version bump only for package commitlint

17.4.3 (2023-02-13)

Note: Version bump only for package commitlint

17.4.2 (2023-01-12)

... (truncated)

Commits


Updates semantic-release from 17.4.2 to 21.0.1

Release notes

Sourced from semantic-release's releases.

v21.0.1

21.0.1 (2023-04-01)

Bug Fixes

v21.0.0

21.0.0 (2023-03-24)

BREAKING CHANGES

  • deps: the npm plugin has updated the npm dependency to v9
  • legacy authentication using NPM_USERNAME and NPM_PASSWORD is no longer supported. Use NPM_TOKEN instead.

Bug Fixes

  • deps: bump @semantic-release/npm to ^10.0.0 (d647433)

v21.0.0-beta.6

21.0.0-beta.6 (2023-03-22)

Bug Fixes

  • deps: update dependency cosmiconfig to v8.1.2 (fbede54)
  • deps: update dependency execa to v7 (#2709) (31d9bfe)
  • deps: update dependency execa to v7.1.1 (c38b53a)

v21.0.0-beta.5

21.0.0-beta.5 (2023-03-22)

Bug Fixes

  • deps: updated to the latest version of the npm plugin (d647433)

v21.0.0-beta.4

21.0.0-beta.4 (2023-02-17)

Bug Fixes

  • deps: updated to the latest beta of the npm plugin, which updates npm to v9 (bef1d48)

... (truncated)

Commits
  • 4bddb37 fix(deps): update dependency env-ci to v9 (#2757)
  • aa90774 chore(deps): update dependency testdouble to v3.17.2 (#2751)
  • d7e14f6 docs(artifactory): removed details about using artifactory with legacy auth
  • 4a943a5 chore(deps): pin dependencies (#2744)
  • f47a510 chore(deps): lock file maintenance (#2737)
  • 05596bc chore(deps): update dependency prettier to ^2.8.4 (#2746)
  • c6e84ef chore(deps): update dependency sinon to v15.0.3 (#2748)
  • 0cbe804 chore(deps): update dependency fs-extra to ^11.1.0 (#2745)
  • ea32d10 chore(deps): update dependency testdouble to v3.17.1 (#2740)
  • deb1b7f Merge pull request #2741 from semantic-release/beta
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/trustpilot/node-trustpilot/network/alerts).
dependabot[bot] commented 6 months ago

OK, I won't notify you again about this release, but will get in touch when a new version is available.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.