dependabot[bot]
4391f3da66
Fix 24 high severity vulnerabilities by overriding brace-expansion to 5.0.8 ( #1351 )
...
* Bump fast-xml-parser from 5.9.3 to 5.10.1
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.9.3 to 5.10.1.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.9.3...v5.10.1 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.10.1
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* chore: update dependencies and remove unused packages
- Updated `balanced-match` to version 4.0.4 in `package-lock.json`.
- Updated `brace-expansion` to version 5.0.8 in `package-lock.json` and `package.json`.
- Removed unused nested dependencies of `balanced-match` and `brace-expansion` from `package-lock.json`.
- Adjusted `overrides` in `package.json` to reflect the new version of `brace-expansion`.
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: chiranjib-swain <chiranjib-swain@github.com >
2026-07-27 12:11:06 -05:00
Chiranjib Swain
eaf9131fae
refactor: update imports to use ES module syntax and improve test structure ( #1350 )
...
- Changed import statements across multiple files to use the .js extension for ES module compatibility.
- Refactored test files to utilize jest's unstable_mockModule for mocking core actions.
- Removed unnecessary spy instances in tests, replacing them with direct mocked function calls.
- Updated TypeScript configuration to target ES2022 and use NodeNext module resolution.
- Removed the tsconfig.spec.json file and adjusted the main tsconfig.json to exclude test files.
2026-07-23 15:39:34 -05:00
dependabot[bot]
1e223db275
Bump undici to 6.27.0 via override, clean up stale license files, and version to 10.4.0. ( #1342 )
...
* build(deps): bump undici and @actions/github
Bumps [undici](https://github.com/nodejs/undici ) to 6.27.0 and updates ancestor dependency [@actions/github](https://github.com/actions/toolkit/tree/HEAD/packages/github ). These dependencies need to be updated together.
Updates `undici` from 6.25.0 to 6.27.0
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v6.25.0...v6.27.0 )
Updates `@actions/github` from 7.0.0 to 9.1.1
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/github/RELEASES.md )
- [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/github )
---
updated-dependencies:
- dependency-name: undici
dependency-version: 6.27.0
dependency-type: indirect
- dependency-name: "@actions/github"
dependency-version: 9.1.1
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
* chore: bump version to 10.4.0 and update dependencies
- Updated version from 10.3.0 to 10.4.0 in package.json
- Changed @actions/github dependency version from ^9.1.1 to ^7.0.0
- Added overrides for undici to require version >=6.27.0
* fix: update undici override to specific version 6.27.0
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: chiranjib-swain <chiranjib-swain@github.com >
2026-07-09 12:56:36 -05:00
Copilot
eb5cf3af3a
chore: upgrade dependencies and bump version to 10.3.0 ( #1335 )
...
Agent-Logs-Url: https://github.com/actions/stale/sessions/af04c6aa-aaef-4c90-afb1-a26bd3c983c5
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com >
Co-authored-by: chiranjib-swain <196914770+chiranjib-swain@users.noreply.github.com >
2026-05-20 21:32:39 -05:00
dependabot[bot]
b5d41d4e1d
build(deps-dev): bump lodash from 4.17.21 to 4.17.23 ( #1313 )
...
* build(deps-dev): bump lodash from 4.17.21 to 4.17.23
Bumps [lodash](https://github.com/lodash/lodash ) from 4.17.21 to 4.17.23.
- [Release notes](https://github.com/lodash/lodash/releases )
- [Commits](https://github.com/lodash/lodash/compare/4.17.21...4.17.23 )
---
updated-dependencies:
- dependency-name: lodash
dependency-version: 4.17.23
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* build(deps): update undici to 6.23.0, fast-xml-parser to 5.3.4, and @actions/http-client to 3.0.2
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: chiranjib-swain <chiranjib-swain@github.com >
2026-02-09 12:47:17 -06:00
Chiranjib Swain
dcd2b9469d
Fix punycode and url.parse Deprecation Warnings ( #1312 )
...
* chore: update dependencies and add new license files for octokit packages
* chore: update license files and remove obsolete dependencies
2026-02-02 11:24:18 -06:00
dependabot[bot]
e46bbabb3e
build(deps-dev): bump @types/node from 20.10.3 to 24.2.0 and document breaking changes in v10 ( #1280 )
...
* build(deps-dev): bump @types/node from 20.10.3 to 24.2.0
Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node ) from 20.10.3 to 24.2.0.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node )
---
updated-dependencies:
- dependency-name: "@types/node"
dependency-version: 24.2.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
* doc update and check failure fix
* changelog update
* doc update
* doc update
* change log update
* updated doc
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2025-10-21 17:22:46 -05:00
Salman Chishti
3a9db7e6a4
Upgrade to node 24 ( #1279 )
...
* Upgrade to node 24
* package updates and compiled
* audit fix
* update package
* package.json version update
* documentation update to the latest release version
---------
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2025-09-03 13:54:19 -05:00
gowridurgad
8f717f0dfc
Bumps form-data ( #1277 )
...
Co-authored-by: “gowridurgad” <“hgowridurgad@github.com >
2025-07-31 15:54:37 -05:00
dependabot[bot]
a92fd57ffe
build(deps): bump undici from 5.28.5 to 5.29.0 ( #1251 )
...
* build(deps): bump undici from 5.28.5 to 5.29.0
Bumps [undici](https://github.com/nodejs/undici ) from 5.28.5 to 5.29.0.
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v5.28.5...v5.29.0 )
---
updated-dependencies:
- dependency-name: undici
dependency-version: 5.29.0
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* check failure fix
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: chiranjib-swain <chiranjib-swain@github.com >
2025-07-29 11:45:08 -05:00
suyashgaonkar
816d9db1ab
Upgrade @action/cache from 4.0.2 to 4.0.3 ( #1233 )
2025-04-08 22:02:34 -05:00
aparnajyothi-y
ba23c1cb02
upgrade actions/cache from 4.0.0 to 4.0.2 ( #1226 )
2025-03-25 11:18:59 -05:00
dependabot[bot]
a65e88a9b9
build(deps): bump undici from 5.28.4 to 5.28.5 ( #1201 )
...
* build(deps): bump undici from 5.28.4 to 5.28.5
Bumps [undici](https://github.com/nodejs/undici ) from 5.28.4 to 5.28.5.
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v5.28.4...v5.28.5 )
---
updated-dependencies:
- dependency-name: undici
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* fix check failures
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2025-03-25 10:51:39 -05:00
dependabot[bot]
5bef64f19d
build(deps): bump @actions/cache from 3.2.2 to 4.0.0 ( #1194 )
...
* build(deps): bump @actions/cache from 3.2.2 to 4.0.0
Bumps [@actions/cache](https://github.com/actions/toolkit/tree/HEAD/packages/cache ) from 3.2.2 to 4.0.0.
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/cache/RELEASES.md )
- [Commits](https://github.com/actions/toolkit/commits/@actions/cache@4.0.0/packages/cache )
---
updated-dependencies:
- dependency-name: "@actions/cache"
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
* fix-check failures
* check failure fix
* fix
* fix - licensed check failures
* license update
* license update
* license update
* licensed review
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2025-01-16 15:01:00 -06:00
dependabot[bot]
f04443dce3
build(deps): bump @actions/core from 1.10.1 to 1.11.1 ( #1191 )
...
* build(deps): bump @actions/core from 1.10.1 to 1.11.1
Bumps [@actions/core](https://github.com/actions/toolkit/tree/HEAD/packages/core ) from 1.10.1 to 1.11.1.
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/core/RELEASES.md )
- [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/core )
---
updated-dependencies:
- dependency-name: "@actions/core"
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
* fix for check failures
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2024-12-17 12:42:20 -06:00
dependabot[bot]
5c715b0513
build(deps-dev): bump ts-jest from 29.1.1 to 29.2.5 ( #1175 )
...
* build(deps-dev): bump ts-jest from 29.1.1 to 29.2.5
Bumps [ts-jest](https://github.com/kulshekhar/ts-jest ) from 29.1.1 to 29.2.5.
- [Release notes](https://github.com/kulshekhar/ts-jest/releases )
- [Changelog](https://github.com/kulshekhar/ts-jest/blob/main/CHANGELOG.md )
- [Commits](https://github.com/kulshekhar/ts-jest/compare/v29.1.1...v29.2.5 )
---
updated-dependencies:
- dependency-name: ts-jest
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
* build(deps-dev): bump ts-jest from 29.1.1 to 29.2.5
Bumps [ts-jest](https://github.com/kulshekhar/ts-jest ) from 29.1.1 to 29.2.5.
- [Release notes](https://github.com/kulshekhar/ts-jest/releases )
- [Changelog](https://github.com/kulshekhar/ts-jest/blob/main/CHANGELOG.md )
- [Commits](https://github.com/kulshekhar/ts-jest/compare/v29.1.1...v29.2.5 )
---
updated-dependencies:
- dependency-name: ts-jest
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
* Fix failures
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: HarithaVattikuti <73516759+HarithaVattikuti@users.noreply.github.com >
2024-12-16 08:40:41 -06:00
HarithaVattikuti
bbf3da5f64
resolve check failures
2024-09-24 14:07:38 -05:00
aparnajyothi-y
28ca103628
Upgrade Node to v20 ( #1110 )
...
* Upgrade to v20
* Fix for failed checks
* Fix for failed checks
* 8.0.0
* Packages degraded to older version
* licensed update
* format-check
* Updated the logic
* Format-check
* 9.0.0
2023-12-07 17:48:34 +05:30
dependabot[bot]
b69b346013
build(deps-dev): bump @types/node from 18.16.18 to 20.5.1 ( #1079 )
...
* build(deps-dev): bump @types/node from 18.16.18 to 20.5.1
Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node ) from 18.16.18 to 20.5.1.
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node )
---
updated-dependencies:
- dependency-name: "@types/node"
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
* Fix @types/node.dep.yml, license
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergey Dolin <dsame@github.com >
2023-09-01 09:01:45 +02:00
Sergey Dolin
5ca2c2b512
Merge pull request #1050 from actions/dependabot/npm_and_yarn/tough-cookie-and-azure/ms-rest-js--removed
...
build(deps): bump tough-cookie and @azure/ms-rest-js
2023-08-02 23:30:43 +02:00
Dusan Trickovic
7d39c14e50
Fix licensing for @azure/ms-rest-js
2023-07-20 13:05:24 +02:00
Dusan Trickovic
2eb6fe7447
Update Semver to 7.5.4 and add licensing
2023-07-20 01:08:42 +02:00
Sergey Dolin
ab422d01a2
Use cache instead of artifacts
2023-06-30 10:15:37 +02:00
Sergey Dolin
7109b30ab8
Fix license
2023-06-22 15:04:18 +02:00
Ivan
03af7c36d3
Cumulative update of dependencies ( #987 )
...
* Update deps
* Update licenses
2023-04-12 16:23:03 +02:00
Sergey Dolin
b5b320bc53
fix licenses
2023-03-13 19:39:37 +01:00
Ivan
a8c816994c
Bump npm dependencies ( #915 )
...
* Update dependencies
* Update semver dependency license
2023-01-17 10:54:58 +02:00
IvanZosimov
97a008721c
Update licenses, run prettier on yml files
2022-12-08 14:14:09 +01:00
Thomas Boop
a7478d45d8
Add Licensed To Help Verify Prod Licenses ( #138 )
...
* Add Licensed Workflow and Config
* Manual verification of licenses
* Ignore Generated Files in Git PR's
* rerun licensed cache to catch new dependency
2020-08-28 06:22:51 -04:00