Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Configure Renovate #24

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Configure Renovate #24

wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link

@renovate renovate bot commented Nov 19, 2021

WhiteSource Renovate

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

  • package.json (npm)

Configuration Summary

Based on the default config's presets, Renovate will:

  • Start dependency updates only once this onboarding PR is merged
  • Enable Renovate Dependency Dashboard creation
  • If semantic commits detected, use semantic commit type fix for dependencies and chore for all others
  • Ignore node_modules, bower_components, vendor and various test/tests directories
  • Autodetect whether to pin dependencies or maintain ranges
  • Rate limit PR creation to a maximum of two per hour
  • Limit to maximum 10 open PRs at any time
  • Group known monorepo packages together
  • Use curated list of recommended non-monorepo package groupings
  • Fix some problems with very old Maven commons versions
  • Ignore spring cloud 1.x releases
  • Ignore http4s digest-based 1.x milestones
  • Use node versioning for @types/node
  • Limit concurrent requests to reduce load on Repology servers until we can fix this properly, see issue 10133

🔡 Would you like to change the way Renovate is upgrading your dependencies? Simply edit the renovate.json in this branch with your custom config and the list of Pull Requests in the "What to Expect" section below will be updated the next time Renovate runs.


What to Expect

With your current configuration, Renovate will create 47 Pull Requests:

Update dependency @​hapi/hoek to 8.5.1 [SECURITY]
  • Branch name: renovate/npm-@hapi/hoek-vulnerability
  • Merge into: master
  • Upgrade @​hapi/hoek to 8.5.1
Update dependency acorn to 6.4.1 [SECURITY]
  • Branch name: renovate/npm-acorn-vulnerability
  • Merge into: master
  • Upgrade acorn to 6.4.1
Update dependency axios to 0.21.2 [SECURITY]
  • Branch name: renovate/npm-axios-vulnerability
  • Merge into: master
  • Upgrade axios to 0.21.2
Update dependency browserslist to 4.16.5 [SECURITY]
  • Branch name: renovate/npm-browserslist-vulnerability
  • Merge into: master
  • Upgrade browserslist to 4.16.5
Update dependency dns-packet to 1.3.2 [SECURITY]
  • Branch name: renovate/npm-dns-packet-vulnerability
  • Merge into: master
  • Upgrade dns-packet to 1.3.2
Update dependency dot-prop to 4.2.1 [SECURITY]
  • Branch name: renovate/npm-dot-prop-vulnerability
  • Merge into: master
  • Upgrade dot-prop to 4.2.1
Update dependency elliptic to 6.5.4 [SECURITY]
  • Branch name: renovate/npm-elliptic-vulnerability
  • Merge into: master
  • Upgrade elliptic to 6.5.4
Update dependency glob-parent to 5.1.2 [SECURITY]
  • Branch name: renovate/npm-glob-parent-vulnerability
  • Merge into: master
  • Upgrade glob-parent to 5.1.2
Update dependency highlight.js to 10.4.1 [SECURITY]
  • Branch name: renovate/npm-highlight.js-vulnerability
  • Merge into: master
  • Upgrade highlight.js to 10.4.1
Update dependency hosted-git-info to 2.8.9 [SECURITY]
  • Branch name: renovate/npm-hosted-git-info-vulnerability
  • Merge into: master
  • Upgrade hosted-git-info to 2.8.9
Update dependency http-proxy to 1.18.1 [SECURITY]
  • Branch name: renovate/npm-http-proxy-vulnerability
  • Merge into: master
  • Upgrade http-proxy to 1.18.1
Update dependency is-svg to 4.2.2 [SECURITY]
  • Branch name: renovate/npm-is-svg-vulnerability
  • Merge into: master
  • Upgrade is-svg to 4.2.2
Update dependency jquery to 3.5.0 [SECURITY]
  • Branch name: renovate/npm-jquery-vulnerability
  • Merge into: master
  • Upgrade jquery to 3.5.0
Update dependency kind-of to 6.0.3 [SECURITY]
  • Branch name: renovate/npm-kind-of-vulnerability
  • Merge into: master
  • Upgrade kind-of to 6.0.3
Update dependency lodash to 4.17.21 [SECURITY]
  • Branch name: renovate/npm-lodash-vulnerability
  • Merge into: master
  • Upgrade lodash to 4.17.21
Update dependency minimist to 1.2.3 [SECURITY]
  • Branch name: renovate/npm-minimist-vulnerability
  • Merge into: master
  • Upgrade minimist to 1.2.3
Update dependency node-fetch to 2.6.1 [SECURITY]
  • Branch name: renovate/npm-node-fetch-vulnerability
  • Merge into: master
  • Upgrade node-fetch to 2.6.1
Update dependency node-forge to 0.10.0 [SECURITY]
  • Branch name: renovate/npm-node-forge-vulnerability
  • Merge into: master
  • Upgrade node-forge to 0.10.0
Update dependency node-sass to 4.13.1 [SECURITY]
  • Branch name: renovate/npm-node-sass-vulnerability
  • Merge into: master
  • Upgrade node-sass to 4.13.1
Update dependency nth-check to 2.0.1 [SECURITY]
  • Branch name: renovate/npm-nth-check-vulnerability
  • Merge into: master
  • Upgrade nth-check to 2.0.1
Update dependency path-parse to 1.0.7 [SECURITY]
  • Branch name: renovate/npm-path-parse-vulnerability
  • Merge into: master
  • Upgrade path-parse to 1.0.7
Update dependency postcss to 7.0.36 [SECURITY]
  • Branch name: renovate/npm-postcss-vulnerability
  • Merge into: master
  • Upgrade postcss to 7.0.36
Update dependency serialize-javascript to 3.1.0 [SECURITY]
  • Branch name: renovate/npm-serialize-javascript-vulnerability
  • Merge into: master
  • Upgrade serialize-javascript to 3.1.0
Update dependency sockjs to 0.3.20 [SECURITY]
  • Branch name: renovate/npm-sockjs-vulnerability
  • Merge into: master
  • Upgrade sockjs to 0.3.20
Update dependency ssri to 6.0.2 [SECURITY]
  • Branch name: renovate/npm-ssri-vulnerability
  • Merge into: master
  • Upgrade ssri to 6.0.2
Update dependency tar to 4.4.18 [SECURITY]
  • Branch name: renovate/npm-tar-vulnerability
  • Merge into: master
  • Upgrade tar to 4.4.18
Update dependency trim-newlines to 3.0.1 [SECURITY]
  • Branch name: renovate/npm-trim-newlines-vulnerability
  • Merge into: master
  • Upgrade trim-newlines to 3.0.1
Update dependency url-parse to 1.5.2 [SECURITY]
  • Branch name: renovate/npm-url-parse-vulnerability
  • Merge into: master
  • Upgrade url-parse to 1.5.2
Update dependency websocket-extensions to 0.1.4 [SECURITY]
  • Branch name: renovate/npm-websocket-extensions-vulnerability
  • Merge into: master
  • Upgrade websocket-extensions to 0.1.4
Update dependency y18n to 4.0.1 [SECURITY]
  • Branch name: renovate/npm-y18n-vulnerability
  • Merge into: master
  • Upgrade y18n to 4.0.1
Update dependency yargs-parser to 13.1.2 [SECURITY]
  • Branch name: renovate/npm-yargs-parser-vulnerability
  • Merge into: master
  • Upgrade yargs-parser to 13.1.2
Pin dependencies
Update dependency fibers to v4.0.3
  • Schedule: ["at any time"]
  • Branch name: renovate/fibers-4.x
  • Merge into: master
  • Upgrade fibers to 4.0.3
Update dependency sass-loader to v8.0.2
  • Schedule: ["at any time"]
  • Branch name: renovate/sass-loader-8.x
  • Merge into: master
  • Upgrade sass-loader to 8.0.2
Update dependency babel-eslint to v10.1.0
  • Schedule: ["at any time"]
  • Branch name: renovate/babel-monorepo
  • Merge into: master
  • Upgrade babel-eslint to 10.1.0
Update dependency bootstrap to v4.6.1
  • Schedule: ["at any time"]
  • Branch name: renovate/bootstrap-4.x
  • Merge into: master
  • Upgrade bootstrap to 4.6.1
Update dependency bootstrap-vue to v2.21.2
  • Schedule: ["at any time"]
  • Branch name: renovate/bootstrap-vue-2.x
  • Merge into: master
  • Upgrade bootstrap-vue to 2.21.2
Update dependency core-js to v3.20.2
  • Schedule: ["at any time"]
  • Branch name: renovate/core-js-3.x
  • Merge into: master
  • Upgrade core-js to 3.20.2
Update dependency sass to v1.47.0
  • Schedule: ["at any time"]
  • Branch name: renovate/sass-1.x
  • Merge into: master
  • Upgrade sass to 1.47.0
Update dependency webpack to v4.46.0
  • Schedule: ["at any time"]
  • Branch name: renovate/webpack-4.x
  • Merge into: master
  • Upgrade webpack to 4.46.0
Update vue monorepo
Update dependency bootstrap to v5
  • Schedule: ["at any time"]
  • Branch name: renovate/bootstrap-5.x
  • Merge into: master
  • Upgrade bootstrap to 5.1.3
Update dependency eslint to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-8.x
  • Merge into: master
  • Upgrade eslint to 8.6.0
Update dependency eslint-plugin-vue to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-plugin-vue-8.x
  • Merge into: master
  • Upgrade eslint-plugin-vue to 8.2.0
Update dependency fibers to v5
  • Schedule: ["at any time"]
  • Branch name: renovate/fibers-5.x
  • Merge into: master
  • Upgrade fibers to 5.0.0
Update dependency sass-loader to v12
  • Schedule: ["at any time"]
  • Branch name: renovate/sass-loader-12.x
  • Merge into: master
  • Upgrade sass-loader to 12.4.0
Update dependency webpack to v5
  • Schedule: ["at any time"]
  • Branch name: renovate/webpack-5.x
  • Merge into: master
  • Upgrade webpack to 5.65.0

🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or spam the project. See docs for prhourlylimit for details.


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.


This PR has been generated by WhiteSource Renovate. View repository job log here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant