Skip to content

Conversation

@dependabot-preview
Copy link
Contributor

Bumps uuid from 3.4.0 to 7.0.2.

Changelog

Sourced from uuid's changelog.

7.0.2 (2020-03-04)

Bug Fixes

7.0.1 (2020-02-25)

Bug Fixes

  • clean up esm builds for node and browser (#383) (59e6a49)
  • provide browser versions independent from module system (#380) (4344a22), closes #378

7.0.0 (2020-02-24)

⚠ BREAKING CHANGES

  • The default export, which used to be the v4() method but which was already discouraged in v3.x of this library, has been removed.
  • Explicitly note that deep imports of the different uuid version functions are deprecated and no longer encouraged and that ECMAScript module named imports should be used instead. Emit a deprecation warning for people who deep-require the different algorithm variants.
  • Remove builtin support for insecure random number generators in the browser. Users who want that will have to supply their own random number generator function.
  • Remove support for generating v3 and v5 UUIDs in Node.js<4.x
  • Convert code base to ECMAScript Modules (ESM) and release CommonJS build for node and ESM build for browser bundlers.

Features

  • add UMD build to npm package (#357) (4e75adf), closes #345
  • add various es module and CommonJS examples (b238510)
  • ensure that docs are up-to-date in CI (ee5e77d)
  • hybrid CommonJS & ECMAScript modules build (a3f078f)
  • remove insecure fallback random number generator (3a5842b), closes #173
  • remove support for pre Node.js v4 Buffer API (#356) (b59b5c5)
  • rename repository to github:uuidjs/uuid (#351) (c37a518), closes #338

Bug Fixes

  • add deep-require proxies for local testing and adjust tests (#365) (7fedc79)
  • add note about removal of default export (#372) (12749b7), closes #370
  • deprecated deep requiring of the different algorithm versions (#361) (c0bdf15)
... (truncated)
Commits
  • 4b61be0 chore(release): 7.0.2
  • 1a300f1 docs: directly link to new react-native section (#397)
  • f9bb57f chore: add webworker to not supported section (#395)
  • 428b9e0 docs: make react native polyfill docs more explicit (#396)
  • 8bf2a20 fix: make access to msCrypto consistent (#393)
  • bb2c8e4 fix: simplify link in deprecation warning (#391)
  • 84e6733 docs: move react-native docs to separate section (#387)
  • 719e1b4 docs: add information on usage from React Native (#385)
  • 44f2f86 fix: update links to match content in readme (#386)
  • 3f78220 chore(release): 7.0.1
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

Dependabot will not automatically merge this PR because it includes an out-of-range update to a production dependency.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language
  • @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot dashboard:

  • Update frequency (including time of day and day of week)
  • Pull request limits (per update run and/or open at any time)
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

Bumps [uuid](https://github.com/uuidjs/uuid) from 3.4.0 to 7.0.2.
- [Release notes](https://github.com/uuidjs/uuid/releases)
- [Changelog](https://github.com/uuidjs/uuid/blob/master/CHANGELOG.md)
- [Commits](uuidjs/uuid@v3.4.0...v7.0.2)

Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
@dependabot-preview dependabot-preview bot added the dependencies Pull requests that update a dependency file label Mar 5, 2020
@dependabot-preview
Copy link
Contributor Author

Superseded by #165.

@dependabot-preview dependabot-preview bot deleted the dependabot/npm_and_yarn/uuid-7.0.2 branch April 1, 2020 05:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant