Skip to content

Conversation

@dependabot-preview
Copy link
Contributor

@dependabot-preview dependabot-preview bot commented Apr 1, 2020

Bumps uuid from 3.4.0 to 7.0.3.

Changelog

Sourced from uuid's changelog.

7.0.3 (2020-03-31)

Bug Fixes

  • make deep require deprecation warning work in browsers (#409) (4b71107), closes #408

7.0.2 (2020-03-04)

Bug Fixes

7.0.1 (2020-02-25)

Bug Fixes

  • clean up esm builds for node and browser (#383) (59e6a49)
  • provide browser versions independent from module system (#380) (4344a22), closes #378

7.0.0 (2020-02-24)

⚠ BREAKING CHANGES

  • The default export, which used to be the v4() method but which was already discouraged in v3.x of this library, has been removed.
  • Explicitly note that deep imports of the different uuid version functions are deprecated and no longer encouraged and that ECMAScript module named imports should be used instead. Emit a deprecation warning for people who deep-require the different algorithm variants.
  • Remove builtin support for insecure random number generators in the browser. Users who want that will have to supply their own random number generator function.
  • Remove support for generating v3 and v5 UUIDs in Node.js<4.x
  • Convert code base to ECMAScript Modules (ESM) and release CommonJS build for node and ESM build for browser bundlers.

Features

  • add UMD build to npm package (#357) (4e75adf), closes #345
  • add various es module and CommonJS examples (b238510)
  • ensure that docs are up-to-date in CI (ee5e77d)
  • hybrid CommonJS & ECMAScript modules build (a3f078f)
  • remove insecure fallback random number generator (3a5842b), closes #173
  • remove support for pre Node.js v4 Buffer API (#356) (b59b5c5)
  • rename repository to github:uuidjs/uuid (#351) (c37a518), closes #338
... (truncated)
Commits
  • 4fcd881 chore(release): 7.0.3
  • 4b71107 fix: make deep require deprecation warning work in browsers (#409)
  • 8977966 chore(deps): bump acorn from 6.4.0 to 6.4.1 in /examples/node-webpack (#407)
  • a3d048b chore(deps): bump acorn from 6.4.0 to 6.4.1 (#405)
  • 0250358 chore(deps): bump acorn from 6.4.0 to 6.4.1 in /examples/browser-webpack (#406)
  • d4cf657 chore: upgrade bundlewatch (#404)
  • ee039ee chore: remove unused devDependencies and upgrade remaining (#401)
  • ba65bd1 test: use webdriverio (#399)
  • 4b61be0 chore(release): 7.0.2
  • 1a300f1 docs: directly link to new react-native section (#397)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

Dependabot will not automatically merge this PR because it includes an out-of-range update to a production dependency.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language
  • @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot dashboard:

  • Update frequency (including time of day and day of week)
  • Pull request limits (per update run and/or open at any time)
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

@dependabot-preview dependabot-preview bot added the dependencies Pull requests that update a dependency file label Apr 1, 2020
@dependabot-preview dependabot-preview bot force-pushed the dependabot/npm_and_yarn/uuid-7.0.3 branch 4 times, most recently from 58e9398 to 88cf3f9 Compare April 13, 2020 05:40
@dependabot-preview dependabot-preview bot force-pushed the dependabot/npm_and_yarn/uuid-7.0.3 branch 2 times, most recently from 3877a75 to 79b4ebd Compare April 14, 2020 05:26
@dependabot-preview dependabot-preview bot force-pushed the dependabot/npm_and_yarn/uuid-7.0.3 branch 2 times, most recently from d162940 to 421ae52 Compare April 24, 2020 05:33
@dependabot-preview dependabot-preview bot force-pushed the dependabot/npm_and_yarn/uuid-7.0.3 branch from 421ae52 to 0e51048 Compare April 29, 2020 05:30
Bumps [uuid](https://github.com/uuidjs/uuid) from 3.4.0 to 7.0.3.
- [Release notes](https://github.com/uuidjs/uuid/releases)
- [Changelog](https://github.com/uuidjs/uuid/blob/master/CHANGELOG.md)
- [Commits](uuidjs/uuid@v3.4.0...v7.0.3)

Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
@dependabot-preview dependabot-preview bot force-pushed the dependabot/npm_and_yarn/uuid-7.0.3 branch from 0e51048 to 28262bb Compare April 29, 2020 05:31
@dependabot-preview
Copy link
Contributor Author

Superseded by #197.

@dependabot-preview dependabot-preview bot deleted the dependabot/npm_and_yarn/uuid-7.0.3 branch April 30, 2020 05:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant