Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 5, 2024

Bumps boxen from 5.1.2 to 8.0.1.

Release notes

Sourced from boxen's releases.

v8.0.1

  • Downgrade cli-boxes (#102) 3cf4ea9
    • It turned out to not be compatible with the currently targeted Node.js version.

sindresorhus/boxen@v8.0.0...v8.0.1

v8.0.0

Breaking

  • Require Node.js 18 (#96) 3a9c751

Improvements

  • Update dependencies (#97) 8f6ed57

sindresorhus/boxen@v7.1.1...v8.0.0

v7.1.1

  • Fix borderStyle: 'none' (#89) ef5c987

sindresorhus/boxen@v7.1.0...v7.1.1

v7.1.0

  • Allow border to be optional (#88) 1f9c8e2

sindresorhus/boxen@v7.0.2...v7.1.0

v7.0.2

  • Fix the Spacing TypeScript type (#86) cb31d0d

sindresorhus/boxen@v7.0.1...v7.0.2

v7.0.1

  • Use newline as line separator in all cases (#81) a94569b

sindresorhus/boxen@v7.0.0...v7.0.1

v7.0.0

Breaking

  • Require Node.js 14 c393023

Improvements

  • Add height and fullscreen option (#75) d6b4b32

sindresorhus/boxen@v6.2.1...v7.0.0

v6.2.1

  • Update dependencies 5f01309

... (truncated)

Commits

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Aug 5, 2024
@socket-security
Copy link

socket-security bot commented Aug 5, 2024

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/boxen@8.0.1 None +8 524 kB sindresorhus
npm/d3@7.9.0 Transitive: filesystem, network, shell +32 3.82 MB mbostock

🚮 Removed packages: npm/boxen@5.1.2)

View full report↗︎

@relativeci
Copy link

relativeci bot commented Aug 5, 2024

#11377 Bundle Size — 366.84KiB (0%).

13422cd(current) vs 3d6341e master#11375(baseline)

Warning

Bundle contains 2 duplicate packages – View duplicate packages

Bundle metrics  no changes
                 Current
#11377
     Baseline
#11375
No change  Initial JS 324.19KiB 324.19KiB
No change  Initial CSS 42.65KiB 42.65KiB
Change  Cache Invalidation 0% 28.08%
No change  Chunks 3 3
No change  Assets 4 4
No change  Modules 668 668
No change  Duplicate Modules 0 0
No change  Duplicate Code 0% 0%
No change  Packages 36 36
No change  Duplicate Packages 1 1
Bundle size by type  no changes
                 Current
#11377
     Baseline
#11375
No change  JS 324.19KiB 324.19KiB
No change  CSS 42.65KiB 42.65KiB

Bundle analysis reportBranch dependabot/npm_and_yarn/master/b...Project dashboard


Generated by RelativeCIDocumentationReport issue

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/master/boxen-8.0.1 branch 2 times, most recently from 8b50f99 to 263f640 Compare August 20, 2024 17:04
Bumps [boxen](https://github.com/sindresorhus/boxen) from 5.1.2 to 8.0.1.
- [Release notes](https://github.com/sindresorhus/boxen/releases)
- [Commits](sindresorhus/boxen@v5.1.2...v8.0.1)

---
updated-dependencies:
- dependency-name: boxen
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/master/boxen-8.0.1 branch from 263f640 to 13422cd Compare August 26, 2024 17:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant