这是indexloc提供的服务,不要输入任何密码
Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Oct 3, 2024

Bumps winston-transport from 4.4.0 to 4.8.0.

Release notes

Sourced from winston-transport's releases.

v4.8.0

  • Bump readable-stream from 3.6.0 to 4.5.2 (#201) 000b11f
  • Bump nyc from 17.0.0 to 17.1.0 (#243) 7e7dbc6
  • Bump mocha from 10.6.0 to 10.7.3 (#233) d85058c
  • Bump @​types/node from 20.14.10 to 22.6.0 (#241) f721b63
  • Bump eslint from 9.6.0 to 9.11.0 (#242) ff4f65e
  • fix tests (#244) fb8383e

winstonjs/winston-transport@v4.7.1...v4.8.0

v4.7.1

  • update dependencies 5b4d9bf
  • Bump mocha from 10.2.0 to 10.4.0 (#218) 17feb48
  • Bump eslint from 8.56.0 to 8.57.0 (#213) 719a76b
  • Bump @​types/node from 20.11.10 to 20.12.7 (#221) c30789a

winstonjs/winston-transport@v4.7.0...v4.7.1

v4.7.0

  • Resolve circular dependency issues downstream in Winston (#207) 377285d
  • Bump actions/checkout from 3 to 4 (#182) 66e8fdb
  • Bump deep-equal from 2.2.2 to 2.2.3 (#190) 5a5a0ca
  • Bump rimraf from 3.0.2 to 5.0.5 (#181) 5c14025
  • Bump actions/setup-node from 3 to 4 (#185) 5cefa55
  • Bump eslint from 8.51.0 to 8.56.0 (#199) aee4f5f
  • Bump @​types/node from 20.8.6 to 20.11.10 (#206) 0a134d3
  • Bump @​babel/traverse from 7.10.3 to 7.23.2 (#180) 7bbaf43

winstonjs/winston-transport@v4.6.0...v4.7.0

v4.6.0

  • Bump deep-equal from 2.0.5 to 2.2.2 (#178) a6d22ea
  • Update dependencies and increase minimum node engine to 12 b81a3dc
  • Update CI node versions to match winston 35d171a
  • Bump eslint from 8.25.0 to 8.35.0 (#176) 80ba040
  • Bump @​types/node from 18.11.0 to 18.14.6 (#177) aefef19
  • Bump decode-uri-component from 0.2.0 to 0.2.2 (#159) 70e5b8b
  • Bump eslint from 8.16.0 to 8.25.0 (#148) 0e5e4c0
  • Bump mocha from 10.0.0 to 10.1.0 (#150) 760fe66
  • Bump @​types/node from 17.0.36 to 18.11.0 (#151) 09f7424
  • Bump logform from 2.4.1 to 2.4.2 (#126) 29684d1
  • Bump logform from 2.4.0 to 2.4.1 (#122) 51baf61
  • Bump @​types/node from 17.0.21 to 17.0.36 (#115) fdf7ccc
  • Bump eslint from 8.10.0 to 8.16.0 (#114) 193154a
  • Bump mocha from 9.2.1 to 10.0.0 (#109) 8de37e4
  • Bump minimist from 1.2.5 to 1.2.6 (#104) c4d1124
  • Bump actions/setup-node from 2 to 3 (#95) 8edbd94
  • Bump @​types/node from 17.0.15 to 17.0.21 (#94) 9cbf51f
  • Bump eslint from 8.8.0 to 8.10.0 (#93) f240c35
  • Bump mocha from 9.2.0 to 9.2.1 (#91) 49e2c8c

... (truncated)

Changelog

Sourced from winston-transport's changelog.

CHANGELOG

4.5.0 (2022/02/05)

4.4.1 (2021/12/14)

  • #44 Add handleRejections to types.
  • #60 Exclude unnecessary files from npm package
  • #45 #58 Update dependencies.
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [winston-transport](https://github.com/winstonjs/winston-transport) from 4.4.0 to 4.8.0.
- [Release notes](https://github.com/winstonjs/winston-transport/releases)
- [Changelog](https://github.com/winstonjs/winston-transport/blob/master/CHANGELOG.md)
- [Commits](winstonjs/winston-transport@v4.4.0...v4.8.0)

---
updated-dependencies:
- dependency-name: winston-transport
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Oct 3, 2024

The following labels could not be found: npm.

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Oct 3, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant