Bump the production-dependencies group with 6 updates#103
Merged
danielbergholz merged 1 commit intoJun 2, 2025
Conversation
Bumps the production-dependencies group with 6 updates: | Package | From | To | | --- | --- | --- | | [bandit](https://github.com/mtrudel/bandit) | `1.6.11` | `1.7.0` | | [esbuild](https://github.com/phoenixframework/esbuild) | `0.9.0` | `0.10.0` | | [heroicons](https://github.com/tailwindlabs/heroicons) | `v2.1.3` | `v2.2.0` | | [phoenix_ecto](https://github.com/phoenixframework/phoenix_ecto) | `4.6.3` | `4.6.4` | | [phoenix_live_view](https://github.com/phoenixframework/phoenix_live_view) | `1.0.10` | `1.0.14` | | [swoosh](https://github.com/swoosh/swoosh) | `1.19.0` | `1.19.1` | Updates `bandit` from 1.6.11 to 1.7.0 - [Changelog](https://github.com/mtrudel/bandit/blob/main/CHANGELOG.md) - [Commits](mtrudel/bandit@1.6.11...1.7.0) Updates `esbuild` from 0.9.0 to 0.10.0 - [Changelog](https://github.com/phoenixframework/esbuild/blob/main/CHANGELOG.md) - [Commits](phoenixframework/esbuild@v0.9.0...v0.10.0) Updates `heroicons` from v2.1.3 to v2.2.0 - [Release notes](https://github.com/tailwindlabs/heroicons/releases) - [Changelog](https://github.com/tailwindlabs/heroicons/blob/master/CHANGELOG.md) - [Commits](tailwindlabs/heroicons@01c786b...0435d4c) Updates `phoenix_ecto` from 4.6.3 to 4.6.4 - [Changelog](https://github.com/phoenixframework/phoenix_ecto/blob/main/CHANGELOG.md) - [Commits](https://github.com/phoenixframework/phoenix_ecto/commits) Updates `phoenix_live_view` from 1.0.10 to 1.0.14 - [Changelog](https://github.com/phoenixframework/phoenix_live_view/blob/v1.0.14/CHANGELOG.md) - [Commits](phoenixframework/phoenix_live_view@v1.0.10...v1.0.14) Updates `swoosh` from 1.19.0 to 1.19.1 - [Release notes](https://github.com/swoosh/swoosh/releases) - [Changelog](https://github.com/swoosh/swoosh/blob/main/CHANGELOG.md) - [Commits](swoosh/swoosh@v1.19.0...v1.19.1) --- updated-dependencies: - dependency-name: bandit dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: esbuild dependency-version: 0.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: heroicons dependency-version: 0435d4ca364a608cc75e2f8683d374e55abbae26 dependency-type: direct:production dependency-group: production-dependencies - dependency-name: phoenix_ecto dependency-version: 4.6.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: phoenix_live_view dependency-version: 1.0.14 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: swoosh dependency-version: 1.19.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the production-dependencies group with 6 updates:
1.6.111.7.00.9.00.10.0v2.1.3v2.2.04.6.34.6.41.0.101.0.141.19.01.19.1Updates
banditfrom 1.6.11 to 1.7.0Changelog
Sourced from bandit's changelog.
Commits
7e8609aVersion bump to 1.7.08444026Automate the publishing of hex packagesa6aca4eAdd support forPlug.Conn.Adapter.sock_dataand `Plug.Conn.Adapter.ssl_data...7fcb133Bump thousand_island from 1.3.13 to 1.3.14 (#498)2af82bdStreamline keepalive logic, respect server-sent connection: close headers (#495)0ac9859Merge received HTTP/2 settings with existing ones (#494)5092d59Bump ex_doc from 0.37.3 to 0.38.1 (#491)1810aa9Bump thousand_island from 1.3.12 to 1.3.13 (#488)43bf872Bump credo from 1.7.11 to 1.7.12 (#487)b31059dLook up connection in a safe mannerUpdates
esbuildfrom 0.9.0 to 0.10.0Changelog
Sourced from esbuild's changelog.
Commits
86f4304release v0.10.0c891ea2Merge pull request #78 from phoenixframework/sd-path-sep6f8b4dfjoin all listse818a27update CI809c25fsupport passing NODE_PATH as listUpdates
heroiconsfrom v2.1.3 to v2.2.0Release notes
Sourced from heroicons's releases.
Changelog
Sourced from heroicons's changelog.
Commits
0435d4c2.2.0f327cbeAdd React 19 support (#1247)56c073cUpdate changelog64e2368Remove clip-path from 20/arrow-left-circle (#1211)ad0ad1f2.1.558d511eAdd new icons (#1204)c1b192b2.1.4e2e487fMake sure calls toforwardRefare marked as pure (#1192)cafc7d6usesize-*instead ofw-* h-*(#1182)9a17872Update README.md (#1167)Updates
phoenix_ectofrom 4.6.3 to 4.6.4Changelog
Sourced from phoenix_ecto's changelog.
Commits
Updates
phoenix_live_viewfrom 1.0.10 to 1.0.14Changelog
Sourced from phoenix_live_view's changelog.
Commits
34e0634release v1.0.14cb37eb1Update assets9c8be3ebackport #38218d41712backport #38161c4cec5release v1.0.1311c9990Update form-bindings.md to add a note about known limitations of phx-disable-...8bca186Add section for preventing form submission in the form bindings guide (#3798)f29bbc5Improve doc links betweensasync result/1andassign_async/4(#3803)1ab79c9fix live_reload_test on OTP 28a819547Update assetsUpdates
swooshfrom 1.19.0 to 1.19.1Release notes
Sourced from swoosh's releases.
Changelog
Sourced from swoosh's changelog.
Commits
6adb136v1.19.1690dec7bump styles22620c5Bump mime from 2.0.6 to 2.0.7 (#1038)855dea1Bump ex_doc from 0.38.0 to 0.38.1 (#1037)308f9dcBump ex_doc from 0.37.3 to 0.38.0 (#1036)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions