🤖 Dependabot's core logic for creating update PRs.
MIT License
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.257.0...v0.258.0
Published by honeyankit 5 months ago
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.256.0...v0.257.0
Published by GarryHurleyJr 6 months ago
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.255.0...v0.256.0
Published by raj-meka 6 months ago
packages.config
by @brettfo in https://github.com/dependabot/dependabot-core/pull/9542
simplecov
to track test coverage by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9595
Dependabot::NpmAndYarn::FileUpdater::NpmrcBuilder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9637
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.254.0...v0.255.0
Published by bdragon 6 months ago
version
parameter to be nilable in Dependabot::NpmAndYarn::FileParser.semver_version_for
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9390
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.253.0...v0.254.0
Published by pavera 6 months ago
global.json
when initializing MSBuild by @brettfo in https://github.com/dependabot/dependabot-core/pull/9511
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.252.0...v0.253.0
Published by Nishnha 7 months ago
:none
by @Nishnha in https://github.com/dependabot/dependabot-core/pull/4822
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.251.0...v0.252.0
Published by jurre 7 months ago
Dependency#previous_requirements
before passing to T.must
by @bdragon in https://github.com/dependabot/dependabot-core/pull/9428
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.250.0...v0.251.0
Published by jakecoffman 7 months ago
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.249.0...v0.250.0
Published by landongrindheim 7 months ago
Style/AccessorGrouping
to separated
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9336
gradle
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9346
go_modules
code with Sorbet by @ByAgenT in https://github.com/dependabot/dependabot-core/pull/9338
pipfile
to plette
lib by @jeffwidman in https://github.com/dependabot/dependabot-core/pull/8627
@target_version
can be String
or Dependabot::Nuget::Version
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9352
NoMethodError
in group update creation by @bdragon in https://github.com/dependabot/dependabot-core/pull/9366
package_version
may be nil by @bdragon in https://github.com/dependabot/dependabot-core/pull/9365
global.json
from repo to affect MSBuild discovery by @brettfo in https://github.com/dependabot/dependabot-core/pull/9374
require 'sorbet-runtime'
where missing by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9379
packageSourceMapping
from NuGet.Config
by @brettfo in https://github.com/dependabot/dependabot-core/pull/9381
group
in PR titles twice by @jurre in https://github.com/dependabot/dependabot-core/pull/9384
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.248.0...v0.249.0
Published by honeyankit 7 months ago
Dependabot::Nuget::UpdateChecker::VersionFinder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9284
toml
an explicit requirement by @jeffwidman in https://github.com/dependabot/dependabot-core/pull/8626
nuget
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9293
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.247.0...v0.248.0
Published by jakecoffman 8 months ago
todo.rbi
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9177
registry
configured by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9159
typed: true
for cargo
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9194
.nupkg
by @brettfo in https://github.com/dependabot/dependabot-core/pull/9204
github_actions
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9186
T::Set
from NuGetClient.get_package_versions
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9180
source_url
in IssueLinker
when generating PR text by @bdragon in https://github.com/dependabot/dependabot-core/pull/9220
rubocop-rspec
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9206
on
as a YAML key by @landongrindheim in https://github.com/dependabot/dependabot-core/pull/9229
NuGet.Client
from 6.8.0.131
to 6.9.1.3
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9222
Include
attribute is present on a <ProjectReference>
node by @brettfo in https://github.com/dependabot/dependabot-core/pull/9238
Gem::Version
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9232
nuget
file_fetcher, file_parser, and file_updater classes. by @JoeRobich in https://github.com/dependabot/dependabot-core/pull/9225
branch
for NuGet.Client
submodule by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9223
requirements_update_strategy
is String
not Symbol
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9179
nuget
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9244
files
to be nilable in solo_strategy
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9280
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.246.0...v0.247.0
Published by bdragon 8 months ago
Dependabot::Clients::Bitbucket
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9113
Dependabot::Clients::CodeCommit
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9121
Dependabot::Clients::GitHubWithRetries
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9122
Dependabot::Clients::GitLabWithRetries
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9129
Dependabot::PullRequestCreator::MessageBuilder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9130
Dependabot::PullRequestUpdater::Gitlab
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9132
Dependabot::PullRequestCreator::Azure
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9131
Dependabot::PullRequestCreator::CodeCommit
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9141
Dependabot::PullRequestCreator::Bitbucket
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9140
Sorbet/TrueSigil
rule in composer
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9139
Sorbet/TrueSigil
rule in elm
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9138
Dependabot::UpdateCheckers::Base
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8947
Sorbet/TrueSigil
rule in github_actions
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9137
nuget restore
if the first update operation failed by @brettfo in https://github.com/dependabot/dependabot-core/pull/9157
Dependabot::PullRequestCreator::GitHub
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9154
Dependabot::PullRequestCreator::Gitlab
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9155
Dependabot::PullRequestUpdater::Azure
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9163
Dependabot::PullRequestUpdater::GitHub
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9165
typed: strict
for common
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9174
typed: true
for docker
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9175
typed: true
for silent
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9176
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.245.0...v0.246.0
Published by Nishnha 8 months ago
dependencyResolutionManagement
blocks by @eikes in https://github.com/dependabot/dependabot-core/pull/7260
Dependabot::Clients::BitbucketWithRetries
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9087
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.244.0...v0.245.0
Published by honeyankit 8 months ago
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.243.0...v0.244.0
Published by landongrindheim 8 months ago
sentry-raven
to sentry-ruby
" by @jakecoffman in https://github.com/dependabot/dependabot-core/pull/8874
.
in the name by @danwkennedy in https://github.com/dependabot/dependabot-core/pull/8875
NuGet.Confing
by @brettfo in https://github.com/dependabot/dependabot-core/pull/8879
Dependabot::PullRequestCreator::PrNamePrefixer
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8866
Dependabot::PullRequestCreator::MessageBuilder::IssueLinker
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8865
.nuspec
files from nuget and azure devops by @brettfo in https://github.com/dependabot/dependabot-core/pull/8892
sentry-raven
to sentry-ruby
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8878
Dependabot::MetadataFinders::CommitsFinder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8893
Dependabot::MetadataFinders::Base::ReleaseFinder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8897
Dependabot::MetadataFinders::Base::ChangelogPruner
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8902
.nuspec
dependency group has a targetFramework
attribute. by @brettfo in https://github.com/dependabot/dependabot-core/pull/8915
Dependabot::PullRequestCreator::MessageBuilder::Metadata::Presenter
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8942
sentry-opentelemetry
and configure when OTel is enabled by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8935
Dependabot::GitSubmodules
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8970
Dependabot::Devcontainers
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8982
Condition="false"
on Microsoft.WebApplication.targets by @brettfo in https://github.com/dependabot/dependabot-core/pull/8946
submodule_path
to be nilable by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8996
Dependabot::Python::Version
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9002
Dependabot::Bundler::FileFetcher
to by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8997
.nupkg
contents by @brettfo in https://github.com/dependabot/dependabot-core/pull/9022
Dependabot::MetadataFinders::Base::ChangelogFinder
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9029
Dependabot::Clients::Azure
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/9042
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.242.1...v0.243.0
Published by deivid-rodriguez 9 months ago
Dependabot::FileFetchers::Base::DependencySet
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8791
.
in the middle of the name by @danwkennedy in https://github.com/dependabot/dependabot-core/pull/8862
excon
dependency range by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8850
require
related gems when initializing OpenTelemetry instrumentation by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8851
Directory.Packages.props
by @brettfo in https://github.com/dependabot/dependabot-core/pull/8842
sentry-raven
to sentry-ruby
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8818
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.242.0...v0.242.1
Published by deivid-rodriguez 9 months ago
Dependabot::SecurityAdvisory
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8792
devcontainers
ecosystem by @joshspicer in https://github.com/dependabot/dependabot-core/pull/8445
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.241.0...v0.242.0
Published by jakecoffman 9 months ago
Dependabot::GitCommitChecker
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8789
.csproj
by @brettfo in https://github.com/dependabot/dependabot-core/pull/8783
Dependabot::FileParsers::Base
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8794
Dependabot::MetadataFinders::Base
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8774
Dependabot::PullRequestCreator::BranchNamer
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8790
version
to be String
or Gem::Version
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8809
helpers
folder into dependabot-nuget
gem by @trejjam in https://github.com/dependabot/dependabot-core/pull/8589
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.240.0...v0.241.0
Published by bdragon 10 months ago
nuget.config
when it's further up-directory from a project by @brettfo in https://github.com/dependabot/dependabot-core/pull/8722
package-json.lock
is not parseable by @deivid-rodriguez in https://github.com/dependabot/dependabot-core/pull/8743
packageManager
field in package.json
when unparseable by @deivid-rodriguez in https://github.com/dependabot/dependabot-core/pull/8744
Dependabot::PullRequestCreator
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8729
Dependabot::PullRequestUpdater
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8730
Dependabot::RegistryClient
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8736
Dependabot::Config::FileFetcher
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8737
NuGet.Config
before invoking dotnet/nuget tools by @brettfo in https://github.com/dependabot/dependabot-core/pull/8748
Dependabot::Version
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8727
Dependabot::PullRequestCreator::Labeler
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8758
Dependabot::BranchNamer::DependencyGroupStrategy
by @JamieMagee in https://github.com/dependabot/dependabot-core/pull/8770
bin/bump-version.rb
script to also handle root lockfile by @deivid-rodriguez in https://github.com/dependabot/dependabot-core/pull/8776
Full Changelog: https://github.com/dependabot/dependabot-core/compare/v0.239.0...v0.240.0