Skip to content
This repository has been archived by the owner on Mar 21, 2022. It is now read-only.

Configure Renovate #62

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Configure Renovate #62

wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link

@renovate renovate bot commented Jan 1, 2022

WhiteSource Renovate

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

  • package.json (npm)
  • .travis.yml (travis)

Configuration Summary

Based on the default config's presets, Renovate will:

  • Start dependency updates only once this onboarding PR is merged
  • Enable Renovate Dependency Dashboard creation
  • If semantic commits detected, use semantic commit type fix for dependencies and chore for all others
  • Ignore node_modules, bower_components, vendor and various test/tests directories
  • Autodetect whether to pin dependencies or maintain ranges
  • Rate limit PR creation to a maximum of two per hour
  • Limit to maximum 10 open PRs at any time
  • Group known monorepo packages together
  • Use curated list of recommended non-monorepo package groupings
  • Fix some problems with very old Maven commons versions
  • Ignore spring cloud 1.x releases
  • Ignore web3j 5.0.0 release
  • Ignore http4s digest-based 1.x milestones
  • Use node versioning for @types/node
  • Limit concurrent requests to reduce load on Repology servers until we can fix this properly, see issue 10133
  • Do not upgrade from Alpine stable to edge

🔡 Would you like to change the way Renovate is upgrading your dependencies? Simply edit the renovate.json in this branch with your custom config and the list of Pull Requests in the "What to Expect" section below will be updated the next time Renovate runs.


What to Expect

With your current configuration, Renovate will create 31 Pull Requests:

chore(deps): update dependency dot-prop to 4.2.1 [security]
  • Branch name: renovate/npm-dot-prop-vulnerability
  • Merge into: master
  • Upgrade dot-prop to 4.2.1
chore(deps): update dependency glob-parent to 5.1.2 [security]
  • Branch name: renovate/npm-glob-parent-vulnerability
  • Merge into: master
  • Upgrade glob-parent to 5.1.2
chore(deps): update dependency handlebars to 4.7.7 [security]
  • Branch name: renovate/npm-handlebars-vulnerability
  • Merge into: master
  • Upgrade handlebars to 4.7.7
chore(deps): update dependency hosted-git-info to 2.8.9 [security]
  • Branch name: renovate/npm-hosted-git-info-vulnerability
  • Merge into: master
  • Upgrade hosted-git-info to 2.8.9
chore(deps): update dependency https-proxy-agent to 2.2.3 [security]
  • Branch name: renovate/npm-https-proxy-agent-vulnerability
  • Merge into: master
  • Upgrade https-proxy-agent to 2.2.3
chore(deps): update dependency ini to 1.3.6 [security]
  • Branch name: renovate/npm-ini-vulnerability
  • Merge into: master
  • Upgrade ini to 1.3.6
chore(deps): update dependency js-yaml to 3.13.1 [security]
  • Branch name: renovate/npm-js-yaml-vulnerability
  • Merge into: master
  • Upgrade js-yaml to 3.13.1
chore(deps): update dependency lodash to 4.17.21 [security]
  • Branch name: renovate/npm-lodash-vulnerability
  • Merge into: master
  • Upgrade lodash to 4.17.21
chore(deps): update dependency lodash.template to 4.5.0 [security]
  • Branch name: renovate/npm-lodash.template-vulnerability
  • Merge into: master
  • Upgrade lodash.template to 4.5.0
chore(deps): update dependency marked to 4.0.10 [security]
  • Branch name: renovate/npm-marked-vulnerability
  • Merge into: master
  • Upgrade marked to 4.0.10
chore(deps): update dependency minimist to 1.2.3 [security]
  • Branch name: renovate/npm-minimist-vulnerability
  • Merge into: master
  • Upgrade minimist to 1.2.3
chore(deps): update dependency mixin-deep to 1.3.2 [security]
  • Branch name: renovate/npm-mixin-deep-vulnerability
  • Merge into: master
  • Upgrade mixin-deep to 1.3.2
chore(deps): update dependency node-fetch to 2.6.1 [security]
  • Branch name: renovate/npm-node-fetch-vulnerability
  • Merge into: master
  • Upgrade node-fetch to 2.6.1
chore(deps): update dependency npm to 6.14.6 [security]
  • Branch name: renovate/npm-npm-vulnerability
  • Merge into: master
  • Upgrade npm to 6.14.6
chore(deps): update dependency path-parse to 1.0.7 [security]
  • Branch name: renovate/npm-path-parse-vulnerability
  • Merge into: master
  • Upgrade path-parse to 1.0.7
chore(deps): update dependency semantic-release to 17.2.3 [security]
  • Branch name: renovate/npm-semantic-release-vulnerability
  • Merge into: master
  • Upgrade semantic-release to 17.2.3
chore(deps): update dependency semver-regex to 3.1.3 [security]
  • Branch name: renovate/npm-semver-regex-vulnerability
  • Merge into: master
  • Upgrade semver-regex to 3.1.3
chore(deps): update dependency set-value to 2.0.1 [security]
  • Branch name: renovate/npm-set-value-vulnerability
  • Merge into: master
  • Upgrade set-value to 2.0.1
chore(deps): update dependency trim-newlines to 3.0.1 [security]
  • Branch name: renovate/npm-trim-newlines-vulnerability
  • Merge into: master
  • Upgrade trim-newlines to 3.0.1
chore(deps): update dependency y18n to 4.0.1 [security]
  • Branch name: renovate/npm-y18n-vulnerability
  • Merge into: master
  • Upgrade y18n to 4.0.1
chore(deps): update dependency yargs-parser to 13.1.2 [security]
  • Branch name: renovate/npm-yargs-parser-vulnerability
  • Merge into: master
  • Upgrade yargs-parser to 13.1.2
chore(deps): pin dependencies
chore(deps): update dependency gulp to v4.0.2
  • Schedule: ["at any time"]
  • Branch name: renovate/gulp-4.x
  • Merge into: master
  • Upgrade gulp to 4.0.2
  • Upgrade @types/gulp to 4.0.9
chore(deps): update dependency gulp-tslint to v8.1.4
  • Schedule: ["at any time"]
  • Branch name: renovate/gulp-tslint-8.x
  • Merge into: master
  • Upgrade gulp-tslint to 8.1.4
chore(deps): update dependency semantic-release to v15.14.0
  • Schedule: ["at any time"]
  • Branch name: renovate/semantic-release-monorepo
  • Merge into: master
  • Upgrade semantic-release to 15.14.0
chore(deps): update dependency tslint to v5.20.1
  • Schedule: ["at any time"]
  • Branch name: renovate/tslint-5.x
  • Merge into: master
  • Upgrade tslint to 5.20.1
chore(deps): update dependency typescript to v3.9.10
  • Schedule: ["at any time"]
  • Branch name: renovate/typescript-3.x
  • Merge into: master
  • Upgrade typescript to 3.9.10
chore(deps): update dependency semantic-release to v19
  • Schedule: ["at any time"]
  • Branch name: renovate/major-semantic-release-monorepo
  • Merge into: master
  • Upgrade semantic-release to 19.0.2
chore(deps): update dependency typescript to v4
  • Schedule: ["at any time"]
  • Branch name: renovate/typescript-4.x
  • Merge into: master
  • Upgrade typescript to 4.6.2
fix(deps): update dependency compare-versions to v4
  • Schedule: ["at any time"]
  • Branch name: renovate/compare-versions-4.x
  • Merge into: master
  • Upgrade compare-versions to ^4.0.0
fix(deps): update dependency tslint-config-standard to v9
  • Schedule: ["at any time"]
  • Branch name: renovate/tslint-config-standard-9.x
  • Merge into: master
  • Upgrade tslint-config-standard to ^9.0.0

🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or spam the project. See docs for prhourlylimit for details.


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.


This PR has been generated by WhiteSource Renovate. View repository job log here.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant