Skip to content

Bump dependabot-omnibus from 0.118.8 to 0.137.2#14

Closed
dependabot[bot] wants to merge 1 commit intodevelopfrom
dependabot/bundler/dependabot-omnibus-0.137.2
Closed

Bump dependabot-omnibus from 0.118.8 to 0.137.2#14
dependabot[bot] wants to merge 1 commit intodevelopfrom
dependabot/bundler/dependabot-omnibus-0.137.2

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot Bot commented on behalf of github Mar 17, 2021

Bumps dependabot-omnibus from 0.118.8 to 0.137.2.

Changelog

Sourced from dependabot-omnibus's changelog.

v0.137.2, 16 March 2021

  • Bundler: Fix permission error when vendoring gems
  • Bump friendsofphp/php-cs-fixer in /composer/helpers/v1
  • Bump friendsofphp/php-cs-fixer in /composer/helpers/v2

v0.137.1, 15 March 2021

  • Bundler: Install dependabot-core's gems using Bundler v2 (unused for updates)

v0.137.0, 15 March 2021

  • Bump npm from 7.5.4 to 7.6.1
  • Python: Add python versions 3.9.2, 3.8.8, 3.7.10 and 3.6.13
  • Bundler: Run v1 native helpers with bundler v1
  • Bump composer/composer from 2.0.10 to 2.0.11 in /composer/helpers/v2
  • Bump eslint-config-prettier from 8.0.0 to 8.1.0 in /npm_and_yarn/helpers
  • Bump phpstan/phpstan from 0.12.78 to 0.12.81 in /composer/helpers/v2
  • Bump phpstan/phpstan from 0.12.78 to 0.12.81 in /composer/helpers/v1

v0.136.0, 8 March 2021

  • Bundler: Run Bundler v1 native helpers with an explicit version setting the stage for Bundler v2 support (take 2) #3223
  • Bundler: Fix gemspec sanitization bug when heredoc has methods chained onto it #3220

v0.135.0, 4 March 2021

v0.134.2, 3 March 2021

  • Revert: Run Bundler v1 native helpers with an explicit version
  • Update rubocop requirement from ~> 1.10.0 to ~> 1.11.0 in /common
  • Bump @npmcli/arborist from 2.2.4 to 2.2.6 in /npm_and_yarn/helpers

v0.134.1, 2 March 2021

  • Run Bundler v1 native helpers with an explicit version setting the stage for Bundler v2 support

v0.134.0, 1 March 2021

  • Introduce Dependabot::PullRequestCreator::Message as an alternative to Dependabot::PullRequestCreator::MessageBuilder
  • Test: convert Bundler specs to projects
  • Test: fix npm6 fixture
  • Bump composer/composer from 2.0.9 to 2.0.10 in /composer/helpers/v2
  • Bump @npmcli/arborist from 2.2.3 to 2.2.4 in /npm_and_yarn/helpers

... (truncated)

Commits
  • 0601432 Merge pull request #3284 from dependabot/v0.137.2-release-notes
  • 9a9fca8 v0.137.2
  • 1a45dba Merge pull request #3258 from dependabot/dependabot/composer/composer/helpers...
  • dee0a27 Merge pull request #3259 from dependabot/dependabot/composer/composer/helpers...
  • b16676e Merge pull request #3280 from dependabot/feelepxyz/fix-gem-home
  • ac017df Bundler: Fix permission error when vendoring gems
  • 564ca68 Merge pull request #3273 from dependabot/v0.137.1-release-notes
  • f95d13e v0.137.1
  • b07a2dc Merge pull request #3271 from dependabot/feelepxyz/install-bundler2
  • 491997a Bump friendsofphp/php-cs-fixer in /composer/helpers/v1
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Mar 17, 2021
@dependabot @github
Copy link
Copy Markdown
Author

dependabot Bot commented on behalf of github Mar 18, 2021

Superseded by #15.

@dependabot dependabot Bot closed this Mar 18, 2021
@dependabot dependabot Bot deleted the dependabot/bundler/dependabot-omnibus-0.137.2 branch March 18, 2021 07:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants