core
core copied to clipboard
Bump @metamask/auto-changelog from 2.6.0 to 2.6.1
Bumps @metamask/auto-changelog from 2.6.0 to 2.6.1.
Release notes
Sourced from @metamask/auto-changelog's releases.
2.6.1
Fixed
- When fetching remote tags, order by date to account for miniscule time differences between tags created within automated tests (#113)
Changelog
Sourced from @metamask/auto-changelog's changelog.
[2.6.1]
Fixed
- When fetching remote tags, order by date to account for miniscule time differences between tags created within automated tests (#113)
Commits
1c931ec2.6.1 (#114)d0719d1Account for tiny time differences between commits (#113)- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
@dependabot rebase
@dependabot recreate
Socket Security Report
Dependency issues detected. If you merge this pull request, you will not be alerted to the instances of these issues again.
📜 New install scripts detected
A dependency change in this PR is introducing new install scripts to your install step.
| Package | Script field | Location |
|---|---|---|
| [email protected] (added) | postinstall |
package.json |
| [email protected] (added) | postinstall |
package.json |
| [email protected] (added) | postinstall |
package.json |
🧌 Troll package added
This package is a joke. You should not use it in production.
| Package | Note | Location |
|---|---|---|
| [email protected] (added) | This package prints a protestware console message on install regarding Ukraine for users with Russian language locale | package.json |
Socket.dev scan summary
| Issue | Status |
|---|---|
| Did you mean? | ✅ no new possible package typos |
| Install scripts | ⚠️ 3 new install scripts detected |
| Telemetry | ✅ no new telemetry |
| Troll package | ⚠️ 1 new troll package detected |
| Malware | ✅ no new malware |
| Native code | ✅ no new native modules |
Bot Commands
To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of package-name@version specifiers. e.g. @SocketSecurity ignore [email protected] [email protected]
@SocketSecurity ignore [email protected]@SocketSecurity ignore [email protected]@SocketSecurity ignore [email protected]
Powered by socket.dev
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.
Looks like @metamask/auto-changelog is up-to-date now, so this is no longer needed.