dependency-submission-toolkit
dependency-submission-toolkit copied to clipboard
Bump packageurl-js from 1.2.1 to 2.0.1
trafficstars
Bumps packageurl-js from 1.2.1 to 2.0.1.
Changelog
Sourced from packageurl-js's changelog.
2.0.1
Bug Fix
2.0.0
- Significant refactor based on code from
@jdalton- Numerous bug fixes and improvements the community was asking for
- See closed issues and PRs for details (too many to list here)
Commits
cd1eb4bchore: bump to v2.0.1 (#77)f7dccd6fix: error on decode with meaningful message07b818bfix: only decode in parseStringc2f576fbump to v2.0.0 (#74)b5660a5Merge pull request #73 from package-url/jdalton/sync400de0cMerge pull request #72 from package-url/dependabot/npm_and_yarn/braces-3.0.3b6c8ce8fix: correct package-url.d.ts readonly type casing96822affix: correct param name typosf81a6befix: use encodeQualifierValue for qualifierKey and qualifierValueff590d2feat: encode qualifiers with URLSearchParams- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)