Conversation
Bumps the ruby-deps group with 2 updates in the / directory: [pagy](https://github.com/ddnexus/pagy) and [commonmarker](https://github.com/gjtorikian/commonmarker). Updates `pagy` from 43.5.0 to 43.5.1 - [Release notes](https://github.com/ddnexus/pagy/releases) - [Changelog](https://github.com/ddnexus/pagy/blob/master/docs/CHANGELOG.md) - [Commits](ddnexus/pagy@43.5.0...43.5.1) Updates `commonmarker` from 2.7.0 to 2.8.1 - [Release notes](https://github.com/gjtorikian/commonmarker/releases) - [Changelog](https://github.com/gjtorikian/commonmarker/blob/main/CHANGELOG.md) - [Commits](gjtorikian/commonmarker@v2.7.0...v2.8.1) --- updated-dependencies: - dependency-name: pagy dependency-version: 43.5.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ruby-deps - dependency-name: commonmarker dependency-version: 2.8.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ruby-deps ... Signed-off-by: dependabot[bot] <support@github.com>
Dependency Upgrade Review: Group PR (pagy + commonmarker)PR ScopeDependency-only — Only changes
1. pagy (43.5.0 → 43.5.1)Changes:
Usage in Repository:
Test Coverage:
Compatibility: Compatible — Patch version bump with only internal test improvements and dead code removal. 2. commonmarker (2.7.0 → 2.8.1)Changes:
Usage in Repository:
Test Coverage:
Compatibility: Compatible — Minor version bump with underlying parser upgrade. The Overall Compatibility AssessmentCompatible — Both dependencies have good test coverage for their usage patterns. The changes are:
Test Coverage
Confidence RatingHigh — Both dependencies are well-tested in this codebase. Changes are minimal and backward-compatible. |
mroderick
left a comment
There was a problem hiding this comment.
Approved after dependency upgrade review. See comment for full analysis. Both pagy and commonmarker updates are safe to merge.
Bumps the ruby-deps group with 2 updates in the / directory: pagy and commonmarker.
Updates
pagyfrom 43.5.0 to 43.5.1Release notes
Sourced from pagy's releases.
Changelog
Sourced from pagy's changelog.
Commits
156547fMerge branch 'dev'27aaf41Version 43.5.1a78c18cImprove docs8bef31bImprove the api:coverage taskf6dc9a1💎 Remove ghost code from cli; improve testsa0a8f66Fix syntax error in CI publish docsUpdates
commonmarkerfrom 2.7.0 to 2.8.1Release notes
Sourced from commonmarker's releases.
Changelog
Sourced from commonmarker's changelog.
Commits
31016cfMerge pull request #457 from gjtorikian/release/v2.8.18087370[skip test] update changelog6da0eefMerge pull request #456 from gjtorikian/new-fix-releasebc2c4c4fix: re-release 2.8.1 due to publishing error3ad6390Merge pull request #454 from gjtorikian/release/v2.8.072f3e61[skip test] update changelog69192feMerge pull request #450 from gjtorikian/dependabot/cargo/comrak-0.52.013729a4Add build.rs to fix Windows mingw Oniguruma symbol collisiona5044e2Fix Windows mingw build: allow multiple Oniguruma definitions66ed2e1Merge branch 'main' into dependabot/cargo/comrak-0.52.0Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions