Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Configure Renovate #115

Merged
merged 1 commit into from
Apr 1, 2022
Merged

Configure Renovate #115

merged 1 commit into from
Apr 1, 2022

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented May 5, 2021

WhiteSource Renovate

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

  • apps-script/quickstart/package.json (npm)
  • calendar/quickstart/package.json (npm)
  • classroom/quickstart/package.json (npm)
  • docs/quickstart/package.json (npm)
  • drive/activity-v2/package.json (npm)
  • drive/activity/package.json (npm)
  • drive/quickstart/package.json (npm)
  • drive/snippets/package.json (npm)
  • gmail/quickstart/package.json (npm)
  • package.json (npm)
  • people/quickstart/package.json (npm)
  • sheets/quickstart/package.json (npm)
  • sheets/snippets/package.json (npm)
  • slides/quickstart/package.json (npm)
  • slides/snippets/package.json (npm)
  • tasks/quickstart/package.json (npm)
  • .travis.yml (travis)

Configuration Summary

Based on the default config's presets, Renovate will:

  • Start dependency updates only once this onboarding PR is merged
  • Enable Renovate Dependency Dashboard creation
  • If semantic commits detected, use semantic commit type fix for dependencies and chore for all others
  • Ignore node_modules, bower_components, vendor and various test/tests directories
  • Autodetect whether to pin dependencies or maintain ranges
  • Rate limit PR creation to a maximum of two per hour
  • Limit to maximum 10 open PRs at any time
  • Group known monorepo packages together
  • Use curated list of recommended non-monorepo package groupings
  • Fix some problems with very old Maven commons versions
  • Ignore spring cloud 1.x releases
  • Ignore web3j 5.0.0 release
  • Ignore http4s digest-based 1.x milestones
  • Use node versioning for @types/node
  • Limit concurrent requests to reduce load on Repology servers until we can fix this properly, see issue 10133
  • Do not upgrade from Alpine stable to edge

🔡 Would you like to change the way Renovate is upgrading your dependencies? Simply edit the renovate.json in this branch with your custom config and the list of Pull Requests in the "What to Expect" section below will be updated the next time Renovate runs.


What to Expect

With your current configuration, Renovate will create 39 Pull Requests:

Update dependency base64url to 3.0.0 [SECURITY]
  • Branch name: renovate/npm-base64url-vulnerability
  • Merge into: master
  • Upgrade base64url to 3.0.0
Update dependency bl to 1.2.3 [SECURITY]
  • Branch name: renovate/npm-bl-vulnerability
  • Merge into: master
  • Upgrade bl to 1.2.3
Update dependency concat-stream to 1.4.11 [SECURITY]
  • Branch name: renovate/npm-concat-stream-vulnerability
  • Merge into: master
  • Upgrade concat-stream to 1.4.11
Update dependency cryptiles to 4.1.2 [SECURITY]
  • Branch name: renovate/npm-cryptiles-vulnerability
  • Merge into: master
  • Upgrade cryptiles to 4.1.2
Update dependency debug to 2.6.9 [SECURITY]
  • Branch name: renovate/npm-debug-vulnerability
  • Merge into: master
  • Upgrade debug to 2.6.9
Update dependency diff to 3.5.0 [SECURITY]
  • Branch name: renovate/npm-diff-vulnerability
  • Merge into: master
  • Upgrade diff to 3.5.0
Update dependency extend to 3.0.2 [SECURITY]
  • Branch name: renovate/npm-extend-vulnerability
  • Merge into: master
  • Upgrade extend to 3.0.2
Update dependency googleapis [SECURITY]
  • Branch name: renovate/npm-googleapis-vulnerability
  • Merge into: master
  • Upgrade googleapis to 39.1.0
  • Pin googleapis to 24.0.0
Update dependency growl to 1.10.0 [SECURITY]
  • Branch name: renovate/npm-growl-vulnerability
  • Merge into: master
  • Upgrade growl to 1.10.0
Update dependency hoek to 4.2.1 [SECURITY]
  • Branch name: renovate/npm-hoek-vulnerability
  • Merge into: master
  • Upgrade hoek to 4.2.1
Update dependency https-proxy-agent to 2.2.3 [SECURITY]
  • Branch name: renovate/npm-https-proxy-agent-vulnerability
  • Merge into: master
  • Upgrade https-proxy-agent to 2.2.3
Update dependency is-my-json-valid to 2.17.2 [SECURITY]
  • Branch name: renovate/npm-is-my-json-valid-vulnerability
  • Merge into: master
  • Upgrade is-my-json-valid to 2.17.2
Update dependency json-bigint to 1.0.0 [SECURITY]
  • Branch name: renovate/npm-json-bigint-vulnerability
  • Merge into: master
  • Upgrade json-bigint to 1.0.0
Update dependency json-schema to 0.4.0 [SECURITY]
  • Branch name: renovate/npm-json-schema-vulnerability
  • Merge into: master
  • Upgrade json-schema to 0.4.0
Update dependency lodash to 4.17.21 [SECURITY]
  • Branch name: renovate/npm-lodash-vulnerability
  • Merge into: master
  • Upgrade lodash to 4.17.21
Update dependency lodash.merge to 4.6.2 [SECURITY]
  • Branch name: renovate/npm-lodash.merge-vulnerability
  • Merge into: master
  • Upgrade lodash.merge to 4.6.2
Update dependency minimist [SECURITY]
  • Branch name: renovate/npm-minimist-vulnerability
  • Merge into: master
  • Upgrade minimist to 1.2.3
  • Upgrade minimist to 0.2.1
Update dependency node-fetch to 2.6.7 [SECURITY]
  • Branch name: renovate/npm-node-fetch-vulnerability
  • Merge into: master
  • Upgrade node-fetch to 2.6.7
Update dependency node-forge [SECURITY]
  • Branch name: renovate/npm-node-forge-vulnerability
  • Merge into: master
  • Upgrade node-forge to 1.3.0
  • Upgrade node-forge to 0.10.0
Update dependency sshpk to 1.13.2 [SECURITY]
  • Branch name: renovate/npm-sshpk-vulnerability
  • Merge into: master
  • Upgrade sshpk to 1.13.2
Update dependency stringstream to 0.0.6 [SECURITY]
  • Branch name: renovate/npm-stringstream-vulnerability
  • Merge into: master
  • Upgrade stringstream to 0.0.6
Update dependency tunnel-agent to 0.6.0 [SECURITY]
  • Branch name: renovate/npm-tunnel-agent-vulnerability
  • Merge into: master
  • Upgrade tunnel-agent to 0.6.0
Pin dependencies
Update dependency googleapis to v23.0.2
  • Schedule: ["at any time"]
  • Branch name: renovate/googleapis-23.x
  • Merge into: master
  • Upgrade googleapis to 23.0.2
Update dependency eslint to v4.19.1
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-4.x
  • Merge into: master
  • Upgrade eslint to 4.19.1
Update dependency eslint-config-google to v0.14.0
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-config-google-0.x
  • Merge into: master
  • Upgrade eslint-config-google to 0.14.0
Update dependency google-auth-library to v0.12.0
  • Schedule: ["at any time"]
  • Branch name: renovate/google-auth-library-0.x
  • Merge into: master
  • Upgrade google-auth-library to 0.12.0
Update dependency jshint to v2.13.4
  • Schedule: ["at any time"]
  • Branch name: renovate/jshint-2.x
  • Merge into: master
  • Upgrade jshint to 2.13.4
Update dependency text-encoding to v0.7.0
  • Schedule: ["at any time"]
  • Branch name: renovate/text-encoding-0.x
  • Merge into: master
  • Upgrade text-encoding to 0.7.0
Update dependency async to v3
  • Schedule: ["at any time"]
  • Branch name: renovate/async-3.x
  • Merge into: master
  • Upgrade async to 3.2.3
Update dependency eslint to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-8.x
  • Merge into: master
  • Upgrade eslint to 8.12.0
Update dependency expect to v27
  • Schedule: ["at any time"]
  • Branch name: renovate/major-jest-monorepo
  • Merge into: master
  • Upgrade expect to 27.5.1
Update dependency google-auth-library to v7
  • Schedule: ["at any time"]
  • Branch name: renovate/google-auth-library-7.x
  • Merge into: master
  • Upgrade google-auth-library to 7.14.1
Update dependency googleapis to v100
  • Schedule: ["at any time"]
  • Branch name: renovate/googleapis-100.x
  • Merge into: master
  • Upgrade googleapis to 100.0.0
Update dependency mkdirp to v1
  • Schedule: ["at any time"]
  • Branch name: renovate/mkdirp-1.x
  • Merge into: master
  • Upgrade mkdirp to 1.0.4
Update dependency mocha to v9
  • Schedule: ["at any time"]
  • Branch name: renovate/mocha-9.x
  • Merge into: master
  • Upgrade mocha to 9.2.2
Update dependency promise to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/promise-8.x
  • Merge into: master
  • Upgrade promise to 8.1.0
Update dependency rimraf to v3
  • Schedule: ["at any time"]
  • Branch name: renovate/rimraf-3.x
  • Merge into: master
  • Upgrade rimraf to 3.0.2
Update dependency uuid to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/uuid-8.x
  • Merge into: master
  • Upgrade uuid to 8.3.2

🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or spam the project. See docs for prhourlylimit for details.


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.


This PR has been generated by WhiteSource Renovate. View repository job log here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant