Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade node-fetch from 2.6.7 to 3.3.2 #4

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

feat: upgrade node-fetch from 2.6.7 to 3.3.2

f05ada7
Select commit
Loading
Failed to load commit list.
Open

[Snyk] Upgrade node-fetch from 2.6.7 to 3.3.2 #4

feat: upgrade node-fetch from 2.6.7 to 3.3.2
f05ada7
Select commit
Loading
Failed to load commit list.
Mergeable / Mergeable failed Aug 1, 2024 in 2s

2/4 Fail(s): TITLE, APPROVALS

Status: FAIL

    Here are some stats of the run:
    4 validations were ran.
    2 PASSED
    2 FAILED

Details

❌ Validator: TITLE

  • Semantic release conventions must be followed.
    Input : [Snyk] Upgrade node-fetch from 2.6.7 to 3.3.2
    Settings : {"must_include":{"regex":"^(feat|docs|chore|fix|refactor|test|style|perf)(\\(\\w+\\))?:.+$","message":"Semantic release conventions must be followed."}}

✔️ Validator: DESCRIPTION

  • ✔️ description must exclude '[ ]'
    Input : snyk-top-banner

Snyk has created this PR to upgrade node-fetch from 2.6.7 to 3.3.2.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

  • The recommended version is 35 versions ahead of your current version.

  • The recommended version was released on a year ago.

Release notes
Package name: node-fetch from node-fetch GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

   Settings : ```{"must_exclude":{"regex":"\\[ \\]","message":"There are incomplete TODO task(s) unchecked."}}```

❌ Validator: APPROVALS

  • approvals count is less than "1"
    Input :
    Settings : {"min":{"count":1}}
  • (approvals: jusx required OR approvals: shine2lay required)
    Input :
    Settings : {"or":[{"required":{"reviewers":["jusx"]}},{"required":{"reviewers":["shine2lay"]}}]}

✔️ Validator: OR

  • Option 1: And: Option 1: title: title does not include "^(feat|fix)((\w+))?:.+$"
    Input : [Snyk] Upgrade node-fetch from 2.6.7 to 3.3.2
    Settings : {"must_include":{"regex":"^(feat|fix)(\\(\\w+\\))?:.+$"}}
  • Option 1: And: Option 2: changeset: new features or fixes needed to be logged to the changelog
    Input : package-lock.json,package.json
    Settings : {"must_include":{"regex":"docs/changelog.rst","message":"new features or fixes needed to be logged to the changelog"}}
  • ✔️ Option 2: title: title must exclude '^(feat|fix)((\w+))?:.+$'
    Input : [Snyk] Upgrade node-fetch from 2.6.7 to 3.3.2
    Settings : {"must_exclude":{"regex":"^(feat|fix)(\\(\\w+\\))?:.+$","message":"new features or fixes needed to be logged to the changelog"}}