deps: bump the dependency-updates group with 3 updates (#1197)

Bumps the dependency-updates group with 3 updates: [framer-motion](https://github.com/framer/motion), [@npmcli/template-oss](https://github.com/npm/template-oss) and [eslint-plugin-prettier](https://github.com/prettier/eslint-plugin-prettier). Updates `framer-motion` from 11.3.4 to 11.3.6 <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/framer/motion/blob/main/CHANGELOG.md">framer-motion's changelog</a>.</em></p> <blockquote> <h2>[11.3.6] 2024-07-17</h2> <h3>Changed</h3> <ul> <li>Minor performance improvements for layout animations.</li> </ul> <h2>[11.3.5] 2024-07-16</h2> <h3>Fixed</h3> <ul> <li>Ensuring DOM bundle doesn't include <code>react</code> and <code>react-dom</code> as dependencies.</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/framer/motion/commit/8623f7ff856cea082dff7f5d7b1f50cf51565bfe"><code>8623f7f</code></a> v11.3.6</li> <li><a href="https://github.com/framer/motion/commit/1f26e90061ba6f0b880aabd5d5135cada856f157"><code>1f26e90</code></a> Updating layout animations</li> <li><a href="https://github.com/framer/motion/commit/6cc39b1adcc0a562a98345d9186c7e50b2543c58"><code>6cc39b1</code></a> Updates (<a href="https://redirect.github.com/framer/motion/issues/2732">#2732</a>)</li> <li><a href="https://github.com/framer/motion/commit/c69c4128fbfd1aaab33979339a32f66393d431f7"><code>c69c412</code></a> Updating version</li> <li><a href="https://github.com/framer/motion/commit/0e2f268b2178879823caa5d469fc28f08f832fda"><code>0e2f268</code></a> v11.3.5</li> <li><a href="https://github.com/framer/motion/commit/88003d32f25e5bda6709f649824e6749b1e5307b"><code>88003d3</code></a> Updating changelog</li> <li><a href="https://github.com/framer/motion/commit/f1743cdbe5fd5c35b1fbb40fed0dc04e609870f2"><code>f1743cd</code></a> Fix/dom bundle (<a href="https://redirect.github.com/framer/motion/issues/2729">#2729</a>)</li> <li><a href="https://github.com/framer/motion/commit/a0a3947affdbc4cf6e5d29b7ce629389430ba799"><code>a0a3947</code></a> Updating version</li> <li>See full diff in <a href="https://github.com/framer/motion/compare/v11.3.4...v11.3.6">compare view</a></li> </ul> </details> <br /> Updates `@npmcli/template-oss` from 4.23.0 to 4.23.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/npm/template-oss/releases"><code>@​npmcli/template-oss</code>'s releases</a>.</em></p> <blockquote> <h2>v4.23.1</h2> <h2><a href="https://github.com/npm/template-oss/compare/v4.23.0...v4.23.1">4.23.1</a> (2024-07-17)</h2> <h3>Bug Fixes</h3> <ul> <li><a href="https://github.com/npm/template-oss/commit/ca477050dece8e0f4a628abad67ad79e084a298f"><code>ca47705</code></a> <a href="https://redirect.github.com/npm/template-oss/pull/462">#462</a> Use <code>include-workspace-root</code> for <code>/main</code> in Post Dependabot (<a href="https://redirect.github.com/npm/template-oss/issues/462">#462</a>) (<a href="https://github.com/hashtagchris"><code>@​hashtagchris</code></a>)</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/npm/template-oss/blob/main/CHANGELOG.md"><code>@​npmcli/template-oss</code>'s changelog</a>.</em></p> <blockquote> <h2><a href="https://github.com/npm/template-oss/compare/v4.23.0...v4.23.1">4.23.1</a> (2024-07-17)</h2> <h3>Bug Fixes</h3> <ul> <li><a href="https://github.com/npm/template-oss/commit/ca477050dece8e0f4a628abad67ad79e084a298f"><code>ca47705</code></a> <a href="https://redirect.github.com/npm/template-oss/pull/462">#462</a> Use <code>include-workspace-root</code> for <code>/main</code> in Post Dependabot (<a href="https://redirect.github.com/npm/template-oss/issues/462">#462</a>) (<a href="https://github.com/hashtagchris"><code>@​hashtagchris</code></a>)</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/npm/template-oss/commit/4ef5cf6be626cb5265486420634ad231832540ab"><code>4ef5cf6</code></a> chore: release 4.23.1 (<a href="https://redirect.github.com/npm/template-oss/issues/463">#463</a>)</li> <li><a href="https://github.com/npm/template-oss/commit/ca477050dece8e0f4a628abad67ad79e084a298f"><code>ca47705</code></a> fix: Use <code>include-workspace-root</code> for <code>/main</code> in Post Dependabot (<a href="https://redirect.github.com/npm/template-oss/issues/462">#462</a>)</li> <li>See full diff in <a href="https://github.com/npm/template-oss/compare/v4.23.0...v4.23.1">compare view</a></li> </ul> </details> <br /> Updates `eslint-plugin-prettier` from 5.1.3 to 5.2.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/prettier/eslint-plugin-prettier/releases">eslint-plugin-prettier's releases</a>.</em></p> <blockquote> <h2>v5.2.1</h2> <h3>Patch Changes</h3> <ul> <li><a href="https://redirect.github.com/prettier/eslint-plugin-prettier/pull/668">#668</a> <a href="https://github.com/prettier/eslint-plugin-prettier/commit/ac036cca2bed4ceb6ee5b63c945426308e36c586"><code>ac036cc</code></a> Thanks <a href="https://github.com/OrlovAlexei"><code>@​OrlovAlexei</code></a>! - build(deps): Bump synckit from 0.8.6 to 0.9.1</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/prettier/eslint-plugin-prettier/blob/master/CHANGELOG.md">eslint-plugin-prettier's changelog</a>.</em></p> <blockquote> <h2>5.2.1</h2> <h3>Patch Changes</h3> <ul> <li><a href="https://redirect.github.com/prettier/eslint-plugin-prettier/pull/668">#668</a> <a href="https://github.com/prettier/eslint-plugin-prettier/commit/ac036cca2bed4ceb6ee5b63c945426308e36c586"><code>ac036cc</code></a> Thanks <a href="https://github.com/OrlovAlexei"><code>@​OrlovAlexei</code></a>! - build(deps): Bump synckit from 0.8.6 to 0.9.1</li> </ul> <h2>5.2.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/prettier/eslint-plugin-prettier/pull/652">#652</a> <a href="https://github.com/prettier/eslint-plugin-prettier/commit/f1700110b4c50f43bbda8dba51ce9e22248939fa"><code>f170011</code></a> Thanks <a href="https://github.com/Logicer16"><code>@​Logicer16</code></a>! - feat: support parsing <code>html</code> via <code>@html-eslint/parser</code> natively</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/51324d9cdf8b883e2a392904d0f73da9eca6a808"><code>51324d9</code></a> chore: fix CHANGELOG.md formatting issue</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/24288c7960abf8f603a0efa111a1cd46fb89001c"><code>24288c7</code></a> chore: release eslint-plugin-prettier (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/669">#669</a>)</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/ac036cca2bed4ceb6ee5b63c945426308e36c586"><code>ac036cc</code></a> build(deps): Bump synckit from 0.8.6 to 0.9.1 (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/668">#668</a>)</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/a1e6f4afaf9d0913c597d575f1e579f108a81e8c"><code>a1e6f4a</code></a> build(deps): Bump braces from 3.0.2 to 3.0.3 (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/665">#665</a>)</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/de9751c85d059678904035322501bfce120f61b7"><code>de9751c</code></a> build(deps): Bump pnpm/action-setup from 2 to 4 in the actions group (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/661">#661</a>)</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/02c21a5e7a9d86d0a156dcc04e28a6efd7343a7b"><code>02c21a5</code></a> chore: release eslint-plugin-prettier (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/653">#653</a>)</li> <li><a href="https://github.com/prettier/eslint-plugin-prettier/commit/f1700110b4c50f43bbda8dba51ce9e22248939fa"><code>f170011</code></a> feat: support parsing <code>html</code> via <code>@html-eslint/parser</code> natively (<a href="https://redirect.github.com/prettier/eslint-plugin-prettier/issues/652">#652</a>)</li> <li>See full diff in <a href="https://github.com/prettier/eslint-plugin-prettier/compare/v5.1.3...v5.2.1">compare view</a></li> </ul> </details> <br /> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore <dependency name> major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore <dependency name> minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore <dependency name>` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore <dependency name>` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore <dependency name> <ignore condition>` will remove the ignore condition of the specified dependency and ignore conditions </details> --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Gar <gar+gh@danger.computer>

dependabot[bot] committed Jul 18, 2024 at 09:06 UTC 0f84d65f0df3c8f4591c387e14c71520539bcedb
7 files changed +23 -39
.github/actions/create-check/action.yml
+1 -1
@@ -25,7 +25,7 @@ runs:
25 with:
26 result-encoding: string
27 script: |
28 - const { repo: { owner, repo}, runId, serverUrl } = context
28 + const { repo: { owner, repo}, runId, serverUrl } = context
29 const { JOB_NAME, SHA } = process.env
30
31 const job = await github.rest.actions.listJobsForWorkflowRun({
.github/actions/install-latest-npm/action.yml
+1 -1
@@ -44,7 +44,7 @@ runs:
44 MATCH=$SPEC
45 echo "Found compatible version: npm@$MATCH"
46 break
47 - fi
47 + fi
48 done
49
50 if [ -z $MATCH ]; then
.github/workflows/post-dependabot.yml
+1 -1
@@ -50,7 +50,7 @@ jobs:
50 id: flags
51 run: |
52 dependabot_dir="${{ steps.metadata.outputs.directory }}"
53 - if [[ "$dependabot_dir" == "/" ]]; then
53 + if [[ "$dependabot_dir" == "/" || "$dependabot_dir" == "/main" ]]; then
54 echo "workspace=-iwr" >> $GITHUB_OUTPUT
55 else
56 # strip leading slash from directory so it works as a
SECURITY.md
+1 -1
@@ -2,7 +2,7 @@
2
3 GitHub takes the security of our software products and services seriously, including the open source code repositories managed through our GitHub organizations, such as [GitHub](https://github.com/GitHub).
4
5 -If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
5 +If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
6
7 If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly through [opensource-security@github.com](mailto:opensource-security@github.com).
8
cli/package.json
+2 -2
@@ -31,7 +31,7 @@
31 },
32 "devDependencies": {
33 "@npmcli/eslint-config": "^4.0.4",
34 - "@npmcli/template-oss": "4.23.0",
34 + "@npmcli/template-oss": "4.23.1",
35 "tap": "^16.3.9"
36 },
37 "author": "GitHub Inc.",
@@ -40,7 +40,7 @@
40 },
41 "templateOSS": {
42 "//@npmcli/template-oss": "This file is partially managed by @npmcli/template-oss. Edits may be overwritten.",
43 - "version": "4.23.0",
43 + "version": "4.23.1",
44 "content": "./scripts/template-oss"
45 },
46 "files": [
package-lock.json
+15 -31
@@ -49,7 +49,7 @@
49 "@babel/plugin-proposal-private-property-in-object": "^7.21.11",
50 "@github/prettier-config": "^0.0.6",
51 "@npmcli/eslint-config": "^4.0.4",
52 - "@npmcli/template-oss": "4.23.0",
52 + "@npmcli/template-oss": "4.23.1",
53 "@testing-library/jest-dom": "^6.2.0",
54 "@testing-library/react": "^15.0.1",
55 "babel-jest": "^29.7.0",
@@ -91,7 +91,7 @@
91 },
92 "devDependencies": {
93 "@npmcli/eslint-config": "^4.0.4",
94 - "@npmcli/template-oss": "4.23.0",
94 + "@npmcli/template-oss": "4.23.1",
95 "tap": "^16.3.9"
96 },
97 "engines": {
@@ -5423,9 +5423,9 @@
5423 }
5424 },
5425 "node_modules/@npmcli/template-oss": {
5426 - "version": "4.23.0",
5427 - "resolved": "https://registry.npmjs.org/@npmcli/template-oss/-/template-oss-4.23.0.tgz",
5428 - "integrity": "sha512-hv+Z17S2BEbEIRsnZt+eC14GtyBV1kV2NoCRHpibnFkaX7PPRtrgVyZImd6XQYyQjeRPoYRdW0rCg/YzO1h54g==",
5426 + "version": "4.23.1",
5427 + "resolved": "https://registry.npmjs.org/@npmcli/template-oss/-/template-oss-4.23.1.tgz",
5428 + "integrity": "sha512-9IoziGswJTKz8mi7wNQxXRSXXSC/17WzsOsNzkOrzkM0qkq/wwZg5M6JKgOU3IUImcUdXywWNeqfG9VQ1o52Yg==",
5429 "dev": true,
5430 "hasInstallScript": true,
5431 "dependencies": {
@@ -14485,13 +14485,13 @@
14485 }
14486 },
14487 "node_modules/eslint-plugin-prettier": {
14488 - "version": "5.1.3",
14489 - "resolved": "https://registry.npmjs.org/eslint-plugin-prettier/-/eslint-plugin-prettier-5.1.3.tgz",
14490 - "integrity": "sha512-C9GCVAs4Eq7ZC/XFQHITLiHJxQngdtraXaM+LoUFoFp/lHNl2Zn8f3WQbe9HvTBBQ9YnKFB0/2Ajdqwo5D1EAw==",
14488 + "version": "5.2.1",
14489 + "resolved": "https://registry.npmjs.org/eslint-plugin-prettier/-/eslint-plugin-prettier-5.2.1.tgz",
14490 + "integrity": "sha512-gH3iR3g4JfF+yYPaJYkN7jEl9QbweL/YfkoRlNnuIEHEz1vHVlCmWOS+eGGiRuzHQXdJFCOTxRgvju9b8VUmrw==",
14491 "dev": true,
14492 "dependencies": {
14493 "prettier-linter-helpers": "^1.0.0",
14494 - "synckit": "^0.8.6"
14494 + "synckit": "^0.9.1"
14495 },
14496 "engines": {
14497 "node": "^14.18.0 || >=16.0.0"
@@ -14514,22 +14514,6 @@
14514 }
14515 }
14516 },
14517 - "node_modules/eslint-plugin-prettier/node_modules/synckit": {
14518 - "version": "0.8.8",
14519 - "resolved": "https://registry.npmjs.org/synckit/-/synckit-0.8.8.tgz",
14520 - "integrity": "sha512-HwOKAP7Wc5aRGYdKH+dw0PRRpbO841v2DENBtjnR5HFWoiNByAl7vrx3p0G/rCyYXQsrxqtX48TImFtPcIHSpQ==",
14521 - "dev": true,
14522 - "dependencies": {
14523 - "@pkgr/core": "^0.1.0",
14524 - "tslib": "^2.6.2"
14525 - },
14526 - "engines": {
14527 - "node": "^14.18.0 || >=16.0.0"
14528 - },
14529 - "funding": {
14530 - "url": "https://opencollective.com/unts"
14531 - }
14532 - },
14517 "node_modules/eslint-plugin-primer-react": {
14518 "version": "5.3.0",
14519 "resolved": "https://registry.npmjs.org/eslint-plugin-primer-react/-/eslint-plugin-primer-react-5.3.0.tgz",
@@ -16154,9 +16138,9 @@
16138 }
16139 },
16140 "node_modules/framer-motion": {
16157 - "version": "11.3.4",
16158 - "resolved": "https://registry.npmjs.org/framer-motion/-/framer-motion-11.3.4.tgz",
16159 - "integrity": "sha512-LC+luwNmz4zEg0AU0rol3yLUFKSJ9GDmIyvigXBAwEbUBG59EWmcRQ2Xh+0py7IkmvWxFUH0TN42v1Dda8xgUg==",
16141 + "version": "11.3.6",
16142 + "resolved": "https://registry.npmjs.org/framer-motion/-/framer-motion-11.3.6.tgz",
16143 + "integrity": "sha512-olpX48qfoSIDjhw0RbolhOGBQmdMAXHHpSI0PFdTj5LeXChcf5F4ApShs0mQ6FPEPOj7dnEvSyB07UgRK5G9Jw==",
16144 "dependencies": {
16145 "tslib": "^2.4.0"
16146 },
@@ -36813,9 +36797,9 @@
36797 "dev": true
36798 },
36799 "node_modules/synckit": {
36816 - "version": "0.9.0",
36817 - "resolved": "https://registry.npmjs.org/synckit/-/synckit-0.9.0.tgz",
36818 - "integrity": "sha512-7RnqIMq572L8PeEzKeBINYEJDDxpcH8JEgLwUqBd3TkofhFRbkq4QLR0u+36avGAhCRbk2nnmjcW9SE531hPDg==",
36800 + "version": "0.9.1",
36801 + "resolved": "https://registry.npmjs.org/synckit/-/synckit-0.9.1.tgz",
36802 + "integrity": "sha512-7gr8p9TQP6RAHusBOSLs46F4564ZrjV8xFmw5zCmgmhGUcw2hxsShhJ6CEiHQMgPDwAQ1fWHPM0ypc4RMAig4A==",
36803 "dev": true,
36804 "dependencies": {
36805 "@pkgr/core": "^0.1.0",
package.json
+2 -2
@@ -68,7 +68,7 @@
68 "@babel/plugin-proposal-private-property-in-object": "^7.21.11",
69 "@github/prettier-config": "^0.0.6",
70 "@npmcli/eslint-config": "^4.0.4",
71 - "@npmcli/template-oss": "4.23.0",
71 + "@npmcli/template-oss": "4.23.1",
72 "@testing-library/jest-dom": "^6.2.0",
73 "@testing-library/react": "^15.0.1",
74 "babel-jest": "^29.7.0",
@@ -97,7 +97,7 @@
97 },
98 "templateOSS": {
99 "//@npmcli/template-oss": "This file is partially managed by @npmcli/template-oss. Edits may be overwritten.",
100 - "version": "4.23.0",
100 + "version": "4.23.1",
101 "content": "./scripts/template-oss"
102 }
103 }