Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): bump express-rate-limit from 6.11.2 to 7.4.0 #819

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 1, 2024

Bumps express-rate-limit from 6.11.2 to 7.4.0.

Release notes

Sourced from express-rate-limit's releases.

v7.4.0

You can view the changelog here.

v7.3.1

Fixed

  • Changed error displayed for the creationStack validation check when a store with localKeys set to false is used.
  • Improved documentation for the creationStack check.

You can view the full changelog here.

v7.3.0

Added

  • Added a new unsharedStore validation check that identifies cases where a single store instance is shared across multiple limiters.

You can view the full changelog here.

v7.2.0

Added

  • Added a new creationStack validation check that looks for instances created in a request handler.

You can view the full changelog here.

v7.1.5

Fixed

  • Enable async requestWasSuccessful methods to work as documented.

You can view the full changelog here.

v7.1.4

Fixed

  • Ensure header values are strings rather than numbers, for compatibility with Bun.

... (truncated)

Commits
  • 68e0dcc 7.4.0
  • 7c654f3 feat: Added passOnStoreError to skip rate limitter if the store is not availa...
  • f40165b docs: use local link for proxy troubleshooting guide
  • ff3702e docs: correct description of max setting in WRN_ERL_MAX_ZERO (#472)
  • 206d83d test: test limit option more
  • 7d15b28 Update changelog.mdx
  • bb71040 build(deps-dev): bump braces from 3.0.2 to 3.0.3 (#465)
  • 6c91f48 docs: clarification
  • 730dc48 Clarify use cases
  • 609972a 7.3.1
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) from 6.11.2 to 7.4.0.
- [Release notes](https://github.com/express-rate-limit/express-rate-limit/releases)
- [Commits](express-rate-limit/express-rate-limit@v6.11.2...v7.4.0)

---
updated-dependencies:
- dependency-name: express-rate-limit
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Aug 1, 2024
Copy link

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/[email protected] network 0 117 kB nfriedly

🚮 Removed packages: npm/[email protected]

View full report↗︎

Copy link

codecov bot commented Aug 1, 2024

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 82.89%. Comparing base (879342e) to head (d5f4afe).

Additional details and impacted files
@@           Coverage Diff           @@
##           master     #819   +/-   ##
=======================================
  Coverage   82.89%   82.89%           
=======================================
  Files          31       31           
  Lines        1222     1222           
=======================================
  Hits         1013     1013           
  Misses        209      209           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file size/XS
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants