chore(deps): bump postcss and @angular-devkit/build-angular - #108
Closed
dependabot[bot] wants to merge 74 commits into
Closed
chore(deps): bump postcss and @angular-devkit/build-angular#108dependabot[bot] wants to merge 74 commits into
dependabot[bot] wants to merge 74 commits into
Conversation
bump version to 0.0.2 and update dependencies
feat: refactor home component to use signals for state management fix: improve error handling in content loading style: update TypeScript target and library to ES2023 refactor: make stack property readonly in ContentstackService
chore: update dependencies and Angular version to 20.1.6
add codeowners
…er-file remove-duplicate-codeowner-file
move CODEOWNERS to .github folder
package lock fixed and ignores adapted
Update package dependencies and version bump to 0.0.5
…and process.env for production
updated angular version
changed region from us to NA
Add @rollup/rollup-linux-x64-gnu, @rollup/rollup-linux-x64-musl, lightningcss-linux-x64-gnu, and lightningcss-linux-x64-musl as optionalDependencies and regenerate lockfile so Linux CI environments can resolve native platform binaries without hitting the npm optional dependency bug.
chore: add Linux optional dependencies for Rollup and LightningCSS
fix: resolve Snyk security and license issues
fix: resolve Snyk security issues
Bumps [postcss](https://github.com/postcss/postcss) to 8.5.23 and updates ancestor dependency [@angular-devkit/build-angular](https://github.com/angular/angular-cli). These dependencies need to be updated together. Updates `postcss` from 8.5.12 to 8.5.23 - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@8.5.12...8.5.23) Updates `@angular-devkit/build-angular` from 21.2.15 to 21.2.20 - [Release notes](https://github.com/angular/angular-cli/releases) - [Changelog](https://github.com/angular/angular-cli/blob/main/CHANGELOG.md) - [Commits](angular/angular-cli@v21.2.15...v21.2.20) --- updated-dependencies: - dependency-name: postcss dependency-version: 8.5.23 dependency-type: indirect - dependency-name: "@angular-devkit/build-angular" dependency-version: 21.2.20 dependency-type: direct:development ... Signed-off-by: dependabot[bot] <support@github.com>
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
🔒 Security Scan Results
⏱️ SLA Breach Summary
✅ BUILD PASSED - All security checks passed |
harshitha-cstk
force-pushed
the
dependabot/npm_and_yarn/multi-33d318a61d
branch
from
August 7, 2026 11:02
c3a7947 to
0f81f9c
Compare
Author
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps postcss to 8.5.23 and updates ancestor dependency @angular-devkit/build-angular. These dependencies need to be updated together.
Updates
postcssfrom 8.5.12 to 8.5.23Release notes
Sourced from postcss's releases.
Changelog
Sourced from postcss's changelog.
... (truncated)
Commits
eb9e1feRelease 8.5.23 version9d19c78Update dependencies7beca13Does no load source map file without opts.fromdecea51Typoc18e30dUpdate EM banner98a39adUpdate EM bannera3e48c4Release 8.5.22 versionf49d691Fix custom property losing its semicolon before a comment (#2117)28e0dafRelease 8.5.21 version3d2b4e4Update dependenciesMaintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for postcss since your current version.
Updates
@angular-devkit/build-angularfrom 21.2.15 to 21.2.20Release notes
Sourced from @angular-devkit/build-angular's releases.
Changelog
Sourced from @angular-devkit/build-angular's changelog.
... (truncated)
Commits
928eb73release: cut the v21.2.20 release972f6dbfix(@angular-devkit/build-angular): upgrade postcss to 8.5.238de75adfix(@angular/build): upgrade postcss to 8.5.231a72825release: cut the v21.2.19 releasedf54298fix(@angular-devkit/build-angular): update http-proxy-middleware to 3.0.7fe3a606release: cut the v21.2.18 release2510ee3fix(@angular/build): bump vite to 7.3.661a810afix(@angular/cli): respect release age policy in update bootstrapping logica2b6116fix(@angular/build): bump undici to 7.28.09c1edbcrelease: cut the v21.2.17 releaseDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.