Bump the minor-and-patch group with 2 updates #13
No reviewers
Labels
No labels
bug
compliance
dependencies
documentation
duplicate
enhancement
good first issue
help wanted
invalid
javascript
question
wontfix
No milestone
No project
No assignees
1 participant
Due date
No due date set.
Dependencies
No dependencies set.
Reference: adam/amazon-po-parser#13
Loading…
Add table
Reference in a new issue
No description provided.
Delete branch "dependabot/npm_and_yarn/minor-and-patch-96140a9626"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Bumps the minor-and-patch group with 2 updates: @aws-sdk/client-dynamodb and @aws-sdk/lib-dynamodb.
Updates
@aws-sdk/client-dynamodbfrom 3.1048.0 to 3.1053.0Release notes
Sourced from @aws-sdk/client-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/client-dynamodb's changelog.
Commits
ef69ea6Publish v3.1053.0443d6bePublish v3.1052.00d6242dchore(codegen): update@smithydependencies (#8038)b825c13Publish v3.1051.0bdc9fc6Publish v3.1050.004d52f3Publish v3.1049.0Updates
@aws-sdk/lib-dynamodbfrom 3.1048.0 to 3.1053.0Release notes
Sourced from @aws-sdk/lib-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/lib-dynamodb's changelog.
Commits
ef69ea6Publish v3.1053.0443d6bePublish v3.1052.00d6242dchore(codegen): update@smithydependencies (#8038)b825c13Publish v3.1051.0bdc9fc6Publish v3.1050.004d52f3Publish v3.1049.0Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsLGTM — Dependabot minor/patch bump for AWS SDK DynamoDB clients.
Extended reasoning...
Overview
This PR is a Dependabot-generated minor/patch version bump for two AWS SDK packages:
@aws-sdk/client-dynamodb: 3.1048.0 → 3.1053.0@aws-sdk/lib-dynamodb: 3.1048.0 → 3.1053.0Only
package.jsonandpackage-lock.jsonare touched. The DynamoDB-specific changelog entries are all "version bump only" notes — the changes in this version range are endpoint metadata updates and unrelated service additions (gameliftstreams, qconnect, ec2, etc.) that do not affect DynamoDB usage.Security risks
No security risks identified. These are minor/patch bumps from trusted AWS-published packages on the npm registry, and the lockfile updates show consistent, propagated transitive bumps (e.g.,
@smithy/core,@smithy/types,@smithy/fetch-http-handler) with no suspicious additions or removals.Level of scrutiny
Low scrutiny is appropriate. This is a routine, mechanical dependency update generated by Dependabot. No source code is modified, the version delta is small, and AWS SDK v3 minor/patch releases follow strict semver discipline.
Other factors
The bug-hunting system found no issues. There are no prior reviewer comments or unresolved threads on this PR. Prior PRs in this repo (#8, #9, #12) follow the same Dependabot pattern and were merged without incident.