Bump the minor-and-patch group with 3 updates #12
No reviewers
Labels
No labels
bug
compliance
dependencies
documentation
duplicate
enhancement
good first issue
help wanted
invalid
javascript
question
wontfix
No milestone
No project
No assignees
1 participant
Due date
No due date set.
Dependencies
No dependencies set.
Reference: adam/amazon-po-parser#12
Loading…
Add table
Reference in a new issue
No description provided.
Delete branch "dependabot/npm_and_yarn/minor-and-patch-866aaba509"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Bumps the minor-and-patch group with 3 updates: @aws-sdk/client-dynamodb, @aws-sdk/lib-dynamodb and playwright.
Updates
@aws-sdk/client-dynamodbfrom 3.1045.0 to 3.1048.0Release notes
Sourced from @aws-sdk/client-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/client-dynamodb's changelog.
Commits
313813dPublish v3.1048.01af9047chore(codegen): updated import sources for aws-sdk core (#8015)eabae7dchore(codegen): sync for browser bundle fixes (#8022)8edb907Publish v3.1047.0a664335Publish v3.1046.09ce20f6chore(codegen): dependency version bump (#8008)acffbf9chore: update smithy/core imports (#7979)Updates
@aws-sdk/lib-dynamodbfrom 3.1045.0 to 3.1048.0Release notes
Sourced from @aws-sdk/lib-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/lib-dynamodb's changelog.
Commits
313813dPublish v3.1048.01af9047chore(codegen): updated import sources for aws-sdk core (#8015)eabae7dchore(codegen): sync for browser bundle fixes (#8022)8edb907Publish v3.1047.0a664335Publish v3.1046.09ce20f6chore(codegen): dependency version bump (#8008)acffbf9chore: update smithy/core imports (#7979)Updates
playwrightfrom 1.59.1 to 1.60.0Release notes
Sourced from playwright's releases.
... (truncated)
Commits
87bb9ddcherry-pick(#40747): fix(yauzl): vendor yauzl with destroy-lifecycle fix9a9c51ccherry-pick(#40733): chore(electron): revert #40184 (move Electron API to a s...4b3b628cherry-pick(#40736): Revert "feat(electron): add timeout option to electronAp...f869f96chore: bump version to v1.60.0 (#40714)7eb6918cherry-pick(#40710): docs: release notes v1.60118d2aacherry-pick(#40693): chore(python): formdata path type54012f5chore(deps): bump ip-address and express-rate-limit (#40680)9fa531dfix(screencast): unblock frame ack when an async client disconnects (#40674)3649db5chore(mcp): bump default extension protocol to v2 (#40678)bb6c009chore(extension): mark 0.2.1 (#40679)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsLGTM — Dependabot minor/patch bumps for @aws-sdk/client-dynamodb, @aws-sdk/lib-dynamodb, and playwright; no source code changes.
Extended reasoning...
Overview
This PR is a Dependabot group update bumping three dev-time/runtime dependencies to minor/patch versions:
@aws-sdk/client-dynamodb: 3.1045.0 → 3.1048.0 (patch)@aws-sdk/lib-dynamodb: 3.1045.0 → 3.1048.0 (patch)playwright: 1.59.1 → 1.60.0 (minor)Only
package.jsonandpackage-lock.jsonare modified. No source code changes.Security risks
None apparent. All updates are from well-established, trusted maintainers (AWS, Microsoft). The transitive
fast-xml-parserbump to 5.7.3 is a documented chore upgrade noted in the AWS SDK release notes. No new packages from unknown sources are introduced.Level of scrutiny
Low. Dependabot minor/patch group bumps with no application code touched fall squarely into the auto-approve category — same pattern as recently merged PRs #8 and #10 in this repo's history.
Other factors
The bug-hunting system reported no findings. The lockfile churn is large but expected (AWS SDK internal package consolidation flattens many dependencies).