Skip to content
This repository has been archived by the owner on Mar 27, 2024. It is now read-only.

Configure Renovate #631

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Configure Renovate #631

wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Apr 24, 2022

WhiteSource Renovate

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

  • .github/workflows/add-new-issues-and-pull-requests-to-origami-project-board.yml (github-actions)
  • .github/workflows/apply-labels.yml (github-actions)
  • .github/workflows/auto-approve.yml (github-actions)
  • .github/workflows/automatic-tag-and-release.yml (github-actions)
  • .github/workflows/deploy-to-dev.yml (github-actions)
  • .github/workflows/deploy-to-production.yml (github-actions)
  • .github/workflows/deploy-to-staging.yml (github-actions)
  • .github/workflows/sync-repo-labels.yml (github-actions)
  • .github/workflows/test.yml (github-actions)
  • package.json (npm)
  • fastly/terraform/main.tf (terraform)

Configuration Summary

Based on the default config's presets, Renovate will:

  • Start dependency updates only once this onboarding PR is merged
  • Enable Renovate Dependency Dashboard creation
  • If semantic commits detected, use semantic commit type fix for dependencies and chore for all others
  • Ignore node_modules, bower_components, vendor and various test/tests directories
  • Autodetect whether to pin dependencies or maintain ranges
  • Rate limit PR creation to a maximum of two per hour
  • Limit to maximum 10 open PRs at any time
  • Group known monorepo packages together
  • Use curated list of recommended non-monorepo package groupings
  • Fix some problems with very old Maven commons versions
  • Ignore spring cloud 1.x releases
  • Ignore web3j 5.0.0 release
  • Ignore http4s digest-based 1.x milestones
  • Use node versioning for @types/node
  • Limit concurrent requests to reduce load on Repology servers until we can fix this properly, see issue 10133
  • Do not upgrade from Alpine stable to edge

🔡 Would you like to change the way Renovate is upgrading your dependencies? Simply edit the renovate.json in this branch with your custom config and the list of Pull Requests in the "What to Expect" section below will be updated the next time Renovate runs.


What to Expect

With your current configuration, Renovate will create 54 Pull Requests:

chore(deps): update dependency marked to 4.0.10 [security]
  • Branch name: renovate/npm-marked-vulnerability
  • Merge into: master
  • Upgrade marked to 4.0.10
chore(deps): update dependency nanoid to 3.1.31 [security]
  • Branch name: renovate/npm-nanoid-vulnerability
  • Merge into: master
  • Upgrade nanoid to 3.1.31
chore(deps): update dependency node-fetch to 2.6.7 [security]
  • Branch name: renovate/npm-node-fetch-vulnerability
  • Merge into: master
  • Upgrade node-fetch to 2.6.7
chore(deps): update dependency nth-check to 2.0.1 [security]
  • Branch name: renovate/npm-nth-check-vulnerability
  • Merge into: master
  • Upgrade nth-check to 2.0.1
fix(deps): pin dependencies
  • Schedule: ["at any time"]
  • Branch name: renovate/pin-dependencies
  • Merge into: master
  • Pin @financial-times/o-autoinit to 3.1.1
  • Pin @financial-times/o-buttons to 7.2.2
  • Pin @financial-times/o-colors to 6.4.2
  • Pin @financial-times/o-cookie-message to 6.3.1
  • Pin @financial-times/o-fonts to 5.2.1
  • Pin @financial-times/o-footer-services to 4.2.2
  • Pin @financial-times/o-forms to 9.2.3
  • Pin @financial-times/o-grid to 6.1.5
  • Pin @financial-times/o-header-services to 5.2.2
  • Pin @financial-times/o-icons to 7.2.1
  • Pin @financial-times/o-labels to 6.2.2
  • Pin @financial-times/o-layout to 5.2.1
  • Pin @financial-times/o-loading to 5.2.1
  • Pin @financial-times/o-message to 5.2.1
  • Pin @financial-times/o-normalise to 3.2.2
  • Pin @financial-times/o-spacing to 3.2.1
  • Pin @financial-times/o-syntax-highlight to 4.2.2
  • Pin @financial-times/o-table to 9.2.3
  • Pin @financial-times/o-tabs to 6.2.0
  • Pin @financial-times/o-tracking to 4.2.1
  • Pin @financial-times/o-typography to 7.2.2
  • Pin @swc/cli to 0.1.55
  • Pin @swc/core to 1.2.133
  • Pin autoprefixer to 10.4.2
  • Pin cssnano to 5.0.16
  • Pin esbuild to 0.12.29
  • Pin eslint to 7.32.0
  • Pin eslint-config-origami-component to 2.2.0
  • Pin npm-run-all to 4.1.5
  • Pin postcss to 8.4.5
  • Pin postcss-cli to 8.3.1
  • Pin sass to 1.49.0
  • Pin semver to 7.3.5
  • Pin snyk to 1.836.0
chore(deps): update dependency @​swc/cli to v0.1.57
  • Schedule: ["at any time"]
  • Branch name: renovate/swc-cli-0.x
  • Merge into: master
  • Upgrade @swc/cli to 0.1.57
chore(deps): update dependency @​swc/core to v1.2.172
  • Schedule: ["at any time"]
  • Branch name: renovate/swc-core-1.x
  • Merge into: master
  • Upgrade @swc/core to 1.2.172
chore(deps): update dependency autoprefixer to v10.4.5
  • Schedule: ["at any time"]
  • Branch name: renovate/autoprefixer-10.x
  • Merge into: master
  • Upgrade autoprefixer to 10.4.5
chore(deps): update dependency nodemon to v2.0.15
  • Schedule: ["at any time"]
  • Branch name: renovate/nodemon-2.x
  • Merge into: master
  • Upgrade nodemon to 2.0.15
chore(deps): update dependency postcss to v8.4.12
  • Schedule: ["at any time"]
  • Branch name: renovate/postcss-8.x
  • Merge into: master
  • Upgrade postcss to 8.4.12
fix(deps): update dependency @financial-times/health-check to v2.1.10
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-health-check-2.x
  • Merge into: master
  • Upgrade @financial-times/health-check to 2.1.10
fix(deps): update dependency @financial-times/o-autoinit to v3.1.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-autoinit-3.x
  • Merge into: master
  • Upgrade @financial-times/o-autoinit to 3.1.3
fix(deps): update dependency @financial-times/o-footer-services to v4.2.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-footer-services-4.x
  • Merge into: master
  • Upgrade @financial-times/o-footer-services to 4.2.3
fix(deps): update dependency @financial-times/o-header-services to v5.2.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-header-services-5.x
  • Merge into: master
  • Upgrade @financial-times/o-header-services to 5.2.3
fix(deps): update dependency @financial-times/o-layout to v5.2.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-layout-5.x
  • Merge into: master
  • Upgrade @financial-times/o-layout to 5.2.3
fix(deps): update dependency @financial-times/o-message to v5.2.2
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-message-5.x
  • Merge into: master
  • Upgrade @financial-times/o-message to 5.2.2
fix(deps): update dependency @financial-times/o-syntax-highlight to v4.2.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-syntax-highlight-4.x
  • Merge into: master
  • Upgrade @financial-times/o-syntax-highlight to 4.2.3
fix(deps): update dependency @financial-times/o-table to v9.2.5
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-table-9.x
  • Merge into: master
  • Upgrade @financial-times/o-table to 9.2.5
fix(deps): update dependency @financial-times/origami-repo-data-client to v1.6.5
fix(deps): update dependency @financial-times/origami-service to v5.0.2
fix(deps): update dependency cheerio to v1.0.0-rc.10
  • Schedule: ["at any time"]
  • Branch name: renovate/cheerio-1.x
  • Merge into: master
  • Upgrade cheerio to 1.0.0-rc.10
fix(deps): update dependency http-errors to v1.8.1
  • Schedule: ["at any time"]
  • Branch name: renovate/http-errors-1.x
  • Merge into: master
  • Upgrade http-errors to 1.8.1
fix(deps): update dependency semver to v7.3.7
  • Schedule: ["at any time"]
  • Branch name: renovate/semver-7.x
  • Merge into: master
  • Upgrade semver to 7.3.7
chore(deps): update actions/setup-node action to v2.5.1
  • Schedule: ["at any time"]
  • Branch name: renovate/actions-setup-node-2.x
  • Merge into: master
  • Upgrade actions/setup-node to v2.5.1
chore(deps): update dependency cssnano to v5.1.7
  • Schedule: ["at any time"]
  • Branch name: renovate/cssnano-5.x
  • Merge into: master
  • Upgrade cssnano to 5.1.7
chore(deps): update dependency esbuild to v0.14.38
  • Schedule: ["at any time"]
  • Branch name: renovate/esbuild-0.x
  • Merge into: master
  • Upgrade esbuild to 0.14.38
chore(deps): update dependency jsdom to v16.7.0
  • Schedule: ["at any time"]
  • Branch name: renovate/jsdom-16.x
  • Merge into: master
  • Upgrade jsdom to 16.7.0
chore(deps): update dependency mocha to v8.4.0
  • Schedule: ["at any time"]
  • Branch name: renovate/mocha-8.x
  • Merge into: master
  • Upgrade mocha to 8.4.0
chore(deps): update dependency npm to v7.24.2
  • Schedule: ["at any time"]
  • Branch name: renovate/npm-7.x
  • Merge into: master
  • Upgrade npm to 7.24.2
chore(deps): update dependency sass to v1.51.0
  • Schedule: ["at any time"]
  • Branch name: renovate/sass-1.x
  • Merge into: master
  • Upgrade sass to 1.51.0
chore(deps): update dependency supertest to v6.2.2
  • Schedule: ["at any time"]
  • Branch name: renovate/supertest-6.x
  • Merge into: master
  • Upgrade supertest to 6.2.2
chore(deps): update hmarr/auto-approve-action action to v2.2.1
  • Schedule: ["at any time"]
  • Branch name: renovate/hmarr-auto-approve-action-2.x
  • Merge into: master
  • Upgrade hmarr/auto-approve-action to v2.2.1
chore(deps): update node.js to v14.19.1
  • Schedule: ["at any time"]
  • Branch name: renovate/node-14.x
  • Merge into: master
  • Upgrade node to 14.19.1
fix(deps): update dependency @financial-times/o-buttons to v7.5.0
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-buttons-7.x
  • Merge into: master
  • Upgrade @financial-times/o-buttons to 7.5.0
fix(deps): update dependency @financial-times/o-cookie-message to v6.4.2
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-cookie-message-6.x
  • Merge into: master
  • Upgrade @financial-times/o-cookie-message to 6.4.2
fix(deps): update dependency @financial-times/o-fonts to v5.3.3
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-fonts-5.x
  • Merge into: master
  • Upgrade @financial-times/o-fonts to 5.3.3
fix(deps): update dependency @financial-times/o-forms to v9.4.0
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-forms-9.x
  • Merge into: master
  • Upgrade @financial-times/o-forms to 9.4.0
fix(deps): update dependency @financial-times/o-tracking to v4.3.2
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-tracking-4.x
  • Merge into: master
  • Upgrade @financial-times/o-tracking to 4.3.2
fix(deps): update dependency @financial-times/o-typography to v7.3.2
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-typography-7.x
  • Merge into: master
  • Upgrade @financial-times/o-typography to 7.3.2
fix(deps): update dependency dotenv to v8.6.0
  • Schedule: ["at any time"]
  • Branch name: renovate/dotenv-8.x
  • Merge into: master
  • Upgrade dotenv to 8.6.0
fix(deps): update dependency snyk to v1.912.0
  • Schedule: ["at any time"]
  • Branch name: renovate/snyk-1.x
  • Merge into: master
  • Upgrade snyk to 1.912.0
chore(deps): update actions/checkout action to v3
  • Schedule: ["at any time"]
  • Branch name: renovate/actions-checkout-3.x
  • Merge into: master
  • Upgrade actions/checkout to v3
chore(deps): update actions/setup-node action to v3
  • Schedule: ["at any time"]
  • Branch name: renovate/actions-setup-node-3.x
  • Merge into: master
  • Upgrade actions/setup-node to v3.1.1
chore(deps): update dependency eslint to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/eslint-8.x
  • Merge into: master
  • Upgrade eslint to 8.14.0
chore(deps): update dependency jsdom to v19
  • Schedule: ["at any time"]
  • Branch name: renovate/jsdom-19.x
  • Merge into: master
  • Upgrade jsdom to 19.0.0
chore(deps): update dependency mocha to v9
  • Schedule: ["at any time"]
  • Branch name: renovate/mocha-9.x
  • Merge into: master
  • Upgrade mocha to 9.2.2
chore(deps): update dependency npm to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/npm-8.x
  • Merge into: master
  • Upgrade npm to 8.7.0
  • Upgrade npm to ^8.0.0
chore(deps): update dependency postcss-cli to v9
  • Schedule: ["at any time"]
  • Branch name: renovate/postcss-cli-9.x
  • Merge into: master
  • Upgrade postcss-cli to 9.1.0
chore(deps): update dependency sinon to v13
  • Schedule: ["at any time"]
  • Branch name: renovate/sinon-13.x
  • Merge into: master
  • Upgrade sinon to 13.0.2
chore(deps): update node.js to v16
  • Schedule: ["at any time"]
  • Branch name: renovate/node-16.x
  • Merge into: master
  • Upgrade node to 16.14.2
  • Upgrade node to ^16.0.0
fix(deps): update dependency @financial-times/o-tabs to v8
  • Schedule: ["at any time"]
  • Branch name: renovate/financial-times-o-tabs-8.x
  • Merge into: master
  • Upgrade @financial-times/o-tabs to 8.1.1
fix(deps): update dependency dotenv to v16
  • Schedule: ["at any time"]
  • Branch name: renovate/dotenv-16.x
  • Merge into: master
  • Upgrade dotenv to 16.0.0
fix(deps): update dependency http-errors to v2
  • Schedule: ["at any time"]
  • Branch name: renovate/http-errors-2.x
  • Merge into: master
  • Upgrade http-errors to 2.0.0
fix(deps): update dependency showdown to v2
  • Schedule: ["at any time"]
  • Branch name: renovate/showdown-2.x
  • Merge into: master
  • Upgrade showdown to 2.1.0

🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or spam the project. See docs for prhourlylimit for details.


⚠ Dependency Lookup Warnings ⚠

Please correct - or verify that you can safely ignore - these lookup failures before you merge this PR.

  • Failed to look up dependency fastly

Files affected: fastly/terraform/main.tf


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.


This PR has been generated by WhiteSource Renovate. View repository job log here.

@renovate renovate bot requested a review from a team as a code owner April 24, 2022 19:53
@origamiserviceuser origamiserviceuser added this to Backlog in Origami ✨ Apr 24, 2022
@github-actions github-actions bot added the service Relates to an Origami service label Apr 24, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
service Relates to an Origami service
Projects
Origami ✨
  
Backlog
Development

Successfully merging this pull request may close these issues.

None yet

1 participant