Skip to content

Dependabot/npm and yarn/npm and yarn 99152fd84d #38315

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 7 commits into
base: main
Choose a base branch
from

Conversation

aqsa326
Copy link

@aqsa326 aqsa326 commented Jul 24, 2025

Why

How

Test Plan

Checklist

aqsa326 and others added 7 commits June 13, 2025 19:59
Bumps the npm_and_yarn group with 1 update in the /apps/expo-go/modules/react-native-webview directory: [semantic-release](https://github.com/semantic-release/semantic-release).
Bumps the npm_and_yarn group with 1 update in the /apps/test-suite directory: [firebase](https://github.com/firebase/firebase-js-sdk).
Bumps the npm_and_yarn group with 2 updates in the /apps/test-suite/functions directory: [@grpc/grpc-js](https://github.com/grpc/grpc-node) and [tar-fs](https://github.com/mafintosh/tar-fs).
Bumps the npm_and_yarn group with 1 update in the /tools directory: [marked](https://github.com/markedjs/marked).


Updates `semantic-release` from 15.13.24 to 19.0.3
- [Release notes](https://github.com/semantic-release/semantic-release/releases)
- [Commits](semantic-release/semantic-release@v15.13.24...v19.0.3)

Updates `firebase` from 9.23.0 to 12.0.0
- [Release notes](https://github.com/firebase/firebase-js-sdk/releases)
- [Changelog](https://github.com/firebase/firebase-js-sdk/blob/main/CHANGELOG.md)
- [Commits](https://github.com/firebase/firebase-js-sdk/compare/[email protected]@12.0.0)

Updates `@grpc/grpc-js` from 1.10.8 to 1.10.11
- [Release notes](https://github.com/grpc/grpc-node/releases)
- [Commits](https://github.com/grpc/grpc-node/compare/@grpc/[email protected]...@grpc/[email protected])

Updates `tar-fs` from 2.1.2 to 2.1.3
- [Commits](mafintosh/tar-fs@v2.1.2...v2.1.3)

Updates `marked` from 1.2.9 to 4.0.10
- [Release notes](https://github.com/markedjs/marked/releases)
- [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json)
- [Commits](markedjs/marked@v1.2.9...v4.0.10)

---
updated-dependencies:
- dependency-name: semantic-release
  dependency-version: 19.0.3
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: firebase
  dependency-version: 12.0.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: "@grpc/grpc-js"
  dependency-version: 1.10.11
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: tar-fs
  dependency-version: 2.1.3
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: marked
  dependency-version: 4.0.10
  dependency-type: direct:production
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <[email protected]>
…n/apps/expo-go/modules/react-native-webview/npm_and_yarn-ef33204073

Bump the npm_and_yarn group across 4 directories with 5 updates
---
updated-dependencies:
- dependency-name: "@babel/runtime"
  dependency-version: 7.27.6
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: path-to-regexp
  dependency-version: 3.3.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-version: 7.6.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: firebase
  dependency-version: 12.0.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: ws
  dependency-version: 8.18.1
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: node-fetch
  dependency-version: 3.2.10
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: undici
  dependency-version: 6.21.2
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: "@adobe/css-tools"
  dependency-version: 4.4.3
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@babel/helpers"
  dependency-version: 7.27.6
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@grpc/grpc-js"
  dependency-version: 1.9.15
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: jose
  dependency-version: 4.15.9
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: parse-uri
  dependency-version: 1.0.16
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: tar-fs
  dependency-version: 1.16.5
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-version: 7.7.2
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: form-data
  dependency-version: 2.5.5
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: jose
  dependency-version: 4.15.9
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: semver
  dependency-version: 7.7.2
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: "@types/semver"
  dependency-version: 7.7.0
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: cross-spawn
  dependency-version: 7.0.6
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: "@babel/helpers"
  dependency-version: 7.27.6
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: http-cache-semantics
  dependency-version: 4.2.0
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <[email protected]>
Copy link
Contributor

Subscribed to pull request

File Patterns Mentions
.github/workflows/** @brentvatne, @Kudo
packages/@expo/cli/** @EvanBacon, @byCedric
packages/@expo/config-plugins/** @EvanBacon, @brentvatne
packages/@expo/server/** @byCedric
packages/expo/** @ide, @lukmccall, @brentvatne
packages/expo-doctor/** @keith-kurak
packages/expo-router/** @EvanBacon, @Ubax, @hassankhan
packages/install-expo-modules/** @Kudo
tools/** @Kudo

Generated by CodeMention

@expo-bot
Copy link
Collaborator

Hi there! 👋 I'm a bot whose goal is to ensure your contributions meet our guidelines.

I've found some issues in your pull request that should be addressed (click on them for more details) 👇

⚠️ Suggestion: Missing changelog entries


Your changes should be noted in the changelog, e.g.:
- Dependabot/npm and yarn/npm and yarn 99152fd84d ([#38315](https://github.com/expo/expo/pull/38315) by [@aqsa326](https://github.com/aqsa326))
Read Updating Changelogs guide and consider adding an appropriate entry to the following changelogs:


Generated by ExpoBot 🤖 against 5fb2b20

@expo-bot expo-bot added the bot: suggestions ExpoBot has some suggestions label Jul 24, 2025
Copy link
Member

@ide ide left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This needs an explanation and detailed test plan plus cleanup of unrelated files.

@aqsa326 aqsa326 changed the base branch from main to 07-16-rn-0.81.0-rc.1_updated_expo_code July 25, 2025 03:34
@aqsa326 aqsa326 changed the base branch from 07-16-rn-0.81.0-rc.1_updated_expo_code to main July 25, 2025 07:07
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/npm_and_yarn-99152fd84d branch July 27, 2025 09:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bot: suggestions ExpoBot has some suggestions
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants