chore(deps): bump colord from 2.9.3 to 2.10.0 in /website - #2705
Rana Singh (ranadeepsingh) merged 1 commit into
Conversation
Bumps [colord](https://github.com/omgovich/colord) from 2.9.3 to 2.10.0. - [Release notes](https://github.com/omgovich/colord/releases) - [Changelog](https://github.com/omgovich/colord/blob/master/CHANGELOG.md) - [Commits](https://github.com/omgovich/colord/commits/v2.10) --- updated-dependencies: - dependency-name: colord dependency-version: 2.10.0 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
|
Azure Pipelines: There may be pipelines that require an authorized user to comment /azp run to run. |
|
Hey Dependabot (@dependabot)[bot] 👋! We use semantic commit messages to streamline the release process. Examples of commit messages with semantic prefixes:
To test your commit locally, please follow our guild on building from source. |
Dependency Review✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.OpenSSF Scorecard
Scanned Files
|
There was a problem hiding this comment.
🟢 Approval recommended
The change is a straightforward lockfile-only dependency bump with no code changes and consistent updated resolution metadata.
Pull request overview
Updates the website’s NPM lockfile to pull in colord v2.10.0 (from v2.9.3), aligning the website dependency resolution with the newer upstream release.
Changes:
- Bumped
colordto2.10.0inwebsite/package-lock.json, including updatedresolvedtarball URL and integrity hash.
File summaries
| File | Description |
|---|---|
website/package-lock.json |
Updates the resolved colord package version and integrity metadata for the website’s dependency tree. |
Review details
Copilot wasn't able to review any files in this pull request.
Files not reviewed (1)
- website/package-lock.json: Generated file
- Files reviewed: 0/1 changed files
- Comments generated: 0
- Review effort level: Lite
💡 Configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Bumps colord from 2.9.3 to 2.10.0.
Release notes
Sourced from colord's releases.
Changelog
Sourced from colord's changelog.
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.