Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): bump the production-dependencies group with 2 updates #582

Merged
merged 1 commit into from
Feb 23, 2025

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 20, 2025

Bumps the production-dependencies group with 2 updates: ash and ash_authentication.

Updates ash from 3.4.63 to 3.4.64

Changelog

Sourced from ash's changelog.

v3.4.64 (2025-02-17)

Bug Fixes:

  • use undo action in generic action undo

  • handle generic actions with no return

  • ensure atomic set_attribute behaves the same as non-atomic

  • Missing actor on aggregate resource call (#1796)

  • Missing actor on aggregate call (#1793)

Improvements:

  • support receiving the inputs when undoing generic actions

  • simplify & unify sort/sort_input logic

  • support related sorts everywhere (not just sort_input)

  • add field names to identities (#1786)

Commits
  • d112e84 chore: release version v3.4.64
  • 84c207c improvement: support receiving the inputs when undoing generic actions
  • 3829d68 chore: undo should return :ok only for generic action step
  • bddf062 fix: use undo action in generic action undo
  • 8780874 fix: ensure atomic set_attribute behaves the same as non-atomic
  • a5d4dab chore: update .formatter.exs
  • 4d5db56 fix: Missing actor on aggregate resource call (#1796)
  • b93ae30 docs: writing queries guide
  • 7469763 chore(deps-dev): bump git_ops in the dev-dependencies group (#1794)
  • 2133e9b fix: Missing actor on aggregate call (#1793)
  • Additional commits viewable in compare view

Updates ash_authentication from 4.4.9 to 4.5.1

Changelog

Sourced from ash_authentication's changelog.

v4.5.1 (2025-02-14)

Improvements:

  • note on token error about upgrading ash_postgres

v4.5.0 (2025-02-13)

Features:

  • Add a log_out_everywhere add-on (#907)

  • Add a log_out_everywhere add-on

Bug Fixes:

  • ensure that the token resource has only :jti as a primary key (#908)

  • Sign in tokens only last 60 seconds, but they should still be revoked after use. (#906)

Commits
  • 2c7db54 chore: release version v4.5.1
  • eaffab3 improvement: note on token error about upgrading ash_postgres
  • 238ad55 chore: release version v4.5.0
  • df7b702 chore(deps): Bump ash_postgres (#911)
  • 127ff90 chore(deps-dev): Bump the dev-dependencies group with 3 updates (#910)
  • 0993f94 feat: Add a log_out_everywhere add-on (#907)
  • 8bb58f5 fix: ensure that the token resource has only :jti as a primary key (#908)
  • 25b913a fix: Sign in tokens only last 60 seconds, but they should still be revoked af...
  • 6291157 chore: typo
  • 03ef4af chore: only warn on is_revoked if its a generic action
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the production-dependencies group with 2 updates: [ash](https://github.com/ash-project/ash) and [ash_authentication](https://github.com/team-alembic/ash_authentication).


Updates `ash` from 3.4.63 to 3.4.64
- [Changelog](https://github.com/ash-project/ash/blob/main/CHANGELOG.md)
- [Commits](ash-project/ash@v3.4.63...v3.4.64)

Updates `ash_authentication` from 4.4.9 to 4.5.1
- [Release notes](https://github.com/team-alembic/ash_authentication/releases)
- [Changelog](https://github.com/team-alembic/ash_authentication/blob/main/CHANGELOG.md)
- [Commits](team-alembic/ash_authentication@v4.4.9...v4.5.1)

---
updated-dependencies:
- dependency-name: ash
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: ash_authentication
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code labels Feb 20, 2025
@jimsynz jimsynz merged commit bfb8d59 into main Feb 23, 2025
14 checks passed
@dependabot dependabot bot deleted the dependabot/hex/production-dependencies-75abcf9157 branch February 23, 2025 21:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant