Bump melos from 3.4.0 to 7.4.0#380
Conversation
Bumps [melos](https://github.com/invertase/melos/tree/main/packages) from 3.4.0 to 7.4.0. - [Changelog](https://github.com/invertase/melos/blob/main/CHANGELOG.md) - [Commits](https://github.com/invertase/melos/commits/melos-v7.4.0/packages) --- updated-dependencies: - dependency-name: melos dependency-version: 7.4.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
To view this pull requests documentation preview, visit the following URL: docs.page/invertase/dart_custom_lint~380 Documentation is deployed and generated using docs.page. |
|
|
Code Quality ReviewChangesDependabot-generated bump of Quality AssessmentThe change itself is trivially correct -- it is a single constraint bump in a root-level dev dependency. However, there are important concerns:
VerdictNEEDS_WORK -- The constraint bump alone is incomplete. The |
Fork Maintainer Review (dart_custom_lint)Reviewing on behalf of SummaryDependabot PR bumping melos from Upstream StatusThis is an upstream-only PR (invertase/dart_custom_lint). Not yet merged. AssessmentNot applicable to our fork. The For the upstream repo: this is a major version bump (3.x -> 7.x) from dependabot. If upstream still uses melos, it would need careful testing for breaking changes across 4 major versions. The melos 7.x changelog shows significant changes including layered topological sort, workspace nesting, and script groups. RecommendationCLOSE (for our fork) / HOLD (for upstream -- needs human review of breaking changes across 4 major versions before merging) No action needed on our fork -- we no longer use melos. |
Compatibility Review (Monorepo Impact)Reviewer context: We maintain the open-runtime/dart_custom_lint fork, which is consumed as a workspace member in our Dart monorepo ( Monorepo ImpactHIGH RISK. Our fork does not use melos for day-to-day development -- we rely on Dart native pub workspaces ( The
Bumping the constraint to Dependency Concerns
RecommendationHOLD -- Do not merge as-is. The |
|
Superseded by #383. |
Bumps melos from 3.4.0 to 7.4.0.
Changelog
Sourced from melos's changelog.
... (truncated)
Commits
e242812chore(release): Publish Melos v7.4.0 (#983)649026efeat: Support tag_pattern based versioning in git dependencies (#982)9a9dfd9feat: Changed execution ordering from relying on strongly related components ...6c2e344feat: Changed from topological sort to layered topologic sort for orderDepend...c159a68feat: Retry (with backoff) when executing commands against repo (#971)79876a6docs: add supabase codegen package (#969)d15b553feat: recursively discover packages in nested workspaces (#968)4457e07chore(release): Publish Melos v7.3.0 (#965)47982d9feat: add groups config for scripts and--groupoption (#963)6bc8c24feat: add option to opt-out of IntellijrunConfigurationgeneration (#962)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)