dependabot[bot]
2ff8eac774
Bump foundation_rails_helper from 4.0.0 to 4.0.1
...
Bumps [foundation_rails_helper](https://github.com/sgruhier/foundation_rails_helper ) from 4.0.0 to 4.0.1.
- [Release notes](https://github.com/sgruhier/foundation_rails_helper/releases )
- [Changelog](https://github.com/sgruhier/foundation_rails_helper/blob/master/CHANGELOG.md )
- [Commits](https://github.com/sgruhier/foundation_rails_helper/commits )
---
updated-dependencies:
- dependency-name: foundation_rails_helper
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-25 16:19:32 +02:00
Javi Martín
6f7c8ba00a
Merge pull request #4935 from consul/dependabot/bundler/master/capybara-3.37.1
...
Bump capybara from 3.35.3 to 3.37.1
2022-08-25 16:14:16 +02:00
dependabot[bot]
019bc52c3f
Bump capybara from 3.35.3 to 3.37.1
...
Bumps [capybara](https://github.com/teamcapybara/capybara ) from 3.35.3 to 3.37.1.
- [Release notes](https://github.com/teamcapybara/capybara/releases )
- [Changelog](https://github.com/teamcapybara/capybara/blob/master/History.md )
- [Commits](https://github.com/teamcapybara/capybara/compare/3.35.3...3.37.1 )
---
updated-dependencies:
- dependency-name: capybara
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-25 15:52:33 +02:00
dependabot[bot]
bbfebaccf9
Bump capistrano-bundler from 2.0.1 to 2.1.0
...
Bumps [capistrano-bundler](https://github.com/capistrano/bundler ) from 2.0.1 to 2.1.0.
- [Release notes](https://github.com/capistrano/bundler/releases )
- [Commits](https://github.com/capistrano/bundler/compare/v2.0.1...v2.1.0 )
---
updated-dependencies:
- dependency-name: capistrano-bundler
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-25 15:48:34 +02:00
Javi Martín
fc757428ef
Bump rubocop-rails from 2.11.3 to 2.15.2
...
Bumps [rubocop-rails](https://github.com/rubocop/rubocop-rails ) from 2.11.3 to 2.15.2.
- [Release notes](https://github.com/rubocop/rubocop-rails/releases )
- [Changelog](https://github.com/rubocop/rubocop-rails/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rubocop/rubocop-rails/compare/v2.11.3...v2.15.2 )
---
updated-dependencies:
- dependency-name: rubocop-rails
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 22:11:47 +02:00
dependabot[bot]
57a2566594
Bump wicked_pdf from 2.1.0 to 2.6.3
...
Bumps [wicked_pdf](https://github.com/mileszs/wicked_pdf ) from 2.1.0 to 2.6.3.
- [Release notes](https://github.com/mileszs/wicked_pdf/releases )
- [Changelog](https://github.com/mileszs/wicked_pdf/blob/master/CHANGELOG.md )
- [Commits](https://github.com/mileszs/wicked_pdf/compare/2.1.0...2.6.3 )
---
updated-dependencies:
- dependency-name: wicked_pdf
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 21:35:54 +02:00
dependabot[bot]
cb72c00b43
Bump sitemap_generator from 6.1.2 to 6.3.0
...
Bumps [sitemap_generator](https://github.com/kjvarga/sitemap_generator ) from 6.1.2 to 6.3.0.
- [Release notes](https://github.com/kjvarga/sitemap_generator/releases )
- [Changelog](https://github.com/kjvarga/sitemap_generator/blob/master/CHANGES.md )
- [Commits](https://github.com/kjvarga/sitemap_generator/compare/v6.1.2...v6.3.0 )
---
updated-dependencies:
- dependency-name: sitemap_generator
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 21:19:37 +02:00
dependabot[bot]
3bd6e6da50
Bump caxlsx from 3.1.0 to 3.2.0
...
Bumps [caxlsx](https://github.com/caxlsx/caxlsx ) from 3.1.0 to 3.2.0.
- [Release notes](https://github.com/caxlsx/caxlsx/releases )
- [Changelog](https://github.com/caxlsx/caxlsx/blob/master/CHANGELOG.md )
- [Commits](https://github.com/caxlsx/caxlsx/compare/v3.1.0...v3.2.0 )
---
updated-dependencies:
- dependency-name: caxlsx
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 20:58:56 +02:00
Javi Martín
f620f1a385
Merge pull request #4912 from consul/dependabot/bundler/master/daemons-1.4.1
...
Bump daemons from 1.4.0 to 1.4.1
2022-08-24 20:56:30 +02:00
dependabot[bot]
1149d276e5
Bump daemons from 1.4.0 to 1.4.1
...
Bumps [daemons](https://github.com/thuehlinger/daemons ) from 1.4.0 to 1.4.1.
- [Release notes](https://github.com/thuehlinger/daemons/releases )
- [Changelog](https://github.com/thuehlinger/daemons/blob/master/Releases )
- [Commits](https://github.com/thuehlinger/daemons/compare/v1.4.0...v1.4.1 )
---
updated-dependencies:
- dependency-name: daemons
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 20:38:09 +02:00
dependabot[bot]
6a6ad9ee75
Bump caxlsx_rails from 0.6.2 to 0.6.3
...
Bumps [caxlsx_rails](https://github.com/caxlsx/caxlsx_rails ) from 0.6.2 to 0.6.3.
- [Release notes](https://github.com/caxlsx/caxlsx_rails/releases )
- [Changelog](https://github.com/caxlsx/caxlsx_rails/blob/master/CHANGELOG.md )
- [Commits](https://github.com/caxlsx/caxlsx_rails/compare/v0.6.2...v0.6.3 )
---
updated-dependencies:
- dependency-name: caxlsx_rails
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 20:11:46 +02:00
dependabot[bot]
c1a6345f06
Bump capistrano3-puma from 5.0.4 to 5.2.0
...
Bumps [capistrano3-puma](https://github.com/seuros/capistrano-puma ) from 5.0.4 to 5.2.0.
- [Release notes](https://github.com/seuros/capistrano-puma/releases )
- [Changelog](https://github.com/seuros/capistrano-puma/blob/master/CHANGELOG.md )
- [Commits](https://github.com/seuros/capistrano-puma/compare/v5.0.4...v5.2.0 )
---
updated-dependencies:
- dependency-name: capistrano3-puma
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 19:45:07 +02:00
dependabot[bot]
3b8d990ade
Bump capistrano-rails from 1.6.1 to 1.6.2
...
Bumps [capistrano-rails](https://github.com/capistrano/rails ) from 1.6.1 to 1.6.2.
- [Release notes](https://github.com/capistrano/rails/releases )
- [Commits](https://github.com/capistrano/rails/compare/v1.6.1...v1.6.2 )
---
updated-dependencies:
- dependency-name: capistrano-rails
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 19:40:43 +02:00
dependabot[bot]
809fbb3000
Bump sprockets from 4.0.2 to 4.1.1
...
Bumps [sprockets](https://github.com/rails/sprockets ) from 4.0.2 to 4.1.1.
- [Release notes](https://github.com/rails/sprockets/releases )
- [Changelog](https://github.com/rails/sprockets/blob/main/CHANGELOG.md )
- [Commits](https://github.com/rails/sprockets/compare/v4.0.2...v4.1.1 )
---
updated-dependencies:
- dependency-name: sprockets
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-08-24 19:23:08 +02:00
Javi Martín
480ab6a9da
Use truncate_all instead of DatabaseCleaner
...
Performance tests show both methods of truncating the database take
about the same time, so we can remove one dependency and we don't lose
anything in the process.
2022-08-24 18:11:56 +02:00
Javi Martín
4732a6b22d
Bump web-console from 3.7.0 to 4.0.4
...
We were getting a warning after upgrading to Rails 6:
DEPRECATION WARNING: ActionView::Base instances should be constructed
with a lookup context, assignments, and a controller.
We didn't upgrade web-console earlier because version 4.x isn't
compatible with Rails 5.
2022-08-24 14:36:49 +02:00
Javi Martín
a72572eb64
Add image_processing gem dependency
...
It's now used by default to handle image variants. We were getting a
warning:
DEPRECATION WARNING: Generating image variants will require the
image_processing gem in Rails 6.1. Please add `gem 'image_processing',
'~> 1.2'` to your Gemfile.
Note `mini_magick` is required in order to use the `analyze` method [1].
Since we use it in our image (and site customization image) validations,
we're still keeping the explicit dependency in our Gemfile.
[1] https://guides.rubyonrails.org/v6.0/active_storage_overview.html#analyzing-files
2022-08-24 14:36:49 +02:00
Javi Martín
ffc14e499a
Upgrade to Rails 6.0
...
All the code in the `bin/` and the `config/` folders has been generated
running `rake app:update`. The only exception is the code in
`config/application.rb` where we've excluded the engines that Rails 6.0
has added, since we don't use them.
There are a few changes in Active Storage which aren't compatible with
the code we were using until now.
Since the method to assign an attachment in ActiveStorage has changed
and is incompatible with the hack we used to allow assigning `nil`
attachments, and since ActiveStorage now supports assigning `nil`
attachments, we're removing the mentioned hack. This makes the
HasAttachment module redundant, so we're removing it.
Another change in ActiveStorage is files are no longer saved before
saving the `ActiveStorage::Attachment` record. This means we need to
manually upload the file when using direct uploads. We also have to
change the width and height validations we used for images; however,
doing so results in very complex code, and we currently have to write
that code for both images and site customization images.
So, for now, we're just uploading the file before checking its
dimensions. Not ideal, though. We might use active_storage_validations
in the future to fix this issue (when they support a proc/lambda, as
mentioned in commit 600f5c35e ).
We also need to update a couple of tests due to a small change in
response headers. Now the content disposition returns something like:
```
attachment; filename="budget_investments.csv"; filename*=UTF-8''budget_investments.csv
```
So we're updating regular expression we use to check the filename.
Finally, Rails 6.0.1 changed the way the host is set in integration
tests [1] and so both `Capybara.app_host` and `Capybara.default_host`
were ignored when generating URLs in the relationable examples. The only
way I've found to make it work is to explicitely assign the host to the
integration session. Rails 6.1 will change this setup again, so maybe
then we can remove this hack.
[1] https://github.com/rails/rails/pull/36283/commits/fe00711e9
2022-08-24 14:33:02 +02:00
Javi Martín
241dd53411
Bump rails from 5.2.7.1 to 5.2.8.1
...
This release introduces an incompatibility in order to fix a security
issue when using YAML for serialization. We use YAML to serialize the
`ranges` column in the `legislation_annotations` table, so we have to
allow the `ActiveSupport::HashWithIndifferentAccess` class in order to
properly read this column.
Ideally we'd use a JSONB column for the ranges (like we do in other
places), but that would require migrating existing data.
Bumps [rails](https://github.com/rails/rails) from 5.2.7.1 to 5.2.8.1.
- [Release notes](https://github.com/rails/rails/releases)
- [Commits](https://github.com/rails/rails/compare/v5.2.7.1...v5.2.8.1)
---
updated-dependencies:
- dependency-name: rails
...
2022-07-26 22:58:43 +02:00
dependabot[bot]
2dcb7116a1
Bump graphql from 1.11.5 to 1.12.14
...
Bumps [graphql](https://github.com/rmosolgo/graphql-ruby ) from 1.11.5 to 1.12.14.
- [Release notes](https://github.com/rmosolgo/graphql-ruby/releases )
- [Changelog](https://github.com/rmosolgo/graphql-ruby/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rmosolgo/graphql-ruby/compare/v1.11.5...v1.12.14 )
---
updated-dependencies:
- dependency-name: graphql
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-06-02 13:23:56 +02:00
Javi Martín
82ef55256a
Bump Rails from 5.2.7 to 5.2.7.1
...
This version fixes a couple of security issues in Rails.
2022-05-03 13:17:34 +02:00
dependabot[bot]
b2294460c4
Bump puma from 4.3.11 to 4.3.12
...
Bumps [puma](https://github.com/puma/puma ) from 4.3.11 to 4.3.12.
- [Release notes](https://github.com/puma/puma/releases )
- [Changelog](https://github.com/puma/puma/blob/master/History.md )
- [Commits](https://github.com/puma/puma/compare/v4.3.11...v4.3.12 )
---
updated-dependencies:
- dependency-name: puma
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-03-31 13:10:59 +02:00
Javi Martín
7ce263efd6
Bump rails from 5.2.6 to 5.2.7
...
This version solves a security issue in Active Storage; we're including
it even if most probably no CONSUL applications are affected:
https://discuss.rubyonrails.org/t/cve-2022-21831-possible-code-injection-vulnerability-in-rails-active-storage/80199
2022-03-16 20:34:13 +01:00
dependabot[bot]
dc0c5c1da0
Bump view_component from 2.37.0 to 2.49.1
...
Note we don't require the "view_component/engine" in the Gemfile
anymore, since it's been deprecated since ViewComponent 2.46.0.
Bumps [view_component](https://github.com/github/view_component ) from 2.37.0 to 2.49.1.
- [Release notes](https://github.com/github/view_component/releases )
- [Changelog](https://github.com/github/view_component/blob/main/docs/CHANGELOG.md )
- [Commits](https://github.com/github/view_component/compare/v2.37.0...v2.49.1 )
---
updated-dependencies:
- dependency-name: view_component
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-03-04 12:53:58 +01:00
Javi Martín
7212657c02
Remove Paperclip and use just Active Storage
2022-02-23 18:43:48 +01:00
Javi Martín
600f5c35e9
Use file_validators instead of Papeclip validations
...
Since we're going to remove Paperclip and Active Storage doesn't provide
any validations, we have to either write our own validation rules or use
a different gem.
We're using the file_validators gem instead of the
`active_storage_validations` gem because the latter doesn't support
proc/lambda objects in size and content type definitions. We need to use
them because in our case these values depend on settings stored in the
database.
2022-02-23 18:21:38 +01:00
Javi Martín
091abfc944
Use Active Storage to render attachments
...
This way we fix a bug we mentioned in commit 930bb753c which caused
links to documents to be broken when editing their title because the
title was used to generate the URL of the document.
Note we're still using Paperclip to render cached attachments because
this is the only case where we store files with just Paperclip and not
Active Storage.
With Active Storage, we render attachments just like any other resource,
using `polymorphic_path`. Paperclip included the `url` method in the
model; since the model doesn't have access to the request parameters
(like the host), this was inconvenient because it wasn't possible to
generate absolute URLs with Paperclip.
In order to simplify the code and make it similar to the way we used
Paperclip, we're adding a `variant` method accepting the name of a
variant and returning the variant.
2022-02-23 18:21:38 +01:00
dependabot[bot]
9493a7ed47
Bump puma from 4.3.10 to 4.3.11
...
Bumps [puma](https://github.com/puma/puma ) from 4.3.10 to 4.3.11.
- [Release notes](https://github.com/puma/puma/releases )
- [Changelog](https://github.com/puma/puma/blob/master/History.md )
- [Commits](https://github.com/puma/puma/compare/v4.3.10...v4.3.11 )
---
updated-dependencies:
- dependency-name: puma
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2022-02-21 18:24:18 +01:00
dependabot[bot]
91cd1ce1bc
Bump sprockets from 3.7.2 to 4.0.2
...
Bumps [sprockets](https://github.com/rails/sprockets ) from 3.7.2 to 4.0.2.
- [Release notes](https://github.com/rails/sprockets/releases )
- [Changelog](https://github.com/rails/sprockets/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rails/sprockets/compare/v3.7.2...v4.0.2 )
---
updated-dependencies:
- dependency-name: sprockets
dependency-type: direct:production
update-type: version-update:semver-major
...
(Comment by Javi Martín): After this upgrade, compiling the assets is
significantly slower. Also note we need to explicitely include CKEditor
assets and the default application assets and images; we didn't have to
do so in the past.
Signed-off-by: dependabot[bot] <support@github.com >
2022-01-10 15:01:23 +01:00
Javi Martín
b544ec8988
Remove rollbar gem dependency
...
We already support Errbit and Airbrake as error monitoring services.
Since some people might not want to setup Errbit and might prefer
Rollbar over Airbrake, we're referencing it in the custom gemfile.
2021-12-08 15:56:17 +01:00
Javi Martín
dc44dda30c
Remove newrelic gem dependency
...
We haven't updated the gem for years and don't know whether it
still works with our current Ruby and Rails versions.
Besides, dependabot keeps opening pull requests to update it. In theory
we could just ignore the dependabot pull requests for this dependency,
but unfortunately right now we can't add a dependabot config file
because it would open pull requests on forks as well.
Finally, there are other companies offering similar services for Rails
applications, and it's up to each CONSUL installation to decide which
one is better for them. We might add a self-hosted performance
monitoring tool in the future.
Since other CONSUL installations might be using Newrelic, and in general
we recommend adding an application monitoring tool, we're suggesting it
in the custom gemfile. In the name of neutrality, we're also adding
Sentry. We might add other services in the future.
2021-12-08 15:56:09 +01:00
dependabot[bot]
d141880a6a
Bump puma from 4.3.8 to 4.3.10
...
Bumps [puma](https://github.com/puma/puma ) from 4.3.8 to 4.3.10.
- [Release notes](https://github.com/puma/puma/releases )
- [Changelog](https://github.com/puma/puma/blob/master/History.md )
- [Commits](https://github.com/puma/puma/compare/v4.3.8...v4.3.10 )
---
updated-dependencies:
- dependency-name: puma
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-10-14 16:02:29 +02:00
dependabot[bot]
376fa684d9
Bump omniauth-google-oauth2, omniauth-rails_csrf_protection and omniauth
...
Bumps [omniauth-google-oauth2](https://github.com/zquestz/omniauth-google-oauth2 ), [omniauth-rails_csrf_protection](https://github.com/cookpad/omniauth-rails_csrf_protection ) and [omniauth](https://github.com/omniauth/omniauth ). These dependencies needed to be updated together.
Updates `omniauth-google-oauth2` from 0.8.2 to 1.0.0
- [Release notes](https://github.com/zquestz/omniauth-google-oauth2/releases )
- [Changelog](https://github.com/zquestz/omniauth-google-oauth2/blob/master/CHANGELOG.md )
- [Commits](https://github.com/zquestz/omniauth-google-oauth2/compare/v0.8.2...v1.0.0 )
Updates `omniauth-rails_csrf_protection` from 0.1.2 to 1.0.0
- [Release notes](https://github.com/cookpad/omniauth-rails_csrf_protection/releases )
- [Commits](https://github.com/cookpad/omniauth-rails_csrf_protection/compare/v0.1.2...v1.0.0 )
Updates `omniauth` from 1.9.1 to 2.0.4
- [Release notes](https://github.com/omniauth/omniauth/releases )
- [Commits](https://github.com/omniauth/omniauth/compare/v1.9.1...v2.0.4 )
---
updated-dependencies:
- dependency-name: omniauth-google-oauth2
dependency-type: direct:production
update-type: version-update:semver-major
- dependency-name: omniauth-rails_csrf_protection
dependency-type: direct:production
update-type: version-update:semver-major
- dependency-name: omniauth
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-10-08 01:10:47 +02:00
dependabot[bot]
838e5a50be
Bump airbrake from 7.4.0 to 11.0.3
...
Note we're using `config.performance_stats = false` because enabling it
was causing a huge performance hit; pages were about 2-4 times slower
and some tests failed since requests took longer than Capybara's default
max wait time. Errbit also recommends disabling this option since
Errbit doesn't handle performance stats.
Bumps [airbrake](https://github.com/airbrake/airbrake ) from 7.4.0 to 11.0.3.
- [Release notes](https://github.com/airbrake/airbrake/releases )
- [Changelog](https://github.com/airbrake/airbrake/blob/master/CHANGELOG.md )
- [Commits](https://github.com/airbrake/airbrake/compare/v7.4.0...v11.0.3 )
---
updated-dependencies:
- dependency-name: airbrake
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-10-07 04:12:23 +02:00
Javi Martín
1c973289a8
Remove devise-async dependency
...
We don't use it since commit 84338592d .
2021-09-11 17:28:19 +02:00
dependabot[bot]
632a650161
Bump rubocop-rails, rubocop-performance, rubocop-rspec and rubocop
...
Bumps [rubocop-rails](https://github.com/rubocop/rubocop-rails ), [rubocop-performance](https://github.com/rubocop/rubocop-performance ), [rubocop-rspec](https://github.com/rubocop/rubocop-rspec ) and [rubocop](https://github.com/rubocop/rubocop ). These dependencies needed to be updated together.
Updates `rubocop-rails` from 2.9.1 to 2.11.3
- [Release notes](https://github.com/rubocop/rubocop-rails/releases )
- [Changelog](https://github.com/rubocop/rubocop-rails/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rubocop/rubocop-rails/compare/v2.9.1...v2.11.3 )
Updates `rubocop-performance` from 1.10.2 to 1.11.4
- [Release notes](https://github.com/rubocop/rubocop-performance/releases )
- [Changelog](https://github.com/rubocop/rubocop-performance/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rubocop/rubocop-performance/compare/v1.10.2...v1.11.4 )
Updates `rubocop-rspec` from 1.44.1 to 2.4.0
- [Release notes](https://github.com/rubocop/rubocop-rspec/releases )
- [Changelog](https://github.com/rubocop/rubocop-rspec/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rubocop/rubocop-rspec/compare/v1.44.1...v2.4.0 )
Updates `rubocop` from 0.93.1 to 1.18.4
- [Release notes](https://github.com/rubocop/rubocop/releases )
- [Changelog](https://github.com/rubocop/rubocop/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rubocop/rubocop/compare/v0.93.1...v1.18.4 )
---
updated-dependencies:
- dependency-name: rubocop-rails
dependency-type: direct:development
update-type: version-update:semver-minor
- dependency-name: rubocop-performance
dependency-type: direct:development
update-type: version-update:semver-minor
- dependency-name: rubocop-rspec
dependency-type: direct:development
update-type: version-update:semver-major
- dependency-name: rubocop
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-09-03 11:49:52 +02:00
dependabot[bot]
6072372c9d
Bump globalize from 5.3.1 to 6.0.1
...
Bumps [globalize](https://github.com/globalize/globalize ) from 5.3.1 to 6.0.1.
- [Release notes](https://github.com/globalize/globalize/releases )
- [Changelog](https://github.com/globalize/globalize/blob/master/CHANGELOG.md )
- [Commits](https://github.com/globalize/globalize/commits )
---
updated-dependencies:
- dependency-name: globalize
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-15 20:23:21 +00:00
dependabot[bot]
1d594d1622
Bump dalli from 2.7.10 to 2.7.11
...
Bumps [dalli](https://github.com/petergoldstein/dalli ) from 2.7.10 to 2.7.11.
- [Release notes](https://github.com/petergoldstein/dalli/releases )
- [Changelog](https://github.com/petergoldstein/dalli/blob/master/History.md )
- [Commits](https://github.com/petergoldstein/dalli/compare/v2.7.10...v2.7.11 )
---
updated-dependencies:
- dependency-name: dalli
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-14 23:54:58 +00:00
Javi Martín
b5220effd1
Bump ahoy_matey from 1.6.0 to 3.2.0
...
Bumps [ahoy_matey](https://github.com/ankane/ahoy ) from 1.6.0 to 3.2.0.
- [Release notes](https://github.com/ankane/ahoy/releases )
- [Changelog](https://github.com/ankane/ahoy/blob/master/CHANGELOG.md )
- [Commits](https://github.com/ankane/ahoy/compare/v1.6.0...v3.2.0 )
---
updated-dependencies:
- dependency-name: ahoy_matey
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-15 01:26:29 +02:00
dependabot[bot]
9290b0f1fc
Bump acts_as_votable from 0.12.1 to 0.13.1
...
Bumps [acts_as_votable](https://github.com/ryanto/acts_as_votable ) from 0.12.1 to 0.13.1.
- [Release notes](https://github.com/ryanto/acts_as_votable/releases )
- [Commits](https://github.com/ryanto/acts_as_votable/compare/v0.12.1...v0.13.1 )
---
updated-dependencies:
- dependency-name: acts_as_votable
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-14 18:02:58 +00:00
dependabot[bot]
ee567c2946
Bump wkhtmltopdf-binary from 0.12.4 to 0.12.6.5
...
We're also updating the WickedPdf initializer since wkhtmltopdf prevents
accessing the filesystem by default since version 0.12.6, causing image
tags generated by the `wicked_pdf_image_tag` method not to be rendered.
Bumps [wkhtmltopdf-binary](https://github.com/zakird/wkhtmltopdf_binary_gem ) from 0.12.4 to 0.12.6.5.
- [Release notes](https://github.com/zakird/wkhtmltopdf_binary_gem/releases )
- [Changelog](https://github.com/zakird/wkhtmltopdf_binary_gem/blob/master/CHANGELOG.md )
- [Commits](https://github.com/zakird/wkhtmltopdf_binary_gem/commits )
---
updated-dependencies:
- dependency-name: wkhtmltopdf-binary
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-14 15:19:09 +02:00
dependabot[bot]
9d4c781a4c
Bump ancestry from 3.2.1 to 4.1.0
...
Bumps [ancestry](https://github.com/stefankroes/ancestry ) from 3.2.1 to 4.1.0.
- [Release notes](https://github.com/stefankroes/ancestry/releases )
- [Changelog](https://github.com/stefankroes/ancestry/blob/master/CHANGELOG.md )
- [Commits](https://github.com/stefankroes/ancestry/compare/v3.2.1...v4.1.0 )
---
updated-dependencies:
- dependency-name: ancestry
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-13 19:04:17 +00:00
dependabot[bot]
e67272a974
Bump caxlsx from 3.0.4 to 3.1.0
...
Bumps [caxlsx](https://github.com/caxlsx/caxlsx ) from 3.0.4 to 3.1.0.
- [Release notes](https://github.com/caxlsx/caxlsx/releases )
- [Changelog](https://github.com/caxlsx/caxlsx/blob/master/CHANGELOG.md )
- [Commits](https://github.com/caxlsx/caxlsx/compare/v.3.0.4...v3.1.0 )
---
updated-dependencies:
- dependency-name: caxlsx
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-13 13:53:02 +00:00
dependabot[bot]
ffe9ac7854
Bump devise-security from 0.11.1 to 0.16.0
...
Bumps [devise-security](https://github.com/devise-security/devise-security ) from 0.11.1 to 0.16.0.
- [Release notes](https://github.com/devise-security/devise-security/releases )
- [Commits](https://github.com/devise-security/devise-security/compare/v0.11.1...v0.16.0 )
---
updated-dependencies:
- dependency-name: devise-security
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-13 15:28:22 +02:00
dependabot[bot]
13a5a5a85e
Bump faker from 1.8.7 to 2.18.0
...
Bumps [faker](https://github.com/faker-ruby/faker ) from 1.8.7 to 2.18.0.
- [Release notes](https://github.com/faker-ruby/faker/releases )
- [Changelog](https://github.com/faker-ruby/faker/blob/master/CHANGELOG.md )
- [Commits](https://github.com/faker-ruby/faker/compare/v1.8.7...v2.18.0 )
---
updated-dependencies:
- dependency-name: faker
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-13 03:00:06 +00:00
Javi Martín
102cf74b3d
Bump faker from 1.8.7 to 2.0
...
Since version 2.0 introduced many breaking changes, we're upgrading to
it first.
The changes have been done by installing the rubocop-faker gem and
running:
```
rubocop \
--require rubocop-faker \
--only Faker/DeprecatedArguments \
--auto-correct
```
2021-08-13 04:39:44 +02:00
dependabot[bot]
ceed02eb92
Bump knapsack_pro from 2.11.0 to 3.0.0
...
Bumps [knapsack_pro](https://github.com/KnapsackPro/knapsack_pro-ruby ) from 2.11.0 to 3.0.0.
- [Release notes](https://github.com/KnapsackPro/knapsack_pro-ruby/releases )
- [Changelog](https://github.com/KnapsackPro/knapsack_pro-ruby/blob/master/CHANGELOG.md )
- [Commits](https://github.com/KnapsackPro/knapsack_pro-ruby/compare/v2.11.0...v3.0.0 )
---
updated-dependencies:
- dependency-name: knapsack_pro
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-12 23:40:08 +00:00
dependabot[bot]
642fb1f512
Bump daemons from 1.3.1 to 1.4.0
...
Bumps [daemons](https://github.com/thuehlinger/daemons ) from 1.3.1 to 1.4.0.
- [Release notes](https://github.com/thuehlinger/daemons/releases )
- [Changelog](https://github.com/thuehlinger/daemons/blob/master/Releases )
- [Commits](https://github.com/thuehlinger/daemons/compare/v1.3.1...v1.4.0 )
---
updated-dependencies:
- dependency-name: daemons
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-12 22:59:31 +00:00
Javi Martín
8cb344992a
Merge pull request #4628 from consul/dependabot/bundler/master/rollbar-3.2.0
...
Bump rollbar from 3.1.2 to 3.2.0
2021-08-13 00:57:22 +02:00
dependabot[bot]
6d01995895
Bump rollbar from 3.1.2 to 3.2.0
...
Bumps [rollbar](https://github.com/rollbar/rollbar-gem ) from 3.1.2 to 3.2.0.
- [Release notes](https://github.com/rollbar/rollbar-gem/releases )
- [Changelog](https://github.com/rollbar/rollbar-gem/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rollbar/rollbar-gem/compare/v3.1.2...v3.2.0 )
---
updated-dependencies:
- dependency-name: rollbar
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2021-08-12 22:37:25 +00:00