Skip to content

deps: Update dependency commit-and-tag-version to v12#364

Merged
renovate[bot] merged 1 commit into
mainfrom
deps/commit-and-tag-version-12.x
Jul 17, 2026
Merged

deps: Update dependency commit-and-tag-version to v12#364
renovate[bot] merged 1 commit into
mainfrom
deps/commit-and-tag-version-12.x

Conversation

@renovate

@renovate renovate Bot commented Jul 17, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
commit-and-tag-version ^9.6.0^12.7.3 age confidence

Release Notes

absolute-version/commit-and-tag-version (commit-and-tag-version)

v12.7.3

Compare Source

Bug Fixes
  • update release workflow for npm OIDC trusted publishing (#​281) (d0e3408)

v12.7.1

Compare Source

Bug Fixes

v12.7.0

Compare Source

Features
Bug Fixes

v12.6.1

Compare Source

Bug Fixes
  • bump: auto-increment prerelease when tag already exists (#​258) (75d69a6)
  • use fast-xml-parser to parse and build XML. This substantially reduces the bundle size. (#​234) (6075f4b)

v12.6.0

Compare Source

Features
  • add --config option to allow custom config file path (#​237) (3958e68)

v12.5.2

Compare Source

Bug Fixes
  • Correct use of fs, so we no longer emit a deprecation warning for fs.F_OK (7fe66bb), closes #​240

v12.5.1

Compare Source

Bug Fixes

v12.5.0

Compare Source

Features

v12.4.4

Compare Source

Bug Fixes

v12.4.3

Compare Source

Bug Fixes
  • Correct issue where downstream dependency would throw options.debug is not a function (4280bcf)

v12.4.2

Compare Source

Bug Fixes
  • deps: update dependency conventional-changelog to v4 (#​176) (8d15fc7)

v12.4.1

Compare Source

Bug Fixes
  • raise the 'openapi'-updater to a higher order of precedence above the 'yaml'-updater (#​143) (37fe178)

v12.4.0

Compare Source

Features

v12.3.0

Compare Source

Features
Bug Fixes
  • Add debug messages for exclusions during bump lifecycle (#​131) (a9191f2)

v12.2.0

Compare Source

Features

v12.1.0

Compare Source

Features

v12.0.0

Compare Source

⚠ BREAKING CHANGES
  • Drop support for node 14, 16. Now supports node 18 and 20.
Bug Fixes
  • Drop support for node 14, 16. Now supports node 18 and 20. (b1a58bc)
  • preserve frontmatter when updating changelog (#​108) (abdcfe2)

v11.3.0

Compare Source

Features

v11.2.4

Compare Source

Bug Fixes
  • allow bump task to handle versions with build metadata (33913ee)
  • handle invalid versions passed to releaseAs (33913ee)

v11.2.3

Compare Source

Bug Fixes
  • bump: propagate the parserOpts from args to conventionalRecommendedBump, fixing an issue with custom headerPatterns (#​89) (bc685be)

v11.2.2

Compare Source

Bug Fixes
  • deps: update dependency conventional-changelog-conventionalcommits to v6 (285f5e7)
  • deps: update dependency conventional-changelog-conventionalcommits to v6 (#​81) (ab67fa4)
  • deps: update dependency conventional-changelog-conventionalcommits to v6.1.0 (39827d3)
  • deps: update dependency conventional-changelog-conventionalcommits to v6.1.0 (#​86) (a8580d5)
  • deps: update dependency conventional-recommended-bump to v7 (5978564)
  • deps: update dependency conventional-recommended-bump to v7 (#​83) (1c9f82e)
  • deps: update dependency git-semver-tags to v5 (97e0237)
  • deps: update dependency git-semver-tags to v5 (#​80) (46ea506)

v11.2.1

Compare Source

Bug Fixes
  • dep: add stringify-package to project source, removing the deprecation warning on npm install (#​65) (3a959a7)

v11.2.0

Compare Source

Features
  • implement detect pm name (174a8bd)
  • support config npmClient (c33686a)
  • Support customizing the npm publish hint message with a new option: npmPublishHint (1f77110)

v11.1.0

Compare Source

Features
  • Expose release count option (40d27f8)
  • replace the changelog if releaseCount = 0 (d18af90)
Bug Fixes
  • ensure git signatures are not present (268800b)

v11.0.0

Compare Source

⚠ BREAKING CHANGES
  • deps: update dependency conventional-changelog-conventionalcommits to v5. This is technically a breaking change for anyone relying on the exact formatting of the changelog, as it ensures that versions are always written with H2 headers.
Bug Fixes
  • deps: update dependency conventional-changelog-conventionalcommits to v5 (b38e900)
  • deps: update dependency conventional-changelog-conventionalcommits to v5. This is technically a breaking change for anyone relying on the exact formatting of the changelog, as it ensures that versions are always written with H2 headers. (ffa799a)

v10.1.0

Compare Source

Features
  • options: Expose parser and writer options from conventional-commits-parser and conventional-commits-writer (185a461)
  • updater: add Gradle support (0cf439f)
Bug Fixes
  • use correct param for dryRun check (300b907)
10.0.1 (2022-05-28)
Bug Fixes
  • No longer warn inappropriately when a custom updater is provided as an object (5eb8886)

v10.0.1

Compare Source

Features
  • options: Expose parser and writer options from conventional-commits-parser and conventional-commits-writer (185a461)
  • updater: add Gradle support (0cf439f)
Bug Fixes
  • use correct param for dryRun check (300b907)
10.0.1 (2022-05-28)
Bug Fixes
  • No longer warn inappropriately when a custom updater is provided as an object (5eb8886)

v10.0.0

Compare Source

Features
  • options: Expose parser and writer options from conventional-commits-parser and conventional-commits-writer (185a461)
  • updater: add Gradle support (0cf439f)
Bug Fixes
  • use correct param for dryRun check (300b907)
10.0.1 (2022-05-28)
Bug Fixes
  • No longer warn inappropriately when a custom updater is provided as an object (5eb8886)

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "after 12pm on Friday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from seonglae as a code owner July 17, 2026 21:53
@renovate
renovate Bot enabled auto-merge (squash) July 17, 2026 21:53
@renovate

renovate Bot commented Jul 17, 2026

Copy link
Copy Markdown
Contributor Author

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: pnpm-lock.yaml
Scope: all 7 workspace projects
? Verifying lockfile against supply-chain policies (874 entries)...
Progress: resolved 1, reused 0, downloaded 0, added 0
Progress: resolved 30, reused 0, downloaded 0, added 0
Progress: resolved 38, reused 0, downloaded 0, added 0
Progress: resolved 42, reused 0, downloaded 0, added 0
Progress: resolved 43, reused 0, downloaded 0, added 0
Progress: resolved 44, reused 0, downloaded 0, added 0
Progress: resolved 45, reused 0, downloaded 0, added 0
Progress: resolved 47, reused 0, downloaded 0, added 0
Progress: resolved 49, reused 0, downloaded 0, added 0
✗ Lockfile failed supply-chain policy check (874 entries in 11.1s)
[ERR_PNPM_MINIMUM_RELEASE_AGE_VIOLATION] 1 lockfile entries failed verification:
  katex@0.18.0 was published at 2026-07-17T16:28:48.444Z, within the minimumReleaseAge cutoff (2026-07-16T21:53:11.617Z)

The lockfile contains entries that the active policies reject. This can mean the lockfile is stale, or that someone committed a lockfile that bypassed the policy locally — inspect recent changes to pnpm-lock.yaml before trusting it. If the changes look expected, run "pnpm clean --lockfile" and then "pnpm install" to rebuild from a fresh resolution. Alternatively, relax the policy that flagged them.
Progress: resolved 51, reused 0, downloaded 0, added 0

@codesandbox

codesandbox Bot commented Jul 17, 2026

Copy link
Copy Markdown

Review or Edit in CodeSandbox

Open the branch in Web EditorVS CodeInsiders

Open Preview

@renovate
renovate Bot merged commit d11d67d into main Jul 17, 2026
0 of 2 checks passed
@renovate
renovate Bot deleted the deps/commit-and-tag-version-12.x branch July 17, 2026 21:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants