Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 20, 2026

Bumps astro-mermaid from 1.1.0 to 1.3.1.

Release notes

Sourced from astro-mermaid's releases.

v1.3.1 - Security Updates and Bug Fixes

What's Changed

Security

  • 🔒 Resolved 35+ Dependabot security alerts by updating dependencies

Improvements

  • ♻️ Refactored mermaid.js loading and initialization (#22)
  • ⬆️ Fixed lockfile dependencies (#29)
  • 🧹 Removed anthropic dev dependency

Commits

  • fix: update dependencies to resolve 35+ Dependabot security alerts
  • Refactor mermaid.js loading and initialization (#22)
  • Fix lockfile dependencies (#29)
  • Update demo dependency and remove anthropic dev dependency

Full Changelog: joesaby/astro-mermaid@v1.2.1...v1.3.1

Commits
  • 77fe2ff chore: bump version to 1.3.1
  • 94c0d84 fix: update dependencies to resolve 35+ Dependabot security alerts
  • 4e35af0 Update demo dependency to 1.3.0 and also remove anthropic dev depdenency
  • fc7ed08 chore: bump version to 1.3.0
  • f22f28e Refactor mermaid.js loading and initialization (#22)
  • 24e5609 ⬆️ Fix lockfile dependencies (#29)
  • 863d900 chore: bump version to 1.2.1 (#32)
  • 7e7ce49 Update README.md (update latest version)
  • 08bbf09 fix: update @​anthropic-ai/claude-code to fix securities report (#25)
  • c5aef0b chore: bump version to 1.2.0
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [astro-mermaid](https://github.com/joesaby/astro-mermaid) from 1.1.0 to 1.3.1.
- [Release notes](https://github.com/joesaby/astro-mermaid/releases)
- [Commits](joesaby/astro-mermaid@v1.1.0...v1.3.1)

---
updated-dependencies:
- dependency-name: astro-mermaid
  dependency-version: 1.3.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added automated Automated changes (e.g., dependabot, bots) dependencies Updates to project dependencies documentation Improvements or additions to documentation labels Jan 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

automated Automated changes (e.g., dependabot, bots) dependencies Updates to project dependencies documentation Improvements or additions to documentation

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants