chore(deps): bump postcss from 8.5.12 to 8.5.23 in /test-projects/expo-purchasely-test - #269
Conversation
Bumps [postcss](https://github.com/postcss/postcss) from 8.5.12 to 8.5.23. - [Release notes](https://github.com/postcss/postcss/releases) - [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md) - [Commits](postcss/postcss@8.5.12...8.5.23) --- updated-dependencies: - dependency-name: postcss dependency-version: 8.5.23 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
|
PR author is in the excluded authors list. |
|
Automated Dependabot review (2026-07-26) — research only, no merge/approve action taken. Patch bump (8.5.12 → 8.5.23), CI: Note: issues are disabled on this repo, so this review is posted as PR comments (see also #267, #266, #268, #265, #264) rather than a single tracking issue. @kherembourg — could you glance at the Related: #267, #266, #268, #265, #264 Generated by Claude Code |
|
Dependabot review cycle summary for all 6 open dependency PRs (this one included) posted on #264 (GitHub Issues is disabled on this repo, so that PR hosts the tracking summary): #264 (comment) This PR: postcss 8.5.12 → 8.5.23 (patch). Generated by Claude Code |
|
Automated Dependabot review — CI failing, awaiting confirmation Note: this repo has Issues disabled, so a tracking issue could not be created for this batch; posting status directly here and on #264 instead. The other 4 open Dependabot PRs in this batch (#265, #266, #267, #268 — all minor/patch bumps with green CI) were already approved and merged. This PR bumps Reply here to confirm: should this be investigated, re-run, or skipped/closed? Generated by Claude Code |
|
Automated Dependabot review (2026-07-31) — research only, no merge/approve action taken. Note: Issues are disabled on this repo, so this status is posted as a PR comment (as in prior cycles). Only 1 open Dependabot PR currently: this one. Unchanged from the prior cycle — Generated by Claude Code |
|
Automated Dependabot review (2026-08-01) — unchanged, research only. Still the only open Dependabot PR in this repo. No change from the prior cycle: @kherembourg — still waiting on a look at the Generated by Claude Code |
|
Dependabot PR Review — 2026-08-04 (research only — no merge/approve/close action taken) Note: Issues are disabled on this repo (confirmed via API: All 4 currently open Dependabot PRs are scoped to
None are conflicting ( Notable pattern: all four fail the exact same single check — @kherembourg (top recent human contributor on this repo's default branch) — flagging for visibility, per this PR's repeated prior asks about the Nothing merges until a human comments approval or an override here. Automated Dependabot review — no merge/approve action taken. Generated by Claude Code |
Dependabot PR Review — first pass (2026-08-08)Note: GitHub Issues are disabled on this repo, so this tracking note is posted here instead of a dedicated issue. Cross-linked from #271, #272, #273, #274. 5 open Dependabot PRs, all npm/javascript. Nothing merges until a human comments approval/overrides here.
No majors — all 5 confirmed patch/minor from the actual version numbers, so no changelog deep-dive was needed for breaking changes. #273 vs #274 ( Notable pattern: all four Checked per PR: CI via check runs, Next step@kherembourg (most recently active human contributor found in this repo's commit history) — could you comment here with an explicit go-ahead or overrides once the Nothing in this list merges without an explicit human go-ahead comment here. Generated by Claude Code |
Dependabot PR Review — 2026-08-09 (tracking)GitHub Issues remain disabled on this repo (confirmed again via API: 5 open Dependabot PRs, all npm/javascript. Nothing merges, gets approved, or gets closed until a human posts an explicit go-ahead comment here.
Bump classification: No majors. All 5 verified via semver against the version numbers in the titles, so no changelog deep-dive was needed for breaking-change risk. #273 vs #274 ( Hold labels / conflicts: None found. All 5 PRs carry only Human comments: None found on any of the 5 PRs this cycle — only bot comments (greptile-apps' auto-excluded note, and this account's own prior review-cycle comments). Risk assessment: All 4 Suggested merge order once CI is green (safest/greenest first): #271 ( @kherembourg — assigning this to you as the most active recent contributor on Generated by Claude Code |
Dependabot PR Review — 2026-08-10 (tracking)GitHub Issues remain disabled on this repo, so — per the precedent set on this PR — this tracking note lives here as a PR comment. Cross-linked from #271, #272, #273, #274. Fully unchanged from the 2026-08-09 cycle: same 5 open Dependabot PRs, no new commits, no re-triggered CI, no human comment on any of them since this review process started (2026-07-26 — 15 days, 8 review cycles, zero response).
No hold labels, no merge conflicts ( Standing question, now 15 days open: @kherembourg — still assigned as the most recently active contributor. An explicit go-ahead comment here (or per-PR) is what unblocks any of these; also still flagging the long-standing Nothing merges, gets approved, or gets closed until a human posts an explicit comment here. Generated by Claude Code |
|
Superseded by #276. |
Bumps postcss from 8.5.12 to 8.5.23.
Release notes
Sourced from postcss's releases.
Changelog
Sourced from postcss's changelog.
... (truncated)
Commits
eb9e1feRelease 8.5.23 version9d19c78Update dependencies7beca13Does no load source map file without opts.fromdecea51Typoc18e30dUpdate EM banner98a39adUpdate EM bannera3e48c4Release 8.5.22 versionf49d691Fix custom property losing its semicolon before a comment (#2117)28e0dafRelease 8.5.21 version3d2b4e4Update dependenciesMaintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for postcss since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.