Skip to content

chore(deps): bump koa from 2.16.1 to 3.0.0 #306

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
wants to merge 1 commit into from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 13, 2025

Bumps koa from 2.16.1 to 3.0.0.

Release notes

Sourced from koa's releases.

v3.0.0

This is a major release.

Breaking

  • Minimum node v18
  • Removes .redirect('back'), adds .back(fallback_url) @​fl0w koajs/koa#1115
  • For .redirect(), don't render redirect values in anchor ref koajs/koa@ff25eb4
  • req.origin should display the origin header if it exists, not the current hostname koajs/koa#1008. origin now aligns with the Origin header as used in CORS.
  • .body=<json> should not overwrite type if type already json koajs/koa#1120
  • Remove special ENOENT support koajs/koa#1861 - this is a big change and will require any file servers to adapt to this change for handling 404s / files not found
  • Removes generator deprecation messages. Generators are no longer supported. Koa no longer asserts if generators are used. Set content-length: 0 if body is explicitly set to null @​ognjenjevremovic #1528 Remove obsolete createAsyncCtxStorageMiddleware koajs/koa#1817
  • ctx.throw now requires a format of ctx.throw(status, error, properties). See: https://www.npmjs.com/package/http-errors

New

Fixes

Refactors

Dependencies

  • bump type-is@2
  • bump http-errors@2
  • bump cookies@0.9.1
  • bump statuses@2
  • bump supertest@7

3.0.0-alpha.5

fix: don't render redirect values in anchor ref

... (truncated)

Changelog

Sourced from koa's changelog.

[!IMPORTANT] Moving forwards we are using the GitHub releases page at https://github.com/koajs/koa/releases in combination with np for publishing releases and their changelogs.


3.0.0-alpha.3 / 2025-02-11

fixes

  • Avoid redos on host and protocol getter

3.0.0-alpha.2 / 2024-11-04

breaking changes

  • Update http-errors to v2.0.0 #1486
  • Remove res.redirect('back'), add back() method to ctx #1115
  • Replace node querystring with URLSearchParams #1828
  • Remove obsolete createAsyncCtxStorageMiddleware #1817

features

  • Add support for web WHATWG #1830

updates

  • Update cookies to ~0.9.1 #1846
  • Update statuses to ^2.0.1
  • Update supertest to ^7.0.0 #1841

fixes

  • Fix exports.defaults in package.json #1630
  • Fix leaky handles in tests #1838
  • Fix body null checks #1814
  • Fix reformatting redirect URLs #1805 #1804
  • Fix passing ctx in error handler #1758

migrations

  • Migrate from jest to the native node test runner #1845

3.0.0-alpha.1 / 2023-04-12

fixes

  • [e98b8d1] - fix: can not get currentContext in error handler (#1758) (Gxkl )

3.0.0-alpha.0 / 2023-01-02

Breaking Changes

... (truncated)

Commits

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jun 13, 2025
Copy link

vercel bot commented Jun 13, 2025

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
dify-chat-nextjs-app ❌ Failed (Inspect) Jul 4, 2025 2:48pm

@dosubot dosubot bot added the size:XS This PR changes 0-9 lines, ignoring generated files. label Jun 13, 2025
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from fc305e8 to ef958c1 Compare June 13, 2025 23:46
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from ef958c1 to 5c54ef9 Compare June 16, 2025 14:30
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 5c54ef9 to 455349c Compare June 17, 2025 08:11
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 455349c to 7946681 Compare June 18, 2025 08:02
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 7946681 to bde2ddf Compare June 18, 2025 16:01
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from bde2ddf to a1d076f Compare June 19, 2025 13:03
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from a1d076f to 2f83553 Compare June 23, 2025 06:03
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 2f83553 to 7a84272 Compare June 24, 2025 14:04
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 7a84272 to c2b5560 Compare June 24, 2025 14:30
Copy link
Contributor Author

dependabot bot commented on behalf of github Jun 24, 2025

Dependabot can't authenticate to a private package registry. Because of this, Dependabot cannot update this pull request.

@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from c2b5560 to 5458d5b Compare June 25, 2025 14:43
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from 5458d5b to a32b29c Compare June 28, 2025 03:49
Bumps [koa](https://github.com/koajs/koa) from 2.16.1 to 3.0.0.
- [Release notes](https://github.com/koajs/koa/releases)
- [Changelog](https://github.com/koajs/koa/blob/master/History.md)
- [Commits](koajs/koa@v2.16.1...v3.0.0)

---
updated-dependencies:
- dependency-name: koa
  dependency-version: 3.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/npm_and_yarn/koa-3.0.0 branch from a32b29c to 9d4fe33 Compare July 4, 2025 14:40
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 29, 2025

Superseded by #331.

@dependabot dependabot bot closed this Jul 29, 2025
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/koa-3.0.0 branch July 29, 2025 16:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code size:XS This PR changes 0-9 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants