Bump nokogiri from 1.19.3 to 1.19.4 in the bundler group across 1 directory - #442
Merged
Merged
Conversation
Bumps the bundler group with 1 update in the / directory: [nokogiri](https://github.com/sparklemotion/nokogiri). Updates `nokogiri` from 1.19.3 to 1.19.4 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.19.3...v1.19.4) --- updated-dependencies: - dependency-name: nokogiri dependency-version: 1.19.4 dependency-type: direct:production dependency-group: bundler ... Signed-off-by: dependabot[bot] <support@github.com>
rsmoke
added a commit
that referenced
this pull request
Jul 6, 2026
* Bump net-imap in the bundler group across 1 directory Bumps the bundler group with 1 update in the / directory: [net-imap](https://github.com/ruby/net-imap). Updates `net-imap` from 0.6.4 to 0.6.4.1 - [Release notes](https://github.com/ruby/net-imap/releases) - [Commits](ruby/net-imap@v0.6.4...v0.6.4.1) --- updated-dependencies: - dependency-name: net-imap dependency-version: 0.6.4.1 dependency-type: indirect dependency-group: bundler ... Signed-off-by: dependabot[bot] <support@github.com> * Add analytics dashboard and related configurations - Included Trackable module in ApplicationController for tracking purposes. - Added new analytics jobs in recurring.yml for hourly, daily rollup, and pruning. - Updated queue.yml to configure analytics queue with specific threading and polling settings. - Defined route for analytics dashboard in routes.rb. - Enhanced layout views to include links to the analytics dashboard for authorized users. - Added Chart.js to importmap for data visualization support. * Add analytics tables and sequences for daily and hourly rollups - Created tables for analytics_daily_rollups and analytics_hourly_rollups with relevant columns for tracking user interactions. - Added sequences for both tables to manage primary key generation. - Established primary key constraints and unique indexes to ensure data integrity and optimize query performance. - Included additional table for page_views with corresponding sequence and constraints for comprehensive analytics tracking. * Enhance analytics dashboard functionality and live data handling - Implemented a refresh action in the AnalyticsDashboardController to trigger rollup jobs synchronously, allowing immediate chart updates. - Updated the analytics dashboard view to include a refresh button and a notice for stale data. - Modified the analytics policy to authorize the refresh action for admin users. - Adjusted routes to include a POST endpoint for refreshing analytics data. - Enhanced the PageView model with live summary and top pages methods to provide real-time analytics data. - Improved data handling in the controller to ensure top pages and summary stats reflect current data without waiting for rollup jobs. * Update Tailwind CSS to version 4.1.18 with property layer adjustments - Modified the properties layer in tailwind.css to enhance support for various CSS features. - Updated theme and base layers to ensure consistent styling and improved layout handling. - Adjusted spacing and color variables for better design flexibility and responsiveness. * Refactor analytics dashboard views and remove HAML support - Converted analytics dashboard views from HAML to ERB format for consistency. - Added new partials for stat cards and building rows to enhance modularity. - Updated Gemfile to remove HAML-related gems and dependencies. - Adjusted importmap to include Chart.js for improved data visualization. - Enhanced the .gitignore to exclude .OLD files and HAML files. * Update recurring job schedule format in recurring.yml - Changed the schedule format for the AnalyticsRollupJob from "every week on Sunday at 02:30" to "at 2:30am every Sunday" for improved clarity and consistency. * Enhance analytics dashboard with new chart data scoping and Turbo integration - Added a test to verify that hourly chart data is correctly scoped to the selected time range. - Updated the analytics chart controller to handle Turbo caching by destroying the chart before caching. - Modified the analytics dashboard view to prevent Turbo from restoring cached canvas data, ensuring fresh data is displayed on navigation. * Remove unnecessary schema creation comments from SQL structure files * Enhance analytics dashboard with time range selection and caching prevention - Added a new test to verify that the selected time range is reflected on the analytics dashboard and that caching is disabled. - Updated the analytics dashboard view to display the selected time range and prevent browser caching. - Modified the analytics dashboard controller to include a method for setting cache control headers. * Implement Stimulus controller for time range selection in analytics dashboard - Added a new test to verify the use of a Stimulus controller for handling time range changes instead of inline JavaScript. - Updated the analytics dashboard view to utilize data attributes for the Stimulus controller, enhancing maintainability and separation of concerns. - Registered the new AnalyticsRangeController in the JavaScript controllers index. * Bump nokogiri in the bundler group across 1 directory (#442) Bumps the bundler group with 1 update in the / directory: [nokogiri](https://github.com/sparklemotion/nokogiri). Updates `nokogiri` from 1.19.3 to 1.19.4 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.19.3...v1.19.4) --- updated-dependencies: - dependency-name: nokogiri dependency-version: 1.19.4 dependency-type: direct:production dependency-group: bundler ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: rsmokeUM <rsmoke@umich.edu> * Bump the bundler group across 1 directory with 2 updates (#443) Bumps the bundler group with 2 updates in the / directory: [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby) and [faraday](https://github.com/lostisland/faraday). Updates `concurrent-ruby` from 1.3.6 to 1.3.7 - [Release notes](https://github.com/ruby-concurrency/concurrent-ruby/releases) - [Changelog](https://github.com/ruby-concurrency/concurrent-ruby/blob/master/CHANGELOG.md) - [Commits](ruby-concurrency/concurrent-ruby@v1.3.6...v1.3.7) Updates `faraday` from 2.14.2 to 2.14.3 - [Release notes](https://github.com/lostisland/faraday/releases) - [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday@v2.14.2...v2.14.3) --- updated-dependencies: - dependency-name: concurrent-ruby dependency-version: 1.3.7 dependency-type: indirect dependency-group: bundler - dependency-name: faraday dependency-version: 2.14.3 dependency-type: indirect dependency-group: bundler ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Refactor analytics range selection in dashboard - Removed the inline data attribute for the analytics range URL in the dashboard view. - Updated the AnalyticsRangeController to construct the URL dynamically using the current window location, improving maintainability and flexibility in handling range changes. * Update analytics dashboard spec to use specific chart ID selectors for label extraction - Changed the selector for extracting chart labels in the analytics dashboard spec from a generic attribute to specific IDs for the 24-hour and 7-day charts. - This improves the accuracy of the tests by ensuring they target the correct elements in the HTML response. --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the bundler group with 1 update in the / directory: nokogiri.
Updates
nokogirifrom 1.19.3 to 1.19.4Release notes
Sourced from nokogiri's releases.
Changelog
Sourced from nokogiri's changelog.
Commits
8cfb9daversion bump to v1.19.4a856d1efix: JRuby NONET bypass in XML::Schema (v1.19.x) (#3639)6a0aa1efix(CRuby): use-after-free in Document#encoding= when setter raises (v1.19.x)...f658a54fix: JRuby NONET bypass in XML::Schema39d26fefix(CRuby): use-after-free in Document#encoding= when setter raises04a09ddfix(CRuby): out-of-bounds read in NodeSet#[] with large negative index (v1.19...7799fbdfix: avoid NPE on uninitialized XML::Node structs (v1.19.x) (#3645)ef19e13fix(CRuby): avoid UAF in XML::Attr#value= (v1.19.x) (#3644)5524fa9fix:Document#root=rejects non-element nodes (v1.19.x) (#3643)9891ad1fix(CRuby): use-after-free in XPathContext document lifetime (v1.19.x) (#3641)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.