Skip to content

Bump tar and supabase#15

Closed
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/multi-cc36ce196c
Closed

Bump tar and supabase#15
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/npm_and_yarn/multi-cc36ce196c

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 29, 2026

Bumps tar to 7.5.7 and updates ancestor dependency supabase. These dependencies need to be updated together.

Updates tar from 7.5.3 to 7.5.7

Commits
Maintainer changes

This version was pushed to npm by isaacs, a new releaser for tar since your current version.


Updates supabase from 2.72.8 to 2.72.9

Release notes

Sourced from supabase's releases.

v2.72.9

Changelog

Bug fixes

  • cd3226bfa00462e2ce51fd7582f866e9ce45f0a1: fix(docker): bump the docker-minor group across 1 directory with 3 updates (#4745) (@​dependabot[bot])
  • 1141301699dbcd63a97068b22c929e3bfc52c947: fix(docker): bump supabase/logflare from 1.30.0 to 1.30.2 in /pkg/config/templates in the docker-minor group (#4753) (@​dependabot[bot])
  • 73f80d81de15aa04f122fe6d25747e07bcb912c2: fix(docker): bump the docker-minor group in /pkg/config/templates with 3 updates (#4759) (@​dependabot[bot])
  • fdd79cff423b6147f54ae18feff165f4ec508fea: fix(docker): bump supabase/postgres from 17.6.1.072 to 17.6.1.074 in /pkg/config/templates (#4760) (@​dependabot[bot])
  • 3fe548f00b6c80ee3666b5cafba51b6684637868: fix: enable gotrue template reloading (#4766) (@​singh-inder)

Others

  • c4b381a7ffcd5ee8a7df8cdd44564d394b186380: chore(deps): bump tar from 7.5.3 to 7.5.4 in the npm-major group (#4735) (@​dependabot[bot])
  • b64b35016c70e4bf2597134038be88b6d8d12455: chore(deps): bump tar from 7.5.4 to 7.5.5 in the npm-major group (#4744) (@​dependabot[bot])
  • a12dd099252592af55ae005a3025ad26bb601e7a: chore(deps): bump tar from 7.5.5 to 7.5.6 in the npm-major group (#4748) (@​dependabot[bot])
  • 7685ad6f65a00edc621872849885a22708891c80: chore(deps): bump tar from 7.5.6 to 7.5.7 in the npm-major group (#4763) (@​dependabot[bot])
  • 5a1202daea2280aacf7ea781f92de5b4655f5d36: chore(deps): bump github.com/getsentry/sentry-go from 0.41.0 to 0.42.0 in the go-minor group across 1 directory (#4765) (@​dependabot[bot])
Commits
  • 3fe548f fix: enable gotrue template reloading (#4766)
  • 5a1202d chore(deps): bump github.com/getsentry/sentry-go from 0.41.0 to 0.42.0 in the...
  • 7685ad6 chore(deps): bump tar from 7.5.6 to 7.5.7 in the npm-major group (#4763)
  • fdd79cf fix(docker): bump supabase/postgres from 17.6.1.072 to 17.6.1.074 in /pkg/con...
  • 73f80d8 fix(docker): bump the docker-minor group in /pkg/config/templates with 3 upda...
  • 1141301 fix(docker): bump supabase/logflare from 1.30.0 to 1.30.2 in /pkg/config/temp...
  • cd3226b fix(docker): bump the docker-minor group across 1 directory with 3 updates (#...
  • a12dd09 chore(deps): bump tar from 7.5.5 to 7.5.6 in the npm-major group (#4748)
  • b64b350 chore(deps): bump tar from 7.5.4 to 7.5.5 in the npm-major group (#4744)
  • c4b381a chore(deps): bump tar from 7.5.3 to 7.5.4 in the npm-major group (#4735)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jan 29, 2026
@vercel
Copy link
Contributor

vercel bot commented Jan 29, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
rolemodel-ai-leads Ready Ready Preview, Comment, Open in v0 Feb 13, 2026 9:07pm

Request Review

Bumps [tar](https://github.com/isaacs/node-tar) to 7.5.7 and updates ancestor dependency [supabase](https://github.com/supabase/cli). These dependencies need to be updated together.


Updates `tar` from 7.5.3 to 7.5.7
- [Release notes](https://github.com/isaacs/node-tar/releases)
- [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md)
- [Commits](isaacs/node-tar@v7.5.3...v7.5.7)

Updates `supabase` from 2.72.8 to 2.72.9
- [Release notes](https://github.com/supabase/cli/releases)
- [Commits](supabase/cli@v2.72.8...v2.72.9)

---
updated-dependencies:
- dependency-name: tar
  dependency-version: 7.5.7
  dependency-type: indirect
- dependency-name: supabase
  dependency-version: 2.72.9
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 19, 2026

Superseded by #24.

@dependabot dependabot bot closed this Feb 19, 2026
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/multi-cc36ce196c branch February 19, 2026 19:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Development

Successfully merging this pull request may close these issues.

0 participants