Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Dependencies] Lock dependency version numbers #3178

Closed
akhenry opened this issue Jul 10, 2020 · 2 comments · Fixed by #4941
Closed

[Dependencies] Lock dependency version numbers #3178

akhenry opened this issue Jul 10, 2020 · 2 comments · Fixed by #4941
Labels
type:maintenance tests, chores, or project maintenance
Milestone

Comments

@akhenry
Copy link
Contributor

akhenry commented Jul 10, 2020

Right now we are using the caret (^) version specifier in package.json for most packages. This will cause npm to use the latest minor version of a package at build time (absentpackage-lock.json). This means that packages are silently and unpredictably upgraded, leading to problems when a newer package version introduces breaking changes or bugs. Experience has taught us that both happen with unfortunate regularity.

@khalidadil
Copy link
Contributor

khalidadil commented Feb 14, 2022

I'm still seeing the caret on several packages @unlikelyzero - was this intentional?

@unlikelyzero
Copy link
Collaborator

@khalidadil this was an older ticket that i added to #4795
Let me update master to retest this in 2.0.1

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type:maintenance tests, chores, or project maintenance
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants