🐞 fix recent regression when using path option. return to historical behavior: do not attempt to auto find .env if path set. (regression was introduced in 16.4.3) #814
Removed browser keys for path, os, and crypto in package.json. These were set to false incorrectly as of 16.1. Instead, if using dotenv on the front-end make sure to include polyfills for path, os, and crypto. node-polyfill-webpack-plugin provides these.
ℹ️.env.vault extends the .env file format standard with a localized encrypted vault file. Package it securely with your production code deploys. It's cloud agnostic so that you can deploy your secrets anywhere – without risky third-party integrations. read more
Changed
Fixed "cannot resolve 'fs'" error on tools like Replit #693
This PR contains the following updates:
| Package | Change | Age | Adoption | Passing | Confidence |
|---|---|---|---|---|---|
| [dotenv](https://github.com/motdotla/dotenv) | [`16.0.0` -> `16.4.5`](https://renovatebot.com/diffs/npm/dotenv/16.0.0/16.4.5) | [](https://docs.renovatebot.com/merge-confidence/) | [](https://docs.renovatebot.com/merge-confidence/) | [](https://docs.renovatebot.com/merge-confidence/) | [](https://docs.renovatebot.com/merge-confidence/) |
---
### Release Notes
<details>
<summary>motdotla/dotenv (dotenv)</summary>
### [`v16.4.5`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1645-2024-02-19)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.4.4...v16.4.5)
##### Changed
- 🐞 fix recent regression when using `path` option. return to historical behavior: do not attempt to auto find `.env` if `path` set. (regression was introduced in `16.4.3`) [#​814](https://github.com/motdotla/dotenv/pull/814)
### [`v16.4.4`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1644-2024-02-13)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.4.3...v16.4.4)
##### Changed
- 🐞 Replaced chaining operator `?.` with old school `&&` (fixing node 12 failures) [#​812](https://github.com/motdotla/dotenv/pull/812)
### [`v16.4.3`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1643-2024-02-12)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.4.2...v16.4.3)
##### Changed
- Fixed processing of multiple files in `options.path` [#​805](https://github.com/motdotla/dotenv/pull/805)
### [`v16.4.2`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1642-2024-02-10)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.4.1...v16.4.2)
##### Changed
- Changed funding link in package.json to [`dotenvx.com`](https://dotenvx.com)
### [`v16.4.1`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1641-2024-01-24)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.4.0...v16.4.1)
- Patch support for array as `path` option [#​797](https://github.com/motdotla/dotenv/pull/797)
### [`v16.4.0`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1640-2024-01-23)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.3.2...v16.4.0)
- Add `error.code` to error messages around `.env.vault` decryption handling [#​795](https://github.com/motdotla/dotenv/pull/795)
- Add ability to find `.env.vault` file when filename(s) passed as an array [#​784](https://github.com/motdotla/dotenv/pull/784)
### [`v16.3.2`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1632-2024-01-18)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.3.1...v16.3.2)
##### Added
- Add debug message when no encoding set [#​735](https://github.com/motdotla/dotenv/pull/735)
##### Changed
- Fix output typing for `populate` [#​792](https://github.com/motdotla/dotenv/pull/792)
- Use subarray instead of slice [#​793](https://github.com/motdotla/dotenv/pull/793)
### [`v16.3.1`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1631-2023-06-17)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.3.0...v16.3.1)
##### Added
- Add missing type definitions for `processEnv` and `DOTENV_KEY` options. [#​756](https://github.com/motdotla/dotenv/pull/756)
### [`v16.3.0`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1630-2023-06-16)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.2.0...v16.3.0)
##### Added
- Optionally pass `DOTENV_KEY` to options rather than relying on `process.env.DOTENV_KEY`. Defaults to `process.env.DOTENV_KEY` [#​754](https://github.com/motdotla/dotenv/pull/754)
### [`v16.2.0`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1620-2023-06-15)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.1.4...v16.2.0)
##### Added
- Optionally write to your own target object rather than `process.env`. Defaults to `process.env`. [#​753](https://github.com/motdotla/dotenv/pull/753)
- Add import type URL to types file [#​751](https://github.com/motdotla/dotenv/pull/751)
### [`v16.1.4`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1614-2023-06-04)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.1.3...v16.1.4)
##### Added
- Added `.github/` to `.npmignore` [#​747](https://github.com/motdotla/dotenv/pull/747)
### [`v16.1.3`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1613-2023-05-31)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.1.2...v16.1.3)
##### Removed
- Removed `browser` keys for `path`, `os`, and `crypto` in package.json. These were set to false incorrectly as of 16.1. Instead, if using dotenv on the front-end make sure to include polyfills for `path`, `os`, and `crypto`. [node-polyfill-webpack-plugin](https://github.com/Richienb/node-polyfill-webpack-plugin) provides these.
### [`v16.1.2`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1612-2023-05-31)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.1.1...v16.1.2)
##### Changed
- Exposed private function `_configDotenv` as `configDotenv`. [#​744](https://github.com/motdotla/dotenv/pull/744)
### [`v16.1.1`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1611-2023-05-30)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.1.0...v16.1.1)
##### Added
- Added type definition for `decrypt` function
##### Changed
- Fixed `{crypto: false}` in `packageJson.browser`
### [`v16.1.0`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1610-2023-05-30)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.0.3...v16.1.0)
##### Added
- Add `populate` convenience method [#​733](https://github.com/motdotla/dotenv/pull/733)
- Accept URL as path option [#​720](https://github.com/motdotla/dotenv/pull/720)
- Add dotenv to `npm fund` command
- Spanish language README [#​698](https://github.com/motdotla/dotenv/pull/698)
- Add `.env.vault` support. 🎉 ([#​730](https://github.com/motdotla/dotenv/pull/730))
ℹ️ `.env.vault` extends the `.env` file format standard with a localized encrypted vault file. Package it securely with your production code deploys. It's cloud agnostic so that you can deploy your secrets anywhere – without [risky third-party integrations](https://techcrunch.com/2023/01/05/circleci-breach/). [read more](https://github.com/motdotla/dotenv#-deploying)
##### Changed
- Fixed "cannot resolve 'fs'" error on tools like Replit [#​693](https://github.com/motdotla/dotenv/pull/693)
### [`v16.0.3`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1603-2022-09-29)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.0.2...v16.0.3)
##### Changed
- Added library version to debug logs ([#​682](https://github.com/motdotla/dotenv/pull/682))
### [`v16.0.2`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1602-2022-08-30)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.0.1...v16.0.2)
##### Added
- Export `env-options.js` and `cli-options.js` in package.json for use with downstream [dotenv-expand](https://github.com/motdotla/dotenv-expand) module
### [`v16.0.1`](https://github.com/motdotla/dotenv/blob/HEAD/CHANGELOG.md#1601-2022-05-10)
[Compare Source](https://github.com/motdotla/dotenv/compare/v16.0.0...v16.0.1)
##### Changed
- Minor README clarifications
- Development ONLY: updated devDependencies as recommended for development only security risks ([#​658](https://github.com/motdotla/dotenv/pull/658))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNS4yOC4wIiwidXBkYXRlZEluVmVyIjoiMzcuMTkxLjIiLCJ0YXJnZXRCcmFuY2giOiJtYWluIn0=-->
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
This PR contains the following updates:
16.0.0->16.4.5Release Notes
motdotla/dotenv (dotenv)
v16.4.5Compare Source
Changed
pathoption. return to historical behavior: do not attempt to auto find.envifpathset. (regression was introduced in16.4.3) #814v16.4.4Compare Source
Changed
?.with old school&&(fixing node 12 failures) #812v16.4.3Compare Source
Changed
options.path#805v16.4.2Compare Source
Changed
dotenvx.comv16.4.1Compare Source
pathoption #797v16.4.0Compare Source
error.codeto error messages around.env.vaultdecryption handling #795.env.vaultfile when filename(s) passed as an array #784v16.3.2Compare Source
Added
Changed
populate#792v16.3.1Compare Source
Added
processEnvandDOTENV_KEYoptions. #756v16.3.0Compare Source
Added
DOTENV_KEYto options rather than relying onprocess.env.DOTENV_KEY. Defaults toprocess.env.DOTENV_KEY#754v16.2.0Compare Source
Added
process.env. Defaults toprocess.env. #753v16.1.4Compare Source
Added
.github/to.npmignore#747v16.1.3Compare Source
Removed
browserkeys forpath,os, andcryptoin package.json. These were set to false incorrectly as of 16.1. Instead, if using dotenv on the front-end make sure to include polyfills forpath,os, andcrypto. node-polyfill-webpack-plugin provides these.v16.1.2Compare Source
Changed
_configDotenvasconfigDotenv. #744v16.1.1Compare Source
Added
decryptfunctionChanged
{crypto: false}inpackageJson.browserv16.1.0Compare Source
Added
populateconvenience method #733npm fundcommand.env.vaultsupport. 🎉 (#730)ℹ️
.env.vaultextends the.envfile format standard with a localized encrypted vault file. Package it securely with your production code deploys. It's cloud agnostic so that you can deploy your secrets anywhere – without risky third-party integrations. read moreChanged
v16.0.3Compare Source
Changed
v16.0.2Compare Source
Added
env-options.jsandcli-options.jsin package.json for use with downstream dotenv-expand modulev16.0.1Compare Source
Changed
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.
Update dependency dotenv to v16.0.3to Update dependency dotenv to v16.1.0b20bda050dto8cef443188Update dependency dotenv to v16.1.0to Update dependency dotenv to v16.1.18cef443188toa14d43b6e4Update dependency dotenv to v16.1.1to Update dependency dotenv to v16.1.2a14d43b6e4to8e037b4c8fUpdate dependency dotenv to v16.1.2to Update dependency dotenv to v16.1.38e037b4c8ftof77ad25f58Update dependency dotenv to v16.1.3to Update dependency dotenv to v16.1.4f77ad25f58toa2e57cf9bcUpdate dependency dotenv to v16.1.4to Update dependency dotenv to v16.2.0a2e57cf9bcto8f078e051bUpdate dependency dotenv to v16.2.0to Update dependency dotenv to v16.3.08f078e051bto4e7889b564Update dependency dotenv to v16.3.0to Update dependency dotenv to v16.3.14e7889b564toe782927fb0Update dependency dotenv to v16.3.1to Update dependency dotenv to v16.3.2e782927fb0to7d5ae3e077Update dependency dotenv to v16.3.2to Update dependency dotenv to v16.4.07d5ae3e077to21faebe328Update dependency dotenv to v16.4.0to Update dependency dotenv to v16.4.121faebe328tocb77339bcaUpdate dependency dotenv to v16.4.1to Update dependency dotenv to v16.4.2cb77339bcato96cee6ec56Update dependency dotenv to v16.4.2to Update dependency dotenv to v16.4.396cee6ec56to355ed48264Update dependency dotenv to v16.4.3to Update dependency dotenv to v16.4.4355ed48264to9b93f18ff2Update dependency dotenv to v16.4.4to Update dependency dotenv to v16.4.59b93f18ff2to01e5b8a099Update dependency dotenv to v16.4.5to Update dependency dotenv to v16.4.5 - autoclosedPull request closed