Gulp: Please, update the deprecated modules

Created on 14 Sep 2016  ยท  10Comments  ยท  Source: gulpjs/gulp

In Node 6.5.0, it shows these SECURITY and DEPRECATED warning messages:

npm WARN deprecated [email protected]: Please update to minimatch 3.0.2 or higher to avoid a RegExp DoS issue
npm WARN deprecated [email protected]: lodash@<3.0.0 is no longer maintained. Upgrade to lodash@^4.0.0.
npm WARN deprecated [email protected]: graceful-fs v3.0.0 and before will fail on node releases >= v7.0. Please update to graceful-fs@^4.0.0 as soon as possible. Use 'npm ls graceful-fs' to find it in the tree.

Outdated minimatch:

โ”œโ”€โ”ฌ [email protected]
โ”‚ โ””โ”€โ”ฌ [email protected]
โ”‚   โ”œโ”€โ”ฌ [email protected]
โ”‚   โ”‚ โ””โ”€โ”€ [email protected] 
โ”‚   โ””โ”€โ”ฌ [email protected]
โ”‚     โ””โ”€โ”ฌ [email protected]
โ”‚       โ””โ”€โ”ฌ [email protected]
โ”‚         โ””โ”€โ”€ [email protected] 

Outdated Lodash:

โ”œโ”€โ”ฌ [email protected]
โ”‚ โ””โ”€โ”ฌ [email protected]
โ”‚   โ””โ”€โ”ฌ [email protected]
โ”‚     โ””โ”€โ”ฌ [email protected]
โ”‚       โ””โ”€โ”ฌ [email protected]
โ”‚         โ””โ”€โ”€ [email protected] 

Outdated graceful-fs:

โ”œโ”€โ”ฌ [email protected]
โ”‚ โ””โ”€โ”ฌ [email protected]
โ”‚   โ”œโ”€โ”ฌ [email protected]
โ”‚   โ”‚ โ””โ”€โ”ฌ [email protected]
โ”‚   โ”‚   โ””โ”€โ”ฌ [email protected]
โ”‚   โ”‚     โ””โ”€โ”ฌ [email protected]
โ”‚   โ”‚       โ””โ”€โ”€ [email protected] 
โ”‚   โ””โ”€โ”€ [email protected] 

Most helpful comment

gulp is an open source project and is maintained by contributors who volunteer their spare time to work on the project. It will be done when it is done. If you want it to be done quicker, you are very welcome to contribute some of your own time.

All 10 comments

Nope. Duplicate as @heikki mentioned.

In what year will it be solved? The outcoming 4.0 is still an alpha 2 !

@rbatllet, are you willing to help?

Are you saying that you don't have enough staff to release the next final version?

gulp is an open source project and is maintained by contributors who volunteer their spare time to work on the project. It will be done when it is done. If you want it to be done quicker, you are very welcome to contribute some of your own time.

The Gulp 4.0 version was announced on August 25, 2014 (2 years ago!) -> https://twitter.com/gulpjs/status/504031119445336064

Unfortunately now, it is not actively developed. It seems it is dying slowly. Look at the graphs -> https://github.com/gulpjs/gulp/graphs/contributors?from=2016-01-1&to=2016-08-27&type=c

https://github.com/gulpjs/gulp/issues/1782

You are very welcome to contribute to the project.

@rbatllet 4.0 is being worked - if you took more than five seconds to look you'd see it in other repos (for example: https://github.com/gulpjs/gulp/issues/1604). This repo has almost no code in it, it's a wrapper around the other modules so the contribution graph should be completely flat except for doc updates and major releases. We've responded to these tickets so many times - we have lives too.

I've had to move across the country 3 times since the tweet you linked - had my business unexpectedly fail (startups!), had relationships fail, deaths, travel, poverty, etc. - where the fuck am I supposed to find time to work on this while I'm trying to pay rent and put food in my stomach? The attitude people have towards open source authors is disgusting - I don't owe you anything, nobody does. Unless you've done something for the open source community (hint: you haven't!) then you aren't entitled to shit. If you want something to happen then help make it happen, otherwise log off.

It's really discouraging to have something I work on every day called "dying" or "dead" or "not actively developed" or "not worked on enough". Excuse me while I go crawl in a hole ๐Ÿ˜ญ

Was this page helpful?
0 / 5 - 0 ratings

Related issues

joe-watkins picture joe-watkins  ยท  5Comments

lehni picture lehni  ยท  4Comments

tom10271 picture tom10271  ยท  4Comments

lgg picture lgg  ยท  3Comments

jonira picture jonira  ยท  3Comments