search
HomeWeb Front-endJS TutorialLet's talk about how to use package.json for version management of dependent packages

This article talks about how to use package.json to perform version management on dependent packages in actual front-end projects. What impact will different rules have on dependency management?

Let's talk about how to use package.json for version management of dependent packages

npm version number definition

Version format: X.Y.Z[-string]
The meaning is:

  • X: Major version number
  • Y: Minor version number
  • Z: Correction version number
  • string: Prior version number or version compilation information

For example:

6.3.2-alpha means:

  • Major version number 6 , there are 6 update iterations that are not backward compatible.

  • minor version number 3, there are 3 small function iterations. 6.*.* Any dependency statement of 6.3.2 can install this new package.

  • Correction version number 2, there are 2 bug modifications or other non-major functional modifications. 6.*.* Any dependency statement of 6.3.2 can install this new package.

  • Advanced version numberalpha, indicating the processing trial stage.

Extended reading:Semantic Version 2.0.0

How to identify dependency versions in package.json

will be interpreted as follows:

"vue": "~2.5.22",
"vue-class-component": "^6.0.0",
"vue-router": "3.0.1",
"express": "latest",
"mongoose": "*",
  • Symbol^: Lock the major version, update the minor version number, revised version number and precedence Version number

    For example"vue-class-component": "^6.0.0", when installing dependencies, you can install it in line with 6.*.* Any version, as long as the major version number is 6.

  • Symbols~: Lock the major version number and minor version number, and update the revised version number and advanced version number

    For example "vue": "~2.5.22", when installing dependencies, you can install any version that conforms to 2.5.*.

  • Empty symbol: Lock all version numbers

    For example"vue-router": "3.0. 1", only dependent packages with version 3.0.1 can be installed.

  • Symbol*: Define a certain version number range

    For examplevue-router": "3.0 .*", you can install any version fixed by 3.0, such as 3.0.1, 3.0.2.

  • latest: Install the latest stable version

Lets talk about how to use package.json for version management of dependent packages

  • ## For example,

    "express": "latest", you can install 4.18.1 (the latest version of 2022.06.13).

  • *: Install the latest released version, not necessarily the stable version

Lets talk about how to use package.json for version management of dependent packages

    ##For example
  • "mongoose": "*"

    , you can install 6.0.0-rc2, 3.9.7, etc.

  • Git URL

    : Use packages published on GitQuote format:

    ://[[:]@][:][:][/][# | #semver:]

    ##

    "test": "git+ssh://git@github.com:npm/cli.git#v1.0.27"
    Extended reading:
  • npm docs - dependencies

Don’t trust the version number of the npm package too much!

As the title says, this is a bloody lesson. Experience.

When the author uses

system.js

, the version limit used is:

system.js: "^6.3.2". When installing dependencies, the version > 6.3.2

was accidentally installed, causing an error in project operation.

The reason is the author of system.js

, The version number was not named according to the

semver specification, which resulted in the author's project introducing not backward compatible updates, which caused the project to run incorrectly.dependencies, devDependencies and peerDependencies

dependencies

The dependencies used in the production environment are uniformly installed under dependencies

.

For example:

"dependencies": {
	"chalk": "^2.4.2",
	"commander": "^3.0.0",
	"fs-extra": "^8.1.0",
	"inquirer": "^6.5.0",
	"mem-fs": "^1.1.3",
	"mem-fs-editor": "^6.0.0",
	"shelljs": "^0.8.3"
}
The above code is a fragment from

package.json

of the

cli toolkit made by the author. shelljs is used to operate files. If it is declared in
devDependencies, an error will be reported after the user installs the current tool package. Because the dependencies declared in the devDependencies field will not be installed when
npm install tool package . It must be declared in the dependencies field to be installed.

devDependencies

生产环境不需要使用的依赖,都需要安装在devDependencies下。
因为生产环境下,是不会安装devDependencies字段下的依赖的。

举个例子:

"devDependencies": {
	"@commitlint/cli": "^8.1.0",
	"@commitlint/config-conventional": "^8.1.0",
	"commitizen": "^4.0.3",
	"commitlint-config-cz": "^0.12.1",
	"cz-customizable": "^6.2.0",
	"standard-version": "^7.0.0"
}

上述代码,是笔者做的cli工具包的package.json中的片段。
commitizen是笔者用于规范Git提交规范的依赖包,只在开发环境中使用,所以在devDependencies中声明。

peerDependencies

当开发一些插件和工具包时,对使用方的运行环境的依赖包版本有要求,可以使用peerDependencies字段进行声明。

举个例子:

{
  "name": "tea-latte",
  "version": "1.3.5",
  "peerDependencies": {
    "tea": "2.x"
  }
}

当前工具tea-latte,依赖tea包。而且,要求tea包是主版本2。

当不满足要求时,控制台会进行报错处理。

注意
npm v7版本, peerDependencies会默认安装。
npm  v3 到 npm v6版本, peerDependencies不会自动安装。

更多node相关知识,请访问:nodejs 教程

The above is the detailed content of Let's talk about how to use package.json for version management of dependent packages. For more information, please follow other related articles on the PHP Chinese website!

Statement
This article is reproduced at:掘金社区. If there is any infringement, please contact admin@php.cn delete
From Websites to Apps: The Diverse Applications of JavaScriptFrom Websites to Apps: The Diverse Applications of JavaScriptApr 22, 2025 am 12:02 AM

JavaScript is widely used in websites, mobile applications, desktop applications and server-side programming. 1) In website development, JavaScript operates DOM together with HTML and CSS to achieve dynamic effects and supports frameworks such as jQuery and React. 2) Through ReactNative and Ionic, JavaScript is used to develop cross-platform mobile applications. 3) The Electron framework enables JavaScript to build desktop applications. 4) Node.js allows JavaScript to run on the server side and supports high concurrent requests.

Python vs. JavaScript: Use Cases and Applications ComparedPython vs. JavaScript: Use Cases and Applications ComparedApr 21, 2025 am 12:01 AM

Python is more suitable for data science and automation, while JavaScript is more suitable for front-end and full-stack development. 1. Python performs well in data science and machine learning, using libraries such as NumPy and Pandas for data processing and modeling. 2. Python is concise and efficient in automation and scripting. 3. JavaScript is indispensable in front-end development and is used to build dynamic web pages and single-page applications. 4. JavaScript plays a role in back-end development through Node.js and supports full-stack development.

The Role of C/C   in JavaScript Interpreters and CompilersThe Role of C/C in JavaScript Interpreters and CompilersApr 20, 2025 am 12:01 AM

C and C play a vital role in the JavaScript engine, mainly used to implement interpreters and JIT compilers. 1) C is used to parse JavaScript source code and generate an abstract syntax tree. 2) C is responsible for generating and executing bytecode. 3) C implements the JIT compiler, optimizes and compiles hot-spot code at runtime, and significantly improves the execution efficiency of JavaScript.

JavaScript in Action: Real-World Examples and ProjectsJavaScript in Action: Real-World Examples and ProjectsApr 19, 2025 am 12:13 AM

JavaScript's application in the real world includes front-end and back-end development. 1) Display front-end applications by building a TODO list application, involving DOM operations and event processing. 2) Build RESTfulAPI through Node.js and Express to demonstrate back-end applications.

JavaScript and the Web: Core Functionality and Use CasesJavaScript and the Web: Core Functionality and Use CasesApr 18, 2025 am 12:19 AM

The main uses of JavaScript in web development include client interaction, form verification and asynchronous communication. 1) Dynamic content update and user interaction through DOM operations; 2) Client verification is carried out before the user submits data to improve the user experience; 3) Refreshless communication with the server is achieved through AJAX technology.

Understanding the JavaScript Engine: Implementation DetailsUnderstanding the JavaScript Engine: Implementation DetailsApr 17, 2025 am 12:05 AM

Understanding how JavaScript engine works internally is important to developers because it helps write more efficient code and understand performance bottlenecks and optimization strategies. 1) The engine's workflow includes three stages: parsing, compiling and execution; 2) During the execution process, the engine will perform dynamic optimization, such as inline cache and hidden classes; 3) Best practices include avoiding global variables, optimizing loops, using const and lets, and avoiding excessive use of closures.

Python vs. JavaScript: The Learning Curve and Ease of UsePython vs. JavaScript: The Learning Curve and Ease of UseApr 16, 2025 am 12:12 AM

Python is more suitable for beginners, with a smooth learning curve and concise syntax; JavaScript is suitable for front-end development, with a steep learning curve and flexible syntax. 1. Python syntax is intuitive and suitable for data science and back-end development. 2. JavaScript is flexible and widely used in front-end and server-side programming.

Python vs. JavaScript: Community, Libraries, and ResourcesPython vs. JavaScript: Community, Libraries, and ResourcesApr 15, 2025 am 12:16 AM

Python and JavaScript have their own advantages and disadvantages in terms of community, libraries and resources. 1) The Python community is friendly and suitable for beginners, but the front-end development resources are not as rich as JavaScript. 2) Python is powerful in data science and machine learning libraries, while JavaScript is better in front-end development libraries and frameworks. 3) Both have rich learning resources, but Python is suitable for starting with official documents, while JavaScript is better with MDNWebDocs. The choice should be based on project needs and personal interests.

See all articles

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Atom editor mac version download

Atom editor mac version download

The most popular open source editor

SublimeText3 Linux new version

SublimeText3 Linux new version

SublimeText3 Linux latest version

mPDF

mPDF

mPDF is a PHP library that can generate PDF files from UTF-8 encoded HTML. The original author, Ian Back, wrote mPDF to output PDF files "on the fly" from his website and handle different languages. It is slower than original scripts like HTML2FPDF and produces larger files when using Unicode fonts, but supports CSS styles etc. and has a lot of enhancements. Supports almost all languages, including RTL (Arabic and Hebrew) and CJK (Chinese, Japanese and Korean). Supports nested block-level elements (such as P, DIV),

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

SecLists

SecLists

SecLists is the ultimate security tester's companion. It is a collection of various types of lists that are frequently used during security assessments, all in one place. SecLists helps make security testing more efficient and productive by conveniently providing all the lists a security tester might need. List types include usernames, passwords, URLs, fuzzing payloads, sensitive data patterns, web shells, and more. The tester can simply pull this repository onto a new test machine and he will have access to every type of list he needs.