# Does "au new" need an upgrade?

**URL:** <https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271>\
**Category:** Help Requests\
**Created:** [February 26, 2020, 4:40pm UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271 "2020-02-26T16:40:45Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![frodeaux](https://yyz1.discourse-cdn.com/flex027/user_avatar/discourse.aurelia.io/frodeaux/32/1754_2.png) [@frodeaux](https://discourse.aurelia.io/u/frodeaux)\
**Post date:** [February 26, 2020, 4:40pm UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/1 "2020-02-26T16:40:46Z")

</div>

New to Aurelia. My node is version v12.9.1.  
Following the tutorial, starting with “au new”.  
At the last step, when it installs the node dependencies, it appears that the package.json  
file generated is way out of date, because I get the following warnings:

npm WARN deprecated request@2.88.2: request has been deprecated, see [https://github.com/request/request/issues/3142](https://github.com/request/request/issues/3142)

npm WARN deprecated core-js@2.6.11: core-js@\<3 is no longer maintained and not recommended for usage due to the number of issues. Please, upgrade your dependencies to the actual version of core-js@3.

npm WARN aurelia-tools@2.0.0 requires a peer of babel-eslint@^7.2.3 but none is installed. You must install peer dependencies yourself.

npm WARN aurelia-tools@2.0.0 requires a peer of eslint@^4.0.0 but none is installed. You must install peer dependencies yourself.

npm WARN acorn-jsx@5.2.0 requires a peer of acorn@^6.0.0 || ^7.0.0 but none is installed. You must install peer dependencies yourself.

Fixing all of these is not that hard, but shouldn’t the CLI project creation process work without  
a lot of manual “fixing”? I would expect this to “just work”!

---

<div class="post-metadata">

**Author:** ![jbockle](https://yyz1.discourse-cdn.com/flex027/user_avatar/discourse.aurelia.io/jbockle/32/607_2.png) [@jbockle](https://discourse.aurelia.io/u/jbockle)\
**Post date:** [February 27, 2020, 12:44am UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/2 "2020-02-27T00:44:04Z")

</div>

I agree, but it might be because development is focused on Aurelia V2. Maybe open an issue/PR on the Aurelia V1 CLI github project so its on their radar? [https://github.com/aurelia/cli](https://github.com/aurelia/cli)

---

<div class="post-metadata">

**Author:** ![huochunpeng](https://avatars.discourse-cdn.com/v4/letter/h/49beb7/32.png) [@huochunpeng](https://discourse.aurelia.io/u/huochunpeng)\
**Post date:** [February 27, 2020, 1:22am UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/3 "2020-02-27T01:22:38Z")

</div>

Thanks for the valid concern!

request v2 is a dep of outdated jsdom for aurelia-pal-nodejs and jest, I will try to move them to latest version.  
Our aurelia-tools needs to update to latest tooling too.

I don’t know how you got acorn-jsx. Can you show me the full console log of your `au new`?

Update: ~~stale~~ PR [https://github.com/aurelia/pal-nodejs/pull/34](https://github.com/aurelia/pal-nodejs/pull/34) merged and released, will be reflected in app skeleton of next cli release.

Update: aurelia-tools can be removed from our skeleton [https://github.com/aurelia/cli/pull/1164](https://github.com/aurelia/cli/pull/1164) merged, as we only use it in eslint config `"extends": "./node_modules/aurelia-tools/.eslintrc.json",`, personally, I only use `"extends": "eslint:recommended",` with few additional rules.

---

<div class="post-metadata">

**Author:** ![ghiscoding](https://yyz1.discourse-cdn.com/flex027/user_avatar/discourse.aurelia.io/ghiscoding/32/1199_2.png) [@ghiscoding](https://discourse.aurelia.io/u/ghiscoding)\
**Post date:** [February 27, 2020, 4:34am UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/4 "2020-02-27T04:34:47Z")

</div>

> [@huochunpeng](#):
>
> Update: aurelia-tools can be removed from our skeleton ([chore(all): replace aurelia-tools eslintrc with standard eslint:recommended by 3cp · Pull Request #1164 · aurelia/cli · GitHub](https://github.com/aurelia/cli/pull/1164)), as we only use it in eslint config `"extends": "./node_modules/aurelia-tools/.eslintrc.json",` , personally, I only uses `"extends": "eslint:recommended",` with few additional rules.

That’s interesting, does that mean I can drop it from my plugin [Aurelia-Slickgrid](https://github.com/ghiscoding/aurelia-slickgrid) on this [line](https://github.com/ghiscoding/aurelia-slickgrid/blob/master/package.json#L113) since I built it with TypeScript and tslint?

---

<div class="post-metadata">

**Author:** ![huochunpeng](https://avatars.discourse-cdn.com/v4/letter/h/49beb7/32.png) [@huochunpeng](https://discourse.aurelia.io/u/huochunpeng)\
**Post date:** [February 27, 2020, 4:55am UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/5 "2020-02-27T04:55:15Z")

</div>

Pretty sure ts project doesn’t need it.

---

<div class="post-metadata">

**Author:** ![ghiscoding](https://yyz1.discourse-cdn.com/flex027/user_avatar/discourse.aurelia.io/ghiscoding/32/1199_2.png) [@ghiscoding](https://discourse.aurelia.io/u/ghiscoding)\
**Post date:** [February 27, 2020, 4:56am UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/6 "2020-02-27T04:56:29Z")

</div>

ok thanks, will give that a try 👍

EDIT

Removed `aurelia-tools`, ran the lib, ran all the unit tests and everything is fine… all good!  
Dang all this time I thought there was some special tools like a Jedi light saber 🗡 hidden in this toolset but at the end it’s not needed at all and perhaps the name wasn’t what it represent lol

---

<div class="post-metadata">

**Author:** ![huochunpeng](https://avatars.discourse-cdn.com/v4/letter/h/49beb7/32.png) [@huochunpeng](https://discourse.aurelia.io/u/huochunpeng)\
**Post date:** [February 28, 2020, 1:15pm UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/7 "2020-02-28T13:15:25Z")

</div>

@frodeaux we are working on a new cli release to not only clean up those warnings as much as possible, also bring up all 3rd-party deps to latest as much as possible.

---

<div class="post-metadata">

**Author:** ![huochunpeng](https://avatars.discourse-cdn.com/v4/letter/h/49beb7/32.png) [@huochunpeng](https://discourse.aurelia.io/u/huochunpeng)\
**Post date:** [March 3, 2020, 10:26pm UTC](https://discourse.aurelia.io/t/does-au-new-need-an-upgrade/3271/8 "2020-03-03T22:26:57Z")

</div>

aurelia-cli v1.3.0 is released with updated deps.

But 😕 jsdom v15 still uses deprecated request v2.88.2. There is no much we can do about the deep dependency of 3rd-party tools.

Note we didn’t move to latest jsdom v16 because of nodejs 8 support. Latest jest also stayed on jsdom v15 for the same reason.
