From b5187ef2a6a03a76d85b840027c5482ef6f58f65 Mon Sep 17 00:00:00 2001 From: Shinrai Date: Sat, 3 Oct 2026 19:51:13 -0700 Subject: [PATCH 1/6] deps: bump @cldmv/fix-headers to 2.1.4 Bumps @cldmv/fix-headers to 2.1.4 (JSON/Markdown/extension-less files never get a JS comment; dependency folders never walked). Ran fix:headers: 0 files restamped. --- package-lock.json | 10 +++++----- package.json | 2 +- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/package-lock.json b/package-lock.json index 47385f3..3518eff 100644 --- a/package-lock.json +++ b/package-lock.json @@ -7,7 +7,7 @@ "": { "name": "@cldmv/vitest-runner", "version": "1.5.3", - "license": "MIT", + "license": "Apache-2.0", "dependencies": { "chalk": "^6.0.1" }, @@ -16,7 +16,7 @@ }, "devDependencies": { "@cldmv/configs": "^1.2.1", - "@cldmv/fix-headers": "^2.1.2", + "@cldmv/fix-headers": "^2.1.4", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", "@eslint/markdown": "^8.0.2", @@ -132,9 +132,9 @@ } }, "node_modules/@cldmv/fix-headers": { - "version": "2.1.2", - "resolved": "https://registry.npmjs.org/@cldmv/fix-headers/-/fix-headers-2.1.2.tgz", - "integrity": "sha512-1OnUKIkFRMJfJJ4ypyBHsb6mqbCV4q77M/JcYunuB4Ibbg1/6bXK1qCFev5+UWbhgtpPKmiy2VfPCHpf4P1ToQ==", + "version": "2.1.4", + "resolved": "https://registry.npmjs.org/@cldmv/fix-headers/-/fix-headers-2.1.4.tgz", + "integrity": "sha512-PvCKMztN9k+jOjEpMCANMaDIkNW7cs2qp5P73JVzResk1+DfqhoZVqT9jpTT8cUu+6OGszsNqj8/X0Q9IhfNtg==", "dev": true, "license": "Apache-2.0", "dependencies": { diff --git a/package.json b/package.json index aa3575a..0e1c081 100644 --- a/package.json +++ b/package.json @@ -51,7 +51,7 @@ ], "devDependencies": { "@cldmv/configs": "^1.2.1", - "@cldmv/fix-headers": "^2.1.2", + "@cldmv/fix-headers": "^2.1.4", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", "@eslint/markdown": "^8.0.2", From 311e11e0b235c7a4fc8256e629d0d0d9027ae24f Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 4 Oct 2026 03:22:44 +0000 Subject: [PATCH 2/6] build(deps-dev): bump brace-expansion Bumps the npm_and_yarn group with 1 update in the / directory: [brace-expansion](https://github.com/juliangruber/brace-expansion). Updates `brace-expansion` from 5.0.9 to 5.0.12 - [Release notes](https://github.com/juliangruber/brace-expansion/releases) - [Commits](https://github.com/juliangruber/brace-expansion/compare/v5.0.9...v5.0.12) --- updated-dependencies: - dependency-name: brace-expansion dependency-version: 5.0.12 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] (cherry picked from commit 3a23119e796fdc042d124934367de2ea0293d1b4) --- package-lock.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 47385f3..dd57276 100644 --- a/package-lock.json +++ b/package-lock.json @@ -7,7 +7,7 @@ "": { "name": "@cldmv/vitest-runner", "version": "1.5.3", - "license": "MIT", + "license": "Apache-2.0", "dependencies": { "chalk": "^6.0.1" }, @@ -1908,9 +1908,9 @@ } }, "node_modules/brace-expansion": { - "version": "5.0.9", - "resolved": "https://registry.npmjs.org/brace-expansion/-/brace-expansion-5.0.9.tgz", - "integrity": "sha512-ScQ4IuvIEF1TMlP7Zt+vjJ//9zlPb2SDcxWxM3bk8s6t6GGdJ7KO1dCcTidOPJKePW30LE/2cT7wCyPho9/Wxg==", + "version": "5.0.12", + "resolved": "https://registry.npmjs.org/brace-expansion/-/brace-expansion-5.0.12.tgz", + "integrity": "sha512-YovQ3rzhaLMIrDjNDMkNS01tea93qhEhG5xy8f6+R0l+dw3Ki+5sCoIoI942iuLZTHWogWktgwVDhU09iNEimQ==", "dev": true, "license": "MIT", "dependencies": { From a1bbf0f3ca04e9f7c6a0dd46ec1ae3f09bd5b162 Mon Sep 17 00:00:00 2001 From: "cldmv-bot[bot]" <230771808+cldmv-bot[bot]@users.noreply.github.com> Date: Sun, 4 Oct 2026 23:08:45 +0000 Subject: [PATCH 3/6] chore: bump version to 1.5.4 --- package-lock.json | 4 ++-- package.json | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/package-lock.json b/package-lock.json index c317c48..2bad51b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,12 +1,12 @@ { "name": "@cldmv/vitest-runner", - "version": "1.5.3", + "version": "1.5.4", "lockfileVersion": 3, "requires": true, "packages": { "": { "name": "@cldmv/vitest-runner", - "version": "1.5.3", + "version": "1.5.4", "license": "Apache-2.0", "dependencies": { "chalk": "^6.0.1" diff --git a/package.json b/package.json index 0e1c081..4d82367 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "@cldmv/vitest-runner", - "version": "1.5.3", + "version": "1.5.4", "description": "Sequential Vitest runner to avoid OOM issues with large test suites", "type": "module", "main": "./dist/index.cjs", From 16517425cf3a05644a4b8ec2bc528d4a842fbe0b Mon Sep 17 00:00:00 2001 From: Shinrai Date: Sun, 4 Oct 2026 18:53:12 -0700 Subject: [PATCH 4/6] deps: bump @cldmv/fix-headers to 2.2.0 Bumps @cldmv/fix-headers from 2.1.4 to 2.2.0. No file headers changed. --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 2bad51b..6934044 100644 --- a/package-lock.json +++ b/package-lock.json @@ -16,7 +16,7 @@ }, "devDependencies": { "@cldmv/configs": "^1.2.1", - "@cldmv/fix-headers": "^2.1.4", + "@cldmv/fix-headers": "^2.2.0", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", "@eslint/markdown": "^8.0.2", @@ -132,9 +132,9 @@ } }, "node_modules/@cldmv/fix-headers": { - "version": "2.1.4", - "resolved": "https://registry.npmjs.org/@cldmv/fix-headers/-/fix-headers-2.1.4.tgz", - "integrity": "sha512-PvCKMztN9k+jOjEpMCANMaDIkNW7cs2qp5P73JVzResk1+DfqhoZVqT9jpTT8cUu+6OGszsNqj8/X0Q9IhfNtg==", + "version": "2.2.0", + "resolved": "https://registry.npmjs.org/@cldmv/fix-headers/-/fix-headers-2.2.0.tgz", + "integrity": "sha512-EQTAKCo0B639q2bde+vO5ciYbtvNgAJFm0DBthIJQnmTFJmQDUlObp5EsTRgg5CUlFoUnGMX+q35LC02QvYU4w==", "dev": true, "license": "Apache-2.0", "dependencies": { diff --git a/package.json b/package.json index 4d82367..4c66932 100644 --- a/package.json +++ b/package.json @@ -51,7 +51,7 @@ ], "devDependencies": { "@cldmv/configs": "^1.2.1", - "@cldmv/fix-headers": "^2.1.4", + "@cldmv/fix-headers": "^2.2.0", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", "@eslint/markdown": "^8.0.2", From bd885f825fc6803ff6a050e55c96c3d0773eb994 Mon Sep 17 00:00:00 2001 From: Shinrai Date: Sun, 4 Oct 2026 19:07:32 -0700 Subject: [PATCH 5/6] deps: bump @cldmv/configs to 1.2.4 Bump @cldmv/configs ^1.2.1 (locked 1.2.1) to ^1.2.4 (1.2.4). The older shared fix-headers.json forced forceAuthorUpdate and forceLastModifiedAuthorUpdate on; 1.2.4 sets both false, so with fix-headers 2.2.0 @Author is never rewritten and @Last modified by changes only on real content edits. Restamped files: 0. --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 6934044..354d5c5 100644 --- a/package-lock.json +++ b/package-lock.json @@ -15,7 +15,7 @@ "vitest-runner": "bin/vitest-runner.mjs" }, "devDependencies": { - "@cldmv/configs": "^1.2.1", + "@cldmv/configs": "^1.2.4", "@cldmv/fix-headers": "^2.2.0", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", @@ -121,9 +121,9 @@ } }, "node_modules/@cldmv/configs": { - "version": "1.2.1", - "resolved": "https://registry.npmjs.org/@cldmv/configs/-/configs-1.2.1.tgz", - "integrity": "sha512-R3GhDwdTqJwuRZ8/kVlUew0ezhZPxdFSJXky8jzfbzQEXDYQLZgPILSwzzKYHgRKu9P2ghXznzYKRPrsImiTNg==", + "version": "1.2.4", + "resolved": "https://registry.npmjs.org/@cldmv/configs/-/configs-1.2.4.tgz", + "integrity": "sha512-7HPqAgCKqol3fHpawEsXJ5ZqHxlDPZk1puoFu43f/gaNfhWwufDTzjkvLk90yVEumyz4N3pUwIxfbHUkUTpDEg==", "dev": true, "license": "Apache-2.0", "funding": { diff --git a/package.json b/package.json index 4c66932..26e40a3 100644 --- a/package.json +++ b/package.json @@ -50,7 +50,7 @@ "oom" ], "devDependencies": { - "@cldmv/configs": "^1.2.1", + "@cldmv/configs": "^1.2.4", "@cldmv/fix-headers": "^2.2.0", "@eslint/js": "^10.0.1", "@eslint/json": "^2.0.0", From 73b5acd1cc663ab5fed0eb6035a38777e3d322cd Mon Sep 17 00:00:00 2001 From: Shinrai Date: Sun, 4 Oct 2026 20:07:54 -0700 Subject: [PATCH 6/6] docs: add the v1.5.4 release notes and README What's New --- README.md | 9 ++++----- docs/changelog/v1/v1.5.4.md | 34 ++++++++++++++++++++++++++++++++++ 2 files changed, 38 insertions(+), 5 deletions(-) create mode 100644 docs/changelog/v1/v1.5.4.md diff --git a/README.md b/README.md index 4491963..1caf555 100644 --- a/README.md +++ b/README.md @@ -14,18 +14,17 @@ Coverage stays out-of-memory-safe too: each file writes a coverage blob, and a s ## ✨ What's New -### Latest: v1.5.3 (October 2026) +### Latest: v1.5.4 (October 2026) -- **A bundler-friendly CommonJS entry that fails clearly on old Node.js** — `dist/index.cjs` now loads the ES module build with a plain `require("./index.mjs")` instead of going through `createRequire`, so bundlers such as esbuild and webpack can see the dependency. On a Node.js version without synchronous `require(esm)` it throws an `ERR_REQUIRE_ESM` error that names the package, the versions `require()` needs (^20.19.0 or >=22.12.0) and the running version, and points at `import()` ([#69](https://github.com/CLDMV/vitest-runner/pull/69)). New `node:test` checks run the built CommonJS entry on every test and coverage run. -- **Node.js 22.12 or later** — `engines.node` moves from `>=20.19.0` to `>=22.12.0` ([#73](https://github.com/CLDMV/vitest-runner/pull/73)). The `chalk` 6 dependency and the `vitest` 5 peer already needed it, so Node.js 20 had stopped installing cleanly in v1.5.2; the declared floor now matches. -- [View full v1.5.3 Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.3.md) +- **Dev-tooling dependency update, nothing new in the package** — `@cldmv/fix-headers` moves to 2.2.0 ([#74](https://github.com/CLDMV/vitest-runner/pull/74), [#78](https://github.com/CLDMV/vitest-runner/pull/78)), `@cldmv/configs` to 1.2.4 ([#78](https://github.com/CLDMV/vitest-runner/pull/78)) and the dev-only `brace-expansion` to 5.0.12 ([#76](https://github.com/CLDMV/vitest-runner/pull/76)). What the package ships is identical to v1.5.3. +- [View full v1.5.4 Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.4.md) ### Recent Releases +- **v1.5.3** (October 2026) — A bundler-friendly CommonJS entry that fails clearly on Node.js without `require(esm)`, and `engines.node` raised to `>=22.12.0` ([Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.3.md)) - **v1.5.2** (October 2026) — `chalk` moves to 6.0.1, a skipped PR run can no longer satisfy `✅ Required PR Check`, and the repository adopts the shared CLDMV fix-headers config ([Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.2.md)) - **v1.5.1** (September 2026) — Documentation-only release that backfilled the missing v1.5.0 changelog ([Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.1.md)) - **v1.5.0** (September 2026) — Added an `exclude` option (API + repeatable `--exclude ` CLI flag) so discovery can skip directories/files like `tmp/**` worktrees or `dist/**` build output ([Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.5.0.md)) -- **v1.4.4** (September 2026) — Dropped the `prepack` tsup-availability workaround now that the underlying gap is fixed upstream, and re-armed the release-merge gate for every check-producing workflow ([Changelog](https://github.com/CLDMV/vitest-runner/blob/master/docs/changelog/v1/v1.4.4.md)) 📚 For complete release notes, see the [docs/changelog/](https://github.com/CLDMV/vitest-runner/tree/master/docs/changelog/) folder. diff --git a/docs/changelog/v1/v1.5.4.md b/docs/changelog/v1/v1.5.4.md new file mode 100644 index 0000000..0b253c5 --- /dev/null +++ b/docs/changelog/v1/v1.5.4.md @@ -0,0 +1,34 @@ +# vitest-runner v1.5.4 Changelog + +**Release Date**: October 2026 +**Release Type**: Patch +**Branch**: `next` → `master` + +--- + +## Overview + +A dev-tooling dependency release with no change to the published package. Two development dependencies move forward, `@cldmv/fix-headers` (the tool that maintains the comment headers at the top of source, test, config and workflow files) and `@cldmv/configs` (the shared lint, format and header configuration), and the dev-only transitive `brace-expansion` is patched to 5.0.12. + +Nothing under `src/`, `tests/`, `bin/` or the build configuration changed, so `dist/` and the CLI, the `run()` API and the CommonJS entry are identical to [v1.5.3](./v1.5.3.md). The runtime dependency and peer ranges are untouched, and the only lockfile entries that moved are the three below. No file headers were restamped: both fix-headers steps and the configs bump re-ran `fix:headers` and changed no file. + +--- + +## 🔧 Dependencies + +All dev-only; none of them is installed by consumers of the package. + +- **`@cldmv/fix-headers` `^2.1.2` → `^2.2.0`** (locked 2.1.2 to 2.2.0), in two steps: 2.1.4 ([#74](https://github.com/CLDMV/vitest-runner/pull/74)) and 2.2.0 ([#78](https://github.com/CLDMV/vitest-runner/pull/78)). Version 2.1.4 never adds a JS comment header to JSON, Markdown or extension-less files and never walks into dependency folders. From 2.2.0 the `@Last modified by` tag follows content edits only, so a header-only rewrite keeps the recorded editor. +- **`@cldmv/configs` `^1.2.1` → `^1.2.4`** (locked 1.2.1 to 1.2.4) ([#78](https://github.com/CLDMV/vitest-runner/pull/78)). The older shared `fix-headers.json` forced `forceAuthorUpdate` and `forceLastModifiedAuthorUpdate` on; version 1.2.4 sets both to `false`, so `@Author` is never rewritten and `@Last modified by` changes only on real content edits. +- **`brace-expansion` 5.0.9 → 5.0.12**, an indirect dev dependency (pulled in through `minimatch`), updated by Dependabot's `npm_and_yarn` group ([#76](https://github.com/CLDMV/vitest-runner/pull/76)). Lockfile only; `package.json` does not list it. + +## 📚 Documentation + +- **NEW:** [docs/changelog/v1/v1.5.4.md](./v1.5.4.md): this changelog. +- README What's New promoted to v1.5.4. + +--- + +## Upgrade notes + +- No breaking changes and no change to what the package ships: a drop-in replacement for [v1.5.3](./v1.5.3.md). The Node.js 22.12 floor introduced in v1.5.3 is unchanged.