Repository navigation
fix(deps): update all non-major dependencies - #38
Merged
Merged
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #38 +/- ##
=======================================
Coverage 95.58% 95.58%
=======================================
Files 16 16
Lines 657 657
Branches 207 207
=======================================
Hits 628 628
Misses 29 29 ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
This branch was successfully deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
21.2.2→21.2.33.3.6→3.3.71.9.70→1.11.116.3.2→16.3.324.19.0→24.19.119.2.18→19.3.019.2.4→19.3.08.67.0→8.71.08.67.0→8.71.016.3.1→16.3.820.11.6→20.14.516.3.6→16.3.810.34.5→10.34.68.5.26→8.5.281.418.6→1.435.63.9.6→3.9.919.2.8→19.3.019.2.8→19.3.07.85.0→7.89.01.103.1→1.105.13.6.0→3.7.08.67.0→8.71.04.4.3→4.6.5Release Notes
conventional-changelog/commitlint (@commitlint/cli)
v21.2.3Compare Source
Bug Fixes
eslint/eslintrc (@eslint/eslintrc)
v3.3.7Compare Source
Bug Fixes
PostHog/posthog-js (@posthog/nextjs-config)
v1.11.1Compare Source
Patch Changes
09c6b93Thanks @marandaneto! - Delete webpack server source maps after upload without leaving them in Next.js deployment traces.(2026-09-04)
v1.11.0Compare Source
Minor Changes
#4705
dd5888aThanks @ablaszkiewicz! - Change the defaultsourcemaps.releaseModetoevent: setsourcemaps.releaseMode: 'symbol-set', orPOSTHOG_RELEASE_MODE=symbol-set, to keep binding uploaded symbol sets to a release. The@posthog/plugin-utilsbump is major, so an installed plugin keeps the old default until the plugin itself is upgraded.eventmode requires a posthog-cli withrelease resolveand--release-mode, andposthog-js1.409.0,posthog-node5.47.0, or@posthog/core1.46.0 at runtime. An older CLI fails a rollup build and skips the upload on webpack and Next.js. An older SDK reports no release on exceptions. (2026-09-02)Patch Changes
c589ab8Thanks @cat-ph! - Bump@posthog/clito~0.16.2, which fixes a race insourcemap process: inject and upload used to walk the directory roots separately, so a bundler still writing into the output directory mid-run (e.g. Turbopack's background filesystem-cache flush on Next.js 16.3+) could hand upload a chunk inject never stamped and abort the build with "Chunk ID not found". The CLI now uploads exactly the pairs it injected, and--delete-aftercleanup skips files that vanished or changed after upload instead of failing the build.(2026-09-02)
c589ab8,dd5888a]:v1.10.0Compare Source
Minor Changes
530d88bThanks @ablaszkiewicz! - Add experimentalsourcemaps.releaseMode: 'event'to the webpack plugin and Next.js config. In event mode posthog-cli resolves the release once and injects its id into every chunk on disk, so exceptions report their release directly instead of it being bound to the uploaded symbol sets, and chunk ids are content-derived so a rebuild of unchanged code reuses the symbol set already uploaded. On webpack >= 5.104 the plugin also turns on webpack's own debug ids, which the CLI adopts as chunk ids, so one id identifies a chunk across the whole toolchain. The option defaults to thePOSTHOG_RELEASE_MODEenvironment variable and then tosymbol-set, which behaves exactly as before. Event mode needs a posthog-cli with therelease resolvecommand.(2026-08-24)
Patch Changes
530d88bThanks @ablaszkiewicz! - Bump@posthog/clito~0.14.1, which makessourcemap inject --release-mode=eventadopt a bundler-emitted ECMA-426 debug id as the chunk id instead of deriving its own, so the ids webpack stamps into each chunk are the ones the CLI uploads against.(2026-08-24)
530d88b,530d88b]:testing-library/react-testing-library (@testing-library/react)
v16.3.3Compare Source
Bug Fixes
typescript-eslint/typescript-eslint (@typescript-eslint/eslint-plugin)
v8.71.0Compare Source
🚀 Features
🩹 Fixes
this: voidon class properties (7fce9127d)❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.70.1Compare Source
🩹 Fixes
await(#12716)❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.70.0Compare Source
🚀 Features
🩹 Fixes
❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.69.0Compare Source
🚀 Features
🩹 Fixes
❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.68.0Compare Source
🚀 Features
🩹 Fixes
ignoreVoid: falseresults in false negative in ArrowFunctionExpression (#12646)❤️ Thank You
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
typescript-eslint/typescript-eslint (@typescript-eslint/parser)
v8.71.0Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.70.1Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.70.0Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.69.0Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
v8.68.0Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
See GitHub Releases for more information.
You can read about our versioning strategy and releases on our website.
vercel/next.js (eslint-config-next)
v16.3.8Compare Source
This release contains security fixes for the following advisories:
High:
Medium:
use cachefill can leak Draft Mode content into regular responses and persisted pagesLow:
v16.3.7Compare Source
Core Changes
Credits
Huge thanks to @lukesandberg for helping!
v16.3.6Compare Source
v16.3.5Compare Source
v16.3.4Compare Source
v16.3.3Compare Source
v16.3.2Compare Source
Core Changes
Credits
Huge thanks to @lubieowoce, @unstubbable, @timneutkens, @mischnic, and @eps1lon for helping!
capricorn86/happy-dom (happy-dom)
v20.14.5Compare Source
v20.14.4Compare Source
👷♂️ Patch fixes
v20.14.3Compare Source
👷♂️ Patch fixes
v20.14.2Compare Source
👷♂️ Patch fixes
v20.14.1Compare Source
v20.14.0Compare Source
🎨 Features
v20.13.2Compare Source
👷♂️ Patch fixes
v20.13.1Compare Source
v20.13.0Compare Source
🎨 Features
v20.12.2Compare Source
v20.12.1Compare Source
v20.12.0Compare Source
v20.11.15Compare Source
👷♂️ Patch fixes
v20.11.14Compare Source
v20.11.13Compare Source
👷♂️ Patch fixes
v20.11.12Compare Source
👷♂️ Patch fixes
v20.11.11Compare Source
v20.11.10Compare Source
v20.11.9Compare Source
v20.11.8Compare Source
👷♂️ Patch fixes
v20.11.7Compare Source
👷♂️ Patch fixes
pnpm/pnpm (pnpm)
v10.34.6Compare Source
Patch Changes
e7888e5:pnpm self-updatenow resolves and verifies pnpm through registry, authentication, proxy, and TLS settings from trusted non-project configuration. Project configuration and the default project pnpmfile can no longer redirect the pnpm download or disable engine identity verification.46bc7c9: pnpm no longer tells you to update itself with Corepack or withpnpm add -g:pnpm self-update, or the standalone install script when pnpm is running under Corepack. It used to suggestcorepack use pnpm@<version>, orpnpm add -g pnpm/pnpm add -g @pnpm/exewhen pnpm was not installed by the standalone script — butpnpm add -grefuses to install pnpm and points atpnpm self-updateanyway, and@pnpm/exeis not published for pnpm v12 or newer, where the unscopedpnpmpackage is itself the native executable.pnpm self-updateunder Corepack now points at the standalone install script too, instead of telling you to update pnpm with Corepack.46bc7c9: Updatedadm-zipto v0.6.0, which fixes a memory-exhaustion vulnerability where a crafted ZIP file could make it allocate 4 GB of memory.adm-zipis used to extract the Node.js, Bun, and Deno archives that pnpm downloads on Windows.Updated the embedded Node.js release keys to the current canonical
nodejs/release-keyslist.Updated the embedded npm registry signing keys to the set currently advertised by npm.
702ad5f: Update the embedded Node.js release keys with the new key added to nodejs/release-keys (Stewart X Addison,655F3B5C1FB3FA8D1A0CA6BDE4A7D232B936D2FD).Platinum Sponsors
Gold Sponsors
postcss/postcss (postcss)
v8.5.28Compare Source
v8.5.27Compare Source
/*#(by @dylanpulver).*hack before a comment in Custom Properties (by @Jaybhade).list.comma()(by @MahinAnowar).list.space()(by @MahinAnowar).PostHog/posthog-js (posthog-js)
v1.435.6Compare Source
1.435.6
Patch Changes
#5046
c360da1Thanks @luke-belton! - Capture the OpenAI Ads click identifier (oppref) as a campaign parameter, so it is set on events and as$initial_oppreflike every other ad click ID.(2026-10-01)
#5175
c21f14dThanks @marandaneto! - Fix cross-subdomain identity continuity when opting in after cookie consent.(2026-10-01)
Updated dependencies [
c360da1]:v1.435.5Compare Source
1.435.5
Patch Changes
59b93a3Thanks @dustinbyrne! - Preserve session attribution and registered properties across initialization and configuration updates when persistence writes are debounced.(2026-09-30)
v1.435.4Compare Source
1.435.4
Patch Changes
5c92e83Thanks @posthog! - Fix aDataCloneErrorwhen session replay records network timing inside a cross-origin iframe.(2026-09-30)
v1.435.3Compare Source
1.435.3
Patch Changes
47db7ceThanks @posthog! - Start session recording atDOMContentLoaded, so a page whoseloadevent is late or never fires still records, and report$sdk_debug_rrweb_attachedfrom rrweb's own recording state(2026-09-30)
v1.435.2Compare Source
1.435.2
Patch Changes
bd66ceeThanks @marandaneto! - Reduce replay debug properties on captured events while preserving recording status and capture diagnostics. Report cumulative mutation-drop counts and dropped bytes on$snapshotevents only when greater than zero.(2026-09-30)
v1.435.1Compare Source
1.435.1
Patch Changes
5929eabThanks @breken-ai! - PostHogFeature withoutmatchshows the fallback when the flag evaluates to false.(2026-09-29)
v1.435.0Compare Source
1.435.0
Minor Changes
e89d224Thanks @AyobamiH! - AddonActiveMatchingSurveysChangedto subscribe to survey eligibility updates with safe unsubscribe and recoverable load-error reporting.(2026-09-29)
Patch Changes
e89d224]:v1.434.18Compare Source
1.434.18
Patch Changes
Configuration
📅 Schedule: (in timezone America/Chicago)
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.