chore(deps): bump undici and openclaw - #119
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [undici](https://github.com/nodejs/undici) and [openclaw](https://github.com/openclaw/openclaw). These dependencies needed to be updated together. Updates `undici` from 7.24.7 to 8.10.2 - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v7.24.7...v8.10.2) Updates `openclaw` from 2026.4.10 to 2026.9.6 - [Release notes](https://github.com/openclaw/openclaw/releases) - [Changelog](https://github.com/openclaw/openclaw/blob/main/CHANGELOG.md) - [Commits](openclaw/openclaw@v2026.4.10...v2026.9.6) --- updated-dependencies: - dependency-name: undici dependency-version: 8.10.2 dependency-type: indirect - dependency-name: openclaw dependency-version: 2026.9.6 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
AssigneesThe following users could not be added as assignees: LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
|
This PR is quite large (11722 lines changed across 1 files). Consider breaking it into smaller PRs for easier review:
If this is intentional (refactor, major feature), feel free to ignore. |
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
🔍 Quality PreviewThe full CI pipeline is running. Expected checks:
Check the CI workflow for details. |
Bumps undici and openclaw. These dependencies needed to be updated together.
Updates
undicifrom 7.24.7 to 8.10.2Release notes
Sourced from undici's releases.
... (truncated)
Commits
5e541e0Bumped v8.10.2 (#5771)eb04cc3fix(fetch): only send Sec-Fetch-Mode to potentially trustworthy URLs (#5738)e905b5bfix(retry): settle exposed body on terminal failure0160a71fix(retry): validate resumed response framing66e1281fix(websocket): reject unrequested subprotocols7aac7f1fix(decompress): limit decompressed response sizecb75bbbfix(cache): do not cache Set-Cookie in shared caches6d58312fix(interceptor/dump): abort oversized chunked responses8f5868ffix: preserve BalancedPool connection options2be07bffix(cache): reject unsafe method response cachingUpdates
openclawfrom 2026.4.10 to 2026.9.6Release notes
Sourced from openclaw's releases.
... (truncated)
Changelog
Sourced from openclaw's changelog.
... (truncated)
Commits
eb377acchore(release): regenerate the 2026.9.6 contribution record for the predecess...1d8c0fcfix(update): stop a replaced-installation Gateway without draining it and bou...ee8f55cfix(daemon): keep the spy-able ownership assertion in systemd start and admit...55700eachore(update): parse the recorded predecessor-stop identity without a type as...6eed4c6chore(release): regenerate the 2026.9.6 contribution record for the predecess...80b922dfix(update): record the predecessor stop at its mutation boundary, restore it...d1531b5chore(release): regenerate the 2026.9.6 contribution record for the cut-5 fixes57c179achore(update): keep the predecessor-stop ledger step constant module-private523cd02fix(update): stop the supervised predecessor Gateway in the delegated Doctor ...945557efix(daemon): let a loaded user unit vouch for itself when system ownership is...Install script changes
This version adds
preinstallscript that runs during installation. Review the package contents before updating.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.