Skip to content

chore(deps): bump sharp, @astrojs/starlight, astro, astro-embed, starlight-blog and starlight-llms-txt in /docs - #295

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/docs/multi-533bf70fd3
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/docs/multi-533bf70fd3

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 11, 2026

Copy link
Copy Markdown
Contributor

Bumps sharp to 0.35.4 and updates ancestor dependencies sharp, @astrojs/starlight, astro, astro-embed, starlight-blog and starlight-llms-txt. These dependencies need to be updated together.

Updates sharp from 0.34.5 to 0.35.4

Release notes

Sourced from sharp's releases.

v0.35.4

https://github.com/lovell/sharp-libvips/releases/tag/v1.3.3

v0.35.4-rc.0

... (truncated)

Commits
  • 7f1a0a2 Release v0.35.4
  • f927818 Upgrade to sharp-libvips v1.3.3
  • e802092 Prerelease v0.35.4-rc.0
  • e13eb2f CI: Fix wasm32 build (#4589)
  • a82a0b3 Upgrade to libvips v8.18.6
  • 8044fe4 Bound resize dimensions to coordinate limit
  • 147f859 Docs: changelog entries for #4578 #4584
  • ee5bfb8 Tests: use yauzl directly rather than via extract-zip wrapper
  • 7a77889 Bump uraimo/run-on-arch-action from 3.1.0 to 3.2.0 (#4588)
  • ea5bef2 Improve support for input Streams finishing before output is requested (#4584)
  • Additional commits viewable in compare view

Updates @astrojs/starlight from 0.37.6 to 0.42.0

Release notes

Sourced from @​astrojs/starlight's releases.

@​astrojs/starlight@​0.42.0

Minor Changes

  • #3572 292fb17 Thanks @​HiDeoo! - Distributes package as JavaScript files with dedicated type declaration files instead of TypeScript source files.

  • #4121 2623ae6 Thanks @​delucis! - Simplifies markup for Starlight’s mobile menu toggle

    ⚠️ Potentially breaking change: If you use a theme plugin, custom styles, or component overrides targeting the MobileMenuToggle button or PageFrame components, you may need to adjust these for the new markup. The button is no longer wrapped in a <starlight-menu-button> custom element and no longer uses the aria-expanded attribute. Instead, you can use the .sl-menu-button class name to target the button and the :popover-open pseudo-class to style the menu open state specifically.

    In the following example, custom styles for the menu button are updated for the new approach:

    - starlight-menu-button button {
    + .sl-menu-button {
      color: var(--sl-color-text);
    }
    
    starlight-menu-button[aria-expanded='true'] button {
    
    
    .sl-menu-button:has(~ :popover-open) {
    color: var(--sl-color-text-accent-high);
    }

See MobileMenuToggle.astro and PageFrame.astro on GitHub for the full source code of the updated components.

  • #3572 292fb17 Thanks @​HiDeoo! - Removes the tagline configuration option, which was never used.

    If your configuration included a tagline option, you can safely remove it without any replacement.

  • #4134 6135f01 Thanks @​HiDeoo! - Updates internal @astrojs/mdx, @astrojs/markdown-satteri, and satteri dependencies.

    ⚠️ BREAKING CHANGE: The following minimum versions are now required:

    • astro v7.2.10 or later
    • @astrojs/markdown-satteri 0.4.0 or later (if you use it)
    • @astrojs/markdown-remark 7.3.0 or later (if you use it)

    Please update Starlight and Astro together:

    npx @astrojs/upgrade
  • #4121 2623ae6 Thanks @​delucis! - Refactors Starlight’s mobile menu toggle to work when JavaScript fails or is disabled

    ⚠️ BREAKING CHANGE: This release drops official support for Chromium-based browsers prior to version 116 (released August 2023), Safari-based browsers prior to version 17.0 (released September 2023), and Firefox prior to version 125 (released April 2024). You can find a list of currently supported browsers and their versions using this browserslist query.

    This change also removes the data-mobile-menu-expanded attribute, which was previously added to <body> while the mobile menu is open. If you have custom code that was depending on this attribute, you will need to update it to use a new selector to check if the mobile menu is open.

    In the following example, a custom background colour for the site header while the menu is open is updated for the new approach:

  • ... (truncated)

    Changelog

    Sourced from @​astrojs/starlight's changelog.

    0.42.0

    Minor Changes

    • #3572 292fb17 Thanks @​HiDeoo! - Distributes package as JavaScript files with dedicated type declaration files instead of TypeScript source files.

    • #4121 2623ae6 Thanks @​delucis! - Simplifies markup for Starlight’s mobile menu toggle

      ⚠️ Potentially breaking change: If you use a theme plugin, custom styles, or component overrides targeting the MobileMenuToggle button or PageFrame components, you may need to adjust these for the new markup. The button is no longer wrapped in a <starlight-menu-button> custom element and no longer uses the aria-expanded attribute. Instead, you can use the .sl-menu-button class name to target the button and the :popover-open pseudo-class to style the menu open state specifically.

      In the following example, custom styles for the menu button are updated for the new approach:

      - starlight-menu-button button {
      + .sl-menu-button {
        color: var(--sl-color-text);
      }
      
      starlight-menu-button[aria-expanded='true'] button {
      
      
      .sl-menu-button:has(~ :popover-open) {
      color: var(--sl-color-text-accent-high);
      }

    See MobileMenuToggle.astro and PageFrame.astro on GitHub for the full source code of the updated components.

  • #3572 292fb17 Thanks @​HiDeoo! - Removes the tagline configuration option, which was never used.

    If your configuration included a tagline option, you can safely remove it without any replacement.

  • #4134 6135f01 Thanks @​HiDeoo! - Updates internal @astrojs/mdx, @astrojs/markdown-satteri, and satteri dependencies.

    ⚠️ BREAKING CHANGE: The following minimum versions are now required:

    • astro v7.2.10 or later
    • @astrojs/markdown-satteri 0.4.0 or later (if you use it)
    • @astrojs/markdown-remark 7.3.0 or later (if you use it)

    Please update Starlight and Astro together:

    npx @astrojs/upgrade
  • #4121 2623ae6 Thanks @​delucis! - Refactors Starlight’s mobile menu toggle to work when JavaScript fails or is disabled

    ⚠️ BREAKING CHANGE: This release drops official support for Chromium-based browsers prior to version 116 (released August 2023), Safari-based browsers prior to version 17.0 (released September 2023), and Firefox prior to version 125 (released April 2024). You can find a list of currently supported browsers and their versions using this browserslist query.

    This change also removes the data-mobile-menu-expanded attribute, which was previously added to <body> while the mobile menu is open. If you have custom code that was depending on this attribute, you will need to update it to use a new selector to check if the mobile menu is open.

  • ... (truncated)

    Commits

    Updates astro from 5.17.1 to 7.3.2

    Release notes

    Sourced from astro's releases.

    astro@7.3.2

    Patch Changes

    • #17896 a548223 Thanks @​matthewp! - Fixes <script>/<style> rendering in MDX so that only literal content (including content injected by remark/rehype plugins) is treated as trusted markup. A dynamic value passed as a <script>/<style> child (e.g. <script>{value}</script>) is now escaped like any other element's content instead of being rendered raw. Use set:html to explicitly opt a dynamic value back into raw rendering.

    • #17931 c1a6a89 Thanks @​astro-factory! - Fixes the dev toolbar returning a 504 "Outdated Optimize Dep" error when a workspace-linked package imports a dependency that Vite's initial scan did not discover

    • #17908 42e9188 Thanks @​astro-factory! - Fixes i18n fallback routing replacing the first substring match instead of the actual locale segment, which mangled paths like /energy/en/about into /esergy/en/about

    • #17936 4b92ddc Thanks @​astro-factory! - Fixes sessions breaking in dev mode with the Cloudflare adapter when middleware is present

    • Updated dependencies [a548223]:

      • @​astrojs/markdown-satteri@​0.4.1

    astro@7.3.1

    Patch Changes

    astro@7.3.0

    Minor Changes

    • #17767 ce7c91f Thanks @​astro-factory! - Adds --ignore-lock flag to astro preview, allowing multiple preview servers to run simultaneously on different ports. This is useful for E2E testing workflows (e.g., Playwright) that need to run several preview servers at once.

    • #17818 c0b6581 Thanks @​florian-lefebvre! - Adds a logger parameter to image services hooks

      Custom image services now receive Astro's runtime logger as an extra argument. Messages logged with it are routed through the destination configured in logger and respect your log level, instead of being written straight to the console:

      import type { LocalImageService } from 'astro';
      const service: LocalImageService = {
      // ...
      async transform(inputBuffer, transform, imageConfig, logger) {
      logger.warn(Could not optimize &quot;${transform.src}&quot;. Passing it through unchanged.);
      return { data: inputBuffer, format: 'png' };
      },
      };

      Astro's built-in Sharp service now uses this logger for the warnings it emits when it encounters an unexpected or unsupported source format.

    • #17818 c0b6581 Thanks @​florian-lefebvre! - Adds logger to the context object passed to cache providers

      Custom cache providers now receive Astro's runtime logger on the context passed to onRequest(). Messages logged with it are routed through the destination configured in logger and respect your log level, instead of being written straight to the console:

      import type { CacheProvider } from 'astro';
      const provider: CacheProvider = {

    ... (truncated)

    Commits

    Updates astro-embed from 0.12.0 to 0.14.0

    Release notes

    Sourced from astro-embed's releases.

    astro-embed@0.14.0

    Minor Changes

    • #461 a307a83 Thanks @​delucis! - Adds support for automatic embeds in MDX when using Astro’s Sätteri processor

      ⚠️ BREAKING CHANGE: astro-embed now requires v7.2.4 or higher of Astro

    Patch Changes

    • Updated dependencies [a307a83]:
      • @​astro-community/astro-embed-integration@​0.13.0

    astro-embed@0.13.1

    Patch Changes

    astro-embed@0.13.0

    Minor Changes

    • #261 eb53671 Thanks @​delucis! - Reduces install size of @astro-community/astro-embed-bluesky by ~60%

      The <Bluesky> component now uses atcute instead of @atproto/api internally. Because of this, the Post TypeScript type has changed slightly. If you were passing Bluesky data directly to the component (instead of a post URL), it should still work, but in some circumstances you may see type errors and need to adjust things slightly. Let us know if you run into issues upgrading.

    Patch Changes

    • Updated dependencies [eb53671]:
      • @​astro-community/astro-embed-bluesky@​0.2.0
      • @​astro-community/astro-embed-integration@​0.12.0
    Changelog

    Sourced from astro-embed's changelog.

    0.14.0

    Minor Changes

    • #461 a307a83 Thanks @​delucis! - Adds support for automatic embeds in MDX when using Astro’s Sätteri processor

      ⚠️ BREAKING CHANGE: astro-embed now requires v7.2.4 or higher of Astro

    Patch Changes

    • Updated dependencies [a307a83]:
      • @​astro-community/astro-embed-integration@​0.13.0

    0.13.1

    Patch Changes

    0.13.0

    Minor Changes

    • #261 eb53671 Thanks @​delucis! - Reduces install size of @astro-community/astro-embed-bluesky by ~60%

      The <Bluesky> component now uses atcute instead of @atproto/api internally. Because of this, the Post TypeScript type has changed slightly. If you were passing Bluesky data directly to the component (instead of a post URL), it should still work, but in some circumstances you may see type errors and need to adjust things slightly. Let us know if you run into issues upgrading.

    Patch Changes

    • Updated dependencies [eb53671]:
      • @​astro-community/astro-embed-bluesky@​0.2.0
      • @​astro-community/astro-embed-integration@​0.12.0
    Commits
    • cad308b Version Packages (#462)
    • 30dc993 fix(deps): update dependency @​astro-community/astro-embed-bluesky to ^0.2.3 (...
    • a6f8aba fix(deps): update dependency @​astro-community/astro-embed-bluesky to ^0.2.2 (...
    • 5362731 Version Packages (#425)
    • 9940e77 fix(deps): update astro (major) (#423)
    • 4bedaba fix(deps): update dependency @​astro-community/astro-embed-bluesky to ^0.2.1 (...
    • f890955 Version Packages (#360)
    • f3b668b fix(deps): update dependency @​astro-community/astro-embed-mastodon to ^0.1.1 ...
    • a0adb33 fix(deps): update astro-embed (#283)
    • See full diff in compare view

    Updates starlight-blog from 0.25.2 to 0.29.0

    Release notes

    Sourced from starlight-blog's releases.

    starlight-blog@0.29.0

    Minor Changes

    • #225 6449901 Thanks @​HiDeoo! - Improves the generated blog markup to provide more consistent CSS selectors for custom styling and theming.

      ⚠️ Potentially breaking change: If you have custom CSS targeting generated blog markup, you may want to double check the visual appearance of the generated pages when updating.

    starlight-blog@0.28.0

    Minor Changes

    Patch Changes

    starlight-blog@0.27.0

    Minor Changes

    • #209 e6c8154 Thanks @​HiDeoo! - Adds support for Astro v7, drops support for Astro v6.

      ⚠️ BREAKING CHANGE: The minimum supported version of Starlight is now 0.41.0.

      Please follow the upgrade guide to update your project.

    • #209 e6c8154 Thanks @​HiDeoo! - Adds support for the Sätteri Markdown processor.

    starlight-blog@0.26.1

    Patch Changes

    • #202 99e3282 Thanks @​julien-deramond! - Fixes a regression in version 0.26.0 preventing to use Infinity as a value for the postCount and recentPostCount configuration options.

    starlight-blog@0.26.0

    Minor Changes

    • #199 3c6cf12 Thanks @​HiDeoo! - Adds support for Astro v6, drops support for Astro v5.

      ⚠️ BREAKING CHANGE: The minimum supported version of Starlight is now 0.38.0.

    ... (truncated)

    Changelog

    Sourced from starlight-blog's changelog.

    0.29.0

    Minor Changes

    • #225 6449901 Thanks @​HiDeoo! - Improves the generated blog markup to provide more consistent CSS selectors for custom styling and theming.

      ⚠️ Potentially breaking change: If you have custom CSS targeting generated blog markup, you may want to double check the visual appearance of the generated pages when updating.

    0.28.0

    Minor Changes

    Patch Changes

    0.27.0

    Minor Changes

    • #209 e6c8154 Thanks @​HiDeoo! - Adds support for Astro v7, drops support for Astro v6.

      ⚠️ BREAKING CHANGE: The minimum supported version of Starlight is now 0.41.0.

      Please follow the upgrade guide to update your project.

    • #209 e6c8154 Thanks @​HiDeoo! - Adds support for the Sätteri Markdown processor.

    0.26.1

    Patch Changes

    • #202 99e3282 Thanks @​julien-deramond! - Fixes a regression in version 0.26.0 preventing to use Infinity as a value for the postCount and recentPostCount configuration options.

    0.26.0

    ... (truncated)

    Commits

    Updates starlight-llms-txt from 0.7.0 to 0.11.0

    Release notes

    Sourced from starlight-llms-txt's releases.

    starlight-llms-txt@0.11.0

    Minor Changes

    • #127 bf986de Thanks @​funkadelic! - Updates to support Astro 7. The astro peer dependency is now ^7.0.0 and the @astrojs/starlight peer dependency is now >=0.41.0.

      Support for Astro 6 and Starlight versions below 0.41 has been dropped. Existing projects on Astro 6 can continue using the previous release until they are ready to upgrade to Astro 7.

    starlight-llms-txt@0.10.0

    Minor Changes

    • #105 aa7f8cf Thanks @​IEvangelist! - Extend the customSelectors option to support per-output control.

      The option is now exposed at the top level of the plugin configuration and accepts either of two shapes:

      • Array (legacy) — selectors apply to llms-small.txt only, matching the existing scope of minify.customSelectors.
      • Object with optional small, full, and all arrays — small applies to llms-small.txt, full applies to llms-full.txt and any customSets outputs, and all applies to both (merged with small and full).

      The deprecated minify.customSelectors option keeps working: selectors listed there are merged additively into the small bucket so existing configurations are unaffected.

      Use the new object shape to strip transient HTML injected by docs-site rendering plugins (for example, hover popovers from expressive-code-twoslash) from every generated output:

      starlightLlmsTxt({
        customSelectors: {
          all: ['.twoslash-popup-container', '.twoslash-error-box'],
        },
      }),

    starlight-llms-txt@0.9.0

    Minor Changes

    • #104 3f6c45b Thanks @​davidfowl! - Preserves the contents of code blocks when collapsing whitespace in llms-small.txt.

      Previously, the minify.whitespace option collapsed every whitespace run — including newlines inside fenced code blocks — into a single space, so multi-line code samples ended up on one line. Now, fenced code blocks keep their original newlines and indentation while whitespace in prose still collapses for token efficiency.

      A new minify.collapseCodeBlocks option controls this behavior. Set it to true to restore the previous flatten-everything output.

    starlight-llms-txt@0.8.1

    Patch Changes

    • 29e5efb Thanks @​mvanhorn! - Strips HTML comments from llms.txt files. <!-- ... --> style comments in .md files are no longer emitted in the generated files.

    starlight-llms-txt@0.8.0

    Minor Changes

    • #80 dea7b22 Thanks @​nonoakij! - Adds support for Astro v6 and Starlight v0.38, drops support for lower versions.
    Changelog

    Sourced from starlight-llms-txt's changelog.

    0.11.0

    Minor Changes

    • #127 bf986de Thanks @​funkadelic! - Updates to support Astro 7. The astro peer dependency is now ^7.0.0 and the @astrojs/starlight peer dependency is now >=0.41.0.

      Support for Astro 6 and Starlight versions below 0.41 has been dropped. Existing projects on Astro 6 can continue using the previous release until they are ready to upgrade to Astro 7.

    0.10.0

    Minor Changes

    • #105 aa7f8cf Thanks @​IEvangelist! - Extend the customSelectors option to support per-output control.

      The option is now exposed at the top level of the plugin configuration and accepts either of two shapes:

      • Array (legacy) — selectors apply to llms-small.txt only, matching the existing scope of minify.customSelectors.
      • Object with optional small, full, and all arrays — small applies to llms-small.txt, full applies to llms-full.txt and any customSets outputs, and all applies to both (merged with small and full).

      The deprecated minify.customSelectors option keeps working: selectors listed there are merged additively into the small bucket so existing configurations are unaffected.

      Use the new object shape to strip transient HTML injected by docs-site rendering plugins (for example, hover popovers from expressive-code-twoslash) from every generated output:

      starlightLlmsTxt({
        customSelectors: {
          all: ['.twoslash-popup-container', '.twoslash-error-box'],
        },
      }),

    0.9.0

    Minor Changes

    • #104 3f6c45b Thanks @​davidfowl! - Preserves the contents of code blocks when collapsing whitespace in llms-small.txt.

      Previously, the minify.whitespace option collapsed every whitespace run — including newlines inside fenced code blocks — into a single space, so multi-line code samples ended up on one line. Now, fenced code blocks keep their original newlines and indentation while whitespace in prose still collapses for token efficiency.

      A new minify.collapseCodeBlocks option controls this behavior. Set it to true to restore the previous flatten-everything output.

    0.8.1

    Patch Changes

    • 29e5efb Thanks @​mvanhorn! - Strips HTML comments from llms.txt files. <!-- ... --> style comments in .md files are no longer emitted in the generated files.

    0.8.0

    Minor Changes

    ... (truncated)

    Commits

    Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


    Dependabot commands and options

    You can trigger Dependabot actions by commenting on this PR:

    • @dependabot rebase will rebase this PR
    • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
    • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
    • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
    • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
    • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
      You can disable automated security fix PRs for this repo from the Security Alerts page.

    …light-blog and starlight-llms-txt
    
    Bumps [sharp](https://github.com/lovell/sharp) to 0.35.4 and updates ancestor dependencies [sharp](https://github.com/lovell/sharp), [@astrojs/starlight](https://github.com/withastro/starlight/tree/HEAD/packages/starlight), [astro](https://github.com/withastro/astro/tree/HEAD/packages/astro), [astro-embed](https://github.com/delucis/astro-embed/tree/HEAD/packages/astro-embed), [starlight-blog](https://github.com/HiDeoo/starlight-blog/tree/HEAD/packages/starlight-blog) and [starlight-llms-txt](https://github.com/delucis/starlight-llms-txt/tree/HEAD/packages/starlight-llms-txt). These dependencies need to be updated together.
    
    
    Updates `sharp` from 0.34.5 to 0.35.4
    - [Release notes](https://github.com/lovell/sharp/releases)
    - [Commits](lovell/sharp@v0.34.5...v0.35.4)
    
    Updates `@astrojs/starlight` from 0.37.6 to 0.42.0
    - [Release notes](https://github.com/withastro/starlight/releases)
    - [Changelog](https://github.com/withastro/starlight/blob/main/packages/starlight/CHANGELOG.md)
    - [Commits](https://github.com/withastro/starlight/commits/@astrojs/starlight@0.42.0/packages/starlight)
    
    Updates `astro` from 5.17.1 to 7.3.2
    - [Release notes](https://github.com/withastro/astro/releases)
    - [Changelog](https://github.com/withastro/astro/blob/main/packages/astro/CHANGELOG-v5.md)
    - [Commits](https://github.com/withastro/astro/commits/astro@7.3.2/packages/astro)
    
    Updates `astro-embed` from 0.12.0 to 0.14.0
    - [Release notes](https://github.com/delucis/astro-embed/releases)
    - [Changelog](https://github.com/delucis/astro-embed/blob/main/packages/astro-embed/CHANGELOG.md)
    - [Commits](https://github.com/delucis/astro-embed/commits/astro-embed@0.14.0/packages/astro-embed)
    
    Updates `starlight-blog` from 0.25.2 to 0.29.0
    - [Release notes](https://github.com/HiDeoo/starlight-blog/releases)
    - [Changelog](https://github.com/HiDeoo/starlight-blog/blob/main/packages/starlight-blog/CHANGELOG.md)
    - [Commits](https://github.com/HiDeoo/starlight-blog/commits/starlight-blog@0.29.0/packages/starlight-blog)
    
    Updates `starlight-llms-txt` from 0.7.0 to 0.11.0
    - [Release notes](https://github.com/delucis/starlight-llms-txt/releases)
    - [Changelog](https://github.com/delucis/starlight-llms-txt/blob/main/packages/starlight-llms-txt/CHANGELOG.md)
    - [Commits](https://github.com/delucis/starlight-llms-txt/commits/starlight-llms-txt@0.11.0/packages/starlight-llms-txt)
    
    ---
    updated-dependencies:
    - dependency-name: sharp
      dependency-version: 0.35.4
      dependency-type: indirect
    - dependency-name: "@astrojs/starlight"
      dependency-version: 0.42.0
      dependency-type: direct:development
    - dependency-name: astro
      dependency-version: 7.3.2
      dependency-type: direct:development
    - dependency-name: astro-embed
      dependency-version: 0.14.0
      dependency-type: direct:development
    - dependency-name: starlight-blog
      dependency-version: 0.29.0
      dependency-type: direct:development
    - dependency-name: starlight-llms-txt
      dependency-version: 0.11.0
      dependency-type: direct:development
    ...
    
    Signed-off-by: dependabot[bot] <support@github.com>
    @dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 11, 2026

    This branch has not been deployed

    No deployments
    Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

    Labels

    dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

    Projects

    None yet

    Development

    Successfully merging this pull request may close these issues.

    0 participants