chore(effect): bump published provider/sandbox/agent pins to 0.4.25/0.4.28/0.12.3 - #265
Conversation
….4.28/0.12.3 Bump the private @coder/ai-sdk-effect package's pinned published Coder dependencies to the releases cut from the ai 7.0.118 dependency batch: @coder/ai-sdk-provider 0.4.25, @coder/ai-sdk-sandbox 0.4.28 and @coder/ai-sdk-agent 0.12.3. Only these three lockfile entries move, and the three exact minimumReleaseAgeExclude entries follow the new versions. Signed-off-by: Thomas Kosiewski <tk@coder.com> --- _Generated with [`xum`](https://github.com/coder/xum) • Model: `anthropic:claude-opus-5-5` • Thinking: `high`_ Change-Id: Ifa5d8b057d9edb76d141c1c66c6e55aac75c9545
|
@codex review |
|
@codex security review |
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
|
Codex Review: Didn't find any major issues. Another round soon, please! Reviewed commit: ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
🛡️ Codex Security ReviewSecurity review completed. No security issues were found in this pull request. Reviewed commit: Only the user who started this review can view the report in Codex. ℹ️ About Codex security reviews in GitHubThis is an experimental Codex feature. Security reviews are triggered when:
Once complete, Codex will leave suggestions, or a comment if no findings are found. |
Bumps the private, unpublished
@coder/ai-sdk-effectpackage's pinned Coder dependencies to the just-published releases (same shape as #260):@coder/ai-sdk-provider@coder/ai-sdk-sandbox@coder/ai-sdk-agentFiles (exactly four):
packages/effect/package.json: the three pins.@ai-sdk/providerstays4.0.18(npm view: provider 0.4.25 and agent 0.12.3 both depend on exactly4.0.18; agent 0.12.3 and sandbox 0.4.28 declarews ^8.22.0, which main already resolves to 8.22.0).pnpm-lock.yaml: only the three@coder/*entries move; single@ai-sdk/provider4.0.18.pnpm-workspace.yaml: the three exact own-packageminimumReleaseAgeExcludeentries follow the new versions.packages/effect/README.md: the three pinned-version rows.Validation
rm -rf node_modules && pnpm install --frozen-lockfilewith the final three-entry exclusion list: pass. An uncached scratch-store frozen install also reports "Lockfile passes supply-chain policies".pnpm check,pnpm -r build,pnpm -r test,pnpm publint,pnpm attw: all pass (Node 26.10.0).packages/agente2e 7/7,packages/effecte2e 2/2.No published package changes;
packages/effectis outside release-please, so no release PR is expected.Generated with
xum• Model:anthropic:claude-opus-5-5• Thinking:high