Repository navigation
build(deps): Bump @modelcontextprotocol/sdk from 1.29.0 to 1.30.1 in /qa/playwright - #1810
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) from 1.29.0 to 1.30.1. - [Release notes](https://github.com/modelcontextprotocol/typescript-sdk/releases) - [Commits](modelcontextprotocol/typescript-sdk@v1.29.0...1.30.1) --- updated-dependencies: - dependency-name: "@modelcontextprotocol/sdk" dependency-version: 1.30.1 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: Organization UI Review profile: ASSERTIVE Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Warning Billing warning: we have not been able to collect payment for this subscription for more than 72 hours. Please update the payment method or pay any pending invoices in Billing to avoid service interruption. Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
There was a problem hiding this comment.
Walkthrough
PR: #1810 - build(deps): Bump @modelcontextprotocol/sdk from 1.29.0 to 1.30.1 in /qa/playwright
Head: ac22ab42bd98a2dd4403a4bf966a3e5e3dfa5de1 into main. Review event: COMMENT.
Estimated review effort: 1/5 (~10 min)
Changed Files
| File | Status | Churn | Purpose | Risk |
|---|
Review Signal
No validated inline findings.
Dropped findings before posting: 0. High-severity findings: 0.
Maintainer Analysis
Changed behavior:
- The PR metadata indicates a dependency bump of @modelcontextprotocol/sdk from 1.29.0 to 1.30.1 under qa/playwright.
Affected invariants:
- Playwright QA tooling should remain installable and compatible with its existing MCP client/server usage and lockfile resolution.
Evidence:
- The supplied Files and Diff sections are empty, so there are no changed right-side lines available for review.
Limitations:
- No patch content or file contents were available to inspect.
- Per instruction, no shell commands, tests, builds, package scripts, app commands, or arbitrary PR code were executed.
- Dependency resolution, API compatibility, lockfile integrity, and CI behavior were not proven.
No-finding rationale: No validated defect can be tied to a right-side diff line because the provided diff contains no file changes.
Risk Taxonomy
No finding categories.
Validation and Proof
2 required validation/proof recommendation(s) selected from changed files.
- required: Unity editor or Play Mode smoke - WorldOS repo profile implies Unity runtime risk. Proof: Unity editor smoke; Play Mode log; scene/prefab screenshot or recording.
- required: TypeScript/web build or CI proof - Runtime TypeScript/web files or package/config files changed. Proof: npm run build; typecheck; focused Vitest; green GitHub check.
Proof status: missing - 2 required validation/proof recommendation(s) missing from PR metadata.
Related Context
Related issues/PRs: #2717, #1968, #1972, #2848, #1503, #1839, #2167, #2239.
Pre-merge checklist
- Inline comments target current RIGHT-side diff lines.
- No secret-like content survived into posted inline comments.
- REQUEST_CHANGES is only used when eligible P0/P1 findings survive validation.
- Required behavior proof is present or not applicable.
|
Superseded by #1811. |
Bumps @modelcontextprotocol/sdk from 1.29.0 to 1.30.1.
Release notes
Sourced from @modelcontextprotocol/sdk's releases.
Commits
289ac2cchore: bump version to 1.30.1 (#2848)12b4256fix(auth): preserve resource URI without trailing slash (#1968) (#1972)a9f6eb7[v1.x] fix(server): read HTTP request bodies with a size limit and bound JSON...2d889f2chore: bump version to 1.30.0 (#2563)e3f3daaFix SSE keep-alive timer lifecycle in Streamable HTTP server transport (v1.x)...bb5a718fix(deps): widen@hono/node-serverpast GHSA-frvp-7c67-39w9 (#2549)1dad263fix: send SSE keep-alive comment frames from Streamable HTTP server transport...69749aaValidate Content-Type by parsed media type instead of substring match (v1.x) ...369513dfix: support Zod 3.25 method literals (#2368)e7ee57cv1 stdio buffer limit (#2239)Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for
@modelcontextprotocol/sdksince your current version.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)