Skip to content

Update all non-major dev-dependencies - #3851

Open
renovate[bot] wants to merge 3 commits into
mainfrom
renovate/all-minor-dev-patch
Open

renovate[bot] wants to merge 3 commits into
mainfrom
renovate/all-minor-dev-patch

Conversation

@renovate

@renovate renovate Bot commented Aug 27, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence
@faker-js/faker (source) ^10.0.0^10.1.0 age confidence
@next/eslint-plugin-next (source) ^16.2.7^16.3.3 age confidence
@swc/core (source) ^1.11.29^1.16.1 age confidence
@testing-library/jest-dom ^6.4.8^6.5.0 age confidence
@types/jest (source) ^29.5.12^29.5.13 age confidence
@typescript-eslint/eslint-plugin (source) ^8.0.0^8.68.0 age confidence
@typescript-eslint/typescript-estree (source) ^8.0.0^8.38.0 age confidence
eslint-config-prettier ^10.0.0^10.0.1 age confidence
eslint-import-resolver-typescript ^4.0.0^4.3.4 age confidence
eslint-plugin-import ^2.29.1^2.31.0 age confidence
eslint-plugin-jest ^29.0.0^29.0.1 age confidence
eslint-plugin-mdx (source) ^3.0.0^3.8.1 age confidence
eslint-plugin-react ^7.34.3^7.37.1 age confidence
eslint-plugin-react-hooks (source) ^5.0.0^5.1.0 age confidence
eslint-plugin-styled-components-a11y ^2.1.35^2.2.1 age confidence
eslint-plugin-testing-library ^7.0.0^7.1.1 age confidence
stylelint (source) ^16.18.0^16.22.0 age confidence
syncpack 14.0.0-alpha.4014.3.1 age confidence
type-fest ^5.4.3^5.8.0 age confidence
typescript (source) ^5.5.4^5.6.3 age confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

faker-js/faker (@​faker-js/faker)

v10.6.0

Compare Source

New Locales
Features
Changed Locales
Bug Fixes

v10.5.0

Compare Source

New Locales
Features
Bug Fixes

v10.4.0

Compare Source

New Locales
Features
Changed Locales
  • locale: filter and cleanup PersonEntryDefintions data (#​3266) (67defc8)
Bug Fixes
  • locales: correct typos and capitalization in es_MX street names (#​3737) (2b32c28)

v10.3.0

Compare Source

New Locales
Features
Changed Locales
Bug Fixes

v10.2.0

Compare Source

New Locales
Features
Bug Fixes
vercel/next.js (@​next/eslint-plugin-next)

v16.3.3

Compare Source

This release contains security fixes for the following advisories:

Critical:

v16.3.2

Compare Source

[!NOTE]
This release is backporting bug fixes. It does not include all pending features/changes on canary.

Core Changes
  • [backport] Scope app-entry export validation to files inside the app directory (#​97357)
  • [backport] Fix catch-all index page being served for every other slug (#​97416)
  • [16.3] Turbopack: don't trace embedded WASM loader helpers (#​97353) (#​97463)
  • [16.3] Turbopack: retain conditions when replacing resolve request keys (#​97453)
  • [16.3.x] Fix Turbopack worker chunk loading with asset prefix (#​97419)
  • [16.3.x] Authenticate Turborepo remote caching with OIDC instead of a static PAT (#​97603)
Credits

Huge thanks to @​lubieowoce, @​unstubbable, @​timneutkens, @​mischnic, and @​eps1lon for helping!

v16.3.1

Compare Source

What's Changed

Full Changelog: vercel/next.js@v16.3.0...v16.3.1

v16.3.0

Compare Source

v16.2.12

Compare Source

v16.2.11

Compare Source

This release contains security fixes for the following advisories:

High:

Moderate:

v16.2.10

Compare Source

Contains no changes except publishing @next/swc-wasm-web which was accidentally not published since 16.2.4.

v16.2.9

Compare Source

Empty release to ensure next@latest points at a stable release. Next.js only allows publishing with Trusted Publishing enabled. In order to fix NPM dist-tags, we have to release a new version. Updating dist-tags is not possible with Trusted Publishing.

v16.2.8

Compare Source

Release with no changes in an attempt to fix next@latest pointing at a prerelease version.

swc-project/swc (@​swc/core)

v1.16.1

Compare Source

Bug Fixes

v1.16.0

Compare Source

Bug Fixes
Miscellaneous Tasks
Refactor

v1.15.47

Compare Source

Bug Fixes

Note

PR body was truncated to here.


Configuration

📅 Schedule: (in timezone US/Eastern)

  • Branch creation
    • "every weekend"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from a team as a code owner August 27, 2026 17:31
@github-actions

github-actions Bot commented Aug 27, 2026

Copy link
Copy Markdown

OpenAPI Changes

No changes detected

View full changelog

Unexpected changes? Ensure your branch is up-to-date with main (consider rebasing).

renovate Bot and others added 2 commits September 1, 2026 09:59
Renovate only edits frontends/package.json, so the five sub-workspaces
kept the old ranges and syncpack lint failed. syncpack fix + yarn
install brings them back in line.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01FyJ72HRTyQf6jVYmw3GZSt
@blarghmatey
blarghmatey force-pushed the renovate/all-minor-dev-patch branch from f85e620 to fac42fc Compare September 1, 2026 14:00
@blarghmatey

Copy link
Copy Markdown
Member

Rebased onto main and resolved the yarn.lock conflict.

The lockfile was not hand-merged. At each conflicting commit I reset yarn.lock to the parent's version and let yarn install regenerate it from that commit's package.json state, so both commits are individually consistent rather than only the branch tip. yarn install --immutable — the same check CI runs — passes, and syncpack lint reports no issues.

The a11y commit that was on this branch is dropped as superseded: it merged as #3868, which also carries two later corrections that were not in the copy here.

Lint is now 4 errors, down from 13. The nine styled-components-a11y 2.2 findings are gone via #3868. The four remaining are the import/no-restricted-paths violations that #3875 fixes — page-components/TiptapEditor importing the video and podcast players out of app-pages.

Verified locally that #3875 clears them under eslint-plugin-import 2.31: cherry-picking it onto this rebased branch takes lint-check to zero errors. This PR should merge after #3875.

stylelint's declaration-property-value-no-unknown throws on every
`cursor:` declaration once the patch package reaches 1.1.x:

  Error: Bad syntax reference: <cursor-predefined>
      at ArticleListingPage.tsx:146:5

1.1.12 patches the cursor property to `[ <cursor-image> , ]*
<cursor-predefined>` but never defines cursor-predefined in its types
map, and css-tree 3.1.0 does not define it either -- it inlines the
keyword list. So the lookup fails on valid CSS.

1.1.12 is the latest published version, so there is nothing newer to
move to. stylelint declares ^1.0.19, which means any fresh lockfile
resolve picks it up; main is green only because its lockfile predates
1.1.x and still holds 1.0.25. Refreshing the lock here is what exposed
it, but it is not specific to this branch.

Pinned to the version main is already proven green with. Drop this once
upstream defines the type or reverts the cursor patch.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01FyJ72HRTyQf6jVYmw3GZSt
@blarghmatey

Copy link
Copy Markdown
Member

Pushed a fix for the style-lint failure (26050bf).

Not caused by our CSS. stylelint's declaration-property-value-no-unknown was throwing on every cursor: declaration:

Error: Bad syntax reference: <cursor-predefined>
    at ArticleListingPage.tsx:146:5

@csstools/css-syntax-patches-for-csstree@1.1.12 patches the cursor property to [ <cursor-image> , ]* <cursor-predefined> but never defines cursor-predefined in its types map, and css-tree 3.1.0 does not define it either (it inlines the keyword list). The lookup fails on valid CSS.

Two things worth knowing:

  • 1.1.12 is the latest published version, so there is no newer release to move to.
  • stylelint declares ^1.0.19, so any fresh lockfile resolve picks it up. main is green only because its lockfile predates 1.1.x and still holds 1.0.25. Regenerating the lock here is what exposed it; it is not specific to this branch, and it will reach main the next time anything refreshes the lockfile.

Pinned via resolutions to 1.0.25, the version main is already proven green with. Verified: style-lint passes, yarn install --immutable passes, syncpack lint clean. The pin should be dropped once upstream defines the type or reverts the cursor patch.

blarghmatey added a commit that referenced this pull request Sep 1, 2026
page-components/TiptapEditor embeds both VideoResourcePlayer and
PodcastEmbedPlayer, but both lived in app-pages, which the
import/no-restricted-paths zone in frontends/.eslintrc.js forbids
page-components from importing. eslint-plugin-import 2.29 missed it;
2.31 (in #3851) reports all four.

Moving only the two player entry points would have relocated the
violation rather than fixed it, since each pulls in siblings, so each
cluster moved with the modules it needs:

  page-components/VideoPlayer/        VideoResourcePlayer, VideoJsPlayer,
                                      YouTubeIframePlayer, videoSources
  page-components/PodcastEmbedPlayer/ PodcastEmbedPlayer, useAudioPlayer,
                                      usePlaybackRecovery, AudioPlayer.styled

Only what the players need moved. The old shared.styled.ts keeps its
seven page-chrome exports and gives up NoVideoMessage and
ScreenReaderOnly; PodcastPlayer stays on the podcast page and now imports
the hooks from page-components, which is an allowed direction.

getEpisodeAudioUrl went to common/podcasts.ts instead of either player
folder: the listing page and the embed player both need it, and common/
is already where this kind of pure helper lives. helpers.ts re-exports it
so its existing importers and tests are untouched.


Claude-Session: https://claude.ai/code/session_01FyJ72HRTyQf6jVYmw3GZSt

Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
@renovate

renovate Bot commented Sep 3, 2026

Copy link
Copy Markdown
Contributor Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant