Skip to content

deps-dev(deps-dev): bump the dev-dependencies group across 1 directory with 4 updates - #34

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/dev-dependencies-6d012947a7
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/dev-dependencies-6d012947a7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 5, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the dev-dependencies group with 4 updates in the / directory: @semantic-release/github, @semantic-release/npm, msw and vitest.

Updates @semantic-release/github from 12.0.9 to 12.0.10

Release notes

Sourced from @​semantic-release/github's releases.

v12.0.10

12.0.10 (2026-09-21)

Bug Fixes

  • deps: update dependency @​octokit/plugin-paginate-rest to v15 (#1284) (a63f458)
Commits
  • a63f458 fix(deps): update dependency @​octokit/plugin-paginate-rest to v15 (#1284)
  • f5f6d0e build(deps): bump brace-expansion (#1300)
  • eaffbba build(deps): bump undici from 6.27.0 to 6.28.1 (#1301)
  • 07686dc chore(deps): update dependency undici to v7.29.0 [security] (#1283)
  • 9f010ee build(deps-dev): bump baseline-browser-mapping from 2.10.42 to 2.11.25 (#1295)
  • 81eeeca build(deps-dev): bump js-yaml from 3.15.0 to 3.15.2 (#1294)
  • 43c2210 build(deps-dev): bump fast-uri from 3.1.4 to 3.1.8 (#1290)
  • e703272 build(deps-dev): bump browserslist from 4.28.4 to 4.29.0 (#1291)
  • e7f4b4b chore(deps): update dependency prettier to v3.9.8 (#1298)
  • 2e9e42b chore(deps): update dependency prettier to v3.9.7 (#1296)
  • Additional commits viewable in compare view

Updates @semantic-release/npm from 13.1.5 to 13.2.0

Release notes

Sourced from @​semantic-release/npm's releases.

v13.2.0

13.2.0 (2026-09-21)

Features

  • trusted-publishing: add support for CircleCI (fb35b81)
Commits
  • 5ef76be Merge pull request #1212 from Thomaash/trusted-publishing--circleci
  • 1a4bdda chore(deps): lock file maintenance (#1232)
  • 886ec16 chore(deps): update dependency prettier to v3.9.8 (#1231)
  • 0388a4d chore(deps): update dependency prettier to v3.9.7 (#1230)
  • fb35b81 feat(trusted-publishing): add support for CircleCI
  • f5cca0a chore(deps): lock file maintenance (#1229)
  • 095f289 chore(deps): update dependency p-retry to v8.0.1 (#1227)
  • bb003a4 chore(deps): lock file maintenance (#1228)
  • ca0b340 chore(deps): update dependency got to v16 (#1226)
  • 22a1e17 chore(deps): lock file maintenance (#1225)
  • Additional commits viewable in compare view

Updates msw from 2.15.0 to 3.0.1

Release notes

Sourced from msw's releases.

v3.0.1 (2026-09-30)

Bug Fixes

  • treat CONNECT requests as the transport mechanism (#2796) (7cad86a03b0ddb2efdec96ce8a49b0ed07d9f4dc) @​kettanaito

v3.0.0 (2026-09-28)

⚠️ BREAKING CHANGES

  • MSW is now ESM-only (#2765).
  • Deprecate support for Node.js v18 and v20 (#2729). The minimal supported Node.js version is v22.
  • msw/native is removed in favor of @msw/react-native.
  • Require TypeScript 5.9 as the minimal version.
  • Deprecate support for TypeScript 5.1 and 5.2 (#2730)
  • worker.stop() returns a Promise (#2724). Awaiting it is relevant only for in-flight critical scenarios.
  • graphql is now exported as msw/graphql (#2691). GraphQL is now handled as a proper optional peer dependency.
  • Removes the handleRequest() utility. Please use the defineNetwork() API instead.
  • GraphQLLinkHandlers type has been renamed to GraphQLLink.
  • The file:// requests now throw in Node.js as they normally do (not supported by fetch).
  • The Content-Length request header is now removed by bypass().
  • HTTP-to-WebSocket upgrade requests performed via fetch() now throw in Node.js as they normally do (not supported by fetch).
  • Cookies are no longer managed in Node.js for better compatibilty. Instead, whatever is the default behavior of your environment that's the cookie behavior you get. This has no effect on the browser.
  • WebSocket connection life cycle event has been renamed to websocket:connection (#2783).
  • onUnhandledRequest option has been renamed to onUnhandledFrame.
  • The library no longer patches setTimeout to circumvent fake timers in test runners. You should advance the fake timers normally for delayed mocked responses to resolve.
  • The library no longer returns a mocked cookie string on request.headers.get('cookie') in the handlers. It returns null in all environments. Please use the cookies resolver argument to have cookie-based logic.

Features

  • Supports Node.js v24 and v26.
  • Supports TypeScript v6.0 and v7.0.
  • You can import individual utilities, like delay or passthrough, from the new msw/utils entrypoint for smaller footprint on your bundle.
  • Support GraphQL v17.0.
  • Support intercepting page navigations and form submissions (#2721).
  • Support GraphQL subscriptions (#285, #2763).
  • Migrate from path-to-regexp to @msw/url (#2678).
  • Remove the following dependencies:
    • graphql
    • path-to-regexp
    • picocolors
    • statuses
    • strict-event-emitter
  • Adds a Vite plugin for MSW (#2781).
  • Adds a websocket:error life cycle event to listen to WebSocket connection errors (#2784).
  • Support modifying the intercepted request headers in passthrough scenarios (#2786).
  • Support a new WebSocket Extension API that allows for better custom experiences (#2791).

... (truncated)

Commits

Updates vitest from 4.1.11 to 5.0.3

Release notes

Sourced from vitest's releases.

v5.0.3

   🐞 Bug Fixes

    View changes on GitHub

v5.0.2

   🐞 Bug Fixes

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

View with [code]smith Autofix with [code]smith
Need help on this PR? Tag @codesmith-bot with what you need. Autofix is disabled.

…y with 4 updates

Bumps the dev-dependencies group with 4 updates in the / directory: [@semantic-release/github](https://github.com/semantic-release/github), [@semantic-release/npm](https://github.com/semantic-release/npm), [msw](https://github.com/mswjs/msw) and [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest).


Updates `@semantic-release/github` from 12.0.9 to 12.0.10
- [Release notes](https://github.com/semantic-release/github/releases)
- [Commits](semantic-release/github@v12.0.9...v12.0.10)

Updates `@semantic-release/npm` from 13.1.5 to 13.2.0
- [Release notes](https://github.com/semantic-release/npm/releases)
- [Commits](semantic-release/npm@v13.1.5...v13.2.0)

Updates `msw` from 2.15.0 to 3.0.1
- [Release notes](https://github.com/mswjs/msw/releases)
- [Changelog](https://github.com/mswjs/msw/blob/main/CHANGELOG.md)
- [Commits](mswjs/msw@v2.15.0...v3.0.1)

Updates `vitest` from 4.1.11 to 5.0.3
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v5.0.3/packages/vitest)

---
updated-dependencies:
- dependency-name: "@semantic-release/github"
  dependency-version: 12.0.10
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: dev-dependencies
- dependency-name: "@semantic-release/npm"
  dependency-version: 13.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: dev-dependencies
- dependency-name: msw
  dependency-version: 3.0.1
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: dev-dependencies
- dependency-name: vitest
  dependency-version: 5.0.3
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: dev-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 5, 2026
@coderabbitai

coderabbitai Bot commented Oct 5, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: Organization UI
  • Review profile: CHILL
  • Plan: Advanced
  • Run ID: 81a5639d-9cbd-47d4-a885-f2b35816080a

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Comment @coderabbitai help to get the list of available commands.

@wyre-agent-fleet

Copy link
Copy Markdown
Contributor

@dependabot recreate

@dependabot @github

dependabot Bot commented on behalf of github Oct 5, 2026

Copy link
Copy Markdown
Contributor Author

Sorry, only users with push access can use that command.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants