chore(deps): bump the minor-and-patch group across 1 directory with 15 updates - #557
Closed
dependabot[bot] wants to merge 1 commit into
Closed
chore(deps): bump the minor-and-patch group across 1 directory with 15 updates#557dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…5 updates Bumps the minor-and-patch group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [nx](https://github.com/nrwl/nx/tree/HEAD/packages/nx) | `23.0.0` | `23.1.0` | | [@clack/prompts](https://github.com/bombshell-dev/clack/tree/HEAD/packages/prompts) | `1.6.0` | `1.7.0` | | [@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk) | `1.29.0` | `1.30.0` | | [graphql](https://github.com/graphql/graphql-js) | `17.0.1` | `17.0.2` | | [picomatch](https://github.com/micromatch/picomatch) | `4.0.4` | `4.0.5` | | [undici](https://github.com/nodejs/undici) | `8.5.0` | `8.9.0` | | [xstate](https://github.com/statelyai/xstate) | `5.32.1` | `5.32.5` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.9.4` | `25.9.5` | | [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.62.0` | `8.65.0` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.62.0` | `8.65.0` | | [eslint](https://github.com/eslint/eslint) | `10.5.0` | `10.8.0` | | [prettier](https://github.com/prettier/prettier) | `3.8.4` | `3.9.6` | | [ts-jest](https://github.com/kulshekhar/ts-jest) | `29.4.11` | `29.4.12` | | [@prisma/client](https://github.com/prisma/prisma/tree/HEAD/packages/client) | `7.8.0` | `7.9.1` | | [prisma](https://github.com/prisma/prisma/tree/HEAD/packages/cli) | `7.8.0` | `7.9.1` | Updates `nx` from 23.0.0 to 23.1.0 - [Release notes](https://github.com/nrwl/nx/releases) - [Commits](https://github.com/nrwl/nx/commits/23.1.0/packages/nx) Updates `@clack/prompts` from 1.6.0 to 1.7.0 - [Release notes](https://github.com/bombshell-dev/clack/releases) - [Changelog](https://github.com/bombshell-dev/clack/blob/main/packages/prompts/CHANGELOG.md) - [Commits](https://github.com/bombshell-dev/clack/commits/@clack/prompts@1.7.0/packages/prompts) Updates `@modelcontextprotocol/sdk` from 1.29.0 to 1.30.0 - [Release notes](https://github.com/modelcontextprotocol/typescript-sdk/releases) - [Commits](modelcontextprotocol/typescript-sdk@v1.29.0...1.30.0) Updates `graphql` from 17.0.1 to 17.0.2 - [Release notes](https://github.com/graphql/graphql-js/releases) - [Commits](graphql/graphql-js@v17.0.1...v17.0.2) Updates `picomatch` from 4.0.4 to 4.0.5 - [Release notes](https://github.com/micromatch/picomatch/releases) - [Changelog](https://github.com/micromatch/picomatch/blob/master/CHANGELOG.md) - [Commits](micromatch/picomatch@4.0.4...4.0.5) Updates `undici` from 8.5.0 to 8.9.0 - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v8.5.0...v8.9.0) Updates `xstate` from 5.32.1 to 5.32.5 - [Release notes](https://github.com/statelyai/xstate/releases) - [Commits](https://github.com/statelyai/xstate/compare/xstate@5.32.1...xstate@5.32.5) Updates `@types/node` from 25.9.4 to 25.9.5 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `@typescript-eslint/eslint-plugin` from 8.62.0 to 8.65.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.65.0/packages/eslint-plugin) Updates `@typescript-eslint/parser` from 8.62.0 to 8.65.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.65.0/packages/parser) Updates `eslint` from 10.5.0 to 10.8.0 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v10.5.0...v10.8.0) Updates `prettier` from 3.8.4 to 3.9.6 - [Release notes](https://github.com/prettier/prettier/releases) - [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md) - [Commits](prettier/prettier@3.8.4...3.9.6) Updates `ts-jest` from 29.4.11 to 29.4.12 - [Release notes](https://github.com/kulshekhar/ts-jest/releases) - [Changelog](https://github.com/kulshekhar/ts-jest/blob/main/CHANGELOG.md) - [Commits](kulshekhar/ts-jest@v29.4.11...v29.4.12) Updates `@prisma/client` from 7.8.0 to 7.9.1 - [Release notes](https://github.com/prisma/prisma/releases) - [Commits](https://github.com/prisma/prisma/commits/7.9.1/packages/client) Updates `prisma` from 7.8.0 to 7.9.1 - [Release notes](https://github.com/prisma/prisma/releases) - [Commits](https://github.com/prisma/prisma/commits/7.9.1/packages/cli) --- updated-dependencies: - dependency-name: nx dependency-version: 23.1.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@clack/prompts" dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@modelcontextprotocol/sdk" dependency-version: 1.30.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: graphql dependency-version: 17.0.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: picomatch dependency-version: 4.0.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: undici dependency-version: 8.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: xstate dependency-version: 5.32.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@types/node" dependency-version: 25.9.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/eslint-plugin" dependency-version: 8.65.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.65.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: eslint dependency-version: 10.8.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: prettier dependency-version: 3.9.6 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: ts-jest dependency-version: 29.4.12 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@prisma/client" dependency-version: 7.9.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: prisma dependency-version: 7.9.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com>
|
Test Coverage ReportOverall Coverage: 96.84%
|
Member
|
Superseded by #571, which applies all pending dependency updates in one pass. |
Author
|
This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests. To ignore these dependencies, configure ignore rules in dependabot.yml |
dependabot
Bot
deleted the
dependabot/npm_and_yarn/minor-and-patch-cc42d89cce
branch
August 8, 2026 18:26
polaz
added a commit
that referenced
this pull request
Aug 8, 2026
* fix(logging): never write logs to stdout in stdio mode - LOG_JSON=true previously created a bare pino instance that wrote NDJSON log lines to stdout, corrupting the MCP JSON-RPC channel in stdio transport mode; logs are now forced to stderr whenever the server runs on stdio, for both plain and JSON formats - add LOG_DESTINATION=stdout|stderr override for HTTP mode; defaults keep the container convention (pretty to stderr, NDJSON to stdout) - fix LOG_FORMAT rendering: messageFormat crossed the worker-thread transport boundary, duplicating the prefix and printing 'undefined' for the level; format tokens now drive field visibility via ignore list only - document LOG_FORMAT and LOG_DESTINATION plus a destination matrix in the configuration guide Closes #563 * chore(deps): update all dependencies across workspaces Applies every pending Dependabot update in one pass: - @cloudflare/workers-types 4.20260623.1 -> 5.20260808.1 (major) - vitepress 2.0.0-alpha.17 -> 2.0.0-alpha.19 - undici ^8.5.0 -> ^8.10.0 - @modelcontextprotocol/sdk, @clack/prompts, eslint, prettier, @typescript-eslint/*, ts-jest, graphql, picomatch, xstate minor/patch - prisma + @prisma/client 7.8.0 -> 7.9.1 - nx 23.0.0 -> 23.1.1 - lockfile-only transitive bumps: hono 4.13.1, postcss 8.5.26, ip-address 10.4.0, brace-expansion 1.1.18, js-yaml 3.15.1, fast-uri 3.1.5, tar 7.5.22, body-parser 2.3.0 typescript 7 and @types/node 26 majors are intentionally skipped: @types/node major is on the Dependabot ignore list and the native tsc migration is a separate effort. Supersedes Dependabot PRs #543, #544, #545, #546, #551, #556, #557, #559, #560, #561, #566, #568, #569, #570 * chore(ci): bump actions/setup-node to v7 and pin codeql-action to v4.37.4 Supersedes Dependabot PRs #549 and #567 * test(runners): pass statuses as an array in list_jobs schema check The list_jobs statuses filter became an array of CiJobStatus in c1b37f9, but the integration schema test still passed a bare string and failed against the current schema. * style: reformat union types per prettier 3.9 prettier 3.9 collapses short union types onto one line; reformat the 9 affected files so lint passes on the updated toolchain. * docs(logging): describe LOG_FORMAT tokens as visibility switches - LOG_FORMAT tokens toggle field visibility; the line always renders in pino-pretty's fixed order, so stop advertising custom layouts in the docstring and configuration guide - add unit test for LOG_DESTINATION=stdout with the pretty transport in HTTP mode - drop issue references from code comments and test names; ticket numbers belong in commits and PRs, not in source * docs(troubleshooting): add JSONRPC parse error spam diagnosis Startup 'Failed to parse JSONRPC message' bursts mean an outdated build (stale npx cache) logging to stdout; document the symptom, cause, and cache-refresh fix with a quick-diagnosis row. * docs(logging): state that the log message is always rendered The %msg token cannot suppress the message: a log line without its message is useless, so only %time, %level, and %name act as visibility switches. Make the docstring and configuration guide say so explicitly instead of implying %msg is toggleable.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the minor-and-patch group with 15 updates in the / directory:
23.0.023.1.01.6.01.7.01.29.01.30.017.0.117.0.24.0.44.0.58.5.08.9.05.32.15.32.525.9.425.9.58.62.08.65.08.62.08.65.010.5.010.8.03.8.43.9.629.4.1129.4.127.8.07.9.17.8.07.9.1Updates
nxfrom 23.0.0 to 23.1.0Release notes
Sourced from nx's releases.
... (truncated)
Commits
a88e494chore(repo): migrate to nx 23.1.0-rc.2 (#36269)9f2d9bcfix(core): reduce task hashing memory usage on large workspaces (#36267)b0e0260fix(core): include root package.json dependencies for '.'-rooted projects (#3...edc9212fix(core): omit peer dependencies when installing packages to a temp dir (#36...2126534fix(core): defer unresolved spread tokens when merging intermediate target co...127cf39fix(core): size TUI bottom bar reservations to the actual help text (#36261)edda904fix(core): skip projects-filtered targetDefaults when resolved without a proj...a4526f8fix(core): detect Codex sandbox on Linux to disable daemon and plugin isolati...0824ccedocs(misc): refresh angular docs pages and fix broken angular urls (#36276)bfde134fix(core): prevent TUI hint popup from permanently stealing focus (#36256)Updates
@clack/promptsfrom 1.6.0 to 1.7.0Release notes
Sourced from @clack/prompts's releases.
Changelog
Sourced from @clack/prompts's changelog.
Commits
dc5bce8[ci] release (#575)4b24953chore: enable strict index checks (#582)8f1c380feat(prompts): add showInstructions opt-out (#574)06c16c7chore: update license copyright to Bombshell contributors (#572)Updates
@modelcontextprotocol/sdkfrom 1.29.0 to 1.30.0Release notes
Sourced from @modelcontextprotocol/sdk's releases.
Commits
2d889f2chore: bump version to 1.30.0 (#2563)e3f3daaFix SSE keep-alive timer lifecycle in Streamable HTTP server transport (v1.x)...bb5a718fix(deps): widen@hono/node-serverpast GHSA-frvp-7c67-39w9 (#2549)1dad263fix: send SSE keep-alive comment frames from Streamable HTTP server transport...69749aaValidate Content-Type by parsed media type instead of substring match (v1.x) ...369513dfix: support Zod 3.25 method literals (#2368)e7ee57cv1 stdio buffer limit (#2239)c36e1efAdd end-to-end test suite (#2167)bf1e022chore(ci): switch publish to OIDC trusted publishing (#1839)9edbab7fix(server): prioritize zod issues and format them (#1503)Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for
@modelcontextprotocol/sdksince your current version.Updates
graphqlfrom 17.0.1 to 17.0.2Release notes
Sourced from graphql's releases.
Commits
71606d7chore(release): v17.0.2101de34fix: detect default-value changes on input object fields (#4832)82da713fix(mapSchemaConfig): fix context for schema argument mapper (#4829)Updates
picomatchfrom 4.0.4 to 4.0.5Release notes
Sourced from picomatch's releases.
Commits
4f41a8e4.0.502cfc1bUpdate .verb.md and run verb to generate README documentationcc52ff6Only run the upload code coverage step for 1 matrix permutation6d426d7Allow workflow to continue if the code coverage step to failsa00b954Merge branch 'codeql-coverage'9680381Merge pull request #183 from MerlijnW70/fix/matchbase-windows-basename648b4f2Merge pull request #182 from MerlijnW70/fix/repeated-extglob-drops-branches70e6485Configure code coverage upload for CodeQLab8bc4dfix: honor the windows option when matching basenames6289307fix: preserve all branches when rewriting risky repeated extglobsUpdates
undicifrom 8.5.0 to 8.9.0Release notes
Sourced from undici's releases.
... (truncated)
Commits
21a8e1eBumped v8.9.0 (#5589)7d3cf92fix: validate blob body content typec601ffffix(cache): harden cache directive parsing2b3f749test(retry): correct broken content-range fixtures in retry-handler.jse11a68efix(retry): reject partial content length mismatch9f09b49test: cover crash on mixed unqualified and qualified private cache directives4fe5bc5fix: handle empty qualified private cache directive10d93fcfix: harden cookie domain, path, and unparsed attribute validationa17e301Ignore auto-generated .npmrc on Windows (#5583)a0922b0fix: handle frozen globalThis in setGlobalDispatcher (#5574)Updates
xstatefrom 5.32.1 to 5.32.5Release notes
Sourced from xstate's releases.
... (truncated)
Commits
c25dba0Version Packages (#5604)b669e95fix(xstate-vue): correct vitest include glob so tests are discovered (#5607)345e04cfix(core): don't throw when warning about unserializable event sent to stoppe...9297fa8Version Packages (#5590)e913eebfix(core): enter parallel default when targeting an unvisited history child (...ab5aa56Version Packages (#5586)830db8bfix(core): prevent 'systemId already exists' in pure transition functions (#5...a551a2bdocs: add missing https protocol to Stately Studio link (#5585)cc087bfci: pin Node to 24.16.0 (#5577)806ae91Version PackagesUpdates
@types/nodefrom 25.9.4 to 25.9.5Commits
Updates
@typescript-eslint/eslint-pluginfrom 8.62.0 to 8.65.0Release notes
Sourced from @typescript-eslint/eslint-plugin's releases.
... (truncated)
Changelog
Sourced from @typescript-eslint/eslint-plugin's changelog.
... (truncated)
Commits
63ba81bchore(release): publish 8.65.0aa602bdfix(eslint-plugin): [no-unnecessary-parameter-property-assignment] don't flag...1e90d67feat(eslint-plugin): [no-shadow] specialized error on enum declaration and me...b32fb34docs: fix broken code samples in no-extraneous-class and prefer-function-type...eaf4576feat: add warning when TS 7 is detected (#12529)18c01c7feat(eslint-plugin): [no-restricted-imports] deprecate extension rule (#12527)96e8fe2fix(eslint-plugin): [unbound-method] report unbound methods accessed via memb...0d06406chore: add attw validation to repo (#12437)9d9973bfix(eslint-plugin): [prefer-string-starts-ends-with] handle escaped $ ending ...c2386e4chore(deps): update dependency prettier to v3.9.5 (#12486)Updates
@typescript-eslint/parserfrom 8.62.0 to 8.65.0Release notes
Sourced from @typescript-eslint/parser's releases.
... (truncated)
Changelog
Sourced from @typescript-eslint/parser's changelog.
Commits
63ba81bchore(release): publish 8.65.0eaf4576feat: add warning when TS 7 is detected (