Skip to content

chore(deps): bump the npm-minor-and-patch group across 1 directory with 45 updates - #782

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 17, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm-minor-and-patch group with 45 updates in the / directory:

Package From To
@changesets/cli 3.0.1 3.0.3
@eslint-react/eslint-plugin 5.18.6 5.19.1
typescript-eslint 8.68.0 8.70.0
@assistant-ui/core 0.2.22 0.3.19
@assistant-ui/react 0.14.27 0.15.20
@assistant-ui/store 0.2.21 0.3.13
monaco-editor 0.52.2 0.56.0
react 19.2.8 19.3.0
@types/react 19.2.18 19.3.0
react-dom 19.2.8 19.3.0
@types/react-dom 19.2.5 19.3.0
react-router-dom 7.18.2 7.18.4
@types/react 19.2.18 19.3.0
@types/react-dom 19.2.5 19.3.0
tsx 4.23.12 4.23.13
@anthropic-ai/sandbox-runtime 0.0.71 0.0.76
@daytona/sdk 0.204.1 0.214.0
@hono/swagger-ui 0.2.2 0.6.1
@hono/zod-openapi 1.6.1 1.6.3
cron-parser 5.10.0 5.10.1
hono 4.13.5 4.13.8
jose 6.2.10 6.2.12
openid-client 6.8.7 6.8.8
undici 7.29.0 7.29.1
yaml 2.9.0 2.9.1
zod 4.4.3 4.6.5
@swc/core 1.16.1 1.16.2
@ai-sdk/alibaba 2.0.37 2.0.45
@ai-sdk/anthropic 4.0.44 4.0.53
@ai-sdk/google 4.0.53 4.0.70
@ai-sdk/moonshotai 3.0.41 3.0.49
@ai-sdk/openai 4.0.49 4.0.66
@ai-sdk/openai-compatible 3.0.39 3.0.48
@ai-sdk/provider 4.0.8 4.0.14
@ai-sdk/provider-utils 5.0.32 5.0.40
@nats-io/nats-core 3.0.2 3.4.0
@opentelemetry/core 2.10.0 2.11.0
ai 7.0.82 7.0.101
openai 7.5.0 7.15.0
@openuidev/react-headless 0.9.4 0.16.1
@openuidev/react-lang 0.2.9 0.3.0
@openuidev/react-ui 0.13.3 0.16.1
lucide-react 0.562.0 0.577.0
react-resizable-panels 4.12.3 4.12.4
tailwind-merge 3.6.0 3.7.0
@testing-library/dom 10.4.1 10.4.2
@testing-library/react 16.3.2 16.3.3

Updates @changesets/cli from 3.0.1 to 3.0.3

Release notes

Sourced from @​changesets/cli's releases.

@​changesets/cli@​3.0.3

Patch Changes

  • #2297 3f163da Thanks @​Andarist! - Fixed semver ranges (such as >=1.0.0 <2.0.0) getting cut off (>=2.0.0) when updating internal dependencies.

  • #2276 ca9d110 Thanks @​Andarist! - Fixed pnpm 10 compatibility with npm 12 when reading registry information, packing, and publishing packages.

  • Updated dependencies [3f163da, bfe9050, e522996]:

    • @​changesets/apply-release-plan@​8.1.1
    • @​changesets/config@​4.0.1

@​changesets/cli@​3.0.2

Patch Changes

Changelog

Sourced from @​changesets/cli's changelog.

3.0.3

Patch Changes

  • #2297 3f163da Thanks @​Andarist! - Fixed semver ranges (such as >=1.0.0 <2.0.0) getting cut off (>=2.0.0) when updating internal dependencies.

  • #2276 ca9d110 Thanks @​Andarist! - Fixed pnpm 10 compatibility with npm 12 when reading registry information, packing, and publishing packages.

  • Updated dependencies [3f163da, bfe9050, e522996]:

    • @​changesets/apply-release-plan@​8.1.1
    • @​changesets/config@​4.0.1

3.0.2

Patch Changes

Commits

Updates @eslint-react/eslint-plugin from 5.18.6 to 5.19.1

Release notes

Sourced from @​eslint-react/eslint-plugin's releases.

v5.19.1 (2026-09-15)

What's Changed

🐞 Fixes

  • react-x/immutability: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (#1952, closes #1951)

🏗️ Internal

  • react-x/immutability: renamed MUTATING_METHODS/NAVIGATION_HOOKS to KNOWN_MUTATING_METHODS/KNOWN_MUTATING_HOOKS and added precise behavior boundary tests.
  • react-x/globals: restructured internals (split into collect, effects, and origins modules) to match the in-progress feat/environment-config implementation; no behavior change.
  • Website: awaited the async llms.txt index generation and fixed the website data update step to run before building.
  • CI: removed the generated file verification step.
  • Bumped typescript-eslint to 8.70.0, react/react-dom to 19.3.0, next to 16.3.5, vite to 8.3.0, effect to 3.22.2, fumadocs to 16.15.10, eslint-plugin-jsdoc to 64.3.9, tailwind-merge to 3.7.0, ansis to 4.4.0, nx to 23.2.1, eslint-plugin-react-refresh to 0.5.6, eslint-plugin-package-json to 1.8.1, @types/node to 26.5.1, @types/react to 19.3.0, @types/react-dom to 19.3.0, and pnpm to 12.4.1.

Full Changelog: Rel1cx/eslint-react@v5.19.0...v5.19.1

Attestation

https://github.com/Rel1cx/eslint-react/attestations/47410636

v5.19.0 (2026-09-07)

What's Changed

✨ New

  • react-x/immutability: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a useState/useReducer state value, or a custom hook matching the additionalStateHooks setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (#1948, closes #1941)
  • react-x/immutability: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. const copy = { ...state } / const copy = [...state]) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (#1948)

Full Changelog: Rel1cx/eslint-react@v5.18.10...v5.19.0

Attestation

https://github.com/Rel1cx/eslint-react/attestations/45585492

v5.18.10 (2026-09-06)

What's Changed

🐞 Fixes

  • The remaining disable-* preset configs in react-x and react-rsc now also register the same plugin object as the package's default export, so ESLint no longer reports a "Cannot redefine plugin" error when combining them with a manually registered plugin. (follow-up to #1947, see #1946)

🏗️ Internal

  • Website: removed fumadocs-twoslash from serverExternalPackages to fix a prerender error.

... (truncated)

Changelog

Sourced from @​eslint-react/eslint-plugin's changelog.

v5.19.1 (2026-09-15)

🐞 Fixes

  • react-x/immutability: the first parameter of a function is now classified as props only when the function is a confirmed component — one that returns JSX or calls hooks — so mutating the first parameter of a function that merely looks like a component (e.g. an event-handler factory whose returned function never renders and calls no hooks) is no longer reported. (#1952, closes #1951)

🏗️ Internal

  • react-x/immutability: renamed MUTATING_METHODS/NAVIGATION_HOOKS to KNOWN_MUTATING_METHODS/KNOWN_MUTATING_HOOKS and added precise behavior boundary tests.
  • react-x/globals: restructured internals (split into collect, effects, and origins modules) to match the in-progress feat/environment-config implementation; no behavior change.
  • Website: awaited the async llms.txt index generation and fixed the website data update step to run before building.
  • CI: removed the generated file verification step.
  • Bumped typescript-eslint to 8.70.0, react/react-dom to 19.3.0, next to 16.3.5, vite to 8.3.0, effect to 3.22.2, fumadocs to 16.15.10, eslint-plugin-jsdoc to 64.3.9, tailwind-merge to 3.7.0, ansis to 4.4.0, nx to 23.2.1, eslint-plugin-react-refresh to 0.5.6, eslint-plugin-package-json to 1.8.1, @types/node to 26.5.1, @types/react to 19.3.0, @types/react-dom to 19.3.0, and pnpm to 12.4.1.

Full Changelog: Rel1cx/eslint-react@v5.19.0...v5.19.1

v5.19.0 (2026-09-07)

✨ New

  • react-x/immutability: direct mutations of props and state are now reported — member assignments, updates, deletions, and mutating method calls are flagged when the mutated value resolves (through variable-declarator aliases) to a component's props, a useState/useReducer state value, or a custom hook matching the additionalStateHooks setting, independent of whether the mutation happens inside a function that reaches a freeze sink. (#1948, closes #1941)
  • react-x/immutability: added shallow-copy awareness — nested mutations through an object/array literal built by spreading a props or state value (e.g. const copy = { ...state } / const copy = [...state]) are reported, since the nested values are still shared with the original; writes to the copy's own top-level slots are not reported. (#1948)

Full Changelog: Rel1cx/eslint-react@v5.18.10...v5.19.0

v5.18.10 (2026-09-06)

🐞 Fixes

  • The remaining disable-* preset configs in react-x and react-rsc now also register the same plugin object as the package's default export, so ESLint no longer reports a "Cannot redefine plugin" error when combining them with a manually registered plugin. (follow-up to #1947, see #1946)

🏗️ Internal

  • Website: removed fumadocs-twoslash from serverExternalPackages to fix a prerender error.

Full Changelog: Rel1cx/eslint-react@v5.18.9...v5.18.10

v5.18.9 (2026-09-06)

🏗️ Internal

  • Bumped eslint to 10.10.0, vitest to 5.0.0, tsdown to 0.23.0, nx to 23.2.0, dprint to 0.57.4, @types/react-dom to 19.2.7, @eslint/compat to 2.1.1, and @nubjs/nub to 0.8.3.

Full Changelog: Rel1cx/eslint-react@v5.18.8...v5.18.9

v5.18.8 (2026-09-05)

🐞 Fixes

  • Preset configs (recommended, strict, etc.) now register the same plugin object as the package's default export, so ESLint no longer reports a "Cannot redefine plugin" error when the plugin is registered manually and a preset is extended at the same time. (#1947, closes #1946)

... (truncated)

Commits

Updates typescript-eslint from 8.68.0 to 8.70.0

Release notes

Sourced from typescript-eslint's releases.

v8.70.0

8.70.0 (2026-09-07)

🚀 Features

  • eslint-plugin: [no-generated-empty-object-type] add rule (#12730)
  • website: generate per-page social preview cards (#12734)

🩹 Fixes

  • use stable release of pnpm 12 (#12808)
  • update pnpm to 12.3.4 and dedupe Docusaurus packages (#12829)
  • eslint-plugin: [member-ordering] don't report fields that read fields declared before them (#12729)
  • eslint-plugin: [no-unnecessary-condition] no false positive on RHS of a nested logical expression (#12728)
  • eslint-plugin: [no-deprecated] report deprecated imported values used in object shorthand properties (#12780)
  • project-service: avoid discarded tsserver logs (#12748)
  • typescript-estree: clarify the parserOptions.project error message (#12817)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

v8.69.0

8.69.0 (2026-08-31)

🚀 Features

  • eslint-plugin: [no-misused-promises] add flagUnions option for checkConditionals (#12603)

🩹 Fixes

  • eslint-plugin: [no-mixed-enums] use scope analysis instead of type checking for merged namespaces (#12731)
  • eslint-plugin: [unified-signatures] compare type parameters by constraint instead of name (#12741)
  • eslint-plugin: [no-meaningless-void-operator] report void on non-call expressions (#12727)
  • website: respect allowJs playground config (#12744)

❤️ Thank You

... (truncated)

Changelog

Sourced from typescript-eslint's changelog.

8.70.0 (2026-09-07)

🩹 Fixes

  • eslint-plugin: [no-deprecated] report deprecated imported values used in object shorthand properties (#12780)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

8.69.0 (2026-08-31)

This was a version bump only for typescript-eslint to align it with other projects, there were no code changes.

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Commits
  • 7ee7608 chore(release): publish 8.70.0
  • 4586535 fix(eslint-plugin): [no-deprecated] report deprecated imported values used in...
  • 9a6e546 chore(release): publish 8.69.0
  • See full diff in compare view

Updates @assistant-ui/core from 0.2.22 to 0.3.19

Release notes

Sourced from @​assistant-ui/core's releases.

@​assistant-ui/core@​0.3.19

Patch Changes

  • #7414 00cff0b - feat: add an opt-in cache to convertExternalMessages so a source message that has not changed keeps its ThreadMessage object across calls (createExternalMessageConversionCache, exported as unstable_createExternalMessageConversionCache from react and react-native); react-langchain uses it for subagent transcripts, so a streamed token no longer rebuilds every message of the nested transcript (@​rupic-app)

  • #7222 b821506 - fix: isolate thread ID change callback errors from completed switches (@​Kinfe123)

  • #7227 c41d93a - fix: reconnect subjects after an upstream cleanup error (@​Kinfe123)

  • #7067 4cc817d - fix: exclude cleared attachments from a message when its upload finishes (@​ephraimduncan)

  • #7239 4e5fde6 - fix: report the error, error code and first token time of a run persisted in the ai-sdk/v6 format; the runtime hands the cloud history adapter the thread message it persisted, whose status and timing complete a report the stored message cannot carry. the failed message's status error is now the AssistantError shape ({ code, message }, the code being the AI SDK error's code or its name) instead of the message string, and first_token_ms reads firstTokenTime as the duration the runtime records instead of subtracting the stream start, which also repairs the aui/v0 path (@​okisdev)

  • #7234 e54bf9a - refactor: the cloud history adapter reports runs and engagement events through assistant-cloud's reporters and reads AI SDK runs through assistant-cloud/ai-sdk; steps are now reported for a run with a single step as well, an error is reported once per run, a stored ai-sdk/v6 run that produced tool calls without text reads completed instead of incomplete, and a run whose message carries a cancelled, length or content filter finish reports incomplete instead of completed (@​okisdev)

  • #7310 3cd7700 - fix: preserve cloud message parts and track tool approvals (@​okisdev)

  • #7330 5fb3235 - fix: attempt every pending attachment removal during reset and clearAttachments even when an adapter throws synchronously. (@​Kinfe123)

  • #7305 83ede73 - fix: preserve the complete interim dictation transcript and clear retracted browser results without duplicating finalized words. (@​Kinfe123)

  • #7312 49ee689 - fix: disable the reload, edit and branch switching primitives when the runtime does not expose the capability, instead of throwing when they are pressed (@​okisdev)

  • #7312 49ee689 - fix: keep restored resolved tool calls historical when snapshots change (@​okisdev)

  • #7326 a8e0ff7 - fix: prevent ended speech handles from cancelling newer playback (@​Kinfe123)

  • #7195 050d915 - fix: preserve prototype-named fields in interactable updates and snapshots (@​Kinfe123)

  • #7232 d49ff90 - fix: refresh interactable schemas after configuration changes (@​Kinfe123)

  • #7219 e7bdef5 - fix: cancel cloud attachment uploads when the attachment is removed (@​Kinfe123)

  • #7354 69cbf47 - feat: expose per-status counts on grouped parts and route tool calls by name in groupPartByType (@​okisdev)

  • #7444 be818db - fix: keep local storage threads loadable when a stored message holds a malformed part, attachment, or nested tool call message; the unreadable entry is dropped and the rest of the message and its descendants still load. (@​okisdev)

  • #7356 ff1c692 - feat: keep a message running while a tool call's nested conversation is still streaming, and report it on the nested thread (@​okisdev)

  • #7154 b4b0081 - fix: avoid repeated scans while joining external message parts (@​Kinfe123)

  • #7233 6b29e7d - fix: preserve data renderers whose names match object prototype properties (@​Kinfe123)

  • #7188 ab97a41 - fix: restore and pause queued messages after synchronous dispatch failures (@​Kinfe123)

    Failed work is retried before later sends. The next explicit send resumes draining; editing or removing an item does not resume a paused queue. Work already accepted by a driver is not restored, and a failed move returns its item to the original position.

  • #7184 8530b17 - fix: avoid leaking a frame host message listener when initialization fails (@​Kinfe123)

  • #7236 063b9ec - feat: register the package as an integration on the assistant-cloud client so the cloud can tell which packages talk to a project (@​okisdev)

... (truncated)

Changelog

Sourced from @​assistant-ui/core's changelog.

0.3.19

Patch Changes

  • #7414 00cff0b - feat: add an opt-in cache to convertExternalMessages so a source message that has not changed keeps its ThreadMessage object across calls (createExternalMessageConversionCache, exported as unstable_createExternalMessageConversionCache from react and react-native); react-langchain uses it for subagent transcripts, so a streamed token no longer rebuilds every message of the nested transcript (@​rupic-app)

  • #7222 b821506 - fix: isolate thread ID change callback errors from completed switches (@​Kinfe123)

  • #7227 c41d93a - fix: reconnect subjects after an upstream cleanup error (@​Kinfe123)

  • #7067 4cc817d - fix: exclude cleared attachments from a message when its upload finishes (@​ephraimduncan)

  • #7239 4e5fde6 - fix: report the error, error code and first token time of a run persisted in the ai-sdk/v6 format; the runtime hands the cloud history adapter the thread message it persisted, whose status and timing complete a report the stored message cannot carry. the failed message's status error is now the AssistantError shape ({ code, message }, the code being the AI SDK error's code or its name) instead of the message string, and first_token_ms reads firstTokenTime as the duration the runtime records instead of subtracting the stream start, which also repairs the aui/v0 path (@​okisdev)

  • #7234 e54bf9a - refactor: the cloud history adapter reports runs and engagement events through assistant-cloud's reporters and reads AI SDK runs through assistant-cloud/ai-sdk; steps are now reported for a run with a single step as well, an error is reported once per run, a stored ai-sdk/v6 run that produced tool calls without text reads completed instead of incomplete, and a run whose message carries a cancelled, length or content filter finish reports incomplete instead of completed (@​okisdev)

  • #7310 3cd7700 - fix: preserve cloud message parts and track tool approvals (@​okisdev)

  • #7330 5fb3235 - fix: attempt every pending attachment removal during reset and clearAttachments even when an adapter throws synchronously. (@​Kinfe123)

  • #7305 83ede73 - fix: preserve the complete interim dictation transcript and clear retracted browser results without duplicating finalized words. (@​Kinfe123)

  • #7312 49ee689 - fix: disable the reload, edit and branch switching primitives when the runtime does not expose the capability, instead of throwing when they are pressed (@​okisdev)

  • #7312 49ee689 - fix: keep restored resolved tool calls historical when snapshots change (@​okisdev)

  • #7326 a8e0ff7 - fix: prevent ended speech handles from cancelling newer playback (@​Kinfe123)

  • #7195 050d915 - fix: preserve prototype-named fields in interactable updates and snapshots (@​Kinfe123)

  • #7232 d49ff90 - fix: refresh interactable schemas after configuration changes (@​Kinfe123)

  • #7219 e7bdef5 - fix: cancel cloud attachment uploads when the attachment is removed (@​Kinfe123)

  • #7354 69cbf47 - feat: expose per-status counts on grouped parts and route tool calls by name in groupPartByType (@​okisdev)

  • #7444 be818db - fix: keep local storage threads loadable when a stored message holds a malformed part, attachment, or nested tool call message; the unreadable entry is dropped and the rest of the message and its descendants still load. (@​okisdev)

  • #7356 ff1c692 - feat: keep a message running while a tool call's nested conversation is still streaming, and report it on the nested thread (@​okisdev)

  • #7154 b4b0081 - fix: avoid repeated scans while joining external message parts (@​Kinfe123)

  • #7233 6b29e7d - fix: preserve data renderers whose names match object prototype properties (@​Kinfe123)

  • #7188 ab97a41 - fix: restore and pause queued messages after synchronous dispatch failures (@​Kinfe123)

    Failed work is retried before later sends. The next explicit send resumes draining; editing or removing an item does not resume a paused queue. Work already accepted by a driver is not restored, and a failed move returns its item to the original position.

  • #7184 8530b17 - fix: avoid leaking a frame host message listener when initialization fails (@​Kinfe123)

... (truncated)

Commits
  • 6cd9226 chore: update versions (#7192)
  • be818db fix(core): keep local storage history loadable with malformed parts (#7444)
  • 00cff0b feat: add a conversion cache so nested transcripts keep message identity (#7414)
  • 3cfddfd fix(core): speak and feedback work on voice transcript messages (#7393)
  • 75b3bd3 feat(core): derive thread.tasks from tool calls that carry nested conversatio...
  • ff1c692 feat(core): keep a message running while a nested conversation streams (#7356)
  • 69cbf47 feat(core): expose status counts on grouped parts and route tool calls by nam...
  • f6b7ba9 feat(core): mark voice transcript messages with metadata.modality (#7351)
  • d7aa090 fix(core): finalize abortable iterators once (#7345)
  • 7af9101 feat(react-google-adk): inline data URL images (#7339)
  • Additional commits viewable in compare view

Updates @assistant-ui/react from 0.14.27 to 0.15.20

Release notes

Sourced from @​assistant-ui/react's releases.

@​assistant-ui/react@​0.15.20

Patch Changes

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 17, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 17, 2026
@changeset-bot

changeset-bot Bot commented Sep 17, 2026

Copy link
Copy Markdown

⚠️ No Changeset found

Latest commit: 398504c

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@cursor cursor Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Stale Bugbot comment from a previous run.

Comment thread packages/trueforge-ui/package.json Outdated
"winston": "^3.19.0",
"ws": "^8.21.3",
"zod": "^4.4.3"
"zod": "^4.6.5"

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Missing changeset for published packages

Low Severity

Shipped package manifests change with no new .changeset/*.md. Runtime deps in @truefoundry/trueforge-core, @truefoundry/trueforge, and @truefoundry/trueforge-ui (and the frontend bundle that publishes as @truefoundry/trueforge) will not version unless pnpm changeset names those packages.

Additional Locations (2)
Fix in Cursor Fix in Web

Triggered by project rule: TrueForge review rules

Reviewed by Cursor Bugbot for commit feb03a1. Configure here.

@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc branch from feb03a1 to cb3775e Compare September 17, 2026 07:36

@cursor cursor Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Stale Bugbot comment from a previous run.

"thinking-orbs": "^0.3.1",
"truefoundry-gateway-sdk": "^0.4.2",
"zod": "^4.4.3"
"zod": "^4.6.5"

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Published packages missing changeset

Low Severity

Dependency versions that ship in published packages changed, but this PR adds no .changeset/*.md. Run pnpm changeset for @truefoundry/trueforge-ui, @truefoundry/trueforge-core, and @truefoundry/trueforge so the next release includes these bumps.

Additional Locations (2)
Fix in Cursor Fix in Web

Triggered by project rule: TrueForge review rules

Reviewed by Cursor Bugbot for commit cb3775e. Configure here.

@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc branch from cb3775e to 509e3f6 Compare September 17, 2026 08:07

@cursor cursor Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Stale Bugbot comment from a previous run.

Comment thread packages/frontend/package.json
"react": "^19.2.4",
"react-dom": "^19.2.4",
"react-router-dom": "^7.18.2",
"monaco-editor": "^0.56.0",

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Monaco 0.56 ESM worker break

Medium Severity

Frontend monaco-editor jumps from 0.52 to 0.56 while vite-plugin-monaco-editor-esm stays at ^2.0.2. Monaco 0.56 rewrote the ESM export map and worker entry points, so the plugin can fail to resolve editor.worker and the in-app code editor may not load workers.

Fix in Cursor Fix in Web

Reviewed by Cursor Bugbot for commit 509e3f6. Configure here.

"react-resizable-panels": "^4.12.3",
"react-router-dom": "^6 || ^7",
"react-resizable-panels": "^4.12.4",
"react-router-dom": "^7",

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

React Router v6 support dropped

Medium Severity

react-router-dom in the published UI package changed from ^6 || ^7 to ^7. Consumers still on React Router v6 no longer share the host router and can get a nested v7 copy, so withRouter URL sync and BrowserRouter context no longer line up with the host app.

Fix in Cursor Fix in Web

Reviewed by Cursor Bugbot for commit 509e3f6. Configure here.

@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc branch 5 times, most recently from 2578264 to b5828a5 Compare September 17, 2026 20:28

@cursor cursor Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes using default effort and found 1 potential issue.

There are 6 total unresolved issues (including 5 from previous reviews).

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit b5828a5. Configure here.

"@assistant-ui/store": "0.2.21",
"@assistant-ui/core": "0.3.18",
"@assistant-ui/react": "0.15.19",
"@assistant-ui/store": "0.3.13",

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Assistant-ui bump blocked by overrides

High Severity

Manifests now pin @assistant-ui/core 0.3.18, @assistant-ui/react 0.15.19, and @assistant-ui/store 0.3.13, but workspace overrides still force 0.2.22 / 0.14.27 / 0.2.21. The lockfile keeps those old specifiers, so installs never resolve the new packages and pnpm install --frozen-lockfile can fail against the updated manifests.

Additional Locations (1)
Fix in Cursor Fix in Web

Reviewed by Cursor Bugbot for commit b5828a5. Configure here.

@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc branch from b5828a5 to 7cf1a5c Compare September 18, 2026 08:39
…th 45 updates

Bumps the npm-minor-and-patch group with 45 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@changesets/cli](https://github.com/changesets/changesets/tree/HEAD/packages/cli) | `3.0.1` | `3.0.3` |
| [@eslint-react/eslint-plugin](https://github.com/Rel1cx/eslint-react/tree/HEAD/plugins/eslint-plugin) | `5.18.6` | `5.19.1` |
| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.68.0` | `8.70.0` |
| [@assistant-ui/core](https://github.com/assistant-ui/assistant-ui/tree/HEAD/packages/core) | `0.2.22` | `0.3.19` |
| [@assistant-ui/react](https://github.com/assistant-ui/assistant-ui/tree/HEAD/packages/react) | `0.14.27` | `0.15.20` |
| [@assistant-ui/store](https://github.com/assistant-ui/assistant-ui/tree/HEAD/packages/store) | `0.2.21` | `0.3.13` |
| [monaco-editor](https://github.com/microsoft/monaco-editor) | `0.52.2` | `0.56.0` |
| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |
| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |
| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |
| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.5` | `19.3.0` |
| [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom) | `7.18.2` | `7.18.4` |
| [@types/react](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react) | `19.2.18` | `19.3.0` |
| [@types/react-dom](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/react-dom) | `19.2.5` | `19.3.0` |
| [tsx](https://github.com/privatenumber/tsx) | `4.23.12` | `4.23.13` |
| [@anthropic-ai/sandbox-runtime](https://github.com/anthropics/sandbox-runtime) | `0.0.71` | `0.0.76` |
| [@daytona/sdk](https://github.com/daytona/clients) | `0.204.1` | `0.214.0` |
| [@hono/swagger-ui](https://github.com/honojs/middleware/tree/HEAD/packages/swagger-ui) | `0.2.2` | `0.6.1` |
| [@hono/zod-openapi](https://github.com/honojs/middleware/tree/HEAD/packages/zod-openapi) | `1.6.1` | `1.6.3` |
| [cron-parser](https://github.com/harrisiirak/cron-parser) | `5.10.0` | `5.10.1` |
| [hono](https://github.com/honojs/hono) | `4.13.5` | `4.13.8` |
| [jose](https://github.com/panva/jose) | `6.2.10` | `6.2.12` |
| [openid-client](https://github.com/panva/openid-client) | `6.8.7` | `6.8.8` |
| [undici](https://github.com/nodejs/undici) | `7.29.0` | `7.29.1` |
| [yaml](https://github.com/eemeli/yaml) | `2.9.0` | `2.9.1` |
| [zod](https://github.com/colinhacks/zod) | `4.4.3` | `4.6.5` |
| [@swc/core](https://github.com/swc-project/swc/tree/HEAD/packages/core) | `1.16.1` | `1.16.2` |
| [@ai-sdk/alibaba](https://github.com/vercel/ai/tree/HEAD/packages/alibaba) | `2.0.37` | `2.0.45` |
| [@ai-sdk/anthropic](https://github.com/vercel/ai/tree/HEAD/packages/anthropic) | `4.0.44` | `4.0.53` |
| [@ai-sdk/google](https://github.com/vercel/ai/tree/HEAD/packages/google) | `4.0.53` | `4.0.70` |
| [@ai-sdk/moonshotai](https://github.com/vercel/ai/tree/HEAD/packages/moonshotai) | `3.0.41` | `3.0.49` |
| [@ai-sdk/openai](https://github.com/vercel/ai/tree/HEAD/packages/openai) | `4.0.49` | `4.0.66` |
| [@ai-sdk/openai-compatible](https://github.com/vercel/ai/tree/HEAD/packages/openai-compatible) | `3.0.39` | `3.0.48` |
| [@ai-sdk/provider](https://github.com/vercel/ai/tree/HEAD/packages/provider) | `4.0.8` | `4.0.14` |
| [@ai-sdk/provider-utils](https://github.com/vercel/ai/tree/HEAD/packages/provider-utils) | `5.0.32` | `5.0.40` |
| [@nats-io/nats-core](https://github.com/nats-io/nats.js) | `3.0.2` | `3.4.0` |
| [@opentelemetry/core](https://github.com/open-telemetry/opentelemetry-js) | `2.10.0` | `2.11.0` |
| [ai](https://github.com/vercel/ai/tree/HEAD/packages/ai) | `7.0.82` | `7.0.101` |
| [openai](https://github.com/openai/openai-node) | `7.5.0` | `7.15.0` |
| [@openuidev/react-headless](https://github.com/thesysdev/openui/tree/HEAD/packages/react-headless) | `0.9.4` | `0.16.1` |
| [@openuidev/react-lang](https://github.com/thesysdev/openui/tree/HEAD/packages/react-lang) | `0.2.9` | `0.3.0` |
| [@openuidev/react-ui](https://github.com/thesysdev/openui/tree/HEAD/packages/react-ui) | `0.13.3` | `0.16.1` |
| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.562.0` | `0.577.0` |
| [react-resizable-panels](https://github.com/bvaughn/react-resizable-panels) | `4.12.3` | `4.12.4` |
| [tailwind-merge](https://github.com/dcastil/tailwind-merge/tree/HEAD/packages/tailwind-merge) | `3.6.0` | `3.7.0` |
| [@testing-library/dom](https://github.com/testing-library/dom-testing-library) | `10.4.1` | `10.4.2` |
| [@testing-library/react](https://github.com/testing-library/react-testing-library) | `16.3.2` | `16.3.3` |



Updates `@changesets/cli` from 3.0.1 to 3.0.3
- [Release notes](https://github.com/changesets/changesets/releases)
- [Changelog](https://github.com/changesets/changesets/blob/main/packages/cli/CHANGELOG.md)
- [Commits](https://github.com/changesets/changesets/commits/@changesets/cli@3.0.3/packages/cli)

Updates `@eslint-react/eslint-plugin` from 5.18.6 to 5.19.1
- [Release notes](https://github.com/Rel1cx/eslint-react/releases)
- [Changelog](https://github.com/Rel1cx/eslint-react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/Rel1cx/eslint-react/commits/v5.19.1/plugins/eslint-plugin)

Updates `typescript-eslint` from 8.68.0 to 8.70.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/typescript-eslint)

Updates `@assistant-ui/core` from 0.2.22 to 0.3.19
- [Release notes](https://github.com/assistant-ui/assistant-ui/releases)
- [Changelog](https://github.com/assistant-ui/assistant-ui/blob/main/packages/core/CHANGELOG.md)
- [Commits](https://github.com/assistant-ui/assistant-ui/commits/@assistant-ui/core@0.3.19/packages/core)

Updates `@assistant-ui/react` from 0.14.27 to 0.15.20
- [Release notes](https://github.com/assistant-ui/assistant-ui/releases)
- [Changelog](https://github.com/assistant-ui/assistant-ui/blob/main/packages/react/CHANGELOG.md)
- [Commits](https://github.com/assistant-ui/assistant-ui/commits/@assistant-ui/react@0.15.20/packages/react)

Updates `@assistant-ui/store` from 0.2.21 to 0.3.13
- [Release notes](https://github.com/assistant-ui/assistant-ui/releases)
- [Changelog](https://github.com/assistant-ui/assistant-ui/blob/main/packages/store/CHANGELOG.md)
- [Commits](https://github.com/assistant-ui/assistant-ui/commits/@assistant-ui/store@0.3.13/packages/store)

Updates `monaco-editor` from 0.52.2 to 0.56.0
- [Release notes](https://github.com/microsoft/monaco-editor/releases)
- [Changelog](https://github.com/microsoft/monaco-editor/blob/main/CHANGELOG.md)
- [Commits](microsoft/monaco-editor@v0.52.2...v0.56.0)

Updates `react` from 19.2.8 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react)

Updates `@types/react` from 19.2.18 to 19.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react)

Updates `react-dom` from 19.2.8 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react-dom)

Updates `@types/react-dom` from 19.2.5 to 19.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react-dom)

Updates `react-router-dom` from 7.18.2 to 7.18.4
- [Release notes](https://github.com/remix-run/react-router/releases)
- [Changelog](https://github.com/remix-run/react-router/blob/react-router-dom@7.18.4/packages/react-router-dom/CHANGELOG.md)
- [Commits](https://github.com/remix-run/react-router/commits/react-router-dom@7.18.4/packages/react-router-dom)

Updates `@types/react` from 19.2.18 to 19.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react)

Updates `@types/react-dom` from 19.2.5 to 19.3.0
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/react-dom)

Updates `tsx` from 4.23.12 to 4.23.13
- [Release notes](https://github.com/privatenumber/tsx/releases)
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs)
- [Commits](privatenumber/tsx@v4.23.12...v4.23.13)

Updates `@anthropic-ai/sandbox-runtime` from 0.0.71 to 0.0.76
- [Release notes](https://github.com/anthropics/sandbox-runtime/releases)
- [Commits](anthropics/sandbox-runtime@v0.0.71...v0.0.76)

Updates `@daytona/sdk` from 0.204.1 to 0.214.0
- [Release notes](https://github.com/daytona/clients/releases)
- [Commits](https://github.com/daytona/clients/commits/v0.214.0)

Updates `@hono/swagger-ui` from 0.2.2 to 0.6.1
- [Release notes](https://github.com/honojs/middleware/releases)
- [Changelog](https://github.com/honojs/middleware/blob/main/packages/swagger-ui/CHANGELOG.md)
- [Commits](https://github.com/honojs/middleware/commits/@hono/swagger-ui@0.6.1/packages/swagger-ui)

Updates `@hono/zod-openapi` from 1.6.1 to 1.6.3
- [Release notes](https://github.com/honojs/middleware/releases)
- [Changelog](https://github.com/honojs/middleware/blob/main/packages/zod-openapi/CHANGELOG.md)
- [Commits](https://github.com/honojs/middleware/commits/@hono/zod-openapi@1.6.3/packages/zod-openapi)

Updates `cron-parser` from 5.10.0 to 5.10.1
- [Release notes](https://github.com/harrisiirak/cron-parser/releases)
- [Changelog](https://github.com/harrisiirak/cron-parser/blob/master/CHANGELOG.md)
- [Commits](harrisiirak/cron-parser@v5.10.0...v5.10.1)

Updates `hono` from 4.13.5 to 4.13.8
- [Release notes](https://github.com/honojs/hono/releases)
- [Commits](honojs/hono@v4.13.5...v4.13.8)

Updates `jose` from 6.2.10 to 6.2.12
- [Release notes](https://github.com/panva/jose/releases)
- [Changelog](https://github.com/panva/jose/blob/main/CHANGELOG.md)
- [Commits](panva/jose@v6.2.10...v6.2.12)

Updates `openid-client` from 6.8.7 to 6.8.8
- [Release notes](https://github.com/panva/openid-client/releases)
- [Changelog](https://github.com/panva/openid-client/blob/main/CHANGELOG.md)
- [Commits](panva/openid-client@v6.8.7...v6.8.8)

Updates `undici` from 7.29.0 to 7.29.1
- [Release notes](https://github.com/nodejs/undici/releases)
- [Commits](nodejs/undici@v7.29.0...v7.29.1)

Updates `yaml` from 2.9.0 to 2.9.1
- [Release notes](https://github.com/eemeli/yaml/releases)
- [Commits](eemeli/yaml@v2.9.0...v2.9.1)

Updates `zod` from 4.4.3 to 4.6.5
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v4.4.3...v4.6.5)

Updates `@swc/core` from 1.16.1 to 1.16.2
- [Release notes](https://github.com/swc-project/swc/releases)
- [Changelog](https://github.com/swc-project/swc/blob/main/CHANGELOG.md)
- [Commits](https://github.com/swc-project/swc/commits/v1.16.2/packages/core)

Updates `@ai-sdk/alibaba` from 2.0.37 to 2.0.45
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/alibaba/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/alibaba@2.0.45/packages/alibaba)

Updates `@ai-sdk/anthropic` from 4.0.44 to 4.0.53
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/anthropic/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/anthropic@4.0.53/packages/anthropic)

Updates `@ai-sdk/google` from 4.0.53 to 4.0.70
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/google/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/google@4.0.70/packages/google)

Updates `@ai-sdk/moonshotai` from 3.0.41 to 3.0.49
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/moonshotai/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/moonshotai@3.0.49/packages/moonshotai)

Updates `@ai-sdk/openai` from 4.0.49 to 4.0.66
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/openai/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/openai@4.0.66/packages/openai)

Updates `@ai-sdk/openai-compatible` from 3.0.39 to 3.0.48
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/openai-compatible/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/openai-compatible@3.0.48/packages/openai-compatible)

Updates `@ai-sdk/provider` from 4.0.8 to 4.0.14
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/provider/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/provider@4.0.14/packages/provider)

Updates `@ai-sdk/provider-utils` from 5.0.32 to 5.0.40
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/provider-utils/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/provider-utils@5.0.40/packages/provider-utils)

Updates `@nats-io/nats-core` from 3.0.2 to 3.4.0
- [Release notes](https://github.com/nats-io/nats.js/releases)
- [Commits](nats-io/nats.js@v3.0.2...v3.4.0)

Updates `@opentelemetry/core` from 2.10.0 to 2.11.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-js/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-js/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-js@v2.10.0...v2.11.0)

Updates `ai` from 7.0.82 to 7.0.101
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/ai/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/ai@7.0.101/packages/ai)

Updates `openai` from 7.5.0 to 7.15.0
- [Release notes](https://github.com/openai/openai-node/releases)
- [Changelog](https://github.com/openai/openai-node/blob/main/CHANGELOG.md)
- [Commits](openai/openai-node@v7.5.0...v7.15.0)

Updates `@openuidev/react-headless` from 0.9.4 to 0.16.1
- [Release notes](https://github.com/thesysdev/openui/releases)
- [Changelog](https://github.com/thesysdev/openui/blob/main/packages/react-headless/CHANGELOG.md)
- [Commits](https://github.com/thesysdev/openui/commits/@openuidev/react-headless@0.16.1/packages/react-headless)

Updates `@openuidev/react-lang` from 0.2.9 to 0.3.0
- [Release notes](https://github.com/thesysdev/openui/releases)
- [Changelog](https://github.com/thesysdev/openui/blob/main/packages/react-lang/CHANGELOG.md)
- [Commits](https://github.com/thesysdev/openui/commits/@openuidev/react-lang@0.3.0/packages/react-lang)

Updates `@openuidev/react-ui` from 0.13.3 to 0.16.1
- [Release notes](https://github.com/thesysdev/openui/releases)
- [Changelog](https://github.com/thesysdev/openui/blob/main/packages/react-ui/CHANGELOG.md)
- [Commits](https://github.com/thesysdev/openui/commits/@openuidev/react-ui@0.16.1/packages/react-ui)

Updates `lucide-react` from 0.562.0 to 0.577.0
- [Release notes](https://github.com/lucide-icons/lucide/releases)
- [Commits](https://github.com/lucide-icons/lucide/commits/0.577.0/packages/lucide-react)

Updates `react-resizable-panels` from 4.12.3 to 4.12.4
- [Release notes](https://github.com/bvaughn/react-resizable-panels/releases)
- [Changelog](https://github.com/bvaughn/react-resizable-panels/blob/main/CHANGELOG.md)
- [Commits](bvaughn/react-resizable-panels@4.12.3...4.12.4)

Updates `tailwind-merge` from 3.6.0 to 3.7.0
- [Release notes](https://github.com/dcastil/tailwind-merge/releases)
- [Commits](https://github.com/dcastil/tailwind-merge/commits/tailwind-merge@3.7.0/packages/tailwind-merge)

Updates `@testing-library/dom` from 10.4.1 to 10.4.2
- [Release notes](https://github.com/testing-library/dom-testing-library/releases)
- [Changelog](https://github.com/testing-library/dom-testing-library/blob/main/CHANGELOG.md)
- [Commits](testing-library/dom-testing-library@v10.4.1...v10.4.2)

Updates `@testing-library/react` from 16.3.2 to 16.3.3
- [Release notes](https://github.com/testing-library/react-testing-library/releases)
- [Changelog](https://github.com/testing-library/react-testing-library/blob/main/CHANGELOG.md)
- [Commits](testing-library/react-testing-library@v16.3.2...v16.3.3)

---
updated-dependencies:
- dependency-name: "@ai-sdk/alibaba"
  dependency-version: 2.0.45
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/anthropic"
  dependency-version: 4.0.53
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/google"
  dependency-version: 4.0.69
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/moonshotai"
  dependency-version: 3.0.49
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/openai"
  dependency-version: 4.0.66
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/openai-compatible"
  dependency-version: 3.0.48
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/provider"
  dependency-version: 4.0.14
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@ai-sdk/provider-utils"
  dependency-version: 5.0.40
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@anthropic-ai/sandbox-runtime"
  dependency-version: 0.0.76
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@assistant-ui/core"
  dependency-version: 0.3.18
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@assistant-ui/react"
  dependency-version: 0.15.19
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@assistant-ui/store"
  dependency-version: 0.3.13
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@changesets/cli"
  dependency-version: 3.0.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@daytona/sdk"
  dependency-version: 0.211.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@eslint-react/eslint-plugin"
  dependency-version: 5.19.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@hono/swagger-ui"
  dependency-version: 0.6.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@hono/zod-openapi"
  dependency-version: 1.6.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@nats-io/nats-core"
  dependency-version: 3.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@opentelemetry/core"
  dependency-version: 2.11.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@openuidev/react-headless"
  dependency-version: 0.9.13
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@openuidev/react-lang"
  dependency-version: 0.2.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@openuidev/react-ui"
  dependency-version: 0.13.10
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@swc/core"
  dependency-version: 1.16.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@testing-library/dom"
  dependency-version: 10.4.2
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@testing-library/react"
  dependency-version: 16.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/react"
  dependency-version: 19.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/react"
  dependency-version: 19.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/react-dom"
  dependency-version: 19.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: "@types/react-dom"
  dependency-version: 19.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: ai
  dependency-version: 7.0.99
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: cron-parser
  dependency-version: 5.10.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: hono
  dependency-version: 4.13.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: jose
  dependency-version: 6.2.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: lucide-react
  dependency-version: 0.577.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: monaco-editor
  dependency-version: 0.56.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: openai
  dependency-version: 7.15.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: openid-client
  dependency-version: 6.8.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: react
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: react-dom
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: react-resizable-panels
  dependency-version: 4.12.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: react-router-dom
  dependency-version: 7.18.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: tailwind-merge
  dependency-version: 3.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: tsx
  dependency-version: 4.23.13
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: typescript-eslint
  dependency-version: 8.70.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: undici
  dependency-version: 7.29.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: yaml
  dependency-version: 2.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
- dependency-name: zod
  dependency-version: 4.6.5
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/npm-minor-and-patch-68e442d2fc branch from 7cf1a5c to 398504c Compare September 18, 2026 16:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants