Skip to content

Bump the development-dependencies group with 9 updates - #136

Merged
bluwy merged 3 commits into
mainfrom
dependabot/npm_and_yarn/development-dependencies-9586466a73
Oct 1, 2026
Merged

bluwy merged 3 commits into
mainfrom
dependabot/npm_and_yarn/development-dependencies-9586466a73

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the development-dependencies group with 9 updates:

Package From To
@changesets/changelog-github 1.0.0 1.0.1
@changesets/cli 3.0.1 3.0.3
@graphql-codegen/cli 7.3.1 7.4.2
@types/node 26.3.0 26.6.2
fs-fixture 2.14.0 2.16.0
oxfmt 0.65.0 0.70.0
oxlint 1.80.0 1.85.0
oxlint-tsgolint 7.0.2001 7.0.2002
tsdown 0.22.14 0.23.0

Updates @changesets/changelog-github from 1.0.0 to 1.0.1

Release notes

Sourced from @​changesets/changelog-github's releases.

@​changesets/changelog-github@​1.0.1

Patch Changes

  • Updated dependencies [4d7b4fb]:
    • @​changesets/get-github-info@​1.0.1
Changelog

Sourced from @​changesets/changelog-github's changelog.

1.0.1

Patch Changes

  • Updated dependencies [4d7b4fb]:
    • @​changesets/get-github-info@​1.0.1
Commits

Updates @changesets/cli from 3.0.1 to 3.0.3

Release notes

Sourced from @​changesets/cli's releases.

@​changesets/cli@​3.0.3

Patch Changes

  • #2297 3f163da Thanks @​Andarist! - Fixed semver ranges (such as >=1.0.0 <2.0.0) getting cut off (>=2.0.0) when updating internal dependencies.

  • #2276 ca9d110 Thanks @​Andarist! - Fixed pnpm 10 compatibility with npm 12 when reading registry information, packing, and publishing packages.

  • Updated dependencies [3f163da, bfe9050, e522996]:

    • @​changesets/apply-release-plan@​8.1.1
    • @​changesets/config@​4.0.1

@​changesets/cli@​3.0.2

Patch Changes

Changelog

Sourced from @​changesets/cli's changelog.

3.0.3

Patch Changes

  • #2297 3f163da Thanks @​Andarist! - Fixed semver ranges (such as >=1.0.0 <2.0.0) getting cut off (>=2.0.0) when updating internal dependencies.

  • #2276 ca9d110 Thanks @​Andarist! - Fixed pnpm 10 compatibility with npm 12 when reading registry information, packing, and publishing packages.

  • Updated dependencies [3f163da, bfe9050, e522996]:

    • @​changesets/apply-release-plan@​8.1.1
    • @​changesets/config@​4.0.1

3.0.2

Patch Changes

Commits

Updates @graphql-codegen/cli from 7.3.1 to 7.4.2

Changelog

Sourced from @​graphql-codegen/cli's changelog.

7.4.2

Patch Changes

  • #10956 cec9c1c Thanks @​eddeee888! - Fix dynamically-loaded plugins/presets in ESM builds. Previously, ESM used the bare module specifier without resolving it relative to the consuming project first, so a plugin only loaded if it happened to be reachable from the CLI package's own node_modules. Resolving it the same way the CJS build already does (relativeRequire.resolve(mod)) fixes that, but the resolved absolute path also has to be converted to a file:// URL (pathToFileURL(...).href) before being passed to import() — otherwise, on Windows, the loader misparses a raw path like C:\... as a c: protocol scheme and throws ERR_UNSUPPORTED_ESM_URL_SCHEME.

  • #10966 3029b60 Thanks @​eddeee888! - Fix lifecycle hook scripts (e.g. hooks: { afterAllFileWrite: ['prettier --write'] } }) failing on Windows when the file paths passed to them contain a backslash or other POSIX shell-special character. Hook arguments were always quoted using POSIX single-quoting, but child_process.exec() runs through cmd.exe on Windows by default, which doesn't strip single quotes — so the hook script received the literal quote characters as part of its argument and failed to find the file. Arguments are now quoted per-platform: POSIX quoting stays unchanged elsewhere, and Windows arguments are wrapped in double quotes only when they actually need it, matching cmd.exe's own convention.

  • #10959 7dffaae Thanks @​eddeee888! - Fix the CLI reporting success (exit code 0) when a generates output's preset can't be resolved. The error was shown in the terminal but never counted toward the run's failure state, so allowPartialOutputs: false (the default) never took effect for this case.

7.4.1

Patch Changes

... (truncated)

Commits
  • 1cb0310 chore(release): update monorepo packages versions (#10962)
  • cec9c1c [graphql-codegen-cli] fix: resolve dynamic plugin/preset imports in ESM, incl...
  • 17b158a [graphql-codegen-cli] test: add windows-latest coverage to dev-tests, then ve...
  • 3029b60 [graphql-codegen-cli] fix: quote lifecycle hook arguments per-platform on Win...
  • 62d0765 test: reproduce hooks.ts POSIX-only shell quoting breaking on Windows (#10965)
  • 7dffaae fix(cli): route preset-resolution errors into ctx.errors so allowPartialOutpu...
  • c9e38b1 test: reproduce silent preset-resolution failure under allowPartialOutputs=fa...
  • 6fc6ff2 Reorganize dev-test-apollo-tooling into dev-test directory (#10955)
  • 2e79816 chore(release): update monorepo packages versions (#10937)
  • fb1a7c4 [cli] fix: bump @​graphql-tools/code-file-loader to fix Windows import() failu...
  • Additional commits viewable in compare view

Updates @types/node from 26.3.0 to 26.6.2

Commits

Updates fs-fixture from 2.14.0 to 2.16.0

Release notes

Sourced from fs-fixture's releases.

v2.16.0

2.16.0 (2026-09-03)

Features

  • read fixture root by default (121f1b9)

v2.15.0

2.15.0 (2026-08-31)

Features

  • add fixture initializer functions (fd5c6fb)
Commits
  • 121f1b9 feat: read fixture root by default
  • 827e62b build: upgrade lint and type tooling
  • 55ac41a build: upgrade package tooling
  • 1625195 test: upgrade manten and vfs
  • fd5c6fb feat: add fixture initializer functions
  • 5ceb1f8 chore: upgrade skills-npm to v1.2.0
  • 12362e6 ci: restrict release workflow to public org
  • See full diff in compare view

Updates oxfmt from 0.65.0 to 0.70.0

Release notes

Sourced from oxfmt's releases.

oxfmt v0.70.0

🚀 Features

  • 415b742 oxlint,oxfmt: Do not discover nested config in Vite+ mode (#26763) (leaysgur)
Commits

Updates oxlint from 1.80.0 to 1.85.0

Release notes

Sourced from oxlint's releases.

oxlint v1.85.0

🚀 Features

  • 415b742 oxlint,oxfmt: Do not discover nested config in Vite+ mode (#26763) (leaysgur)
Commits
  • 288d8cc release(apps): oxlint v1.85.0 && oxfmt v0.70.0 (#26903)
  • f02a64a release(apps): oxlint v1.84.0 && oxfmt v0.69.0 (#26874)
  • 7bf68f7 release(apps): oxlint v1.83.0 && oxfmt v0.68.0 (#26631)
  • b4da00b release(apps): oxlint v1.82.0 && oxfmt v0.67.0 (#26384)
  • aa38ddf fix(linter/unicorn/numeric-separators-style): correct schema defaults (#26393)
  • 6a0e19c feat(linter/eslint/no-unmodified-loop-condition): support `checkConditionalEx...
  • 0b4e2e6 release(apps): oxlint v1.81.0 && oxfmt v0.66.0 (#26199)
  • d5be037 docs(linter/typescript/switch-exhaustiveness-check): clarify default case com...
  • 63bc313 chore(npm): update funding URL (#26066)
  • See full diff in compare view

Updates oxlint-tsgolint from 7.0.2001 to 7.0.2002

Release notes

Sourced from oxlint-tsgolint's releases.

v7.0.2002

What's Changed

... (truncated)

Commits
  • acd88e1 perf(prefer-regexp-exec): defer argument type resolution (#1207)
  • 1490844 perf(use-unknown-in-catch-callback-variable): defer annotation fixes (#1206)
  • d11b717 perf(strict-boolean-expressions): avoid temporary variant maps (#1205)
  • fe1ecf3 perf(no-unsafe-unary-minus): skip type queries for literals (#1203)
  • e42a510 perf(no-deprecated): skip type queries for empty allow lists (#1202)
  • 94ee8ac perf(restrict-template-expressions): avoid unnecessary base-type checks (#1204)
  • 7bbe341 perf(await-thenable): skip aggregator checks for empty calls (#1201)
  • 8296505 perf(no-base-to-string): avoid temporary certainty slices (#1200)
  • 6366773 perf(no-unnecessary-template-expression): defer single-interpolation fixes (#...
  • 8300b95 perf(unbound-method): check native names before resolving symbols (#1198)
  • Additional commits viewable in compare view

Updates tsdown from 0.22.14 to 0.23.0

Release notes

Sourced from tsdown's releases.

v0.23.0

   🧭 Migration Guide

Most users can upgrade directly. Before upgrading, run one final build with [email protected] and resolve all deprecation warnings.

  • config:
    • bundle: false → unbundle: true; bundle: true can be removed
    • outExtension → outExtensions
    • publicDir / --public-dir → copy / --copy
    • removeNodeProtocol: true → nodeProtocol: 'strip'
    • injectStyle → css.inject
  • deps:
    • inlineOnly / deps.onlyAllowBundle → deps.onlyBundle
    • skipNodeModulesBundle: true → deps.neverBundle: true
    • resolveDepSubpath now defaults to false; set it to true to preserve the previous behavior
  • dts:
    • rolldown-plugin-dts was upgraded from 0.27.13 to 0.28.5
    • dts.oxc: true → dts.generator: 'oxc'
    • dts.tsgo: true → dts.generator: 'tsgo'; oxc and tsgo objects now only configure their respective generators
    • dts.volarPlugins → dts.customLanguages; rename each language's create hook to createVolarPlugins
    • Custom languages, including vue, now throw when combined with an incompatible generator
    • dts.cjsReexport was removed; dual-format builds now generate CJS declarations in a separate pass
  • attw:
    • The default profile changed from strict to esm-only; set profile: 'strict' to preserve the previous checks
  • programmatic API:
    • build() now returns { bundles, watch }; replace const bundles = await build() with const { bundles } = await build()
  • requirements:
    • Node.js 25 is no longer supported; use ^22.18.0, ^24.11.0, or >=26.0.0
    • rolldown-plugin-dts now requires Rolldown 1.2.x
    • Legacy types and typesVersions fallbacks were removed; use TypeScript's bundler, node16, or nodenext module resolution

   🚨 Breaking Changes

   🚀 Features

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the development-dependencies group with 9 updates:

| Package | From | To |
| --- | --- | --- |
| [@changesets/changelog-github](https://github.com/changesets/changesets/tree/HEAD/packages/changelog-github) | `1.0.0` | `1.0.1` |
| [@changesets/cli](https://github.com/changesets/changesets/tree/HEAD/packages/cli) | `3.0.1` | `3.0.3` |
| [@graphql-codegen/cli](https://github.com/dotansimha/graphql-code-generator/tree/HEAD/packages/graphql-codegen-cli) | `7.3.1` | `7.4.2` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.3.0` | `26.6.2` |
| [fs-fixture](https://github.com/privatenumber/fs-fixture) | `2.14.0` | `2.16.0` |
| [oxfmt](https://github.com/oxc-project/oxc/tree/HEAD/npm/oxfmt) | `0.65.0` | `0.70.0` |
| [oxlint](https://github.com/oxc-project/oxc/tree/HEAD/npm/oxlint) | `1.80.0` | `1.85.0` |
| [oxlint-tsgolint](https://github.com/oxc-project/tsgolint) | `7.0.2001` | `7.0.2002` |
| [tsdown](https://github.com/rolldown/tsdown) | `0.22.14` | `0.23.0` |


Updates `@changesets/changelog-github` from 1.0.0 to 1.0.1
- [Release notes](https://github.com/changesets/changesets/releases)
- [Changelog](https://github.com/changesets/changesets/blob/main/packages/changelog-github/CHANGELOG.md)
- [Commits](https://github.com/changesets/changesets/commits/@changesets/[email protected]/packages/changelog-github)

Updates `@changesets/cli` from 3.0.1 to 3.0.3
- [Release notes](https://github.com/changesets/changesets/releases)
- [Changelog](https://github.com/changesets/changesets/blob/main/packages/cli/CHANGELOG.md)
- [Commits](https://github.com/changesets/changesets/commits/@changesets/[email protected]/packages/cli)

Updates `@graphql-codegen/cli` from 7.3.1 to 7.4.2
- [Release notes](https://github.com/dotansimha/graphql-code-generator/releases)
- [Changelog](https://github.com/dotansimha/graphql-code-generator/blob/master/packages/graphql-codegen-cli/CHANGELOG.md)
- [Commits](https://github.com/dotansimha/graphql-code-generator/commits/@graphql-codegen/[email protected]/packages/graphql-codegen-cli)

Updates `@types/node` from 26.3.0 to 26.6.2
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `fs-fixture` from 2.14.0 to 2.16.0
- [Release notes](https://github.com/privatenumber/fs-fixture/releases)
- [Commits](privatenumber/fs-fixture@v2.14.0...v2.16.0)

Updates `oxfmt` from 0.65.0 to 0.70.0
- [Release notes](https://github.com/oxc-project/oxc/releases)
- [Changelog](https://github.com/oxc-project/oxc/blob/main/npm/oxfmt/CHANGELOG.md)
- [Commits](https://github.com/oxc-project/oxc/commits/oxfmt_v0.70.0/npm/oxfmt)

Updates `oxlint` from 1.80.0 to 1.85.0
- [Release notes](https://github.com/oxc-project/oxc/releases)
- [Changelog](https://github.com/oxc-project/oxc/blob/main/npm/oxlint/CHANGELOG.md)
- [Commits](https://github.com/oxc-project/oxc/commits/oxlint_v1.85.0/npm/oxlint)

Updates `oxlint-tsgolint` from 7.0.2001 to 7.0.2002
- [Release notes](https://github.com/oxc-project/tsgolint/releases)
- [Commits](oxc-project/tsgolint@v7.0.2001...v7.0.2002)

Updates `tsdown` from 0.22.14 to 0.23.0
- [Release notes](https://github.com/rolldown/tsdown/releases)
- [Commits](rolldown/tsdown@v0.22.14...v0.23.0)

---
updated-dependencies:
- dependency-name: "@changesets/changelog-github"
  dependency-version: 1.0.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: development-dependencies
- dependency-name: "@changesets/cli"
  dependency-version: 3.0.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: development-dependencies
- dependency-name: "@graphql-codegen/cli"
  dependency-version: 7.4.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: "@types/node"
  dependency-version: 26.6.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: fs-fixture
  dependency-version: 2.16.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: oxfmt
  dependency-version: 0.70.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: oxlint
  dependency-version: 1.85.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: oxlint-tsgolint
  dependency-version: 7.0.2002
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: development-dependencies
- dependency-name: tsdown
  dependency-version: 0.23.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 1, 2026
@socket-security

socket-security Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

@bluwy
bluwy enabled auto-merge October 1, 2026 05:01
@bluwy
bluwy added this pull request to the merge queue Oct 1, 2026
Merged via the queue into main with commit f61bcc0 Oct 1, 2026
11 checks passed
@bluwy
bluwy deleted the dependabot/npm_and_yarn/development-dependencies-9586466a73 branch October 1, 2026 06:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants