Skip to content

chore(deps): update all non-major dependencies#167

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-patch
Open

chore(deps): update all non-major dependencies#167
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-patch

Conversation

@renovate

@renovate renovate Bot commented Sep 18, 2025

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence Type Update
@antfu/eslint-config ^6.1.0^6.7.3 age confidence pnpm.catalog.dev minor
@commitlint/cli (source) ^20.1.0^20.5.3 age confidence pnpm.catalog.dev minor
@commitlint/config-conventional (source) ^20.0.0^20.5.3 age confidence pnpm.catalog.dev minor
@date-fns/tz ^1.4.1^1.5.0 age confidence pnpm.catalog.integrations minor
@iconify-json/fluent ^1.2.34^1.2.54 age confidence pnpm.catalog.dev patch
@iconify-json/lucide ^1.2.71^1.2.120 age confidence pnpm.catalog.dev patch
@iconify-json/simple-icons ^1.2.56^1.2.92 age confidence pnpm.catalog.dev patch
@internationalized/date (source) ^3.10.0^3.12.2 age confidence pnpm.catalog.integrations minor
@nuxt/devtools (source) ^3.1.1^3.3.1 age confidence pnpm.catalog.dev minor
@nuxt/ui (source) ^4.2.1^4.10.0 age confidence pnpm.catalog.integrations minor
@nuxtjs/i18n (source) ^10.2.1^10.5.0 age confidence pnpm.catalog.dev minor
@openai/agents (source) ^0.2.1^0.13.5 age confidence pnpm.catalog.integrations minor
@paralleldrive/cuid2 2.2.22.3.1 age confidence pnpm.catalog.integrations minor
@pinia/nuxt (source) ^0.11.2^0.11.3 age confidence pnpm.catalog.integrations patch
@tailwindcss/typography ^0.5.19^0.5.20 age confidence pnpm.catalog.dev patch
@tma.js/sdk-vue (source) ^1.0.8^1.0.23 age confidence pnpm.catalog.integrations patch
@types/node (source) ^24.9.2^24.13.3 age confidence pnpm.catalog.types minor
@types/pg (source) 8.15.58.20.0 age confidence devDependencies minor
@unovis/ts (source) ^1.6.1^1.6.7 age confidence pnpm.catalog.integrations patch
@unovis/vue (source) ^1.6.1^1.6.7 age confidence pnpm.catalog.integrations patch
@vitest/browser-playwright (source) ^4.0.5^4.1.10 age confidence pnpm.catalog.test minor
@vitest/coverage-v8 (source) ^4.0.5^4.1.10 age confidence pnpm.catalog.test minor
arktype (source) ^2.1.22^2.2.3 age confidence pnpm.catalog.integrations minor
bumpp ^10.3.1^10.4.1 age confidence pnpm.catalog.dev minor
date-fns ^4.1.0^4.4.0 age confidence pnpm.catalog.integrations minor
dotenv ^17.2.3^17.4.2 age confidence pnpm.catalog.dev minor
drizzle-cuid2 2.1.02.2.0 age confidence dependencies minor
drizzle-kit (source) 0.31.50.31.10 age confidence devDependencies patch
eslint (source) ^9.39.2^9.39.5 age confidence pnpm.catalog.dev patch
grammy (source) ^1.38.3^1.45.1 age confidence pnpm.catalog.integrations minor
ioredis ^5.8.2^5.11.1 age confidence pnpm.catalog.integrations minor
libphonenumber-js ^1.12.25^1.13.9 age confidence pnpm.catalog.integrations minor
lint-staged ^16.2.7^16.4.0 age confidence pnpm.catalog.dev minor
node (source) >=24.11.0>=24.18.0 age confidence engines minor
node (source) 24.11.0-alpine24.18.0-alpine age confidence final minor
node (source) 24.11.0-slim24.18.0-slim age confidence final minor
nuxt-auth-utils ^0.5.26^0.5.29 age confidence pnpm.catalog.dev patch
openai ^6.7.0^6.49.0 age confidence pnpm.catalog.integrations minor
pg (source) 8.16.38.22.0 age confidence dependencies minor
pinia (source) ^3.0.3^3.0.4 age confidence pnpm.catalog.integrations patch
playwright (source) ^1.56.1^1.62.0 age confidence pnpm.catalog.test minor
pnpm (source) 10.20.010.34.5 age confidence packageManager minor
pnpm (source) >=10.20.0>=10.34.5 age confidence engines minor
ru-nalog-fias-gar 1.0.41.0.5 age confidence dependencies patch
sharp (source, changelog) ^0.34.4^0.35.3 age confidence pnpm.catalog.integrations minor
sortablejs ^1.15.6^1.15.7 age confidence pnpm.catalog.integrations patch
uqr 0.1.20.1.3 age confidence dependencies patch
vitest (source) ^4.0.5^4.1.10 age confidence pnpm.catalog.test minor
vitest-browser-vue ^2.0.1^2.1.0 age confidence pnpm.catalog.test minor
vue-tsc (source) ^3.1.8^3.3.8 age confidence pnpm.catalog.dev minor

Release Notes

antfu/eslint-config (@​antfu/eslint-config)

v6.7.3

Compare Source

   🐞 Bug Fixes
    View changes on GitHub

v6.7.2

Compare Source

   🐞 Bug Fixes
    View changes on GitHub

v6.7.1

Compare Source

   🐞 Bug Fixes
  • pnpm: Do not set catalogMode when catalogs is not enabled  -  by @​antfu (0471e)
    View changes on GitHub

v6.7.0

Compare Source

   🚀 Features
   🐞 Bug Fixes
    View changes on GitHub

v6.6.1

Compare Source

   🐞 Bug Fixes
    View changes on GitHub

v6.6.0

Compare Source

   🐞 Bug Fixes
  • pnpm: Enforce catalog usage based on smart detection  -  by @​antfu (654c0)
    View changes on GitHub

v6.5.1

Compare Source

   🐞 Bug Fixes
    View changes on GitHub

v6.5.0

Compare Source

   🚀 Features
   🐞 Bug Fixes
    View changes on GitHub

v6.4.2

Compare Source

   🐞 Bug Fixes
  • pnpm: Move pnpm-workspace.yaml sorting config from yaml to pnpm  -  by @​antfu (fc2b1)
    View changes on GitHub

v6.4.1

Compare Source

No significant changes

    View changes on GitHub

v6.3.0

Compare Source

   🚀 Features
   🐞 Bug Fixes
    View changes on GitHub

v6.2.0

Compare Source

   🚀 Features
    View changes on GitHub
conventional-changelog/commitlint (@​commitlint/cli)

v20.5.3

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.5.2

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.5.0

Compare Source

Bug Fixes

20.4.4 (2026-03-12)

Note: Version bump only for package @​commitlint/cli

20.4.3 (2026-03-03)

Bug Fixes

20.4.2 (2026-02-19)

Note: Version bump only for package @​commitlint/cli

20.4.1 (2026-02-02)

Note: Version bump only for package @​commitlint/cli

v20.4.4

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.4.3

Compare Source

Bug Fixes

v20.4.2

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.4.1

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.4.0

Compare Source

Features

20.3.1 (2026-01-08)

Note: Version bump only for package @​commitlint/cli

v20.3.1

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.3.0

Compare Source

Note: Version bump only for package @​commitlint/cli

v20.2.0

Compare Source

Note: Version bump only for package @​commitlint/cli

conventional-changelog/commitlint (@​commitlint/config-conventional)

v20.5.3

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.5.0

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

20.4.4 (2026-03-12)

Note: Version bump only for package @​commitlint/config-conventional

20.4.3 (2026-03-03)

Bug Fixes

20.4.2 (2026-02-19)

Note: Version bump only for package @​commitlint/config-conventional

20.4.1 (2026-02-02)

Note: Version bump only for package @​commitlint/config-conventional

v20.4.4

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.4.3

Compare Source

Bug Fixes

v20.4.2

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.4.1

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.4.0

Compare Source

Features

20.3.1 (2026-01-08)

Note: Version bump only for package @​commitlint/config-conventional

v20.3.1

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.3.0

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

v20.2.0

Compare Source

Note: Version bump only for package @​commitlint/config-conventional

adobe/react-spectrum (@​internationalized/date)

v3.12.2

Compare Source

v3.12.1

Compare Source

v3.12.0

Compare Source

v3.11.0

Compare Source

v3.10.1

Compare Source

nuxt/devtools (@​nuxt/devtools)

v3.3.1

Compare Source

No significant changes

    View changes on GitHub

v3.2.4

Compare Source

   🚀 Features
   🐞 Bug Fixes
    View changes on GitHub

v3.2.3

Compare Source

Bug Fixes

v3.2.2

Compare Source

Bug Fixes
Features

v3.2.1

Compare Source

Bug Fixes

v3.2.0

Compare Source

Bug Fixes
  • devtools: call devtools:initialized hook after all modules run (#​919) (3662836)
Features
  • enhance inspect panel, add copy visual info for agents (#​928) (6bb2565)
  • upgrade vite-devtools (5c4a0b0)

3.1.1 (2025-11-25)

Bug Fixes
Features
  • support passing additional permissions to the iframe (#​911) (bc1d11c)
nuxt/ui (@​nuxt/ui)

v4.10.0

Compare Source

Features
Bug Fixes
  • AuthForm: track password visibility per field (#​6638) (0faeb92)
  • BlogPost/ChangelogVersion: format date in UTC to prevent hydration mismatch (#​6722) (fe5bb23)
  • Button: allow inline event handlers with non-void return types (#​6668) (269080a)
  • Carousel: prevent reset when plugin props use inline objects (f41d11e), closes #​6221
  • ChatMessages: re-evaluate streaming indicator on each render (#​6673) (5c986dd)
  • components: forward $attrs to root element when to prop is absent (#​6628) (d3b5f1d)
  • components: forward data-slot to component root (#​6643) (c9c5232)
  • components: respect prefers-reduced-motion in animations (#​6723) (f951529)
  • ContentNavigation: key items by identity to prevent leading icon flash (#​6640) (09fb52b)
  • defineShortcuts: add missing arrowdown to shiftable keys (#​6702) (2128414)
  • defineShortcuts: defer standalone shortcuts that prefix a chain (#​6703) (76ee176)
  • Editor: prevent suggestion menu blinking on keystroke (#​6712) (7e6d8b0)
  • FileUpload: add aria-disabled attribute when disabled (#​6653) (c3b2996)
  • inertia: make useRoute().fullPath reactive across navigations (#​6696) (c256997)
  • Link: apply rel prop to internal links (#​6677) (276302e)
  • Link: fall back to original path when localePath fails (#​6637) (906e8fd)
  • LocaleSelect: add missing keys in emoji mapping (#​6629) (fab73ab)
  • module: avoid unhead v2-only hookOnce in colors plugin (#​6658) (e4ca579)
  • SelectMenu/InputMenu: only re-highlight first item with create-item (#​6689) (a71dece)
  • Separator: forward fall-through attributes to root (#​6641) (88baabc)
  • theme: use logical properties for RTL (#​6724) (3179012)
  • types: type prose components in app config (#​6711) (d56e39a)
  • useComponentProps: let app config defaultVariants override withDefaults (#​6686) (f5e58fb)
  • useFileUpload: keep dropzone type filter reactive to accept (#​6699) (000aba4)

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "after 2am and before 3am"
  • Automerge
    • "after 1am and before 2am"

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from hmbanan666 as a code owner September 18, 2025 02:04
@coderabbitai

coderabbitai Bot commented Sep 18, 2025

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

  • 🔍 Trigger a full review

Comment @coderabbitai help to get the list of available commands and usage tips.

@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 10 times, most recently from 95b54b6 to de118cd Compare September 19, 2025 17:22
@socket-security

socket-security Bot commented Sep 19, 2025

Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm @internationalized/date is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: packages/ui/package.jsonnpm/@internationalized/[email protected]

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at [email protected].

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/@internationalized/[email protected]. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm eslint-plugin-jsdoc is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: pnpm-lock.yamlnpm/@antfu/[email protected]npm/[email protected]

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at [email protected].

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/[email protected]. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 16 times, most recently from 104c8c3 to dadc4fd Compare September 24, 2025 18:32
@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 21 times, most recently from 2b543f0 to 332a04e Compare October 4, 2025 13:37
@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 6 times, most recently from 77fdd25 to e3af819 Compare October 6, 2025 18:46
@sonarqubecloud

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants