Skip to content

🔧 chore(deps): refresh maintenance tooling - #50

Merged
xdanger merged 1 commit into
mainfrom
chore/dependency-refresh-2026-09-19
Sep 19, 2026
Merged

xdanger merged 1 commit into
mainfrom
chore/dependency-refresh-2026-09-19

Conversation

@xdanger

@xdanger xdanger commented Sep 19, 2026 •

Copy link
Copy Markdown
Member

Summary

  • update pnpm 11 and non-breaking lint/format tool releases
  • refresh the lockfile

Verification

  • pnpm lint
  • pnpm audit --audit-level low

Deferred

  • pnpm 12 and actions/checkout 7 are major upgrades and remain out of scope

Note

Low Risk
DevDependency and lockfile-only updates for lint/format/CI tooling; no production or auth/data-path changes.

Overview
Bumps maintenance-only root devDependencies and the pinned pnpm version (11.20.0 → 11.27.0). No application or runtime code changes.

Direct version bumps in package.json: eslint 10.8.0 → 10.11.0, typescript-eslint 8.66.0 → 8.70.0, globals, lint-staged, and prettier (patch/minor within existing ranges).

The lockfile refresh follows those bumps and ESLint’s updated cache stack (e.g. file-entry-cache / flat-cache, keyv v5, related @cacheable/* packages). lint-staged also picks up minor transitive updates (picomatch, tinyexec).

Scripts and config are unchanged—pnpm lint, pre-commit via Husky/lint-staged, and root eslint.config.mjs behavior should stay the same aside from upstream tool fixes.

Reviewed by Cursor Bugbot for commit 9ee190a. Bugbot is set up for automated code reviews on this repo. Configure here.

Copilot AI lite review requested due to automatic review settings September 19, 2026 22:04
@xdanger xdanger self-assigned this Sep 19, 2026
@cursor

cursor Bot commented Sep 19, 2026

Copy link
Copy Markdown

Bugbot couldn't run - usage limit reached

Bugbot is counted against Cursor usage for this user or team, and this run hit a usage or spend limit.

A user or team admin can review and increase usage limits in the Cursor dashboard.

(requestId: serverGenReqId_4b352cc2-89b5-4ef7-9b98-a3e069d4e5f9)

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Sep 19, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-09-19T22:07:53.574761Z 9ee190a PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

The dependency and lockfile updates are internally consistent and introduce no actionable issues.

Review effort: Lite
Findings: None

What changed in this PR

Refreshes pinned pnpm and maintenance-only linting/formatting dependencies without changing runtime code.

Changes:

  • Updates root devDependencies and pnpm tooling.
  • Regenerates the lockfile with matching transitive updates.
File Description
package.json Updates pnpm and development-tool versions.
pnpm-lock.yaml Records the corresponding dependency graph and integrity data.
Files not reviewed (1)
  • pnpm-lock.yaml: Generated file

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@greptile-apps

greptile-apps Bot commented Sep 19, 2026

Copy link
Copy Markdown

RetriggerConfidence Score: 5/5

The PR appears safe to merge, with the dependency specifications, resolved versions, and declared runtime constraints remaining consistent.

Summary

This PR refreshes the repository’s pinned pnpm release and several linting and formatting development dependencies, with a corresponding lockfile update.

  • Updates pnpm from 11.20.0 to 11.27.0.
  • Updates ESLint, globals, lint-staged, Prettier, and TypeScript ESLint.
  • Keeps package specifications and lockfile resolutions consistent.
  • No actionable correctness, security, or repository-rule violations were identified.

Reviews (1) · Last reviewed commit: "🔧 chore(deps): refresh maintenance tool..."

@xdanger
xdanger merged commit a1e7e46 into main Sep 19, 2026
8 of 10 checks passed
@xdanger
xdanger deleted the chore/dependency-refresh-2026-09-19 branch September 19, 2026 23:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants