Skip to content

chore(deps): bump the all-dependencies group with 8 updates - #192

Merged
github-actions[bot] merged 1 commit into
masterfrom
dependabot/npm_and_yarn/all-dependencies-cd376089b9
Sep 12, 2026
Merged

github-actions[bot] merged 1 commit into
masterfrom
dependabot/npm_and_yarn/all-dependencies-cd376089b9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 11, 2026

Copy link
Copy Markdown
Contributor

Bumps the all-dependencies group with 8 updates:

Package From To
@agentage/observability 0.18.0 0.20.0
@chemistry/crystalview 3.1.4 3.1.5
@chemistry/molpad 3.2.4 3.2.5
@playwright/test 1.62.1 1.63.0
@typescript-eslint/eslint-plugin 8.69.0 8.70.0
@typescript-eslint/parser 8.69.0 8.70.0
autoprefixer 10.5.4 10.5.5
postcss 8.5.26 8.5.28

Updates @agentage/observability from 0.18.0 to 0.20.0

Changelog

Sourced from @​agentage/observability's changelog.

0.20.0 - 2026-09-07

  • classifyClientType is back in lockstep with the estate's two other copies (web packages/shared/src/client-type.ts and the Vector VRL in infrastructure/ansible/roles/log_agent/templates/vector.yaml.j2). The edge had a rule the kit never had: an EMPTY user agent, or a machine-client one (node, node-fetch, undici, axios, got, python-requests, python-urllib, aiohttp, httpx, go-http-client, curl, wget, okhttp, java, apache-httpclient, libwww, guzzlehttp, postmanruntime), classifies as service. Without it an SSR fetch that sets no headers was logged as a real visitor - 1.8M requests a day on one service alone. The rule runs AFTER the bot checks, exactly as it does at the edge, so a scanner running curl stays a bot.
  • x-client-type: bot is now honored, so a tier that has already classified a caller can propagate the verdict downstream instead of every hop re-guessing. service and test are unchanged.
  • classifyClientType accepts ip and botIpRanges (IPv4 CIDRs, a bare address means /32), checked with the other bot rules: a crawler fleet behind disguised plain-Chrome user agents is classified from where it calls rather than from what it claims. No address list is baked into the package - the ranges are config, and they change. createRequestLog fills ip from the leftmost x-forwarded-for hop and takes ranges from botIpRanges or the comma-separated OTEL_BOT_IP_RANGES, so a service turns the rule on by env alone. ipInRanges(ip, ranges) is exported; malformed input never throws, it just does not match, and IPv6 never matches.
  • Health probes are now dropped OUTBOUND as well as inbound, on both paths: the Node tracer ignores client requests to a probe path (HttpInstrumentation's ignoreOutgoingRequestHook, UndiciInstrumentation's ignoreRequestHook) and NextNoiseSampler NOT_RECORDs client spans whose target is one. A system page polling two services emitted ~800 client spans an hour carrying no signal, since a probe's answer belongs in the polling app's state. Unconditional, like the inbound rule already was; a service that genuinely wants a probe span records it with withSpan.
Commits
  • f30c1a9 chore(release): 0.20.0 (#47)
  • cdebd23 feat: classifier lockstep + ip ranges + outbound probe filter (#46)
  • 582fed8 chore(release): 0.19.0
  • 4ba566b chore(deps): bump the all-npm group with 15 updates (#45)
  • 1690e58 chore(train): move to the Saturday 03:00-09:00 UTC window (#44)
  • See full diff in compare view

Updates @chemistry/crystalview from 3.1.4 to 3.1.5

Release notes

Sourced from @​chemistry/crystalview's releases.

v3.1.5

What's Changed

Full Changelog: chemistry/crystalview@v3.1.4...v3.1.5

Commits
  • 84213f4 chore(release): v3.1.5
  • 9ccca49 chore(deps-dev): bump typescript-eslint in the all-dependencies group (#54)
  • db145fe chore(train): move to the Saturday 03:00-09:00 UTC window (#53)
  • See full diff in compare view

Updates @chemistry/molpad from 3.2.4 to 3.2.5

Release notes

Sourced from @​chemistry/molpad's releases.

v3.2.5

What's Changed

Full Changelog: chemistry/molpad@v3.2.4...v3.2.5

Commits
  • 3c062a3 chore(release): v3.2.5
  • 012d1d1 chore(deps-dev): bump the all-dependencies group with 3 updates (#61)
  • 8b34d45 chore(train): move to the Saturday 03:00-09:00 UTC window (#60)
  • See full diff in compare view

Updates @playwright/test from 1.62.1 to 1.63.0

Release notes

Sourced from @​playwright/test's releases.

v1.63.0

🔒 Test locks

Tests that access a shared resource — an external service, a global account setting — can now declare a named lock. Tests that share a lock name never run concurrently, across files, workers and projects, while everything else keeps running in parallel:

test('update user settings', { lock: 'user-settings' }, async ({ page }) => {
  // never runs at the same time as other tests holding 'user-settings'
});

A test can hold multiple locks, and test.describe() accepts a lock for the whole group. Learn more about test locks.

🪟 Locate across frames

page.frameLocator() and frame.frameLocator() called without a selector search in any frame of the subtree, so you no longer need to locate the iframe first:

// Finds the button in any frame on the page.
await page.frameLocator().getByRole('button').click();

The rest of the locator resolves inside a single frame, just like a regular locator, and an error is thrown when it matches elements in several frames.

👁️ Visible-only locators

New locator.visible() returns a locator that matches only visible elements. It is the recommended replacement for the :visible CSS pseudo-class:

await page.locator('button').visible().click();

🧾 Step params and subtitles

Steps now carry structured data for reporters. Playwright API steps report the target locator and call arguments, and test.step() accepts subtitle and params options for your own steps:

await test.step('Login', async () => {
  // ...
}, { subtitle: 'as admin', params: { user: 'admin' } });

Reporters receive them via testStep.subtitle and testStep.params. For Playwright API

... (truncated)

Commits
  • 1b025d7 chore: mark v1.63.0 (#42569)
  • 0b9956d cherry-pick(#42568): docs(test): mark test.step subtitle option as since v1.63
  • 13dbf10 cherry-pick(#42552): docs: release notes for v1.63
  • e93b64e cherry-pick(#42566): feat(test): add subtitle option to test.step (#42567)
  • 2b7a5f2 test: response.body() for content-encoding:identity (#42537)
  • 648a67c fix(mcp): create parent directories for explicitly named files (#42540)
  • 7894f56 docs(mcp): clarify how tool file names are resolved (#42538)
  • 52900a1 devops: restore npm publishing from GitHub Actions (#42550)
  • 8c47f59 docs(csharp): fix nonexistent method names in guide examples (#42507)
  • bd6e552 chore(video): emit frames with real timestamps, drop frame number quantizatio...
  • Additional commits viewable in compare view

Updates @typescript-eslint/eslint-plugin from 8.69.0 to 8.70.0

Release notes

Sourced from @​typescript-eslint/eslint-plugin's releases.

v8.70.0

8.70.0 (2026-09-07)

🚀 Features

  • eslint-plugin: [no-generated-empty-object-type] add rule (#12730)
  • website: generate per-page social preview cards (#12734)

🩹 Fixes

  • use stable release of pnpm 12 (#12808)
  • update pnpm to 12.3.4 and dedupe Docusaurus packages (#12829)
  • eslint-plugin: [member-ordering] don't report fields that read fields declared before them (#12729)
  • eslint-plugin: [no-unnecessary-condition] no false positive on RHS of a nested logical expression (#12728)
  • eslint-plugin: [no-deprecated] report deprecated imported values used in object shorthand properties (#12780)
  • project-service: avoid discarded tsserver logs (#12748)
  • typescript-estree: clarify the parserOptions.project error message (#12817)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Changelog

Sourced from @​typescript-eslint/eslint-plugin's changelog.

8.70.0 (2026-09-07)

🚀 Features

  • eslint-plugin: [no-generated-empty-object-type] add rule (#12730)

🩹 Fixes

  • eslint-plugin: [no-deprecated] report deprecated imported values used in object shorthand properties (#12780)
  • eslint-plugin: [no-unnecessary-condition] no false positive on RHS of a nested logical expression (#12728)
  • eslint-plugin: [member-ordering] don't report fields that read fields declared before them (#12729)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Commits
  • 7ee7608 chore(release): publish 8.70.0
  • f66bdca test(eslint-plugin): [member-ordering] use RuleTester directly in `optional...
  • 4586535 fix(eslint-plugin): [no-deprecated] report deprecated imported values used in...
  • f8e1e4e fix(eslint-plugin): [no-unnecessary-condition] no false positive on RHS of a ...
  • 889cece fix(eslint-plugin): [member-ordering] don't report fields that read fields de...
  • 1a5a8b1 feat(eslint-plugin): [no-generated-empty-object-type] add rule (#12730)
  • See full diff in compare view

Updates @typescript-eslint/parser from 8.69.0 to 8.70.0

Release notes

Sourced from @​typescript-eslint/parser's releases.

v8.70.0

8.70.0 (2026-09-07)

🚀 Features

  • eslint-plugin: [no-generated-empty-object-type] add rule (#12730)
  • website: generate per-page social preview cards (#12734)

🩹 Fixes

  • use stable release of pnpm 12 (#12808)
  • update pnpm to 12.3.4 and dedupe Docusaurus packages (#12829)
  • eslint-plugin: [member-ordering] don't report fields that read fields declared before them (#12729)
  • eslint-plugin: [no-unnecessary-condition] no false positive on RHS of a nested logical expression (#12728)
  • eslint-plugin: [no-deprecated] report deprecated imported values used in object shorthand properties (#12780)
  • project-service: avoid discarded tsserver logs (#12748)
  • typescript-estree: clarify the parserOptions.project error message (#12817)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Changelog

Sourced from @​typescript-eslint/parser's changelog.

8.70.0 (2026-09-07)

This was a version bump only for parser to align it with other projects, there were no code changes.

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Commits

Updates autoprefixer from 10.5.4 to 10.5.5

Release notes

Sourced from autoprefixer's releases.

10.5.5

Changelog

Sourced from autoprefixer's changelog.

10.5.5

Commits

Updates postcss from 8.5.26 to 8.5.28

Release notes

Sourced from postcss's releases.

8.5.28

  • Fixes types regression.

8.5.27

Changelog

Sourced from postcss's changelog.

8.5.28

  • Fixes types regression.

8.5.27

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the all-dependencies group with 8 updates:

| Package | From | To |
| --- | --- | --- |
| [@agentage/observability](https://github.com/agentage/observability) | `0.18.0` | `0.20.0` |
| [@chemistry/crystalview](https://github.com/chemistry/crystalview) | `3.1.4` | `3.1.5` |
| [@chemistry/molpad](https://github.com/chemistry/molpad) | `3.2.4` | `3.2.5` |
| [@playwright/test](https://github.com/microsoft/playwright) | `1.62.1` | `1.63.0` |
| [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.69.0` | `8.70.0` |
| [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.69.0` | `8.70.0` |
| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.4` | `10.5.5` |
| [postcss](https://github.com/postcss/postcss) | `8.5.26` | `8.5.28` |


Updates `@agentage/observability` from 0.18.0 to 0.20.0
- [Changelog](https://github.com/agentage/observability/blob/master/CHANGELOG.md)
- [Commits](agentage/observability@v0.18.0...v0.20.0)

Updates `@chemistry/crystalview` from 3.1.4 to 3.1.5
- [Release notes](https://github.com/chemistry/crystalview/releases)
- [Commits](chemistry/crystalview@v3.1.4...v3.1.5)

Updates `@chemistry/molpad` from 3.2.4 to 3.2.5
- [Release notes](https://github.com/chemistry/molpad/releases)
- [Commits](chemistry/molpad@v3.2.4...v3.2.5)

Updates `@playwright/test` from 1.62.1 to 1.63.0
- [Release notes](https://github.com/microsoft/playwright/releases)
- [Commits](microsoft/playwright@v1.62.1...v1.63.0)

Updates `@typescript-eslint/eslint-plugin` from 8.69.0 to 8.70.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/eslint-plugin)

Updates `@typescript-eslint/parser` from 8.69.0 to 8.70.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.0/packages/parser)

Updates `autoprefixer` from 10.5.4 to 10.5.5
- [Release notes](https://github.com/postcss/autoprefixer/releases)
- [Changelog](https://github.com/postcss/autoprefixer/blob/main/CHANGELOG.md)
- [Commits](postcss/autoprefixer@10.5.4...10.5.5)

Updates `postcss` from 8.5.26 to 8.5.28
- [Release notes](https://github.com/postcss/postcss/releases)
- [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md)
- [Commits](postcss/postcss@8.5.26...8.5.28)

---
updated-dependencies:
- dependency-name: "@agentage/observability"
  dependency-version: 0.20.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: "@chemistry/crystalview"
  dependency-version: 3.1.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: "@chemistry/molpad"
  dependency-version: 3.2.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: "@playwright/test"
  dependency-version: 1.63.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: "@typescript-eslint/eslint-plugin"
  dependency-version: 8.70.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: "@typescript-eslint/parser"
  dependency-version: 8.70.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: autoprefixer
  dependency-version: 10.5.5
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: postcss
  dependency-version: 8.5.28
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 11, 2026
@github-actions

github-actions Bot commented Sep 11, 2026 •

Copy link
Copy Markdown

🎉 PR Validation ✅ PASSED

Commit: 6523452201cb22c475d80ac234989fd9f0438198
Branch: dependabot/npm_and_yarn/all-dependencies-cd376089b9

Checks:

  • ✅ Dependencies installed
  • ✅ Linting passed
  • ✅ Format check passed
  • ✅ Build successful
  • ✅ Docker build
  • ✅ E2E tests

Visual Changes: 8 of 8 screenshots changed

📸 contacts desktop — 100% changed
📸 contacts mobile — 100% changed
📸 home desktop — 100% changed
📸 home mobile — 100% changed
📸 interests desktop — 100% changed
📸 interests mobile — 100% changed
📸 projects desktop — 100% changed
📸 projects mobile — 100% changed

Ready to merge! ✨


🔗 View workflow run
⏰ Generated at: 2026-09-11T16:17:47.366Z

@github-actions
github-actions Bot merged commit 8744e80 into master Sep 12, 2026
1 check passed
@github-actions
github-actions Bot deleted the dependabot/npm_and_yarn/all-dependencies-cd376089b9 branch September 12, 2026 07:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant