Skip to content

build(deps): bump the minor-and-patch group with 23 updates - #31

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/minor-and-patch-fd96ed6a59
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/minor-and-patch-fd96ed6a59

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 11, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the minor-and-patch group with 23 updates:

Package From To
@biomejs/biome 2.4.15 2.4.16
@microsoft/api-extractor 7.58.7 7.59.4
@types/node 22.19.21 22.20.5
fast-check 4.9.0 4.10.2
rollup 4.60.4 4.64.2
turbo 2.9.14 2.11.7
@bugsee/bugsee-cli 0.7.11 0.8.1
ajv 8.18.0 8.20.0
elysia 1.4.28 1.4.30
fastify 5.8.5 5.12.5
@hapi/hapi 21.4.9 21.4.10
hono 4.12.25 4.13.13
@opentelemetry/sdk-trace-base 2.7.1 2.12.0
esbuild 0.27.7 0.28.2
miniflare 4.20260722.0 4.20260730.0
playwright 1.62.1 1.64.0
tsx 4.22.4 4.23.15
webpack 5.111.0 5.111.1
nuxt 4.4.8 4.6.0
svelte 5.56.3 5.57.2
@sveltejs/kit 2.67.0 2.70.3
@sveltejs/vite-plugin-svelte 7.1.2 7.3.1
vite 8.0.14 8.3.4

Updates @biomejs/biome from 2.4.15 to 2.4.16

Release notes

Sourced from @​biomejs/biome's releases.

Biome CLI v2.4.16

2.4.16

Patch Changes

  • #10329 ef764d5 Thanks @​Conaclos! - Fixed an issue where diagnostics showed an incorrect location in Astro files.

  • #10363 50aa415 Thanks @​dyc3! - Fixed HTML formatting for a case where comments could cause the formatter to split up a closing tag, which would cause the resulting HTML to be syntactically invalid.

    Input:

    <span
      ><!-- 1
    --><span>a</span
      ><!-- 2
    --><span>b</span
      ><!-- 3
    --></span>

    Output:

      <span
    	  ><!-- 1
    - --> <span>a</span<!-- 2
    - --> ><span>b</span><!-- 3
    + --><span>a</span><!-- 2
    + --><span>b</span><!-- 3
      --></span
      >
  • #10465 0c718da Thanks @​dfedoryshchev! - Fixed diagnostics emitted by the noUntrustedLicenses rule.

  • #10358 05c2617 Thanks @​dyc3! - Fixed #10356: biome rage --linter now displays rules enabled through linter domains in the enabled rules list.

  • #10300 950247c Thanks @​dyc3! - Fixed #10265: Svelte function bindings such as bind:value={get, set} are now parsed more precisely, so noCommaOperator won't emit false positives for that syntax anymore.

  • #9786 e71f584 Thanks @​MeGaNeKoS! - Fixed #8480: useDestructuring now provides variableDeclarator and assignmentExpression options to control which contexts enforce destructuring, matching ESLint's prefer-destructuring configuration. Both default to {array: true, object: true}. The diagnostic for object destructuring in assignment expressions now instructs users to wrap the assignment in parentheses.

  • #10425 1948b72 Thanks @​sjh9714! - Fixed #10244: The useOptionalChain rule now detects negated guard inequality chains like !foo || foo.bar !== "x".

  • #10442 001f94f Thanks @​ematipico! - Fixed #10411: noMisusedPromises no longer causes a stack overflow when a nested function returns an object with shorthand properties that shadow destructured variables from an outer scope.

  • #10318 9b1577f Thanks @​dyc3! - Added support for formatter.trailingCommas in overrides. This option was previously available in the top-level formatter configuration but missing from formatter overrides.

  • #10319 2e37709 Thanks @​dyc3! - Fixed Vue and Svelte formatting for standalone interpolations in inline elements. Biome now preserves existing newlines in cases like:

... (truncated)

Changelog

Sourced from @​biomejs/biome's changelog.

2.4.16

Patch Changes

  • #10329 ef764d5 Thanks @​Conaclos! - Fixed an issue where diagnostics showed an incorrect location in Astro files.

  • #10363 50aa415 Thanks @​dyc3! - Fixed HTML formatting for a case where comments could cause the formatter to split up a closing tag, which would cause the resulting HTML to be syntactically invalid.

    Input:

    <span
      ><!-- 1
    --><span>a</span
      ><!-- 2
    --><span>b</span
      ><!-- 3
    --></span>

    Output:

      <span
    	  ><!-- 1
    - --> <span>a</span<!-- 2
    - --> ><span>b</span><!-- 3
    + --><span>a</span><!-- 2
    + --><span>b</span><!-- 3
      --></span
      >
  • #10465 0c718da Thanks @​dfedoryshchev! - Fixed diagnostics emitted by the noUntrustedLicenses rule.

  • #10358 05c2617 Thanks @​dyc3! - Fixed #10356: biome rage --linter now displays rules enabled through linter domains in the enabled rules list.

  • #10300 950247c Thanks @​dyc3! - Fixed #10265: Svelte function bindings such as bind:value={get, set} are now parsed more precisely, so noCommaOperator won't emit false positives for that syntax anymore.

  • #9786 e71f584 Thanks @​MeGaNeKoS! - Fixed #8480: useDestructuring now provides variableDeclarator and assignmentExpression options to control which contexts enforce destructuring, matching ESLint's prefer-destructuring configuration. Both default to {array: true, object: true}. The diagnostic for object destructuring in assignment expressions now instructs users to wrap the assignment in parentheses.

  • #10425 1948b72 Thanks @​sjh9714! - Fixed #10244: The useOptionalChain rule now detects negated guard inequality chains like !foo || foo.bar !== "x".

  • #10442 001f94f Thanks @​ematipico! - Fixed #10411: noMisusedPromises no longer causes a stack overflow when a nested function returns an object with shorthand properties that shadow destructured variables from an outer scope.

  • #10318 9b1577f Thanks @​dyc3! - Added support for formatter.trailingCommas in overrides. This option was previously available in the top-level formatter configuration but missing from formatter overrides.

  • #10319 2e37709 Thanks @​dyc3! - Fixed Vue and Svelte formatting for standalone interpolations in inline elements. Biome now preserves existing newlines in cases like:

... (truncated)

Commits
  • 5f4ea56 ci: release (#10326)
  • de2a33c fix(core): regression in emitted types (#10478)
  • d835303 docs: remove redundant default phrase in useConsistentObjectDefinitions rul...
  • 4f1aaf2 fix: incorrect build when using build or test (#10426)
  • dc73b6b refactor: make plugins opt-in via feature gate (#10418)
  • e71f584 feat(useDestructuring): add options for assignment/declaration and improve di...
  • 9b1577f fix(config): support trailingCommas in overrides (#10318)
  • See full diff in compare view

Updates @microsoft/api-extractor from 7.58.7 to 7.59.4

Changelog

Sourced from @​microsoft/api-extractor's changelog.

7.59.4

Tue, 06 Oct 2026 00:04:37 GMT

Version update only

7.59.3

Mon, 28 Sep 2026 20:08:26 GMT

Version update only

7.59.2

Tue, 22 Sep 2026 17:35:41 GMT

Patches

  • Update the @microsoft/tsdoc dependency to ~0.17.0 and the @microsoft/tsdoc-config dependency to ~0.18.2.

7.59.1

Sat, 05 Sep 2026 00:15:08 GMT

Version update only

7.59.0

Fri, 21 Aug 2026 15:16:34 GMT

Minor changes

  • Report a new ae-unresolved-import-path message when an inline import() type with a relative path cannot be resolved, instead of silently emitting the unusable path into the .d.ts rollup.

7.58.13

Thu, 20 Aug 2026 00:16:38 GMT

Version update only

7.58.12

Tue, 21 Jul 2026 02:53:22 GMT

Patches

  • Improve the performance of the internal excerpt token condensing algorithm from O(n^2) to O(n) by eliminating repeated array splicing and per-merge bookkeeping.

7.58.11

Fri, 17 Jul 2026 00:15:59 GMT

Version update only

7.58.10

Thu, 16 Jul 2026 00:16:13 GMT

Version update only

... (truncated)

Commits
Maintainer changes

This version was pushed to npm by microsoft1es, a new releaser for @​microsoft/api-extractor since your current version.


Updates @types/node from 22.19.21 to 22.20.5

Commits

Updates fast-check from 4.9.0 to 4.10.2

Release notes

Sourced from fast-check's releases.

v4.10.2

Fix interrupt plugin (throwing) [Code][Diff]

Fixes

  • (PR#7333) Bug: Plugin interruptAfterTimeLimit crashes

Fix fake-timer compatibility in timeout and interrupt plugins

[Code][Diff]

Fixes

  • (PR#7293) Bug: Capture timers for interruptAfterTimeLimit plugin
  • (PR#7282) CI: Temporarily disable documentation updates until v5
  • (PR#7279) Doc: Release note for 4.10.0

New plugin API and deprecations ahead of v5

[Code][Diff]

Features

  • (PR#7216) Introduce a plugin API
  • (PR#7221) Refine plugin API
  • (PR#7222) Add ability to configure plugins globally
  • (PR#7224) Add the beforeEach plugin to hook in life-cycle
  • (PR#7227) Create an afterEach plugin
  • (PR#7232) Deprecate life-cycle methods
  • (PR#7235) Support teardown of beforeEach plugin
  • (PR#7228) Add timeout plugin to stop long running predicates
  • (PR#7237) Deprecate timeout from parameters
  • (PR#7238) Pass a store to plugins
  • (PR#7239) Add extra plugin's method called onAllRunsComplete
  • (PR#7240) Deprecate reporter and asyncReporter from parameters
  • (PR#7229) Add plugin to interrupt after time limit
  • (PR#7245) Support failOnInterrupt on the plugin
  • (PR#7230) Add plugins to drop runs on already covered cases
  • (PR#7259) Add ability to decorate generate via Plugins
  • (PR#7231) Add the unbiased plugin to generate without bias
  • (PR#7260) Deprecate parameters superseded by plugins
  • (PR#7261) Deprecate v5 removals

Fixes

  • (PR#7225) Bug: Proper ordering between plugins
  • (PR#7127) CI: Announce on Bluesky when drafting the release
  • (PR#7217) CI: Dedupe packages for pnpm
  • (PR#7137) Doc: Release note for 4.9.0

... (truncated)

Changelog

Sourced from fast-check's changelog.

4.10.2

Fix interrupt plugin (throwing) [Code][Diff]

Fixes

  • (PR#7333) Bug: Plugin interruptAfterTimeLimit crashes

4.10.1

Fix fake-timer compatibility in timeout and interrupt plugins [Code][Diff]

Fixes

  • (PR#7292) Bug: Capture timer globals for timeout plugin
  • (PR#7293) Bug: Capture timers for interruptAfterTimeLimit plugin
  • (PR#7282) CI: Temporarily disable documentation updates until v5
  • (PR#7279) Doc: Release note for 4.10.0

4.10.0

New plugin API and deprecations ahead of v5 [Code][Diff]

Features

  • (PR#7216) Introduce a plugin API
  • (PR#7221) Refine plugin API
  • (PR#7222) Add ability to configure plugins globally
  • (PR#7224) Add the beforeEach plugin to hook in life-cycle
  • (PR#7227) Create an afterEach plugin
  • (PR#7232) Deprecate life-cycle methods
  • (PR#7235) Support teardown of beforeEach plugin
  • (PR#7228) Add timeout plugin to stop long running predicates
  • (PR#7237) Deprecate timeout from parameters
  • (PR#7238) Pass a store to plugins
  • (PR#7239) Add extra plugin's method called onAllRunsComplete
  • (PR#7240) Deprecate reporter and asyncReporter from parameters
  • (PR#7229) Add plugin to interrupt after time limit
  • (PR#7245) Support failOnInterrupt on the plugin
  • (PR#7230) Add plugins to drop runs on already covered cases
  • (PR#7259) Add ability to decorate generate via Plugins
  • (PR#7231) Add the unbiased plugin to generate without bias
  • (PR#7260) Deprecate parameters superseded by plugins
  • (PR#7261) Deprecate v5 removals

Fixes

... (truncated)

Commits

Updates rollup from 4.60.4 to 4.64.2

Release notes

Sourced from rollup's releases.

v4.64.2

4.64.2

2026-10-07

Bug Fixes

  • Fix a regression where certain CoreJS helpers were wrongly tree-shaken (#6562)
  • Do not show errors from closeBundle if there were also build errors (#6554)

Pull Requests

v4.64.1

4.64.1

2026-10-07

Bug Fixes

  • Slightly improve performance when rendering ES output (#6534)

Pull Requests

v4.64.0

4.64.0

2026-10-02

Features

  • Improve try-catch deoptimization to cover calling methods on objects (#6541)

Bug Fixes

  • Fix a situation where some feature-detections of core-js were not triggering properly (#6541)

Pull Requests

... (truncated)

Changelog

Sourced from rollup's changelog.

4.64.2

2026-10-07

Bug Fixes

  • Fix a regression where certain CoreJS helpers were wrongly tree-shaken (#6562)
  • Do not show errors from closeBundle if there were also build errors (#6554)

Pull Requests

4.64.1

2026-10-07

Bug Fixes

  • Slightly improve performance when rendering ES output (#6534)

Pull Requests

4.64.0

2026-10-02

Features

  • Improve try-catch deoptimization to cover calling methods on objects (#6541)

Bug Fixes

  • Fix a situation where some feature-detections of core-js were not triggering properly (#6541)

Pull Requests

... (truncated)

Commits

Updates turbo from 2.9.14 to 2.11.7

Release notes

Sourced from turbo's releases.

Turborepo v2.11.7

What's Changed

Changelog

Full Changelog: vercel/turborepo@v2.11.6...v2.11.7

Turborepo v2.11.6

What's Changed

Changelog

New Contributors

Full Changelog: vercel/turborepo@v2.11.5...v2.11.6

Turborepo v2.11.5

What's Changed

Changelog

... (truncated)

Commits

Updates @bugsee/bugsee-cli from 0.7.11 to 0.8.1

Release notes

Sourced from @​bugsee/bugsee-cli's releases.

0.8.1 - 2026-10-08

Release Notes

Changed

  • debug-files upload --type elf upgrades a stored symbol table to DWARF without --force. A library first uploaded as an AGP SYMBOL_TABLE (.so.sym) and later available with debug info shares one GNU build-id, so the server skipped the richer file and --force (which re-sends every library in the run) was the only remedy. Each library now declares what it can symbolicate — format_variant = dwarf or symtab, read from the file itself, never its name — and asks the server to replace a poorer stored copy (replace_if_richer). A symbol table replaced by an unstripped library transfers once and logs upgraded SYMBOL_TABLE -> FULL (upgraded=N in the run summary); re-running with the same file, or offering a symbol table when the server holds debug info, transfers nothing — the server never downgrades. --force still means "always replace" and still declares the variant. See #78.
    • Needs the appserver change in bugsee-appserver#65-#67 (deployed to production before this release is adopted). Against a server without it the new fields are ignored and behaviour is unchanged; a skipped library with debug info then still gets the "re-run with --force" advice, which a current server no longer prints because it would be wrong.
    • The new fields are sent only for --type elf. Every other upload flow's wire body is unchanged.
    • Known limits: --type rust ELF does not send the fields yet, and a library carrying only .dynsym symbols is labelled symtab, so a later true SYMBOL_TABLE for it does not replace it (a missed upgrade, never a lost symbol).

#78: bugsee/bugsee-cli#78

Install bugsee-cli 0.8.1

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://github.com/bugsee/bugsee-cli/releases/download/v0.8.1/bugsee-cli-installer.sh | sh

Install prebuilt binaries via powershell script

powershell -ExecutionPolicy Bypass -c "irm https://github.com/bugsee/bugsee-cli/releases/download/v0.8.1/bugsee-cli-installer.ps1 | iex"

Install prebuilt binaries via Homebrew

brew install bugsee/tap/bugsee-cli

Install prebuilt binaries into your npm project

npm install @bugsee/bugsee-cli@0.8.1

... (truncated)

Changelog

Sourced from @​bugsee/bugsee-cli's changelog.

[0.8.1] - 2026-10-08

Changed

  • debug-files upload --type elf upgrades a stored symbol table to DWARF without --force. A library first uploaded as an AGP SYMBOL_TABLE (.so.sym) and later available with debug info shares one GNU build-id, so the server skipped the richer file and --force (which re-sends every library in the run) was the only remedy. Each library now declares what it can symbolicate — format_variant = dwarf or symtab, read from the file itself, never its name — and asks the server to replace a poorer stored copy (replace_if_richer). A symbol table replaced by an unstripped library transfers once and logs upgraded SYMBOL_TABLE -> FULL (upgraded=N in the run summary); re-running with the same file, or offering a symbol table when the server holds debug info, transfers nothing — the server never downgrades. --force still means "always replace" and still declares the variant. See #78.
    • Needs the appserver change in bugsee-appserver#65-#67 (deployed to production before this release is adopted). Against a server without it the new fields are ignored and behaviour is unchanged; a skipped library with debug info then still gets the "re-run with --force" advice, which a current server no longer prints because it would be wrong.
    • The new fields are sent only for --type elf. Every other upload flow's wire body is unchanged.
    • Known limits: --type rust ELF does not send the fields yet, and a library carrying only .dynsym symbols is labelled symtab, so a later true SYMBOL_TABLE for it does not replace it (a missed upgrade, never a lost symbol).

#78: bugsee/bugsee-cli#78

[0.8.0] - 2026-10-07

Added

  • debug-files upload --type elf accepts directories. One or more directories (and/or native-debug-symbols.zip files) are scanned; directories are walked recursively for .so / .so.dbg / .so.sym (+ --extension) and read in place, so a Gradle build can point it at merged_native_libs/<variant> without re-zipping. One upload per GNU build-id across all paths. A directory with no matching libraries exits 10; an empty zip still only warns. Directory symlinks are not descended (file symlinks are read), and any I/O error while scanning (an unreadable subdirectory or library, a dangling link) fails with exit 11 rather than uploading a partial set. See #69.

Changed

  • debug-files upload --type il2cpp-linemap validates LineNumberMappings.json before packing it. It is checked as a stream (these files run to tens of MB) against the shape the symbolicator reads, {cpp_path: {cs_path: {cpp_line: cs_line}}} with non-negative integer line numbers. A truncated, wrong or otherwise corrupt file now exits 11 naming the file and the problem, in a dry run too, and uploads nothing; it used to upload "successfully" and leave every IL2CPP crash unsymbolicated. The optional top-level __debug-id__ sentinel is ignored, as the symbolicator ignores it. An empty map is still accepted (with a warning). Integrators that treated this command's success as proof of a usable map can now rely on it.
  • --type elf collects every input before uploading anything. A corrupt second zip now aborts (exit 11) before the first zip uploads, instead of after. A path that does not exist now exits 10 (input not found) rather than 11; both are in the no-fallback range.
  • Presigned symbol uploads no longer hold the whole archive in memory. The PUT body and the SHA-1 are streamed from disk in 64 KiB chunks (the PUT keeps an exact Content-Length,

... (truncated)

Commits
  • 7a68c37 chore(release): 0.8.1 (#80)
  • fe5caaf feat(elf): upgrade a stored symbol table to DWARF without --force (#79)
  • ee0dbeb chore(release): 0.8.0 (#77)
  • f995e22 feat(il2cpp): validate LineNumberMappings.json before packing it (#76)
  • ce956ac perf(inject): edit bundles in place + broken-file / file-handling test covera...
  • 5ad3328 perf(sourcemaps): stream map JSON with struson instead of a Value tree (#74)
  • fd570fc perf: stop loading whole files into memory across upload/identify paths (#73)
  • 138e609 perf(upload): stream presigned PUT + SHA-1, mmap ELF identity scan (#72)
  • da906de feat(debug-files): --type elf accepts directories of .so files (#70)
  • 6d516d3 chore(release): 0.7.13 (#68)
  • Additional commits viewable in compare view

Updates ajv from 8.18.0 to 8.20.0

Release notes

Sourced from ajv's releases.

v8.20.0

What's Changed

Full Changelog: ajv-validator/ajv@v8.19.0...v8.20.0

v8.19.0

What's Changed

Full Changelog: ajv-validator/ajv@v8.18.0...v8.19.0

Commits

Updates elysia from 1.4.28 to 1.4.30

Release notes

Sourced from elysia's releases.

1.4.30

What's changed

The current development effort will be focused in Elysia 2, see kiana and beta release note.

1.4.x will only publish security updates, no new features.

Chore:

  • update test case for Bun 1.4

Advisory:

Full Changelog: elysiajs/elysia@1.4.29...1.4.30

1.4.29

What's changed

Improvement:

  • normalize a multipart/form-data with .get instead of .getAll for faster performance

Full Changelog: elysiajs/elysia@1.4.28...1.4.29

Changelog

Sourced from elysia's changelog.

1.4.30 - 26 Aug 2026

Chore:

  • update test case for Bun 1.4

Advisory:

1.4.29 - 17 Jun 2026

Bug fix:

  • normalize a multipart/form-data with .get instead of .getAll for faster performance
Commits
  • ...

    Description has been truncated

Bumps the minor-and-patch group with 23 updates:

| Package | From | To |
| --- | --- | --- |
| [@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome) | `2.4.15` | `2.4.16` |
| [@microsoft/api-extractor](https://github.com/microsoft/rushstack/tree/HEAD/apps/api-extractor) | `7.58.7` | `7.59.4` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `22.19.21` | `22.20.5` |
| [fast-check](https://github.com/dubzzz/fast-check/tree/HEAD/packages/fast-check) | `4.9.0` | `4.10.2` |
| [rollup](https://github.com/rollup/rollup) | `4.60.4` | `4.64.2` |
| [turbo](https://github.com/vercel/turborepo) | `2.9.14` | `2.11.7` |
| [@bugsee/bugsee-cli](https://github.com/bugsee/bugsee-cli) | `0.7.11` | `0.8.1` |
| [ajv](https://github.com/ajv-validator/ajv) | `8.18.0` | `8.20.0` |
| [elysia](https://github.com/elysiajs/elysia) | `1.4.28` | `1.4.30` |
| [fastify](https://github.com/fastify/fastify) | `5.8.5` | `5.12.5` |
| [@hapi/hapi](https://github.com/hapijs/hapi) | `21.4.9` | `21.4.10` |
| [hono](https://github.com/honojs/hono) | `4.12.25` | `4.13.13` |
| [@opentelemetry/sdk-trace-base](https://github.com/open-telemetry/opentelemetry-js) | `2.7.1` | `2.12.0` |
| [esbuild](https://github.com/evanw/esbuild) | `0.27.7` | `0.28.2` |
| [miniflare](https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/miniflare) | `4.20260722.0` | `4.20260730.0` |
| [playwright](https://github.com/microsoft/playwright) | `1.62.1` | `1.64.0` |
| [tsx](https://github.com/privatenumber/tsx) | `4.22.4` | `4.23.15` |
| [webpack](https://github.com/webpack/webpack) | `5.111.0` | `5.111.1` |
| [nuxt](https://github.com/nuxt/nuxt/tree/HEAD/packages/nuxt) | `4.4.8` | `4.6.0` |
| [svelte](https://github.com/sveltejs/svelte/tree/HEAD/packages/svelte) | `5.56.3` | `5.57.2` |
| [@sveltejs/kit](https://github.com/sveltejs/kit/tree/HEAD/packages/kit) | `2.67.0` | `2.70.3` |
| [@sveltejs/vite-plugin-svelte](https://github.com/sveltejs/vite-plugin-svelte/tree/HEAD/packages/vite-plugin-svelte) | `7.1.2` | `7.3.1` |
| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) | `8.0.14` | `8.3.4` |


Updates `@biomejs/biome` from 2.4.15 to 2.4.16
- [Release notes](https://github.com/biomejs/biome/releases)
- [Changelog](https://github.com/biomejs/biome/blob/main/packages/@biomejs/biome/CHANGELOG.md)
- [Commits](https://github.com/biomejs/biome/commits/@biomejs/biome@2.4.16/packages/@biomejs/biome)

Updates `@microsoft/api-extractor` from 7.58.7 to 7.59.4
- [Changelog](https://github.com/microsoft/rushstack/blob/main/apps/api-extractor/CHANGELOG.md)
- [Commits](https://github.com/microsoft/rushstack/commits/HEAD/apps/api-extractor)

Updates `@types/node` from 22.19.21 to 22.20.5
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `fast-check` from 4.9.0 to 4.10.2
- [Release notes](https://github.com/dubzzz/fast-check/releases)
- [Changelog](https://github.com/dubzzz/fast-check/blob/main/packages/fast-check/CHANGELOG.md)
- [Commits](https://github.com/dubzzz/fast-check/commits/v4.10.2/packages/fast-check)

Updates `rollup` from 4.60.4 to 4.64.2
- [Release notes](https://github.com/rollup/rollup/releases)
- [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md)
- [Commits](rollup/rollup@v4.60.4...v4.64.2)

Updates `turbo` from 2.9.14 to 2.11.7
- [Release notes](https://github.com/vercel/turborepo/releases)
- [Changelog](https://github.com/vercel/turborepo/blob/main/RELEASE.md)
- [Commits](vercel/turborepo@v2.9.14...v2.11.7)

Updates `@bugsee/bugsee-cli` from 0.7.11 to 0.8.1
- [Release notes](https://github.com/bugsee/bugsee-cli/releases)
- [Changelog](https://github.com/bugsee/bugsee-cli/blob/main/CHANGELOG.md)
- [Commits](bugsee/bugsee-cli@v0.7.11...v0.8.1)

Updates `ajv` from 8.18.0 to 8.20.0
- [Release notes](https://github.com/ajv-validator/ajv/releases)
- [Commits](ajv-validator/ajv@v8.18.0...v8.20.0)

Updates `elysia` from 1.4.28 to 1.4.30
- [Release notes](https://github.com/elysiajs/elysia/releases)
- [Changelog](https://github.com/elysiajs/elysia/blob/main/CHANGELOG.md)
- [Commits](elysiajs/elysia@1.4.28...1.4.30)

Updates `fastify` from 5.8.5 to 5.12.5
- [Release notes](https://github.com/fastify/fastify/releases)
- [Commits](fastify/fastify@v5.8.5...v5.12.5)

Updates `@hapi/hapi` from 21.4.9 to 21.4.10
- [Release notes](https://github.com/hapijs/hapi/releases)
- [Commits](hapijs/hapi@v21.4.9...v21.4.10)

Updates `hono` from 4.12.25 to 4.13.13
- [Release notes](https://github.com/honojs/hono/releases)
- [Commits](honojs/hono@v4.12.25...v4.13.13)

Updates `@opentelemetry/sdk-trace-base` from 2.7.1 to 2.12.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-js/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-js/blob/v2.12.0/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-js@v2.7.1...v2.12.0)

Updates `esbuild` from 0.27.7 to 0.28.2
- [Release notes](https://github.com/evanw/esbuild/releases)
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md)
- [Commits](evanw/esbuild@v0.27.7...v0.28.2)

Updates `miniflare` from 4.20260722.0 to 4.20260730.0
- [Release notes](https://github.com/cloudflare/workers-sdk/releases)
- [Changelog](https://github.com/cloudflare/workers-sdk/blob/main/packages/miniflare/CHANGELOG.md)
- [Commits](https://github.com/cloudflare/workers-sdk/commits/miniflare@4.20260730.0/packages/miniflare)

Updates `playwright` from 1.62.1 to 1.64.0
- [Release notes](https://github.com/microsoft/playwright/releases)
- [Commits](microsoft/playwright@v1.62.1...v1.64.0)

Updates `tsx` from 4.22.4 to 4.23.15
- [Release notes](https://github.com/privatenumber/tsx/releases)
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs)
- [Commits](privatenumber/tsx@v4.22.4...v4.23.15)

Updates `webpack` from 5.111.0 to 5.111.1
- [Release notes](https://github.com/webpack/webpack/releases)
- [Changelog](https://github.com/webpack/webpack/blob/main/CHANGELOG.md)
- [Commits](webpack/webpack@v5.111.0...v5.111.1)

Updates `nuxt` from 4.4.8 to 4.6.0
- [Release notes](https://github.com/nuxt/nuxt/releases)
- [Commits](https://github.com/nuxt/nuxt/commits/v4.6.0/packages/nuxt)

Updates `svelte` from 5.56.3 to 5.57.2
- [Release notes](https://github.com/sveltejs/svelte/releases)
- [Changelog](https://github.com/sveltejs/svelte/blob/main/packages/svelte/CHANGELOG.md)
- [Commits](https://github.com/sveltejs/svelte/commits/svelte@5.57.2/packages/svelte)

Updates `@sveltejs/kit` from 2.67.0 to 2.70.3
- [Release notes](https://github.com/sveltejs/kit/releases)
- [Changelog](https://github.com/sveltejs/kit/blob/main/packages/kit/CHANGELOG.md)
- [Commits](https://github.com/sveltejs/kit/commits/@sveltejs/kit@2.70.3/packages/kit)

Updates `@sveltejs/vite-plugin-svelte` from 7.1.2 to 7.3.1
- [Release notes](https://github.com/sveltejs/vite-plugin-svelte/releases)
- [Changelog](https://github.com/sveltejs/vite-plugin-svelte/blob/main/packages/vite-plugin-svelte/CHANGELOG.md)
- [Commits](https://github.com/sveltejs/vite-plugin-svelte/commits/@sveltejs/vite-plugin-svelte@7.3.1/packages/vite-plugin-svelte)

Updates `vite` from 8.0.14 to 8.3.4
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v8.3.4/packages/vite)

---
updated-dependencies:
- dependency-name: "@biomejs/biome"
  dependency-version: 2.4.16
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: "@microsoft/api-extractor"
  dependency-version: 7.59.4
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@types/node"
  dependency-version: 22.20.5
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: fast-check
  dependency-version: 4.10.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: rollup
  dependency-version: 4.64.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: turbo
  dependency-version: 2.11.7
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@bugsee/bugsee-cli"
  dependency-version: 0.8.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: ajv
  dependency-version: 8.20.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: elysia
  dependency-version: 1.4.30
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: fastify
  dependency-version: 5.12.5
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@hapi/hapi"
  dependency-version: 21.4.10
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: hono
  dependency-version: 4.13.13
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@opentelemetry/sdk-trace-base"
  dependency-version: 2.12.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: esbuild
  dependency-version: 0.28.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: miniflare
  dependency-version: 4.20260730.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: playwright
  dependency-version: 1.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: tsx
  dependency-version: 4.23.15
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: webpack
  dependency-version: 5.111.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: nuxt
  dependency-version: 4.6.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: svelte
  dependency-version: 5.57.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@sveltejs/kit"
  dependency-version: 2.70.3
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: "@sveltejs/vite-plugin-svelte"
  dependency-version: 7.3.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: vite
  dependency-version: 8.3.4
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 11, 2026
@dependabot @github

dependabot Bot commented on behalf of github Oct 11, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are no longer being updated by Dependabot, so this is no longer needed.

@krassx

krassx commented Oct 11, 2026

Copy link
Copy Markdown
Contributor

Closing so Dependabot rebuilds the group without @bugsee/bugsee-cli: the bundler plugins spawn that binary and rely on its flag contract (0.x minors are breaking), so 0.7.11 -> 0.8.1 is a deliberate bump to test against the real CLI. It is now ignored in dependabot.yml; the other updates in this group are intended to be taken.

@krassx krassx closed this Oct 11, 2026
@dependabot @github

dependabot Bot commented on behalf of github Oct 11, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/minor-and-patch-fd96ed6a59 branch October 11, 2026 18:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant