Skip to content

build(deps-dev): bump all - #919

Merged
renovate[bot] merged 1 commit into
mainfrom
renovate/all
Sep 14, 2026
Merged

renovate[bot] merged 1 commit into
mainfrom
renovate/all

Conversation

@renovate

@renovate renovate Bot commented Sep 14, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Adoption Passing Confidence Type Update Pending
@biomejs/biome (source) 2.5.11 → 2.5.12 age adoption passing confidence devDependencies patch 2.5.13
dprint 0.57.0 → 0.57.4 age adoption passing confidence devDependencies patch
node (source) 24.20.0 → 24.21.0 age adoption passing confidence minor
node (source) 24.20.0 → 24.21.0 age adoption passing confidence engines minor
pnpm (source) 12.1.0 → 12.3.4 age adoption passing confidence packageManager minor 12.4.1 (+1)
pnpm (source) 12.1.0 → 12.3.4 age adoption passing confidence engines minor 12.4.1 (+1)

Release Notes

biomejs/biome (@​biomejs/biome)

v2.5.12

Compare Source

Patch Changes
  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed Astro attribute expressions rejecting TypeScript and JSX syntax that is accepted in text expressions.

    <Component icon={<Icon />} count={total as number} onSelect={(e: Event) => e} />
  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed Astro attribute names being split on : and . inside an expression, such as {x && <button x-on:keyup.enter={go} client:load.foo />}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed a bare > in the children of an Astro expression being treated as markup, such as {x && <div>a > b</div>}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed HTML comments inside an Astro expression failing to parse. They are now read as trivia, wherever they appear among the children.

    {x && <div><!-- first -->text<!-- last --></div>}
    {cond && <a></a><!-- c --><b></b>}
  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed is:raw children inside an Astro expression being read as JSX, such as {x && <div is:raw>{not js} < & text</div>}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed an apostrophe or quote in the text of a JSX element inside an Astro expression ending the expression early, such as {items.map((i) => <li>it's {i}</li>)}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed the children of a <script> or <style> inside an Astro expression being read as JSX. Their contents are text, so braces and comparisons no longer have to be escaped.

    {cond && <style>a { color: red }</style>}
    {cond && <script>let x = {a: 1};</script>}
  • #​11440 b88f1ea Thanks @​Princesseuh! - Added support for template literal attribute values inside an Astro expression, such as {x && <C data-x=`t${x}` />}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed unquoted attribute values being rejected inside an Astro expression, such as {x && <a class=foo maxlength=255 href=/about>go</a>}.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed a template literal nested inside ${} breaking the rest of an Astro file, such as const href = `/blog${page === 0 ? '' : `/${page + 1}`}`;.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed a quote inside a regex character class breaking the rest of an Astro file, such as const unsafe = /[/"]/;.

  • #​11508 54f3a2e Thanks @​dyc3! - Added the nursery rule useFlatMathMinMax. Because Math.min() and Math.max() accept any number of arguments, the rule reports unnecessary nested calls to the same method:

    Math.max(Math.max(a, b), c);

    The fix flattens this expression to Math.max(a, b, c).

  • #​11585 c5c8315 Thanks @​Netail! - Fixed #​11475: noUnresolvedImports no longer reports Bun runtime built-in modules (bun, bun:bundle, bun:ffi, bun:jsc, bun:sqlite, bun:test).

  • #​11368 52a57b3 Thanks @​Austin1serb! - Fixed #​6830: Biome now reports a diagnostic for excessively deep syntax instead of overflowing the native stack while releasing the parsed tree.

  • #​11596 1fc42ed Thanks @​dyc3! - Added the nursery rule noThisOutsideOfClass. The rule reports this outside class members and TypeScript functions with an explicit this parameter.

    function Person(name) {
        this.name = name;
    }
  • #​11555 2516335 Thanks @​dyc3! - Fixed #​11529, where noFloatingPromises missed unhandled Promise chains when the imported function's module belonged to an import cycle. Cyclic modules now preserve types for exports that do not participate in recursive type dependencies.

  • #​11518 0fee70c Thanks @​HarperZ9! - Fixed #​11500: the formatter now prints the declare modifier before accessibility modifiers on class properties. private declare readonly name: string is now formatted as declare private readonly name: string, matching Prettier and TypeScript's canonical modifier order.

  • #​11580 1277af2 Thanks @​ematipico! - Fixed #​5091: Biome no longer moves comments next to the < of a generic, which causes invalid TypeScript syntax:

    - Generic<// a comment
    + Generic<
    +   // a comment
  • #​11577 42995d2 Thanks @​ematipico! - Fixed #​4592. Biome no longer crashes while parsing malformed delete expressions.

  • #​11590 67963b4 Thanks @​ematipico! - Fixed #​6427 so Grit plugins can use function = ... as a node argument.

  • #​11600 a689cb5 Thanks @​ematipico! - Fixed #​6644: noUnusedVariables now recognizes all interface declarations in a TypeScript declaration-merging group when the interface is referenced.

    The following snippet no longer triggers the rule.

    interface Things {
        foo: string;
    }
    
    interface Things {
        bar: string;
    }
    
    export type Key = keyof Things;
    
    interface Things {
        baz: string;
    }
  • #​11591 d4a0716 Thanks @​ematipico! - Fixed #​6615. noDuplicateProperties no longer reports declarations nested in block at-rules as duplicates of declarations in their parent block.

  • #​11492 f2a07aa Thanks @​santichausis! - Fixed #​11454: noMisplacedAssertion now recognises @fast-check/vitest's test.prop(...) (and .concurrent.prop, .skip.prop, etc.) as a test function, the same way it already recognises test.each. The JS formatter picks up the same recognition, so a curried test.prop(...)(...) call is now formatted with the regular breakable argument layout used for test.each/test.for, instead of the single-line-hugging layout used for plain it/test calls.

    For example, Biome no longer reports the assertion below as misplaced:

    import { fc, test } from "@fast-check/vitest";
    
    test.prop([fc.string()])("round-trips", (s) => {
      expect(s).toBe(s);
    });
  • #​11589 65742b3 Thanks @​ematipico! - Fixed #​4928: noUnusedVariables no longer reports a value declaration as unused when its merged namespace is referenced.

  • #​11559 472dbc2 Thanks @​levrik! - Fixed a false positive in noVueDuplicateKeys where a <script setup> variable initialized from props was reported as a duplicate of the prop it derives from. Biome now exempts any variable whose initializer references props, instead of only recognizing defineProps() and toRefs(props).

    For example, Biome no longer reports foo below as a duplicate key:

    <script setup>
    import { toRef } from 'vue';
    const props = defineProps(['foo']);
    const foo = toRef(props, 'foo');
    </script>
  • #​11594 6586ceb Thanks @​ematipico! - Fixed #​6640. Biome no longer crashes when linting malformed for...of statements.

  • #​11571 85b197d Thanks @​ematipico! - Fixed #​10838: useSortedAttributes no longer corrupts JSX attributes when nested JSX elements also require sorting.

  • #​11533 97e76c0 Thanks @​ematipico! - Fixed #​11520, where the Biome scanner would start analysing dependencies multiple times, leading to long and unresponsive sessions.

  • #​11564 18a0e1f Thanks @​Netail! - Fixed the diagnostic range of noInferrableTypes so it now highlights only the type instead of including the leading : colon, spaces and comments.

  • #​11540 124fdaa Thanks @​ematipico! - Fixed #11537: noShorthandPropertyOverrides now compares declarations only within the same block. The rule no longer reports @supports feature queries and correctly checks nested, @keyframes, and @page blocks.

  • #​11532 7ceb0ee Thanks @​dyc3! - Fixed #​11528: noFloatingPromises no longer reports statement-level await expressions that handle Promise values, including overloaded calls returning Promise aliases. Awaited values that resolve to arrays of Promises remain reported because their element Promises are not handled by await.

  • #​11474 3c6412e Thanks @​dyc3! - Fixed #​10241. Biome no longer reports unsupported text expression diagnostics for double-curly text in vanilla HTML, and the formatter preserves adjacent curly-brace text.

  • #​11593 6c7fd27 Thanks @​dyc3! - Added the nursery rule noVueDeprecatedScopedSlots. It reports deprecated $scopedSlots references in Vue templates and component objects, and offers an unsafe replacement with $slots. For example, Biome now reports this.$scopedSlots.default inside a Vue component.

  • #​11440 b88f1ea Thanks @​Princesseuh! - Fixed the formatter crashing on an Astro or Svelte expression spanning several lines in a file with CRLF line endings, such as <p>{a +\r\n b}</p>.

  • #​11581 f4e5ebb Thanks @​dyc3! - Added the nursery rule useModernMathApis. The rule reports legacy mathematical patterns that have direct modern Math equivalents.

    Math.sqrt(a * a + b * b);
  • #​11597 a20f44a Thanks @​Netail! - Added the nursery rule noBunModules, which forbids the use of Bun builtin modules (e.g. bun:sqlite, bun:ffi).

  • #​11545 7d54688 Thanks @​dyc3! - Fixed #​11542: Biome now reports HTML comments between Svelte tag attributes as parse errors.

  • #​11582 b6611dd Thanks @​ematipico! - Fixed #​3862. Biome now parses legacy Internet Explorer filter and -ms-filter values such as progid:DXImageTransform... and alpha(opacity=40).

  • #​11575 65da251 Thanks @​dyc3! - Improved the Tailwind parser's ability to recover from parsing failures. Whitespace now always allows the parser to recover and start parsing a new class.

  • #​11576 0f78499 Thanks @​ematipico! - Fixed #​3515 and #​10395, where Biome could corrupt Unicode characters while writing source received through standard input to standard output. Characters such as ⚠ and ✔ are now preserved.

  • #​11539 0fca643 Thanks @​ematipico! - Fixed #​11512, where style/noDescendingSpecificity missed lower-specificity selectors after a later higher-specificity selector with the same tail selector.

  • #​11544 040f867 Thanks @​dyc3! - Fixed #​11541: formatting a Svelte render tag followed by an HTML comment no longer duplicates the comment.

     <div>
       {@render children?.()}
       <!-- comment -->
    -  <!-- comment -->
     </div>
  • #​11565 ee69e0e Thanks @​ematipico! - Fixed #​11525. Now the configuration schema correctly provides auto-completion for linter domains.

  • #​11583 b19390c Thanks @​dyc3! - Fixed #​11352: useExplicitLengthCheck no longer reports length-like properties used as value-producing || fallbacks or optional chains, and it no longer offers fixes for value-producing && checks or unsafe negations.

  • #​11562 753e955 Thanks @​ematipico! - Fixed an issue where the Biome Language Server would start with logging level set to debug. This would cause logs to grow exponentially in long sessions.

  • #​11217 7d3ee9c Thanks @​dyc3! - Fixed handling of biome-ignore format suppression comments on TypeScript declared class properties with string literal names.

    class A {
    	declare /* biome-ignore format: exercise suppression checking */ 'a-b': 0;
    }
  • #​11497 f5d7896 Thanks @​dyc3! - Added the noInvalidFileInputAccept nursery rule. The rule reports invalid literal accept values on file inputs in JSX and HTML, and normalizes common mistakes.

    <input type="file" accept="image/jpg" />
  • #​11345 ac58958 Thanks @​jakeleventhal! - Improved type inference performance by avoiding resolution of unused members in object arguments.

  • #​11554 2d55931 Thanks @​Netail! - Added the new nursery rule useReactNamingConvention, which enforces naming conventions for React values assigned from createContext, useId, and useRef. A value from createContext must be a PascalCase component name ending with Context, a value from useId must be named id or end with Id, and a value from useRef must be named ref or end with Ref.

  • #​11491 1d6210b Thanks @​dyc3! - Added the nursery rule noUnmodifiedLoopCondition, which reports variables in loop conditions that are never modified in the loop.

    let node = getNode();
    while (node) {
        process(node);
    }
dprint/dprint (dprint)

v0.57.4

Compare Source

Changes

  • fix: include wasmtime's precompile compatibility hash in the plugin cache key (#​1245)

Install

Run dprint upgrade or see https://dprint.dev/install/

Verification

These artifacts have build provenance attestations.
Verify a download with the GitHub CLI:

gh attestation verify dprint-x86_64-unknown-linux-gnu.zip --repo dprint/dprint

Checksums

Artifact SHA-256 Checksum
dprint-x86_64-apple-darwin.zip 8978bd5d9a564ec19472545fb853da9ec468e024e75d39c3a9df9fd5750ecdfd
dprint-aarch64-apple-darwin.zip f9e752812791f258e89ff88a7affd05c793b0db3d929718651eae7df5f19eb2e
dprint-x86_64-pc-windows-msvc.zip 1038af32fade7a79f9c3a690d9546bb17be13dd7b4568a3684692fdcb0a52a1d
dprint-x86_64-pc-windows-msvc-installer.exe a6f89e60c7c63b3cf29fbb8c8ab8b4f9821b94bcbac6f76f35ef5b47932e2d51
dprint-aarch64-pc-windows-msvc.zip 72fb7d97861533b5a611ffd176229bdb8673edd24203bd967d1cece803d6b31d
dprint-x86_64-unknown-linux-gnu.zip 1d26357d8bc66898d4ecc7dafca3d2971cfe222ba487228bd2ce5c3b3a309c33
dprint-x86_64-unknown-linux-musl.zip 03f3e8002f9d952bf53325fc8853686d2e8808b9e5b652b215600ba147e73a5c
dprint-aarch64-unknown-linux-gnu.zip ff961314e7c1ca6a02eaada0e37920a37c668fbc09fd85838c2aced41a4bc0e4
dprint-aarch64-unknown-linux-musl.zip e1b713806f7f7b94072ba2b069aa19ac28f475dbb1fbc5b672d3030a2ab001ee
dprint-riscv64gc-unknown-linux-gnu.zip 04a90c94c0b22d165088ff680644225910125b99731348a82fd7bf2926b9edee
dprint-loongarch64-unknown-linux-gnu.zip e69a55aa4b242a1870b2a1e39ba03239950ea956a4fab886dc6580c41c29644a
dprint-loongarch64-unknown-linux-musl.zip 2ff5a32f8d2f641cb252636c79972e59db0a7a40f11699cbbddd76cbb063a31c
dprint-powerpc64le-unknown-linux-gnu.zip 5232a896fb1b957c9cbf589d4581077f1ea8d22cdcb20284d399a37b0d26ca77
dprint-powerpc64le-unknown-linux-musl.zip a7e1cba0b951bce0355e18f9045fe461244b6c022e5bd2a2061616aa14530880
dprint-aarch64-linux-android.zip 5e23986c4fc715bc12d80fc4580f786def8c1a2a770aa1615dd06991acd83456
dprint-x86_64-linux-android.zip 4a6a286a21970cb1db63840d0e2b04fd2d6bc793614d5b0069384fa266a0cef6

v0.57.3

Compare Source

Changes

  • fix: only rewrite the incremental file when new file hashes were seen (#​1244)

Install

Run dprint upgrade or see https://dprint.dev/install/

Verification

These artifacts have build provenance attestations.
Verify a download with the GitHub CLI:

gh attestation verify dprint-x86_64-unknown-linux-gnu.zip --repo dprint/dprint

Checksums

Artifact SHA-256 Checksum
dprint-x86_64-apple-darwin.zip a17ac9a99c8d27800599e7362887a75e36a46204eb874bf1819c74aad473427c
dprint-aarch64-apple-darwin.zip 72bf6537685d3d27fc572bbb77ce07e43f481de7c1422b5fcc2fe9484894dd53
dprint-x86_64-pc-windows-msvc.zip 29b8e320968776917f5ffbd4bbbc8c48b266b0b74d868672ef30d51d773000c0
dprint-x86_64-pc-windows-msvc-installer.exe fa9c589549d79c7e152a1fceaf07eef00b8d9185c0081b249a82345c33327474
dprint-aarch64-pc-windows-msvc.zip 909e53d7615f87b9ce7176f9fcba522ae3a6960d595e490a46e1e093d478f74f
dprint-x86_64-unknown-linux-gnu.zip 473e15c20375762d109113b914d4f9daeaf38547f43553053a641726fb2dc29b
dprint-x86_64-unknown-linux-musl.zip e361513ede569f5da8164d036146578b0c50e232452ebe0c2c00f38ffc6ba4f1
dprint-aarch64-unknown-linux-gnu.zip 514d3bcaa2e13b61f2c66f877924d223409e0f0ab992c937bc9921bbd57f111b
dprint-aarch64-unknown-linux-musl.zip f077da91d84cf0c307431fb95ed4eeeeaa38cde039a0251097991920c1f55d63
dprint-riscv64gc-unknown-linux-gnu.zip 29fd87af3a0a1ea696152f0f988ed7877d2c90799f26b1de79fe60387673e1d8
dprint-loongarch64-unknown-linux-gnu.zip f881bba8ded6aa646f7ee43870046b49428dc78b1997364f924fe82b2931a591
dprint-loongarch64-unknown-linux-musl.zip e364807cfb153371769842598d4a006ead959e440ecca400e149d19f27d9901b
dprint-powerpc64le-unknown-linux-gnu.zip 469c5f67956d0be79512a3d31f54c7801795a193e779c6473915d624d947e912
dprint-powerpc64le-unknown-linux-musl.zip e028d95567c66159772cdd65f60fc70f2d335065f343d7b21c9f32f4e326a155
dprint-aarch64-linux-android.zip 8d85c408a27e1f639c2156ffcd8c7641f9445eb1355dbc3a2151c216d7437b76
dprint-x86_64-linux-android.zip a5af2819d48f7925915eda67af276e0cd12b59723a3cd3029135a698a5b24b65

v0.57.2

Compare Source

Changes

  • fix: output paths relative to the cwd in dprint incremental-state (#​1243)

Install

Run dprint upgrade or see https://dprint.dev/install/

Verification

These artifacts have build provenance attestations.
Verify a download with the GitHub CLI:

gh attestation verify dprint-x86_64-unknown-linux-gnu.zip --repo dprint/dprint

Checksums

Artifact SHA-256 Checksum
dprint-x86_64-apple-darwin.zip e6ecff3eb8246b62f35123905bbab077f16ec8f73516ab92aa91727ab6812a17
dprint-aarch64-apple-darwin.zip e0df7c5024a65ba865b89d357263d1ffea9cf380120986e301655e5037673a6f
dprint-x86_64-pc-windows-msvc.zip 6aa57ba5f21a6247f2a3144c2e16ee7dd9aa1f805850d65f8a554cb38b575584
dprint-x86_64-pc-windows-msvc-installer.exe e7562930c725ccb47e70a34b07308c494e153df15304cc150b773562f1741666
dprint-aarch64-pc-windows-msvc.zip bdda9b5f24deaf3782791e30da975fca16086c4c6a4f3b4c73a8e97bc816822e
dprint-x86_64-unknown-linux-gnu.zip 27f2f0ef079307068ae49a12bbfe09a4c29d278a9316d2b222cc0969a57cea03
dprint-x86_64-unknown-linux-musl.zip dd0fc5214329c95e552d7bfbb86d4a608e64f9482c6ec33dd182f4c839ee11cd
dprint-aarch64-unknown-linux-gnu.zip ae669413d1996ed8d18e1bc1dfd2b7557064c20820f5c7bcfb9f5e54e47a9b57
dprint-aarch64-unknown-linux-musl.zip 24b6f3cf8cc7a116681907843b777a1dc56cd75ffa98727e66a94b2d2f05ad89
dprint-riscv64gc-unknown-linux-gnu.zip 291d4ad18ee0d5bb98f7fdd1fecbe0b6f0f5e3609cd1dd0be3dc52518b2a7d50
dprint-loongarch64-unknown-linux-gnu.zip 2da200b8c59763769a1b996de1f71821e79eb70be680b2c70c313febad26151e
dprint-loongarch64-unknown-linux-musl.zip e72c698a33924b42eb9926b99d30378a95088ee4f4dcb026c867d53590f3c4c5
dprint-powerpc64le-unknown-linux-gnu.zip 79ff42f3978b6606bfb64a7d869a9d1923f0b95abec1419848bb724e484295b0
dprint-powerpc64le-unknown-linux-musl.zip 57562ea5e06d07a04a85ecb90e5827db54e551f8bd0ebc52b1fb44f7e851c027
dprint-aarch64-linux-android.zip bf2429f0e2d385856f61c84c246d3d23d79c7a842cb3a7331b5fbbc51287479d
dprint-x86_64-linux-android.zip 6f1779bff1d8f96e2359cfd409bb7fb3f148d402b36776c7574a4c3869eb7000

v0.57.1

Compare Source

Changes

  • fix: scan hidden directories with dprint init (#​1240)
  • fix: recommend --minimum-dependency-age=0 when an older version is selected (#​1238)
  • fix: accept --minimum-release-age as an alias of --minimum-dependency-age (#​1239)
  • ci: generate GitHub artifact attestations (#​1067)

Install

Run dprint upgrade or see https://dprint.dev/install/

Verification

These artifacts have build provenance attestations.
Verify a download with the GitHub CLI:

gh attestation verify dprint-x86_64-unknown-linux-gnu.zip --repo dprint/dprint

Checksums

Artifact SHA-256 Checksum
dprint-x86_64-apple-darwin.zip f1529d394126ebf0104af12290345b662196f8b9604d2d578cef91a8b6057f9d
dprint-aarch64-apple-darwin.zip 3113fb58a126df96c95653638f068fe430f342623dfdf08e3fa32d4e704194ea
dprint-x86_64-pc-windows-msvc.zip 28aa22ea2b009a3d49f9c570bc2a1697af8dff9117cd1cbb7c39deab9f5d5269
dprint-x86_64-pc-windows-msvc-installer.exe 8e10f452e73abed2d25769fc23ec0d17a45cf84931cf04a6c2afd77361bb945d
dprint-aarch64-pc-windows-msvc.zip 08b93837ea90488dbb23ab115fffd3699427b8917013b3b33bd7aedda5b07ca5
dprint-x86_64-unknown-linux-gnu.zip 4117443cc5fade617dd5f4850cc2fa6b2902136052ef313ee20947036c3554cc
dprint-x86_64-unknown-linux-musl.zip d956144fa8d873dc43c37d1811b3f8c42701f74bb0be7c25c543b189ab53d6c0
dprint-aarch64-unknown-linux-gnu.zip a73695f6407c6c36adef5971053f81ccef13b0a04b6b1da98312ae0ee5332edd
dprint-aarch64-unknown-linux-musl.zip 371b63109cbd7b34e179fc3af0815f65a5d9f3a560d2a245a78ef99ec71b3f9e
dprint-riscv64gc-unknown-linux-gnu.zip 1dcf69d277c044e1e52afdb23fa0fb5152678955b41952721d801d3407d3ddaa
dprint-loongarch64-unknown-linux-gnu.zip 147ca90b1348036344c9e4e45f0985acb37c18f36a9d3a1f37d4f553ebb80d58
dprint-loongarch64-unknown-linux-musl.zip 5f61c6898dfb3db8e54f9405727d168eb512a403d941ddd5b725c328bb8d5bc6
dprint-powerpc64le-unknown-linux-gnu.zip a7d21498b38598c9898e61b1dc8a37cdaab15499c58390bbf9100da1864342f7
dprint-powerpc64le-unknown-linux-musl.zip b9f1d4f89b51f3d291d2be61132f81f451d06e9a3e33aab2510b69564a8d3648
dprint-aarch64-linux-android.zip bc8b058ab2d4df47b0e04ddbae47d522569ba744372cd2e399df30cf20783fc1
dprint-x86_64-linux-android.zip ccdf05807e50256dd1ffbb13a8ec101042e654680e2713ff58fe1b2b6855c0c0
nodejs/node (node)

v24.21.0: 2026-09-08, Version 24.21.0 'Krypton' (LTS), @​aduh95

Compare Source

Notable Changes
  • [71106e1f17] - crypto: update root certificates to NSS 3.126 (Node.js GitHub Bot) #​65495
  • [afca0a912d] - (SEMVER-MINOR) crypto: support loading private keys through STORE loaders (Filip Skokan) #​63949
  • [6274fccbd9] - deps: update OpenSSL to 3.5.8 (Node.js GitHub Bot) #​65542
  • [53cba013c7] - deps: update Undici to 7.29.1 (Node.js GitHub Bot) #​65789
  • [0529772798] - (SEMVER-MINOR) lib,src: improve histogram implementation (James M Snell) #​65024
  • [41c7062b81] - (SEMVER-MINOR) net: improve performance of net.BlockList (James M Snell) #​64974
  • [5197b5a3c5] - (SEMVER-MINOR) perf_hooks: add statistical hypothesis testing to histogram (James M Snell) #​65416
  • [35c635b032] - (SEMVER-MINOR) util: add non-throwing MIMEType.parse (James M Snell) #​64965
Commits

❗ Important

✂ PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • Between 12:00 AM and 03:59 AM, only on Monday (* 0-3 * * 1)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
@coderabbitai

coderabbitai Bot commented Sep 14, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Organization UI

Review profile: CHILL

Plan: Advanced

Run ID: 354cffdd-19c0-419f-b6de-9b86a8401980

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Comment @coderabbitai help to get the list of available commands.

@socket-security

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updateddprint@​0.57.0 ⏵ 0.57.491 +11007095 +4100
Updated@​biomejs/​biome@​2.5.11 ⏵ 2.5.12100 +1100100 +199 +1100

View full report

@renovate
renovate Bot merged commit e5280dc into main Sep 14, 2026
12 checks passed
@renovate
renovate Bot deleted the renovate/all branch September 14, 2026 04:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants