Skip to content

chore(deps-dev): bump the development-dependencies group across 1 directory with 5 updates#67

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/development-dependencies-17ff9c9938
Closed

chore(deps-dev): bump the development-dependencies group across 1 directory with 5 updates#67
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/development-dependencies-17ff9c9938

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 24, 2026

Copy link
Copy Markdown
Contributor

Bumps the development-dependencies group with 5 updates in the / directory:

Package From To
@ast-grep/cli 0.44.1 0.45.0
dependency-cruiser 17.4.3 18.1.0
js-yaml 4.3.0 5.2.2
typescript 6.0.3 7.0.2
@types/node 25.9.5 26.1.1

Updates @ast-grep/cli from 0.44.1 to 0.45.0

Release notes

Sourced from @​ast-grep/cli's releases.

0.45.0

Changelog

Sourced from @​ast-grep/cli's changelog.

0.45.0

Commits

Updates dependency-cruiser from 17.4.3 to 18.1.0

Release notes

Sourced from dependency-cruiser's releases.

v18.1.0

✨ new functionality

  • 65c432cc feat: adds environment inconsistency checks (#1070) dependency-cruiser now also warns at runtime if it detects typescript is needed, but (a usable version of the) typescript compiler isn't present (+ the same for babel and swc). It already did so on --init. Thanks @​kbarendrecht for the suggestion!
  • 6bb22b6f feat(report/error-html): makes the table heads sticky

TypeScript 7 support: typescript@7.1.0 is expected to ship with a public API - so that's the first version in the TypeScript 7 (formerly tsgo) version range dependency-cruiser will be able to support.

👷 maintenance

  • f04f2fad build(npm): updates external dependencies

v18.0.0

🚨 breaking changes

  • 40f42e96 chore!: drops support for nodejs 20 and 25 BREAKING (#1060)

This is because we follow the Node.js release cycle who dropped support for version 20 and 25 (a while ago already).

🐛 fixes

  • a25fe7f7 fix(graph-utl): makes the summary more deterministic (#1066) - thanks @​Sebastian-G for raising the issue and providing the first feedback!

👷 maintenance

  • 92d6a1f9/ ee3dc3a9/ c9974443 build(npm): updates external dependencies
  • 0d8becbe refactor(config-utl): only imports json5 when it's used (#1062)
  • 793bd4d4 chore(ci): updates known violations
  • 41911765 chore: updates copilot instructions

v18.0.0-beta-2

🐛 fixes

  • 15e84477/ 878511d3 fix(graph-utl): makes the summary more deterministic (thanks to @​Sebastian-G for raising the well-documented issue!)

👷 maintenacne

  • ee3dc3a9/ 92d6a1f9 build(npm): updates external dependencies and refreshes package lock
  • 0d8becbe refactor(config-utl): only imports json5 when it's used (#1062)
  • 793bd4d4 chore(ci): updates known violations
  • 41911765 chore: updates copilot instructions
  • 40f42e96 chore!: drops support for nodejs 20 and 25 BREAKING (#1060)

v18.0.0-beta-1

👷 maintenance

  • ecb63545 refactor(resolve)!: replaces tsconfig-paths-webpack-plugin with enhanced-resolve's own tsconfig-paths feature SLIGHTLY BREAKING (#1061)
  • 41911765 chore: updates copilot instructions
  • 92d6a1f9 build(npm): updates external dependencies

... (truncated)

Commits
  • 26dffc0 18.1.0
  • f04f2fa build(npm): updates external dependencies
  • 65c432c feat: adds environment inconsistency checks (starting with typescript and bab...
  • 6bb22b6 feat(report/error-html): makes the table heads sticky
  • d139a8e 18.0.0
  • c997444 build(npm): updates external dependencies
  • a25fe7f fix(graph-utl): makes the summary more deterministic (#1066)
  • ee3dc3a build(npm): updates external dependencies and refreshes package lock
  • 7106ce6 revert: "refactor(resolve)!: replaces tsconfig-paths-webpack-plugin with enha...
  • 0d8becb refactor(config-utl): only imports json5 when it's used (#1062)
  • Additional commits viewable in compare view

Updates js-yaml from 4.3.0 to 5.2.2

Changelog

Sourced from js-yaml's changelog.

[5.2.2] - 2026-07-24

Fixed

  • Quote flow scalars where a colon precedes a flow indicator, #773.

Security

  • Avoid exponential parsing time for nested flow sequence pairs.

[5.2.1] - 2026-07-02

Fixed

  • Add Map support to !!omap (should work when realMapTag used)

Security

  • Remove quadratic complexity from !!omap addItem. Regression from v5 (usually not critical, because YAML11_SCHEMA is not default anymore).
Commits

Updates typescript from 6.0.3 to 7.0.2

Commits
Maintainer changes

This version was pushed to npm by microsoft1es, a new releaser for typescript since your current version.


Updates @types/node from 25.9.5 to 26.1.1

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jul 24, 2026
@dependabot
dependabot Bot requested a review from heimanba as a code owner July 24, 2026 10:33
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jul 24, 2026
…ectory with 5 updates

Bumps the development-dependencies group with 5 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@ast-grep/cli](https://github.com/ast-grep/ast-grep) | `0.44.1` | `0.45.0` |
| [dependency-cruiser](https://github.com/sverweij/dependency-cruiser) | `17.4.3` | `18.1.0` |
| [js-yaml](https://github.com/nodeca/js-yaml) | `4.3.0` | `5.2.2` |
| [typescript](https://github.com/microsoft/TypeScript) | `6.0.3` | `7.0.2` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.9.5` | `26.1.1` |



Updates `@ast-grep/cli` from 0.44.1 to 0.45.0
- [Release notes](https://github.com/ast-grep/ast-grep/releases)
- [Changelog](https://github.com/ast-grep/ast-grep/blob/main/CHANGELOG.md)
- [Commits](ast-grep/ast-grep@0.44.1...0.45.0)

Updates `dependency-cruiser` from 17.4.3 to 18.1.0
- [Release notes](https://github.com/sverweij/dependency-cruiser/releases)
- [Changelog](https://github.com/sverweij/dependency-cruiser/blob/main/CHANGELOG.md)
- [Commits](sverweij/dependency-cruiser@v17.4.3...v18.1.0)

Updates `js-yaml` from 4.3.0 to 5.2.2
- [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md)
- [Commits](nodeca/js-yaml@4.3.0...5.2.2)

Updates `typescript` from 6.0.3 to 7.0.2
- [Release notes](https://github.com/microsoft/TypeScript/releases)
- [Commits](https://github.com/microsoft/TypeScript/commits)

Updates `@types/node` from 25.9.5 to 26.1.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

---
updated-dependencies:
- dependency-name: "@ast-grep/cli"
  dependency-version: 0.45.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: development-dependencies
- dependency-name: "@types/node"
  dependency-version: 26.1.1
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: development-dependencies
- dependency-name: dependency-cruiser
  dependency-version: 18.1.0
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: development-dependencies
- dependency-name: js-yaml
  dependency-version: 5.2.2
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: development-dependencies
- dependency-name: typescript
  dependency-version: 7.0.2
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: development-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/development-dependencies-17ff9c9938 branch from 3dfcb93 to b1338e0 Compare July 24, 2026 14:04
@heimanba

Copy link
Copy Markdown
Contributor

Closing for now: this grouped dev-dependency update combines multiple major upgrades and currently fails the verification matrix. These should be handled in smaller, targeted PRs if we want to pursue them.

@heimanba heimanba closed this Jul 24, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jul 24, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@heimanba
heimanba deleted the dependabot/npm_and_yarn/development-dependencies-17ff9c9938 branch July 24, 2026 14:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant