deps: bump the production-dependencies group across 1 directory with 11 updates - #148
dependabot[bot] wants to merge 1 commit into
Conversation
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
…11 updates Bumps the production-dependencies group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@prisma/adapter-pg](https://github.com/prisma/prisma/tree/HEAD/packages/adapter-pg) | `7.8.0` | `7.10.0` | | [@prisma/client](https://github.com/prisma/prisma/tree/HEAD/packages/client) | `7.8.0` | `7.10.0` | | [@react-pdf/renderer](https://github.com/diegomura/react-pdf/tree/HEAD/packages/renderer) | `4.5.1` | `4.9.0` | | [@sentry/nextjs](https://github.com/getsentry/sentry-javascript) | `10.66.0` | `10.75.0` | | [jose](https://github.com/panva/jose) | `6.2.3` | `6.2.12` | | [marked](https://github.com/markedjs/marked) | `18.0.6` | `18.0.13` | | [next](https://github.com/vercel/next.js) | `16.2.10` | `16.3.5` | | [pg](https://github.com/brianc/node-postgres/tree/HEAD/packages/pg) | `8.22.0` | `8.23.0` | | [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.7` | `19.3.0` | | [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.7` | `19.3.0` | | [zod](https://github.com/colinhacks/zod) | `4.4.3` | `4.6.5` | Updates `@prisma/adapter-pg` from 7.8.0 to 7.10.0 - [Release notes](https://github.com/prisma/prisma/releases) - [Commits](https://github.com/prisma/prisma/commits/7.10.0/packages/adapter-pg) Updates `@prisma/client` from 7.8.0 to 7.10.0 - [Release notes](https://github.com/prisma/prisma/releases) - [Commits](https://github.com/prisma/prisma/commits/7.10.0/packages/client) Updates `@react-pdf/renderer` from 4.5.1 to 4.9.0 - [Release notes](https://github.com/diegomura/react-pdf/releases) - [Changelog](https://github.com/diegomura/react-pdf/blob/master/packages/renderer/CHANGELOG.md) - [Commits](https://github.com/diegomura/react-pdf/commits/@react-pdf/renderer@4.9.0/packages/renderer) Updates `@sentry/nextjs` from 10.66.0 to 10.75.0 - [Release notes](https://github.com/getsentry/sentry-javascript/releases) - [Changelog](https://github.com/getsentry/sentry-javascript/blob/develop/CHANGELOG.md) - [Commits](getsentry/sentry-javascript@10.66.0...10.75.0) Updates `jose` from 6.2.3 to 6.2.12 - [Release notes](https://github.com/panva/jose/releases) - [Changelog](https://github.com/panva/jose/blob/main/CHANGELOG.md) - [Commits](panva/jose@v6.2.3...v6.2.12) Updates `marked` from 18.0.6 to 18.0.13 - [Release notes](https://github.com/markedjs/marked/releases) - [Commits](markedjs/marked@v18.0.6...v18.0.13) Updates `next` from 16.2.10 to 16.3.5 - [Release notes](https://github.com/vercel/next.js/releases) - [Commits](vercel/next.js@v16.2.10...v16.3.5) Updates `pg` from 8.22.0 to 8.23.0 - [Changelog](https://github.com/brianc/node-postgres/blob/master/CHANGELOG.md) - [Commits](https://github.com/brianc/node-postgres/commits/pg@8.23.0/packages/pg) Updates `react` from 19.2.7 to 19.3.0 - [Release notes](https://github.com/react/react/releases) - [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md) - [Commits](https://github.com/react/react/commits/v19.3.0/packages/react) Updates `react-dom` from 19.2.7 to 19.3.0 - [Release notes](https://github.com/react/react/releases) - [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md) - [Commits](https://github.com/react/react/commits/v19.3.0/packages/react-dom) Updates `zod` from 4.4.3 to 4.6.5 - [Release notes](https://github.com/colinhacks/zod/releases) - [Commits](colinhacks/zod@v4.4.3...v4.6.5) --- updated-dependencies: - dependency-name: "@prisma/adapter-pg" dependency-version: 7.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: "@prisma/client" dependency-version: 7.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: "@react-pdf/renderer" dependency-version: 4.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: "@sentry/nextjs" dependency-version: 10.72.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: jose dependency-version: 6.2.10 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: marked dependency-version: 18.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: next dependency-version: 16.3.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: pg dependency-version: 8.23.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: react dependency-version: 19.2.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: react-dom dependency-version: 19.2.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: zod dependency-version: 4.5.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
b693c17 to
f6c5d1a
Compare
ECC Tools / Security EvidenceCommit: Security evidence gate passed (success) No security-sensitive scanner-evidence gap detected. Mode: enforce Scanned 2 changed file(s). No missing scanner-evidence signal was detected. Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / PR Risk TaxonomyCommit: PR taxonomy review recommended (neutral) Detected 2 PR taxonomy bucket(s): Install Manifest Integrity, CI/CD Recommendation. Scanned 2 changed file(s). Roadmap taxonomy buckets: Install Manifest IntegrityInstall manifests, plugin metadata, and shipped skills should stay synchronized with user-facing setup guidance. Signals:
Paths:
CI/CD RecommendationCI, dependency, coverage, and contract signals should be routed into follow-up checks or verification work. Signals:
Paths:
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / Reference Set ReadinessCommit: Reference set readiness gaps detected (neutral) Reference evidence present for 0/7 areas (0%) across 2 changed file(s). This check is based on files changed in this PR. Repository-level readiness is still reported by
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: Organization UI Review profile: CHILL Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
ECC Tools / Hosted Promotion ReadinessCommit: Hosted promotion readiness passed (success) No hosted promotion evidence gaps detected across 2 changed file(s); 0 corpus scenarios had matching evidence. This check compares PR file changes against the evaluator/RAG promotion corpus in No evaluator corpus scenarios matched this PR. Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
Bumps the production-dependencies group with 11 updates in the / directory:
7.8.07.10.07.8.07.10.04.5.14.9.010.66.010.75.06.2.36.2.1218.0.618.0.1316.2.1016.3.58.22.08.23.019.2.719.3.019.2.719.3.04.4.34.6.5Updates
@prisma/adapter-pgfrom 7.8.0 to 7.10.0Release notes
Sourced from @prisma/adapter-pg's releases.
... (truncated)
Commits
3fa65acfix(p2002): correct modelName in nested create unique constraint errors #2959...a180209fix(adapter-pg): map PostgreSQL deadlocks to P2034 (#29717)800f1d1fix(adapter-pg): preserve constraint name for unique violations (23505) (#29587)7ef2104fix(postgres): handle SQLSTATE 23001 for RESTRICT violations (#29554)35003fdchore(adapter-pg): remove duplicate values parameter (#29650)d6d9fc9chore: remove parameterization from sqlcommenter-query-insights (#29518)Updates
@prisma/clientfrom 7.8.0 to 7.10.0Release notes
Sourced from @prisma/client's releases.
... (truncated)
Commits
05c1b88Teach Prisma 7 to prefer versioned config files (#30020)cf2bc1fRename prisma7 package to@prisma/prisma7(#30002)ce5a34cComplete downstream actionable Prisma 7 guidance propagation (#29994)3f13ec6Complete CLI-owned prisma7 distribution identity (#29969)179ba0cfeat(prisma7): add side-by-side CLI wrapper (#29949)3fa65acfix(p2002): correct modelName in nested create unique constraint errors #2959...6b6d9e9chore(deps): update engines to 7.10.0-4.0edf323efd1d98336f3f0a68684b56f689b90...b64e33cchore(deps): update engines to 7.10.0-3.9d90ce2c89d5c95a1148aef15e5561ab6c490...2046f9bfeat(client): expose ModelName to compute function in Result extensions (#29782)f2b3abdchore(deps): update engines to 7.10.0-1.6d040c802892de6d56c7e0061b7a10b3e6a0c...Updates
@react-pdf/rendererfrom 4.5.1 to 4.9.0Release notes
Sourced from @react-pdf/renderer's releases.
... (truncated)
Changelog
Sourced from @react-pdf/renderer's changelog.
... (truncated)
Commits
2c0b6d4chore: release packages (#3530)10d8365feat: add conformance Document prop for PDF/A output (#3529)8c047bdchore: release packages (#3525)1fe630echore: release packages (#3507)ab80c0afeat: shape-outside support for floats (#3514)533340efix(textkit): align line widths with line rects when exclusions are present (...37a7a9frefactor: replace@react-pdf/pdfkitfork with upstream pdfkit (#3509)a568714feat: wrapping text around floating box (#3286)d5adf3dchore: release packages (#3493)ae9a998feat: experimentalPagination page prop — new engine opt-in per document (#3505)Updates
@sentry/nextjsfrom 10.66.0 to 10.75.0Release notes
Sourced from @sentry/nextjs's releases.
... (truncated)
Changelog
Sourced from @sentry/nextjs's changelog.
... (truncated)
Commits
9ffb58crelease: 10.75.0664c906meta(changelog): Update changelog for 10.75.0 (#24446)e3e7accfix(v10/nitro): Import from nitro/h3 instead of h3 directly (#24444)4bb51d1feat(v10/effect): Capture errors through the Effect v4 ErrorReporter API (#24...738f17efix(v10/core): Don't instrument the SDK's own envelope requests (#24276)f63c56afix(v10/node-core): Don't recurse in logAndExitProcess on a broken stdio pipe...0e24355fix(v10/browser-utils): Skip nullish LCP entries in vendored web-vitals (#24349)ac3ea13fix(v10/nuxt): Detect Nitro version via the app's Nuxt dependency chain (#24025)9235d43fix(v10/nextjs): Only include emitted chunk directories in Turbopack sourcema...e2deda0feat(v10/core): AcceptCollectBehaviorshorthand for `dataCollection.httpHe...Updates
josefrom 6.2.3 to 6.2.12Release notes
Sourced from jose's releases.
... (truncated)
Changelog
Sourced from jose's changelog.
... (truncated)
Commits
505a55bchore(release): 6.2.127bc9a33perf: encode single-signature JWS input once78637bdperf: normalize General JWE shared headers oncebf5138bperf: deduplicate pending jwks key importsb23a6f3perf: use native encoding for larger ASCII stringsfd3ae3fperf: normalize jwks selection metadata once6925d43perf: avoid copying AES-GCM outputbe62530docs: clarify and shorten public API guidance1b41312build: preserve README when generation fails0b51829build: check tree-shaking for every public bindingUpdates
markedfrom 18.0.6 to 18.0.13Release notes
Sourced from marked's releases.
... (truncated)
Commits
634f810chore(release): 18.0.13 [skip ci]2a66071docs: add AtlasDocs to the list of tools using Marked (#4093)c2facacfix: match html block start conditions when ending a list item (#4072)ef394f7fix: respect raw tokens when closing link labels (#4066)c6a25bbfix: avoid O(n^2) scanning in reflinkSearch (#4090)a43c064chore(deps-dev): bump js-yaml from 3.14.2 to 3.15.2 (#4089)afbb27cfix: allow tabs in the thematic break that ends a list item (#4087)aed9336fix: case fold reference link labels (#4077)123ce04fix: drop the leading whitespace after a hard line break (#4075)dbb393dfix: strip a tab that follows spaces in an indented code block (#4080)Updates
nextfrom 16.2.10 to 16.3.5Release notes
Sourced from next's releases.
... (truncated)
Commits
ca2c75ev16.3.514fb290[backport] Fix use cache prerender signal retention (#98448)2b1f28d[16.3.x] Add CSP nonce to script tags of loading and template files (#98403)4b56cee[16.3.x] Backport docs fixes (#98317)5568a02[backport] docs: local development: Rewrite docker section, add Windows Dev D...93249ab[16.3.X] Emit whole-app server NFTs whenoutput: 'standalone'is used with ...6549fd7[16.3.x] next/image: reject empty image on read/write to disk cache (#98186)d9eac96[16.3.x] next/image: skip 0-byte entries when initializing disk LRU cache (#9...