Repository navigation
deps: bump the npm group across 1 directory with 8 updates - #130
Merged
github-actions[bot] merged 1 commit intoOct 6, 2026
Merged
Conversation
dependabot
Bot
force-pushed
the
dependabot/npm_and_yarn/dev/npm-e61cee1498
branch
2 times, most recently
from
October 6, 2026 08:15
19a722d to
d68e448
Compare
MansiVisuals
added a commit
that referenced
this pull request
Oct 6, 2026
It is a Tailwind plugin loaded by tailwind.config.ts and imported by nothing at runtime, but sitting in dependencies made its peer on tailwindcss production-reachable. npm then drops the `dev` marker from tailwindcss, braces and micromatch whenever it resolves peers, which is how Dependabot regenerates the lockfile — so `npm audit --omit=dev` reported build tooling as shipped and failed the gate on #130. The production install is unaffected either way; only the audit's view was wrong. Verified the gate now passes with the lockfile regenerated both with and without --legacy-peer-deps.
Bumps the npm group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.1140.0` | `3.1146.0` | | [@aws-sdk/s3-request-presigner](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/packages/s3-request-presigner) | `3.1140.0` | `3.1146.0` | | [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `1.48.0` | `1.51.0` | | [next](https://github.com/vercel/next.js) | `16.3.6` | `16.3.8` | | [next-intl](https://github.com/amannn/next-intl) | `4.14.7` | `4.14.9` | | [sharp](https://github.com/lovell/sharp) | `0.35.4` | `0.35.5` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `24.13.6` | `24.19.1` | | [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next) | `16.3.6` | `16.3.8` | Updates `@aws-sdk/client-s3` from 3.1140.0 to 3.1146.0 - [Release notes](https://github.com/aws/aws-sdk-js-v3/releases) - [Changelog](https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-js-v3/commits/v3.1146.0/clients/client-s3) Updates `@aws-sdk/s3-request-presigner` from 3.1140.0 to 3.1146.0 - [Release notes](https://github.com/aws/aws-sdk-js-v3/releases) - [Changelog](https://github.com/aws/aws-sdk-js-v3/blob/main/packages/s3-request-presigner/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-js-v3/commits/v3.1146.0/packages/s3-request-presigner) Updates `lucide-react` from 1.48.0 to 1.51.0 - [Release notes](https://github.com/lucide-icons/lucide/releases) - [Commits](https://github.com/lucide-icons/lucide/commits/1.51.0/packages/lucide-react) Updates `next` from 16.3.6 to 16.3.8 - [Release notes](https://github.com/vercel/next.js/releases) - [Commits](vercel/next.js@v16.3.6...v16.3.8) Updates `next-intl` from 4.14.7 to 4.14.9 - [Release notes](https://github.com/amannn/next-intl/releases) - [Changelog](https://github.com/amannn/next-intl/blob/main/CHANGELOG.md) - [Commits](amannn/next-intl@v4.14.7...v4.14.9) Updates `sharp` from 0.35.4 to 0.35.5 - [Release notes](https://github.com/lovell/sharp/releases) - [Commits](lovell/sharp@v0.35.4...v0.35.5) Updates `@types/node` from 24.13.6 to 24.19.1 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `eslint-config-next` from 16.3.6 to 16.3.8 - [Release notes](https://github.com/vercel/next.js/releases) - [Commits](https://github.com/vercel/next.js/commits/v16.3.8/packages/eslint-config-next) --- updated-dependencies: - dependency-name: "@aws-sdk/client-s3" dependency-version: 3.1145.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: npm - dependency-name: "@aws-sdk/s3-request-presigner" dependency-version: 3.1145.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: npm - dependency-name: "@types/node" dependency-version: 24.19.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: npm - dependency-name: eslint-config-next dependency-version: 16.3.8 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: npm - dependency-name: lucide-react dependency-version: 1.49.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: npm - dependency-name: next dependency-version: 16.3.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm - dependency-name: next-intl dependency-version: 4.14.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm - dependency-name: sharp dependency-version: 0.35.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: npm ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
Bot
force-pushed
the
dependabot/npm_and_yarn/dev/npm-e61cee1498
branch
from
October 6, 2026 08:21
d68e448 to
e355ea7
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the npm group with 8 updates in the / directory:
3.1140.03.1146.03.1140.03.1146.01.48.01.51.016.3.616.3.84.14.74.14.90.35.40.35.524.13.624.19.116.3.616.3.8Updates
@aws-sdk/client-s3from 3.1140.0 to 3.1146.0Release notes
Sourced from @aws-sdk/client-s3's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/client-s3's changelog.
Commits
054298bPublish v3.1146.00199117Publish v3.1145.0ce26281Publish v3.1144.082bbbdcfeat(client-s3): Amazon S3 adds a new optional S3 Inventory field, Intelligen...81afad0Publish v3.1143.0c935fddPublish v3.1142.05bc8d9aPublish v3.1141.0Updates
@aws-sdk/s3-request-presignerfrom 3.1140.0 to 3.1146.0Release notes
Sourced from @aws-sdk/s3-request-presigner's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/s3-request-presigner's changelog.
Commits
054298bPublish v3.1146.00199117Publish v3.1145.0ce26281Publish v3.1144.081afad0Publish v3.1143.0c935fddPublish v3.1142.05bc8d9aPublish v3.1141.0Updates
lucide-reactfrom 1.48.0 to 1.51.0Release notes
Sourced from lucide-react's releases.
... (truncated)
Commits
98331e2chore(deps): bump the react-deps group across 1 directory with 3 updates (#4951)09aa9c5chore(deps): Upgrade to vite 8 (#4950)e042fecfix(packages): declare@types/reactas an optional peer dependency (#4892)Updates
nextfrom 16.3.6 to 16.3.8Release notes
Sourced from next's releases.
Commits
b0fad0dv16.3.8719e4c6[lts-active] Scope response cache keys to their source route (#218)e92db45[lts-active] Fix metadata propagation for deduplicated nested caches (#223)40c2ba9[lts-active] Match Next data paths case-sensitively (#196)2d9f50a[lts-active] Fix MCP middleware DNS rebinding (#213)bd9214f[lts-active] Fix draft mode leaks through cross-request'use cache'dedupli...8db4a62[lts-active][webpack] EnsuredynamicParamsis respected in `opengraph-image...e002ad6[lts-active] fix(next/image): Pin DNS resolution when fetching external image...4c20699v16.3.72521aec[backport] turbo-tasks-backend: fix strongly consistent read hanging on a can...Updates
next-intlfrom 4.14.7 to 4.14.9Release notes
Sourced from next-intl's releases.
Changelog
Sourced from next-intl's changelog.
Commits
b9fc98av4.14.90454168fix: Improvements foruseExtracted(#2431)1244f54fix: Correct source paths inuseExtractedsource maps with Turbopack (#2432)4932295fix: Support webpack builds with source maps when usinguseExtracted(#2430)fac95abdocs: Clarify cookie writing withlocaleDetection: falseand add a third `a...274867fv4.14.83ef2e6afix: Keep source order foruseExtractedmessages on the same line (#2426)edcfaf3docs: Upgrade Next.js to 16.3.6 in examples and dev deps (GHSA-vcvr-r3jv-pc5j...Updates
sharpfrom 0.35.4 to 0.35.5Release notes
Sourced from sharp's releases.
... (truncated)
Commits
51a990fRelease v0.35.596de105Upgrade to sharp-libvips v1.3.43a61390CI: Configure Dependabot with all package.json locations4940c50Improve gain map support for rotate/flip/flop ops20654aaPrerelease v0.35.5-rc.1ef4f934CI: Upgrade to Ubuntu 26.04358df95Upgrade to libvips v8.18.749f4903Improve gain map support for rotate-then-extract #46060e2e55eSilence a couple of compiler/static analysis warningscef3b8cImprove gain map support for extract operation #4606Updates
@types/nodefrom 24.13.6 to 24.19.1Commits
Updates
eslint-config-nextfrom 16.3.6 to 16.3.8Release notes
Sourced from eslint-config-next's releases.
Commits
b0fad0dv16.3.84c20699v16.3.7Most Recent Ignore Conditions Applied to This Pull Request