Skip to content

chore: bump the npm-minor-patch group across 1 directory with 7 updates - #8

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-350bc3dc6b
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-350bc3dc6b

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 14, 2026 •

Copy link
Copy Markdown

Bumps the npm-minor-patch group with 7 updates in the / directory:

Package From To
@joplin/turndown-plugin-gfm 1.0.67 1.0.68
@napi-rs/canvas 1.0.2 1.0.9
encoding-japanese 2.2.0 2.3.0
pdfjs-dist 6.2.108 6.3.289
zod 4.4.3 4.6.2
@types/node 26.1.1 26.5.1
tsx 4.23.0 4.23.13

Updates @joplin/turndown-plugin-gfm from 1.0.67 to 1.0.68

Commits

Updates @napi-rs/canvas from 1.0.2 to 1.0.9

Release notes

Sourced from @​napi-rs/canvas's releases.

v1.0.9

What's Changed

Full Changelog: Brooooooklyn/canvas@v1.0.8...v1.0.9

v1.0.8

What's Changed

Full Changelog: Brooooooklyn/canvas@v1.0.7...v1.0.8

v1.0.7

What's Changed

Full Changelog: Brooooooklyn/canvas@v1.0.6...v1.0.7

v1.0.6

What's Changed

Full Changelog: Brooooooklyn/canvas@v1.0.5...v1.0.6

v1.0.5

What's Changed

Full Changelog: Brooooooklyn/canvas@v1.0.4...v1.0.5

v1.0.4

What's Changed

... (truncated)

Changelog

Sourced from @​napi-rs/canvas's changelog.

1.0.9 (2026-09-09)

Bug Fixes

  • deps: update cssparser to 0.38 and cssparser-color to 0.6 (#1335) (caec867)
  • invalidate FontCollection typeface cache on font registration (#1334) (9e4fbec)

Features

1.0.8 (2026-08-24)

Bug Fixes

  • capture call-time snapshot in async encode APIs (#1313) (#1323) (18c52bf)
  • snapshot canvas source in drawImage to avoid per-call pixel copy (#1325) (d98574c)

1.0.7 (2026-08-18)

Bug Fixes

  • putImageData no longer inherits transform/clip after getImageData (#1320) (8ed2b59)

Performance Improvements

  • fast getImageData readback with runtime-dispatched SIMD unpremultiply (#1319) (196bff9)

1.0.6 (2026-08-13)

Bug Fixes

1.0.5 (2026-08-09)

Bug Fixes

1.0.4 (2026-08-01)

Bug Fixes

  • shadow: restore blur rendering performance (#1305) (4dddd0d)

1.0.3 (2026-07-28)

... (truncated)

Commits
  • b2723ff 1.0.9
  • 70f3022 docs(skill): fold the m154 run experience into upgrade-skia
  • 1b3e054 docs(skill): record the m154 failure classes in upgrade-skia
  • 7257dc9 chore: add repo-level upgrade-skia skill
  • c68eea9 feat: chrome/m154 (#1337)
  • 22eb20d chore: commit Cargo.lock, build with --locked, fix the cargo cache key (#1336)
  • caec867 fix(deps): update cssparser to 0.38 and cssparser-color to 0.6 (#1335)
  • 9e4fbec fix: invalidate FontCollection typeface cache on font registration (#1334)
  • fe11ee0 ci: repair armv7 apt sources and musl builder image (#1331)
  • c7e9ac0 chore(deps): update dependency electron to v44 (#1326)
  • Additional commits viewable in compare view

Updates encoding-japanese from 2.2.0 to 2.3.0

Release notes

Sourced from encoding-japanese's releases.

2.3.0

What's Changed

Features

  • feat: add CP932 extensions in SJIS detection and conversion (#65) (Resolves #54, #22)
    • Detect CP932 extended character areas as SJIS
    • Convert CP932 IBM extended characters (0xFA40 - 0xFC4B)
    • Remap duplicate codes for CP932 NEC special characters and 0xEEF9 to their JIS X 0208 counterparts

Bug Fixes

Changes

  • Update engines.node to >=18.0.0 to match the tested versions (c6008d0)

CI

  • Update the CI matrix to test Node.js 18, 20, 22, and 24 (1bd48ac)

Maintenance

Documentation

  • docs(readme): fix wrong character codes (#51)
  • Add the Playground to the demo links (770161a)

New Contributors

Full Changelog: polygonplanet/encoding.js@2.2.0...2.3.0

Changelog

Sourced from encoding-japanese's changelog.

2.3.0 (2026-08-30)

Features

  • Support CP932 (Windows-31J) extended character areas in SJIS detection and conversion. (#65, #54, #22)
    • Detect CP932 extended character areas as SJIS.
    • Convert CP932 IBM extended characters (0xFA40 - 0xFC4B).
    • Remap duplicate codes for CP932 NEC special characters and 0xEEF9 to their JIS X 0208 counterparts.

Bug Fixes

  • Fix conversion of wa-row voiced kana (U+30F8 / U+30F9) in toHiraganaCase and toKatakanaCase. (#62) Thanks @​mahirhir
  • Fix EUC-JP and ISO-2022-JP encoders to use the standard JIS X 0212 forms instead of unassigned JIS X 0208 rows. (#63) Thanks @​gaoflow
  • Fix Encoding.detect to treat C0 control characters as valid UTF-8. (#64, #49) Thanks @​hiros0921

Changes

  • Update engines.node to >=18.0.0 to match the tested versions. (c6008d0)

CI

Maintenance

  • Update devDependencies and remove unused power-assert and uglifyify. (4cf36da, 1142dd9)

Documentation

  • Fix incorrect character encoding in README examples. (#51)
  • Add the Playground to the demo links. (770161a)
Commits
  • 3ca428a feat: v2.3.0
  • b43b5e6 docs(changelog): update changelogs
  • 1bd48ac chore(ci): update node matrix to [18, 20, 22, 24]
  • c7a59cd Merge pull request #65 from polygonplanet/feature/cp932-extension
  • 9a19766 feat(convert): add CP932 duplicate code remapping
  • 4fdd203 feat(sjis): add CP932 IBM extended character mappings
  • feebcc5 fix(detect): detect the CP932 extended character areas as SJIS
  • 075c88e Merge pull request #64 from hiros0921/fix/detect-utf8-control-characters
  • f0ebaab fix(detect): treat C0 control characters as valid UTF-8
  • 1142dd9 chore(deps): remove unused power-assert and update mocha
  • Additional commits viewable in compare view

Updates pdfjs-dist from 6.2.108 to 6.3.289

Release notes

Sourced from pdfjs-dist's releases.

v6.3.289

This release contains improvements for accessibility, annotation editing, annotation rendering, font conversion, image decoding, performance, text selection and the viewer.

Changes since v6.2.108

... (truncated)

Commits
  • 1c8020a Merge pull request #21841 from Snuffleupagus/src-core-misc-fixes
  • 67c035f Inline the PDFDocument.prototype._parseHasJSActions method
  • c58a275 Move some WorkerTask class field definitions out of the constructor
  • d1725ab Merge pull request #21837 from Snuffleupagus/rm-ColorSpace-getoutputlength
  • 159dca9 Remove the unused getOutputLength method from the ColorSpace classes (PR ...
  • 8801a6a Merge pull request #21835 from Snuffleupagus/getViewerPreferences-tests
  • 08a0600 Merge pull request #21834 from Snuffleupagus/markInfo-Map
  • 2895922 Improve unit-test coverage for the getViewerPreferences functionality
  • 16b94d1 [api-minor] Convert markInfo to return data in a Map
  • c3257df Merge pull request #21833 from mozilla/update-locales
  • Additional commits viewable in compare view

Updates zod from 4.4.3 to 4.6.2

Release notes

Sourced from zod's releases.

v4.6.2

A patch on top of 4.6.1.

v4.6.1

A patch on top of 4.6.0.

v4.6.0

Zod 4.6 is now available.

npm install zod@latest

At a glance:

  • .validate() — checks input validity without building a result (up to 35x faster than .safeParse().success on a compiled schema)
  • z.instanceof().properties() — validates properties of an instance
  • fromJSONSchema() — enforces six validation keywords it used to ignore
  • z.iban() — electronic-format IBAN plus mod-97 checksum
  • z.withParser() — installs a parser generated elsewhere, for environments without new Function
  • Faster CommonJS — drops the getter on every export (~3x faster z.validate() under require)
  • Memory retention in recursive schemas — releases the parsed input, fixing a 4.5 out-of-memory regression
  • @zod/mini — Zod Mini as a standalone package, versioned in lockstep with zod since 4.5

.validate()

Standalone boolean validation, in Zod, Zod Mini, and Zod Core. It answers "is this input valid?" without constructing a ZodError, which makes rejection cheap. The return type is a guard on the schema's input type.

z.validate(z.string(), "hi"); // true
z.validate(z.string(), 42);   // false

It is a method on Zod Classic schemas too. (#6547)

const Player = z.object({
  username: z.string(),
  xp: z.number(),
});
</tr></table>

... (truncated)

Commits
  • e359f73 4.6.2
  • 9446b5c fix: preserve undefined prefault outputs and object keys (#6587)
  • 0c483c5 docs: Zod 4.6 announcement post (#6546)
  • a00c3f3 docs: use Trigger.dev's brand-kit lockups for the platinum card
  • 62311eb 4.6.1
  • 2efa8b8 ci: give the npm wait a real budget and drop the back-publish path (#6583)
  • b12aa52 fix: preserve unique tags with defaulted discriminators (#6582)
  • dd9c36f fix(v4): defer recursive object index inference (#6580)
  • 574d480 fix(locales): clarify Tajik discriminator value message
  • c532d76 test(locales): cover Tajik error branches
  • Additional commits viewable in compare view

Updates @types/node from 26.1.1 to 26.5.1

Commits

Updates tsx from 4.23.0 to 4.23.13

Release notes

Sourced from tsx's releases.

v4.23.13

4.23.13 (2026-08-30)

Bug Fixes

  • cache: bound shared transform cache memory (#835) (28e1f12)

This release is also available on:

v4.23.12

4.23.12 (2026-08-10)

Bug Fixes

  • shim import.meta when tokens are split by comments or newlines (#829) (ed9d330), closes #828

This release is also available on:

v4.23.11

4.23.11 (2026-08-07)

Bug Fixes

  • preserve async ESM require fallback (55cbece)

This release is also available on:

v4.23.10

4.23.10 (2026-08-07)

Bug Fixes


This release is also available on:

v4.23.9

4.23.9 (2026-08-06)

... (truncated)

Commits
  • 28e1f12 fix(cache): bound shared transform cache memory (#835)
  • ed9d330 fix: shim import.meta when tokens are split by comments or newlines (#829)
  • 651f5be test: cover CommonJS TypeScript import.meta paths
  • bd3bc64 test: cover CommonJS loader source fallback
  • 55cbece fix: preserve async ESM require fallback
  • 6c5ba85 docs: document CommonJS default interop
  • ec1bcd5 fix: support nyc coverage discovery (#710)
  • b6e5b48 docs: clarify CommonJS default imports
  • 2f55884 fix: map Node test locations
  • de935d5 docs: document Node source-map stack formatting
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the npm-minor-patch group with 7 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@joplin/turndown-plugin-gfm](https://github.com/laurent22/joplin-turndown-plugin-gfm) | `1.0.67` | `1.0.68` |
| [@napi-rs/canvas](https://github.com/Brooooooklyn/canvas) | `1.0.2` | `1.0.9` |
| [encoding-japanese](https://github.com/polygonplanet/encoding.js) | `2.2.0` | `2.3.0` |
| [pdfjs-dist](https://github.com/mozilla/pdf.js) | `6.2.108` | `6.3.289` |
| [zod](https://github.com/colinhacks/zod) | `4.4.3` | `4.6.2` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.1.1` | `26.5.1` |
| [tsx](https://github.com/privatenumber/tsx) | `4.23.0` | `4.23.13` |



Updates `@joplin/turndown-plugin-gfm` from 1.0.67 to 1.0.68
- [Commits](https://github.com/laurent22/joplin-turndown-plugin-gfm/commits)

Updates `@napi-rs/canvas` from 1.0.2 to 1.0.9
- [Release notes](https://github.com/Brooooooklyn/canvas/releases)
- [Changelog](https://github.com/Brooooooklyn/canvas/blob/main/CHANGELOG.md)
- [Commits](Brooooooklyn/canvas@v1.0.2...v1.0.9)

Updates `encoding-japanese` from 2.2.0 to 2.3.0
- [Release notes](https://github.com/polygonplanet/encoding.js/releases)
- [Changelog](https://github.com/polygonplanet/encoding.js/blob/master/CHANGELOG.md)
- [Commits](polygonplanet/encoding.js@2.2.0...2.3.0)

Updates `pdfjs-dist` from 6.2.108 to 6.3.289
- [Release notes](https://github.com/mozilla/pdf.js/releases)
- [Commits](mozilla/pdf.js@v6.2.108...v6.3.289)

Updates `zod` from 4.4.3 to 4.6.2
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v4.4.3...v4.6.2)

Updates `@types/node` from 26.1.1 to 26.5.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `tsx` from 4.23.0 to 4.23.13
- [Release notes](https://github.com/privatenumber/tsx/releases)
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs)
- [Commits](privatenumber/tsx@v4.23.0...v4.23.13)

---
updated-dependencies:
- dependency-name: "@joplin/turndown-plugin-gfm"
  dependency-version: 1.0.68
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@napi-rs/canvas"
  dependency-version: 1.0.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: encoding-japanese
  dependency-version: 2.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: pdfjs-dist
  dependency-version: 6.3.289
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: zod
  dependency-version: 4.6.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@types/node"
  dependency-version: 26.5.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: tsx
  dependency-version: 4.23.13
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 14, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 28, 2026

Copy link
Copy Markdown
Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 28, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/npm-minor-patch-350bc3dc6b branch September 28, 2026 16:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants