⬆️(dependencies) update js dependencies - #371
Open
renovate[bot] wants to merge 1 commit into
Open
Conversation
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
6 times, most recently
from
January 21, 2026 22:09
d3085ad to
f406553
Compare
|
All alerts resolved. Learn more about Socket for GitHub. This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored. |
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
11 times, most recently
from
January 28, 2026 19:08
b46685d to
236ef7f
Compare
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
10 times, most recently
from
February 2, 2026 23:13
c03678c to
323db46
Compare
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
15 times, most recently
from
February 15, 2026 04:35
93c0eaf to
eae6abe
Compare
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
8 times, most recently
from
February 21, 2026 00:32
67ad087 to
82dbd21
Compare
renovate
Bot
force-pushed
the
renovate/js-dependencies
branch
6 times, most recently
from
March 1, 2026 10:02
faaa603 to
65bbdb2
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
7.27.1→8.0.27.27.1→8.0.17.27.1→8.0.12.29.2→3.0.03.2.6→5.3.09.7.0→10.5.05.2.5→5.3.05.2.5→5.3.05.0.1→5.7.13.12.0→3.12.33.9.5→3.10.13.16.1→3.17.13.12.16→3.13.13.9.3→3.10.13.16.1→3.17.18.6.12→10.5.78.6.12→9.0.88.6.12→8.6.148.6.12→8.6.148.6.12→10.5.78.6.12→10.5.78.6.12→10.5.78.21.3→9.1.210.4.0→10.4.16.6.3→7.0.116.3.0→16.3.214.6.1→14.6.429.5.14→30.0.022.15.3→24.13.319.1.2→19.2.1819.1.3→19.2.48.31.1→8.67.08.31.1→8.67.04.4.1→6.0.53.1.2→4.1.1010.0.0→10.1.111.28.2→18.2.013.1.0→15.0.07.0.3→10.1.07.1.2→7.1.49.0.9→9.4.015.3.1→16.3.010.1.2→10.1.84.3.4→4.4.50.13.10→0.13.116.0.2→7.0.25.3.1→6.4.202.31.0→2.32.05.2.6→5.5.65.2.0→7.1.11.8.1→1.11.411.1.0→13.0.629.7.0→30.4.226.1.0→30.0.13.1.10→3.1.143.5.3→3.9.619.1.0→19.2.83.47.0→3.51.01.16.0→1.20.019.1.0→19.2.87.56.2→7.85.03.45.0→3.49.01.87.0→1.102.016.0.5→17.0.029.3.2→29.4.121.8.15→1.9.15.8.3→7.0.24.5.3→5.0.35.1.4→6.1.11.6.1→1.7.1Release Notes
babel/babel (@babel/plugin-proposal-decorators)
v8.0.2Compare Source
🐛 Bug Fix
@babel/coreversion when asserting version in@babel/standalone(@nicolo-ribaudo)babel-helper-validator-identifier🏠 Internal
babel-plugin-proposal-decorators,babel-plugin-transform-regenerator,babel-preset-env@babel/preset-modulesand polyfill packages (@nicolo-ribaudo)v8.0.1Compare Source
💥 Breaking Change
babel-core,babel-plugin-transform-object-rest-spread,babel-plugin-transform-runtime,babel-preset-env,babel-standalonepreset-env'suseBuiltIns(@nicolo-ribaudo)v8.0.0Compare Source
👓 Spec Compliance
babel-core💥 Breaking Change
babel-cli,babel-node,babel-plugin-proposal-decorators,babel-plugin-transform-classes,babel-plugin-transform-function-name,babel-plugin-transform-modules-commonjs,babel-plugin-transform-object-rest-spread,babel-plugin-transform-parameters,babel-plugin-transform-react-constant-elements,babel-plugin-transform-regenerator,babel-preset-env,babel-registermodules: auto(@nicolo-ribaudo)babel-plugin-transform-runtime,babel-runtime-corejs3,babel-runtime@babe/runtime-corejs3(@liuxingbaoyu)babel-parserlocations: "packed"(@liuxingbaoyu)🐛 Bug Fix
babel-generatorbabel-plugin-transform-modules-systemjs📝 Documentation
🏠 Internal
🏃♀️ Performance
babel-corev7.29.7Compare Source
v7.29.7 (2026-05-25)
Re-release all packages with npm provenance attestations
v7.29.0Compare Source
v7.29.0 (2026-01-31)
Thanks @simbahax for your first PR!
🚀 New Feature
babel-typesbabel-standalone🐛 Bug Fix
babel-parserextendsclause (@nicolo-ribaudo)babel-traversebabel-plugin-transform-block-scoping,babel-traverse🏃♀️ Performance
babel-generator,babel-runtime-corejs3Committers: 6
v7.28.6Compare Source
v7.28.6 (2026-01-12)
Thanks @kadhirash and @kolvian for your first PRs!
🐛 Bug Fix
babel-cli,babel-code-frame,babel-core,babel-helper-check-duplicate-nodes,babel-helper-fixtures,babel-helper-plugin-utils,babel-node,babel-plugin-transform-flow-comments,babel-plugin-transform-modules-commonjs,babel-plugin-transform-property-mutators,babel-preset-env,babel-traverse,babel-typesbabel-plugin-transform-regeneratortransform-regeneratorcorrectly handles scope (@liuxingbaoyu)babel-plugin-transform-react-jsx💅 Polish
babel-core,babel-standalone🏠 Internal
babel-plugin-bugfix-v8-static-class-fields-redefine-readonly,babel-plugin-proposal-decorators,babel-plugin-proposal-import-attributes-to-assertions,babel-plugin-proposal-import-wasm-source,babel-plugin-syntax-async-do-expressions,babel-plugin-syntax-decorators,babel-plugin-syntax-destructuring-private,babel-plugin-syntax-do-expressions,babel-plugin-syntax-explicit-resource-management,babel-plugin-syntax-export-default-from,babel-plugin-syntax-flow,babel-plugin-syntax-function-bind,babel-plugin-syntax-function-sent,babel-plugin-syntax-import-assertions,babel-plugin-syntax-import-attributes,babel-plugin-syntax-import-defer,babel-plugin-syntax-import-source,babel-plugin-syntax-jsx,babel-plugin-syntax-module-blocks,babel-plugin-syntax-optional-chaining-assign,babel-plugin-syntax-partial-application,babel-plugin-syntax-pipeline-operator,babel-plugin-syntax-throw-expressions,babel-plugin-syntax-typescript,babel-plugin-transform-async-generator-functions,babel-plugin-transform-async-to-generator,babel-plugin-transform-class-properties,babel-plugin-transform-class-static-block,babel-plugin-transform-dotall-regex,babel-plugin-transform-duplicate-named-capturing-groups-regex,babel-plugin-transform-explicit-resource-management,babel-plugin-transform-exponentiation-operator,babel-plugin-transform-json-strings,babel-plugin-transform-logical-assignment-operators,babel-plugin-transform-nullish-coalescing-operator,babel-plugin-transform-numeric-separator,babel-plugin-transform-object-rest-spread,babel-plugin-transform-optional-catch-binding,babel-plugin-transform-optional-chaining,babel-plugin-transform-private-methods,babel-plugin-transform-private-property-in-object,babel-plugin-transform-regexp-modifiers,babel-plugin-transform-unicode-property-regex,babel-plugin-transform-unicode-sets-regex🏃♀️ Performance
babel-plugin-transform-react-jsx__source,__self(@liuxingbaoyu)Committers: 7
v7.28.0Compare Source
🚀 New Feature
babel-nodebabel-typesbabel-compat-data,babel-preset-envbabel-core,babel-parsersourceType: "commonjs"(@JLHwung)babel-generator,babel-parserexplicitResourceManagementparser plugin (@JLHwung)babel-plugin-proposal-destructuring-private,babel-plugin-proposal-do-expressions,babel-plugin-transform-object-rest-spread,babel-traverse,babel-typesbabel-parser,babel-traverse,babel-typest.bigIntLiteralfactory (@JLHwung)babel-generator,babel-plugin-proposal-destructuring-private,babel-plugin-proposal-discard-binding,babel-plugin-transform-destructuring,babel-plugin-transform-explicit-resource-management,babel-plugin-transform-react-display-name,babel-typesbabel-generator,babel-parser,babel-plugin-proposal-destructuring-private,babel-plugin-transform-block-scoping,babel-plugin-transform-object-rest-spread,babel-plugin-transform-typescript,babel-traverse,babel-types🐛 Bug Fix
babel-helper-globals,babel-plugin-transform-classes,babel-traversebabel-types🏠 Internal
babel-compat-data,babel-plugin-proposal-decorators,babel-plugin-transform-async-generator-functions,babel-plugin-transform-json-modules,babel-plugin-transform-regenerator,babel-plugin-transform-runtime,babel-preset-env,babel-runtime-corejs3babel-polyfillpackages (@nicolo-ribaudo)changesets/changesets (@changesets/cli)
v3.0.0Compare Source
Major Changes
#2128
7113c01Thanks @Andarist! - Renamed thechangeset tagcommand tochangeset git-tag.#2074
3599e47Thanks @bluwy! - Set supported package manager versions in"engines"field, including npm >=10.9.0, pnpm >=10.0.0, and yarn >=4.5.2.#1860
92b1c1bThanks @mixelburg! -changeset versionnow exits with code 1 when there are no unreleased changesets, instead of silently exiting with code 0.This makes it easier to detect when a version step is a no-op — for example, to prevent accidentally publishing packages with incorrect version tags when using
--snapshotmode.#1482
df424a4Thanks @Andarist! - Bumped supported Node versions to^22.11 || ^24 || >=26#1994
062530bThanks @bluwy! - Theprettieroption in.changeset/config.jsonhas been removed in favor offormat.formatsupports"auto","prettier","oxfmt","deno", and"dprint", andfalsedisables formatting. If you previously usedprettier: false, migrate toformat: falseor remove the option to use automatic formatter detection.#2190
96b65eeThanks @bluwy! - Move versioned prerelease changesets to.changeset/pre/folder instead of accumulating in the root and tracking the versioned changeset ids in the.changeset/pre.jsonfile. Existingpre.jsonwill auto-migrate to this new structure on the next run ofchangeset versionor when callingchangeset status.This change allows easier management of versioned prerelease changesets (for the final stable release) and current queued changesets (for the next prerelease). Changesets in
.changeset/pre/can be edited or deleted depending if it's still relevant for the final stable release of a package. There's no need to synchronize the changeset ids inpre.jsonif certain changesets are deleted.#2145
f5887ffThanks @Andarist! - Removed Yarn Classic support#2097
8c88f6aThanks @Andarist! - Packages with only prerelease versions published will now be published with the prerelease tag in the prerelease mode if the target registry doesn't auto-assignlatesttag. npm registry itself does that and such packages will continue to be released withlatesttag (and not with the configured prerelease tag).#1879
c76b232Thanks @beeequeue! - Removed warning messages about using v1 configs. They will now be silently ignored.#1655
db46911Thanks @bluwy! - Update@manypkg/get-packageswhich drops support for detecting packages in Bolt monorepos and adds support for npm monorepos#1651
e1df862Thanks @bluwy! - Remove support for the--sinceMasterflag forchangeset status. Use--since=masteror--since=maininstead.#2117
813bbf3Thanks @bluwy! - Remove thepre.jsoninitialVersionsproperty and handling as it's unused internally#1961
07278a7Thanks @beeequeue! -CommitFunctionscan now be both sync and async, and thedefaultCommitFunctionsare now sync.#1482
df424a4Thanks @Andarist! - From now on this package is going to be published as ES module.#1652
a0b5326Thanks @bluwy! - Remove support for the deprecated___experimentalUnsafeOptions_WILL_CHANGE_IN_PATCH.useCalculatedVersionForSnapshotsconfig. Thesnapshot.useCalculatedVersionconfig should be used instead.#2186
3910adfThanks @Andarist! - Private packages are no longer versioned by default. SetprivatePackagestotrueto opt into versioning and tagging them, or setprivatePackages.versiontotrueto version them without tagging.#1879
c76b232Thanks @beeequeue! - Migrated fromenquirer+@inquirer/launch-editorto@clack/prompts+launch-editor.This means the CLI flows will have minor changes, but they are largely the same.
This change also fixes various issues related to
enquirerlike cancelling prompts crashing the CLI.#2090
3aae903Thanks @beeequeue! - Peer dependencies now bump packages that depend on them bypatchinstead ofmajor.This means a peer dependency update is no longer assumed (forced) to be a breaking change.
If the dependent package is not compatible with the peer's new release you should manually add a
majorchangeset describing why and how to migrate.Minor Changes
#1121
ce2095dThanks @Sh031224! - Added new--major,--minor,--patchflags to theaddcommand.#2135
fd7724aThanks @youdie006! - Allow comma-separated values in array-valued CLI flags: the--major,--minor, and--patchflags of theaddcommand, and the--ignoreflag of theversioncommand. For example,--minor pkg-a,pkg-bis now equivalent to--minor pkg-a --minor pkg-b. Surrounding whitespace is trimmed and empty entries are ignored.#2068
d03ffc1Thanks @bluwy! - Support{commit-short}placeholder for thesnapshot.prereleaseTemplateconfig, which is a 7 character variant of{commit}#2061
c2db1ddThanks @Andarist! - Added achangeset publish-plancommand to inspect which packages would be published or tagged, with optional JSON output.#2087
edc30c8Thanks @trueberryless! - Made theinitcommand interactive. Runningchangeset initwill now guide you through a set of intuitive prompts to configure your changelog generator, commit preferences, publish access, and base branch, rather than silently writing the default configuration file.#1969
2c7c043Thanks @marcalexiei! - Add a named export that mirrors the currentdefaultexportThe
defaultexport is slated for removal in the next major release, so this ensures a smoother transition path.#1879
c76b232Thanks @beeequeue! - Packages are now listed in alphabetical order when possible.#2129
369eb0bThanks @Andarist! - Commands supporting--output(such asstatusandpublish-plan) can now be invoked with `CHANGEConfiguration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.