Bump the npm group with 4 updates
Type: Pull Request
State: Open
Association: Contributor
Comments: 0
(8 months ago)
(8 months ago)
dependencies javascript
poad
Bumps the npm group with 4 updates: pnpm, caniuse-lite, electron-to-chromium and rollup.
Updates pnpm from 10.17.1 to 10.18.0
Release notes
Sourced from pnpm's releases.
pnpm 10.18
Minor Changes
Added network performance monitoring to pnpm by implementing warnings for slow network requests, including both metadata fetches and tarball downloads.
Added configuration options for warning thresholds:
fetchWarnTimeoutMsandfetchMinSpeedKiBps. Warning messages are displayed when requests exceed time thresholds or fall below speed minimumsRelated PR: #10025.
Patch Changes
- Retry filesystem operations on EAGAIN errors #9959.
- Outdated command respects
minimumReleaseAgeconfiguration #10030.- Correctly apply the
cleanupUnusedCatalogsconfiguration when removing dependent packages.- Don't fail with a meaningless error when
scriptShellis set tofalse#8748.pnpm dlxshould not fail whenminimumReleaseAgeis set #10037.Platinum Sponsors
Gold Sponsors
... (truncated)
Changelog
Sourced from pnpm's changelog.
10.18.0
Minor Changes
Added network performance monitoring to pnpm by implementing warnings for slow network requests, including both metadata fetches and tarball downloads.
Added configuration options for warning thresholds:
fetchWarnTimeoutMsandfetchMinSpeedKiBps. Warning messages are displayed when requests exceed time thresholds or fall below speed minimumsRelated PR: #10025.
Patch Changes
- Retry filesystem operations on EAGAIN errors #9959.
- Outdated command respects
minimumReleaseAgeconfiguration #10030.- Correctly apply the
cleanupUnusedCatalogsconfiguration when removing dependent packages.- Don't fail with a meaningless error when
scriptShellis set tofalse#8748.pnpm dlxshould not fail whenminimumReleaseAgeis set #10037.
Commits
Updates caniuse-lite from 1.0.30001746 to 1.0.30001747
Commits
55878d5Update caniuse-db 1.0.30001747- See full diff in compare view
Updates electron-to-chromium from 1.5.228 to 1.5.230
Commits
7d1562e1.5.2303d73f1fgenerate new version810b9b91.5.22988c000cgenerate new version- See full diff in compare view
Updates rollup from 4.52.3 to 4.52.4
Release notes
Sourced from rollup's releases.
v4.52.4
4.52.4
2025-10-03
Bug Fixes
- Fix an issue where the wrong branch of nullish coalescing was picked (#6133)
Pull Requests
- #6128: Enable npm OIDC publishing (
@lukastaegert)- #6133: Correct nullish coalescing branch resolution for symbol left value (
@TrickyPi)- #6134: fix(deps): lock file maintenance minor/patch updates (
@renovate[bot],@lukastaegert)
Changelog
Sourced from rollup's changelog.
4.52.4
2025-10-03
Bug Fixes
- Fix an issue where the wrong branch of nullish coalescing was picked (#6133)
Pull Requests
- #6128: Enable npm OIDC publishing (
@lukastaegert)- #6133: Correct nullish coalescing branch resolution for symbol left value (
@TrickyPi)- #6134: fix(deps): lock file maintenance minor/patch updates (
@renovate[bot],@lukastaegert)
Commits
Maintainer changes
This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for rollup since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions
Pull Request Statistics
1
2
+111
-111
Package Dependencies
Technical Details
| ID: | 9302371 |
| UUID: | 2884755009 |
| Node ID: | PR_kwDOKSIIAM6r8d5B |
| Host: | GitHub |
| Repository: | poad/astro-solid-example |
| Merge State: | Unknown |