Skip to content

build(deps-dev): bump eslint, typescript-eslint, and workers-types (companion to #53) - #58

Merged
sumitake merged 1 commit into
mainfrom
cursor/npm-safe-minor-patch-55a5
Sep 14, 2026
Merged

sumitake merged 1 commit into
mainfrom
cursor/npm-safe-minor-patch-55a5

Conversation

@sumitake

@sumitake sumitake commented Sep 14, 2026 •

Copy link
Copy Markdown
Owner

Summary

Companion for Dependabot #53. Applies the safe npm minor/patch bumps and excludes wrangler so nested miniflare 5-alpha does not advance.

Dependabot #53 (dependabot/npm_and_yarn/npm-minor-patch-b67640d40c) also bumps wrangler 4.126.0 → 4.130.0, which advances nested miniflare from 5.20260825.0-alpha to 5.20260908.0-alpha. Main already has miniflare alphas transitively; we keep wrangler at main’s 4.126.0 so that alpha does not move further.

Taken from #53

  • eslint 10.9.1 → 10.10.0
  • typescript-eslint 8.68.0 → 8.70.0
  • @cloudflare/workers-types 5.20260827.1 → 5.20260910.1

Intentionally left unchanged

  • wrangler 4.126.0 (nested miniflare remains 5.20260825.0-alpha)
  • vitest / @cloudflare/vitest-pool-workers pins
  • existing smol-toml / sharp overrides

Ops: close Dependabot #53 after this lands. Do not merge #53.

Test plan

  • npm install at repo root with Node 24.18.0 / npm 12.0.1 refreshed package-lock.json
  • Lock check: top-level wrangler still 4.126.0; wrangler’s nested miniflare still 5.20260825.0-alpha (not newer than main)
  • npm run worker:lint passed
  • npm run worker:typecheck passed
  • npm run worker:test — 33 files / 230 tests passed
  • npm run schema:test — 16 passed
  • python3 scripts/sanitize_public.py --tracked — sanitization passed
  • npm run format:check passed

PUBLIC-SAFETY checklist

  • This PR contains no deployment identifiers
  • This PR contains no secrets
  • This PR contains no real logs, real configuration, or real runtime state
  • I ran python3 scripts/sanitize_public.py --tracked locally and it reported sanitization passed.
  • Governance/repository metadata was not touched (check_repository_metadata.py not applicable)

Additional context

This branch is cursor/npm-safe-minor-patch-55a5 off current main. It does not touch dependabot/**.

Open in Web Open in Cursor 

Companion to Dependabot #53. Takes the safe npm minor/patch bumps and
leaves wrangler at 4.126.0 so nested miniflare stays on 5.20260825.0-alpha.

Co-authored-by: John Osumi <sumitake@users.noreply.github.com>
@coderabbitai

coderabbitai Bot commented Sep 14, 2026

Copy link
Copy Markdown

Important

  • 🔍 Trigger review

This repository does not receive automatic reviews because it has fewer than 10 stars.

⚙️ Run configuration

Configuration used: Organization UI

Review profile: CHILL

Plan: Advanced

Run ID: e20ff9c7-2710-4fdf-98cd-15e82bd89ca9


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Sep 14, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-09-14T16:34:16.374958Z 67047b5 PR opened
🔒 Security Review ✅ Completed 2026-09-14T16:35:14.675535Z 67047b5 PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@sumitake
sumitake merged commit 468153b into main Sep 14, 2026
19 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants