Skip to content

chore(deps): bump @vitest/mocker and vitest in /web - #87

Merged
jchable merged 1 commit into
devfrom
dependabot/npm_and_yarn/web/multi-d0c2d048a7
Sep 10, 2026
Merged

chore(deps): bump @vitest/mocker and vitest in /web#87
jchable merged 1 commit into
devfrom
dependabot/npm_and_yarn/web/multi-d0c2d048a7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 10, 2026

Copy link
Copy Markdown
Contributor

Bumps @vitest/mocker to 4.1.11 and updates ancestor dependency vitest. These dependencies need to be updated together.

Updates @vitest/mocker from 4.1.10 to 4.1.11

Release notes

Sourced from @​vitest/mocker's releases.

v4.1.11

   🐞 Bug Fixes

    View changes on GitHub
Commits

Updates vitest from 4.1.10 to 4.1.11

Release notes

Sourced from vitest's releases.

v4.1.11

   🐞 Bug Fixes

    View changes on GitHub
Commits
  • 9bd8d46 chore: release v4.1.11 (#10995)
  • 9851dbc fix(browser): trigger playwright/chromium gc on lower disk availability [back...
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [@vitest/mocker](https://github.com/vitest-dev/vitest/tree/HEAD/packages/mocker) to 4.1.11 and updates ancestor dependency [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest). These dependencies need to be updated together.


Updates `@vitest/mocker` from 4.1.10 to 4.1.11
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.11/packages/mocker)

Updates `vitest` from 4.1.10 to 4.1.11
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.11/packages/vitest)

---
updated-dependencies:
- dependency-name: "@vitest/mocker"
  dependency-version: 4.1.11
  dependency-type: indirect
- dependency-name: vitest
  dependency-version: 4.1.11
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 10, 2026
@dependabot
dependabot Bot requested a review from jchable as a code owner September 10, 2026 09:59
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 10, 2026
jchable pushed a commit that referenced this pull request Sep 10, 2026
The repository's default branch is `main`, so dependabot opened its PRs against
it while the actual flow is feature -> `dev` -> `main`. `main` trails `dev` by
184 commits, so every dependabot PR was cut from, and tested against, code that
stale.

PR #85 is the measurement, not the worry: `Microsoft.Agents.AI` 1.19.0 -> 1.20.0
went green against `main`, and retargeting its base to `dev` triggered no re-run
at all -- the checks reporting it mergeable had never compiled the code it was
about to merge into. It merged only because the merge result was built and tested
locally first (1350 passing). `target-branch` removes that manual step rather
than leaving it to be remembered.

Does not cover security updates: those originate from the repository's dependabot
alerts, not from this file, and always open against the default branch. #87
(@vitest/mocker, alert GHSA-82fw-gwwq-j7x9 under web/) is one of those.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
@jchable
jchable changed the base branch from main to dev September 10, 2026 12:20
@jchable
jchable merged commit 4aa6b5f into dev Sep 10, 2026
2 checks passed
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/web/multi-d0c2d048a7 branch September 10, 2026 12:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant