Skip to content

chore(deps): bump astro from 5.18.2 to 7.2.2 in /website - #86

Closed
ThePlenkov wants to merge 0 commit into
dependabot/github_actions/oven-sh/setup-bun-2.2.0from
dependabot/bun/website/astro-7.2.2
Closed

ThePlenkov wants to merge 0 commit into
dependabot/github_actions/oven-sh/setup-bun-2.2.0from
dependabot/bun/website/astro-7.2.2

Conversation

@ThePlenkov

@ThePlenkov ThePlenkov commented Aug 18, 2026 •

Copy link
Copy Markdown
Contributor

User description

Replacement for #67 (closed during stack restructure). Dependabot bump for astro in /website.

Generated with Devin


CodeAnt-AI Description

Upgrade the website’s Astro framework to version 7.2.2

What Changed

  • The website now uses Astro 7.2.2 instead of the older Astro 5 release
  • Existing development, build, preview, and validation workflows continue to use Astro

Impact

✅ Website runs on the current Astro major release
✅ Access to Astro 7 compatibility and fixes

💡 Usage Guide

Checking Your Pull Request

Every time you make a pull request, our system automatically looks through it. We check for security issues, mistakes in how you're setting up your infrastructure, and common code problems. We do this to make sure your changes are solid and won't cause any trouble later.

Talking to CodeAnt AI

Got a question or need a hand with something in your pull request? You can easily get in touch with CodeAnt AI right here. Just type the following in a comment on your pull request, and replace "Your question here" with whatever you want to ask:

@codeant-ai ask: Your question here

This lets you have a chat with CodeAnt AI about your pull request, making it easier to understand and improve your code.

Example

@codeant-ai ask: Can you suggest a safer alternative to storing this secret?

Preserve Org Learnings with CodeAnt

You can record team preferences so CodeAnt AI applies them in future reviews. Reply directly to the specific CodeAnt AI suggestion (in the same thread) and replace "Your feedback here" with your input:

@codeant-ai: Your feedback here

This helps CodeAnt AI learn and adapt to your team's coding style and standards.

Example

@codeant-ai: Do not flag unused imports.

Retrigger review

Ask CodeAnt AI to review the PR again, by typing:

@codeant-ai: review

Check Your Repository Health

To analyze the health of your code repository, visit our dashboard at https://app.codeant.ai. This tool helps you identify potential issues and areas for improvement in your codebase, ensuring your repository maintains high standards of code health.

@codeant-ai

codeant-ai Bot commented Aug 18, 2026 •

Copy link
Copy Markdown

🤖 CodeAnt AI — Review Status

Status Commit Started (UTC) Finished (UTC)
✅ Reviewed your PR 8f72607 Aug 18, 2026 · 12:35 12:36

@coderabbitai

coderabbitai Bot commented Aug 18, 2026

Copy link
Copy Markdown

Warning

Review limit reached

@ThePlenkov, you've reached your PR review limit, so we couldn't start this review.

Next review available in: 7 minutes

Limit details: You’ve used all 3 included reviews currently available under your plan.

Enable usage-based reviews in Billing to review now. Otherwise, wait until the next included review is available.
You're only billed for reviews past your plan's rate limits ($0.25/file).

How can I continue?

After more reviews become available, a review can be triggered using the @coderabbitai review command as a PR comment. Alternatively, push new commits to this PR.

To avoid repeated limits, reduce automatic review volume by pausing incremental auto-reviews earlier, using label-based review opt-in, excluding WIP or generated PR titles, or requesting reviews manually when the PR is ready. If your team needs uninterrupted high-volume reviews, an organization admin can enable usage-based reviews.

How do review limits work?

CodeRabbit enforces per-developer PR review limits for each organization. Most developers receive the normal plan review availability.

For paid Pro and Pro+ PR reviews, CodeRabbit uses adaptive limits for sustained high-volume activity. When a developer's recent PR review activity reaches the 95th percentile or higher among CodeRabbit users, additional reviews become available more gradually as earlier reviews age out of the rolling window.

Please refer docs for additional details.

Review details
⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Pro Plus

Run ID: 9ef63f27-c4cc-438b-aa4b-68e2e2ee9fcd

📥 Commits

Reviewing files that changed from the base of the PR and between 0b6e448 and 8f72607.

⛔ Files ignored due to path filters (1)
  • website/bun.lock is excluded by !**/*.lock
📒 Files selected for processing (1)
  • website/package.json

Comment @coderabbitai help to get the list of available commands.

@baz-reviewer

baz-reviewer Bot commented Aug 18, 2026

Copy link
Copy Markdown

Merger

Waiting for CI and review to complete.

Commit 8f72607 · Updated 2026-08-18 12:35 UTC

Review this PR on Baz | Customize your next review

@codacy-production

Copy link
Copy Markdown

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

AI Reviewer: first review requested successfully. AI can make mistakes. Always validate suggestions.

Run reviewer

TIP This summary will be updated as you push new changes.

@codeant-ai codeant-ai Bot added the size:XS This PR changes 0-9 lines, ignoring generated files label Aug 18, 2026

@amazon-q-developer amazon-q-developer Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Summary

This PR updates Astro from 5.18.2 to 7.2.2, a 2-major-version jump. While dependency updates are important, there is a critical blocking issue that must be resolved before merging:

Critical Issue

  • Peer Dependency Conflict: @astrojs/starlight@0.37.7 requires astro ^5.5.0, but this PR updates to astro ^7.2.2. This incompatibility will cause runtime issues.

Recommended Actions

  1. Update @astrojs/starlight to a version compatible with Astro 7.x
  2. Test the website build and functionality after the updates
  3. Review Astro's migration guides for breaking changes between v5 → v6 and v6 → v7

The lock file changes appear consistent with the package.json update, but the peer dependency conflict blocks this PR from being merged safely.


You can now have the agent implement changes and create commits directly on your pull request's source branch. Simply comment with /q followed by your request in natural language to ask the agent to make changes.

Comment thread website/package.json Outdated
Comment on lines +16 to +17
"@astrojs/starlight": "0.37.7",
"astro": "^5.0.0",
"astro": "^7.2.2",

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🛑 Peer Dependency Conflict: The @astrojs/starlight version 0.37.7 has a peer dependency requiring astro: "^5.5.0", but this PR updates Astro to ^7.2.2. This will cause a peer dependency mismatch that could lead to runtime errors or unexpected behavior. Update @astrojs/starlight to a version compatible with Astro 7.x, or verify compatibility before merging.

@codacy-production codacy-production Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR updates the 'astro' dependency from version 5.18.2 to 7.2.2 in the /website directory. This is a major version upgrade spanning two major releases.

While the automated analysis indicates the PR is 'up to standards', it is critical to note that Astro major releases (v6 and v7) usually introduce breaking changes and require specific migration steps for configurations or components. The current PR only updates the version number in package.json, which may lead to build or runtime failures if breaking changes are not addressed.

About this PR

  • This PR performs a major version bump (v5 to v7) but lacks adjustments to Astro configuration files or components. Major versions typically introduce breaking changes that require manual migration steps. Please verify if migration is necessary according to the Astro release notes.

Test suggestions

  • Verify astro dependency version update in package.json

TIP Improve review quality by adding custom instructions
TIP How was this review? Give us feedback

@qodo-code-review

Copy link
Copy Markdown

PR Summary by Qodo

Upgrade website to Astro 7.2.2

⚙️ Configuration changes 🕐 10-20 Minutes

Grey Divider

AI Description

• Upgrade the website runtime from Astro 5 to Astro 7.2.2.
• Regenerate Bun resolutions for Astro’s compiler, Markdown, and Vite 8 toolchain.
Diagram

graph TD
  P["Website manifest"] --> A["Astro 7"] --> V["Vite 8"] --> R["Rolldown bundler"]
  A --> C["Rust compiler"]
  A --> M["Satteri markdown"]
Loading
High-Level Assessment

The following are alternative approaches to this PR:

1. Coordinate integration upgrades
  • ➕ Aligns Starlight and related packages with declared Astro 7 peer support
  • ➕ Reduces build and rendering compatibility risk
  • ➖ Expands the PR beyond the Dependabot update
  • ➖ May require configuration or content migrations
2. Stage through Astro 6
  • ➕ Separates breaking changes by major release
  • ➕ Makes regressions easier to isolate
  • ➖ Requires multiple dependency updates and validation cycles
  • ➖ Delays adoption of Astro 7

Recommendation: A direct upgrade is efficient if the complete website build and checks pass, but compatibility should be confirmed before merging. The lockfile still records Starlight 0.37.7 with an Astro ^5.5.0 peer range and astro-expressive-code without declared Astro 7 support; coordinating compatible integration upgrades is preferable if those constraints produce warnings or failures.

Files changed (2) +209 / -191

Other (2) +209 / -191
bun.lockRegenerate website dependency graph for Astro 7 +208/-190

Regenerate website dependency graph for Astro 7

• Updates the locked Astro package from 5.18.2 to 7.2.2 and refreshes its transitive dependency graph. The new graph introduces Rust compiler bindings, Satteri Markdown processing, Shiki 4, Vite 8, Rolldown, Lightning CSS, and associated platform binaries.

website/bun.lock

package.jsonRequire Astro 7.2.2 for the website +1/-1

Require Astro 7.2.2 for the website

• Raises the website’s direct Astro dependency range from ^5.0.0 to ^7.2.2.

website/package.json

@ThePlenkov
ThePlenkov force-pushed the dependabot/github_actions/oven-sh/setup-bun-2.2.0 branch from 0b6e448 to c922513 Compare August 18, 2026 12:37
@ThePlenkov ThePlenkov closed this Aug 18, 2026
@ThePlenkov
ThePlenkov force-pushed the dependabot/bun/website/astro-7.2.2 branch from 8f72607 to c922513 Compare August 18, 2026 12:37
@sonarqubecloud

Copy link
Copy Markdown

@qodo-code-review

Copy link
Copy Markdown

Code Review by Qodo

🐞 Bugs (1) 📘 Rule violations (0) 📜 Skill insights (0)

Grey Divider


Action required

1. Starlight excludes Astro 7 🐞 Bug ≡ Correctness
Description
The bump installs Astro 7.2.2 while active Starlight 0.37.7 and its MDX/Expressive Code integrations
declare peer support only for older Astro majors. The deployment consequently builds a
peer-incompatible stack instead of Starlight 0.41+, which added Astro 7 support.
Code

website/package.json[17]

+    "astro": "^7.2.2",
Relevance

●●● Strong

Astro 7 conflicts with pinned Starlight and integration peer ranges; coordinated upgrades are
required for the stated dependency bump.

PR-#32
PR-#31

ⓘ Recommendations generated based on similar findings in past PRs

Evidence
The website actively loads Starlight and uses its loader/schema, while the lockfile records
Starlight's Astro ^5.5.0 peer, MDX's Astro ^5.0.0 peer, and Expressive Code's peer range
excluding Astro 7. The Starlight 0.41.0 release explicitly identifies itself as adding Astro 7
support and instructs users to update Astro and official integrations together; CI installs this
graph and runs astro build.

website/bun.lock[57-63]
website/bun.lock[457-459]
website/astro.config.mjs[39-46]
website/src/content.config.ts[1-6]
.github/workflows/deploy-website.yml[35-39]
🌐 Starlight 0.41.0 adds Astro 7 support and directs users to update Astro and other official integrations together.

Agent prompt
The issue below was found during a code review. Follow the provided context and guidance below and implement a solution

## Issue description
Astro was upgraded to 7.2.2, but Starlight remains pinned to 0.37.7, whose peer dependency excludes Astro 7. Its resolved MDX and Expressive Code integrations are incompatible as well.

## Issue Context
Starlight 0.41.0 is the release that adds Astro 7 support. Upgrade Starlight and regenerate the Bun lockfile so all official integrations resolve to Astro 7-compatible versions, then verify the website build.

## Fix Focus Areas
- website/package.json[14-19]
- website/bun.lock[7-10]

ⓘ Copy this prompt and use it to remediate the issue with your preferred AI generation tools


Grey Divider

Context
✅ Compliance rules (platform): 14 rules
✅ Skills: sverka
✅ Web pages:
  +8 more
Review mode: ⚖️ Balanced: This is a major Astro 5-to-7 runtime upgrade with broad transitive toolchain changes, but the behavioral risk is concentrated in one dependency path rather than multiple independently modified logic areas.

Grey Divider

Tip of the day
💡 Did you know, you can keep summaries lean with Finding overflow, which tucks the rest behind 'View more'

More tips ↗ | Customize Qodo ↗ | Qodo docs ↗

Grey Divider

Qodo Logo

Comment thread website/package.json Outdated
"@astrojs/sitemap": "^3.7.3",
"@astrojs/starlight": "0.37.7",
"astro": "^5.0.0",
"astro": "^7.2.2",

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required

1. Starlight excludes astro 7 🐞 Bug ≡ Correctness

The bump installs Astro 7.2.2 while active Starlight 0.37.7 and its MDX/Expressive Code integrations
declare peer support only for older Astro majors. The deployment consequently builds a
peer-incompatible stack instead of Starlight 0.41+, which added Astro 7 support.
Agent Prompt
## Issue description
Astro was upgraded to 7.2.2, but Starlight remains pinned to 0.37.7, whose peer dependency excludes Astro 7. Its resolved MDX and Expressive Code integrations are incompatible as well.

## Issue Context
Starlight 0.41.0 is the release that adds Astro 7 support. Upgrade Starlight and regenerate the Bun lockfile so all official integrations resolve to Astro 7-compatible versions, then verify the website build.

## Fix Focus Areas
- website/package.json[14-19]
- website/bun.lock[7-10]

ⓘ Copy this prompt and use it to remediate the issue with your preferred AI generation tools

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size:XS This PR changes 0-9 lines, ignoring generated files

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant