Skip to content

Bump foundation deps 2026.1#24168

Merged
Lemonexe merged 4 commits intodevelopfrom
chore/bump-foundation-deps-26.1
Jan 9, 2026
Merged

Bump foundation deps 2026.1#24168
Lemonexe merged 4 commits intodevelopfrom
chore/bump-foundation-deps-26.1

Conversation

@Lemonexe
Copy link
Copy Markdown
Contributor

@Lemonexe Lemonexe commented Jan 6, 2026

Description

Update most Foundation-related dependencies.

Will merge after freeze on 8th January. Depends on electron-builder PR bcause of git conflicts (also after freeze).

major version:

minor version:

  • electron
  • webpack
  • express
  • openpgp
  • @sentry/browser
  • @sentry/core
  • @sentry/electron
  • @sentry/react-native

patch version:

  • @pmmmwh/react-refresh-webpack-plugin
  • html-webpack-plugin
  • terser-webpack-plugin
  • @electron/notarize

not updated:

  • nx TODO in #18812
  • evolu & friends: intensively WIP...

ℹ️ For reference, last bump foundation deps PR was #23145

Notes for QA

👁️ Besides CI checks and the QA instructions in issue, I have tested locally:

  • webpack, electron: Suite Web and Desktop on all three platforms builds and runs
  • openpgp: desktop update works (tested only on Linux)
  • throwing a Sentry error: native, desktop, web

Related Issue

Resolve #23489

🔍🖥️ Suite native android test results: View in Currents

🔍🖥️ Suite web test results: View in Currents

🔍🖥️ Suite desktop test results: View in Currents

@Lemonexe Lemonexe added dependencies Pull requests that update a dependency file build-desktop This will trigger the build of desktop apps for your PR labels Jan 6, 2026
@socket-security
Copy link
Copy Markdown

socket-security Bot commented Jan 6, 2026

All alerts resolved. Learn more about Socket for GitHub.

This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored.

Ignoring alerts on:

  • npm/terser-webpack-plugin@5.3.16
  • npm/@sentry/cli@2.58.4
  • npm/@sentry/react-native@7.8.0

View full report

@Lemonexe
Copy link
Copy Markdown
Contributor Author

Lemonexe commented Jan 6, 2026

@SocketSecurity ignore npm/@sentry/react-native@7.8.0
@SocketSecurity ignore npm/@sentry/cli@2.58.4
legitimate usage

@Lemonexe Lemonexe force-pushed the chore/bump-foundation-deps-26.1 branch from 91a8bb1 to 5be1195 Compare January 6, 2026 13:55
@Lemonexe Lemonexe force-pushed the chore/bump-electron-builder branch from 475887e to 4eb9500 Compare January 6, 2026 13:55
@Lemonexe Lemonexe force-pushed the chore/bump-foundation-deps-26.1 branch 2 times, most recently from a038a63 to 10c06f2 Compare January 7, 2026 09:26
@Lemonexe Lemonexe marked this pull request as ready for review January 7, 2026 09:51
Copy link
Copy Markdown
Contributor

@OriginalEveres OriginalEveres left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

tested and looks ok. Builds are ok on mac

@Lemonexe Lemonexe force-pushed the chore/bump-electron-builder branch from 4eb9500 to d105ec8 Compare January 8, 2026 16:57
Base automatically changed from chore/bump-electron-builder to develop January 8, 2026 17:30
@Lemonexe Lemonexe force-pushed the chore/bump-foundation-deps-26.1 branch from 10c06f2 to a831a96 Compare January 8, 2026 17:32
@Lemonexe
Copy link
Copy Markdown
Contributor Author

Lemonexe commented Jan 9, 2026

/rebase

@github-actions
Copy link
Copy Markdown

github-actions Bot commented Jan 9, 2026

@trezor-bot trezor-bot Bot force-pushed the chore/bump-foundation-deps-26.1 branch from a831a96 to c02559b Compare January 9, 2026 10:36
@trezor-bot
Copy link
Copy Markdown
Contributor

trezor-bot Bot commented Jan 9, 2026

✅ Previously successful run of [Test] PR Suite Desktop e2e tests workflow has been found.
⏭️ Skipping tests for this run.
💡 If you are unsure about your latest changes, please rerun the workflow manually. (Use the Re-run all jobs option)

@Lemonexe
Copy link
Copy Markdown
Contributor Author

Lemonexe commented Jan 9, 2026

@SocketSecurity ignore npm/terser-webpack-plugin@5.3.16
legit usage. Besides, the code for the flagged source file has not really changed in four years.

@Lemonexe Lemonexe force-pushed the chore/bump-foundation-deps-26.1 branch from c02559b to 0d84ae1 Compare January 9, 2026 11:54
@Lemonexe Lemonexe merged commit d0daabe into develop Jan 9, 2026
61 of 62 checks passed
@Lemonexe Lemonexe deleted the chore/bump-foundation-deps-26.1 branch January 9, 2026 12:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

build-desktop This will trigger the build of desktop apps for your PR dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Bump foundation deps (2026.01)

2 participants