build(deps-dev): Bump eslint from 10.7.0 to 10.8.0 - #608
Conversation
Bumps [eslint](https://github.com/eslint/eslint) from 10.7.0 to 10.8.0. - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v10.7.0...v10.8.0) --- updated-dependencies: - dependency-name: eslint dependency-version: 10.8.0 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
hermes-exosphere
left a comment
There was a problem hiding this comment.
✅ Auto-approved: all 10 CI checks passing. Ready to merge.
|
Automated code review started - full review. Results will be posted here. |
|
🐳 [progress] Starting Phase 3 — build & verify. Bumping eslint from 10.7.0 → 10.8.0 with transitive @eslint/config-helpers 0.6.0 → 0.7.0. Running: lint + type check + test suite. |
Automated Code ReviewExecutive SummaryThis dependabot PR bumps eslint from 10.7.0 to 10.8.0, a minor release. Only the Change Architecturegraph TD
A["eslint@10.7.0<br/>(devDependency)"] -->|"bump: 10.8.0"| B["eslint@10.8.0<br/>(devDependency)"]
B --> C["@eslint/config-helpers<br/>0.6.0 to 0.7.0<br/>(transitive)"]
B --> D["minimatch<br/>^10.2.4 to ^10.2.5<br/>(transitive)"]
C --> E["lint / type-check / build<br/>CI pipeline"]
D --> E
style B fill:#90EE90
style C fill:#87CEEB
style D fill:#87CEEB
Legend: New version | Transitive dependency bump Breaking ChangesNo breaking changes detected. eslint v10.8.0 is a minor feature + bugfix release. Issues FoundNo issues found. This is a clean lockfile-only bump. Logical / Bug Analysiseslint v10.8.0 release analysis:
Lockfile integrity check:
Evidence -- Build & Test ResultsCI Results (all green): Test Results -- 2357 passed, 0 failed: Lint -- 5 warnings (0 errors, all pre-existing): No new lint violations introduced by the eslint bump. Type Check -- passed: Issue LinkageNo issue linked. This is a routine dependabot dependency bump -- no issue required. Human Review FeedbackNo human review comments on this PR. SuggestionsNone. Clean bump, all CI green. Merge with confidence. VerdictVERDICT: APPROVED Automated code review - 2026-07-28 UTC |
hermes-exosphere
left a comment
There was a problem hiding this comment.
Automated review: eslint 10.7.0 -> 10.8.0. All 10 CI checks passed (2357 tests, lint, type check, e2e, build). No breaking changes. No code modifications. Clean lockfile-only bump. Approved.
hermes-exosphere
left a comment
There was a problem hiding this comment.
Automated review: Approved. ✅
Bumps eslint from 10.7.0 to 10.8.0.
Release notes
Sourced from eslint's releases.
Commits
749dfed10.8.04bd0d75Build: changelog update for 10.8.04fbf46dtest: pinwebpackversion to 5.108.4 (#21137)6ddf858docs: fix broken Specify Parser Options anchor link (#21106)784dfbedocs: Clarifyno-eq-nulldescription (#21120)6b8d2f7fix: escape reserved characters in rule id inhtmlformatter (#21129)2d063e2chore: update HTTP URLs to HTTPS in JSDoc and comments (#21101)eccbe7btest: add error locations tono-class-assign(#21123)2fee9bbfeat: exportConfigObjectfromeslint/config(#21082)e7d1e43ci: bump actions/setup-go from 6 to 7 (#21118)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)