Skip to content

fix: update auto merge on patch or minor - #279

Merged
notaphplover merged 1 commit into
masterfrom
renovate/auto-merge-on-patch-or-minor
Sep 10, 2026
Merged

notaphplover merged 1 commit into
masterfrom
renovate/auto-merge-on-patch-or-minor

Conversation

@inversify-app

@inversify-app inversify-app Bot commented Sep 10, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence Type Update Pending
@changesets/cli (source) 3.0.1 → 3.0.2 age confidence devDependencies patch
@graphql-tools/merge (source) 9.2.3 → 9.2.4 age confidence dependencies patch
@graphql-tools/schema (source) ^10.1.0 → ^10.1.1 age confidence dependencies patch
@graphql-tools/utils (source) 12.0.0 → 12.0.1 age confidence devDependencies patch
@inversifyjs/http-core (source) ^5.5.3 → ^5.6.0 age confidence peerDependencies minor 5.6.1
@inversifyjs/http-express (source) 5.5.3 → 5.6.0 age confidence devDependencies minor 5.6.1
@inversifyjs/http-fastify (source) 5.5.3 → 5.6.0 age confidence devDependencies minor 5.6.1
eslint (source) 10.9.1 → 10.10.0 age confidence devDependencies minor
fastify (source) 5.12.1 → 5.12.3 age confidence devDependencies patch
lint-staged 17.4.1 → 17.5.0 age confidence devDependencies minor 17.5.1
node (source) 24.20.0 → 24.21.0 age confidence minor
pnpm (source) 12.3.2 → 12.3.4 age confidence tool-constraint patch
pnpm (source) 12.3.2 → 12.3.4 age confidence packageManager patch

Release Notes

changesets/changesets (@​changesets/cli)

v3.0.2

Compare Source

Patch Changes
ardatan/graphql-tools (@​graphql-tools/merge)

v9.2.4

Compare Source

Patch Changes
  • #​8367 2262087 Thanks @​ardatan! - Preserve multiple applications of the same directive when extending a type even if the repeatable directive definition is not present in the merge inputs.

  • #​8394 5523c4b Thanks @​bengry! - Write the synthesized default operation types back onto the schema definition node, so merging a schema extension that has no operation block (federation SDL, for example) still produces a query root on graphql@17.

  • Updated dependencies [60db079, 57e316d, 1c1c5a0, 1c1c5a0, 0b9529f]:

ardatan/graphql-tools (@​graphql-tools/schema)

v10.1.1

Compare Source

Patch Changes
ardatan/graphql-tools (@​graphql-tools/utils)

v12.0.1

Compare Source

Patch Changes
  • #​8368 60db079 Thanks @​ardatan! - Omit mutation/subscription from printSchemaWithDirectives when those root types are no longer present on the schema (e.g. after pruneSchema).

  • #​8366 57e316d Thanks @​ardatan! - Allow % in paths checked by isValidPath (e.g. directories from URL-encoded repo names).

  • #​8370 1c1c5a0 Thanks @​ardatan! - Clean up observableToAsyncIterable queues and unsubscribe when the observable completes, so iterators do not retain references after done. Fixes leak detection flakes related to #​8057.

  • #​8370 1c1c5a0 Thanks @​ardatan! - Prefer runtime description values over stale astNode descriptions in printSchemaWithDirectives / getDescriptionNode. Fixes #​5508.

  • #​8423 0b9529f Thanks @​enisdenjo! - Fix prototype pollution in mergeDeep

    Source keys named __proto__, constructor or prototype are now skipped at every recursion level, and the check for an existing key uses hasOwnProperty instead of in, so inherited properties are never used as merge targets.

    Previously, merging untrusted data such as JSON.parse('{"constructor":{"__proto__":{"call":"x"}}}') could reach and overwrite properties on Object.prototype or Function.prototype.

inversify/monorepo (@​inversifyjs/http-core)

v5.6.0

Compare Source

Minor Changes
  • Added the @Discriminated decorator for discriminator-based error filter matching.
  • Re-exported Discriminated from @inversifyjs/http-core.
  • Added getErrorDiscriminatorMetadata calculation that reads own discriminator metadata only.
  • Updated getErrorFilterForError and setErrorFilterToErrorFilterMap to support discriminator-based error lookup, checking each constructor level's own discriminators before its type filter so more specific handlers win.
Patch Changes
eslint/eslint (eslint)

v10.10.0

Compare Source

Features
  • 264b434 feat: add d and v flags to no-unexpected-multiline (#​21305) (Gihyeon Jeong / 정기현)
  • c6cc6c5 feat: check Object.prototype property names in new-cap (#​21269) (crimsonjay0)
  • 5661fa6 feat: no-extra-bind false negatives with class fields and static blocks (#​21260) (synthex-byte)
Bug Fixes
  • bb47dc6 fix: update dependency file-entry-cache to v11 (#​20801) (Milos Djermanovic)
  • 427ac0a fix: use format strings in debug calls (#​21247) (Francesco Trotta)
  • 9d81532 fix: support __proto__ in /* exported */ comments (#​21261) (sethamus)
  • 87e0a08 fix: prefer-object-has-own autofix breaks when Object is shadowed (#​21282) (김채영)
  • 8e2cb14 fix: new-cap false positive for UTC calls with properties: false (#​21275) (Pixel)
  • 9f4a364 fix: Ignore static imports in no-unreachable (#​21276) (Taha Kotil)
Documentation
  • 2417cad docs: Update README (GitHub Actions Bot)
  • 9cecb8a docs: document \c control letter escapes in no-control-regex (#​21286) (한국)
  • 8724829 docs: update compat table links (#​21263) (fnx)
  • 5634542 docs: Clarify eqeqeq suggestion behavior (#​21256) (Müslüm Yılmaz)
Chores
fastify/fastify (fastify)

v5.12.3

Compare Source

v5.12.2

Compare Source

⚠️ Security release
What's Changed

Full Changelog: fastify/fastify@v5.12.1...v5.12.2

lint-staged/lint-staged (lint-staged)

v17.5.0

Compare Source

Minor Changes
  • #​1847 f9063b7 - Lint-staged now refuses to run when files were staged with --intent-to-add, because Git stash doesn't support them. Previously this was an unhandled error.
Patch Changes
  • #​1848 d718ccc - Lint-staged now handles color support better in non-TTY streams, and honors the FORCE_COLOR environment variable.

  • #​1845 7e5ece8 - Update tinyexec@1.3.1 so that local binaries from node_modules/.bin are resolved starting from the directory of each lint-staged configuration file (in monorepo setups). This behavior was broken in lint-staged@16.3.0 where they were only resolved from the current working directory and up.

  • #​1845 eb8a4e3 - Do not try to restore untracked files when using --hide-all and there is no initial commit yet.

nodejs/node (node)

v24.21.0: 2026-09-08, Version 24.21.0 'Krypton' (LTS), @​aduh95

Compare Source

Notable Changes
  • [71106e1f17] - crypto: update root certificates to NSS 3.126 (Node.js GitHub Bot) #​65495
  • [afca0a912d] - (SEMVER-MINOR) crypto: support loading private keys through STORE loaders (Filip Skokan) #​63949
  • [6274fccbd9] - deps: update OpenSSL to 3.5.8 (Node.js GitHub Bot) #​65542
  • [53cba013c7] - deps: update Undici to 7.29.1 (Node.js GitHub Bot) #​65789
  • [0529772798] - (SEMVER-MINOR) lib,src: improve histogram implementation (James M Snell) #​65024
  • [41c7062b81] - (SEMVER-MINOR) net: improve performance of net.BlockList (James M Snell) #​64974
  • [5197b5a3c5] - (SEMVER-MINOR) perf_hooks: add statistical hypothesis testing to histogram (James M Snell) #​65416
  • [35c635b032] - (SEMVER-MINOR) util: add non-throwing MIMEType.parse (James M Snell) #​64965
Commits

❗ Important

✂ PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

@changeset-bot

changeset-bot Bot commented Sep 10, 2026

Copy link
Copy Markdown

⚠️ No Changeset found

Latest commit: 1f37cf7

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@coderabbitai

coderabbitai Bot commented Sep 10, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Advanced

Run ID: 91afc273-59b2-4403-9a9f-d6b2fd57ca5a

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@notaphplover
notaphplover merged commit ddb214a into master Sep 10, 2026
7 checks passed
@notaphplover
notaphplover deleted the renovate/auto-merge-on-patch-or-minor branch September 10, 2026 23:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant