Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 11, 2025

Bumps @react-native-firebase/firestore from 22.4.0 to 23.4.0.

Release notes

Sourced from @​react-native-firebase/firestore's releases.

v5.6.0 - Sign-in with Apple support, react-native 0.60+ only

Please note v5 is still seeing releases, but they are for breaking ecosystem changes only - just enough so it remains relevant for those that can't move to v6 yet.

This change allows use of Sign-in with Apple, an iOS13+ requirement to avoid rejection by the App Store if you use any forms of social authentication.

Breaking: Note that iOS13+ is only supported with Xcode 11+, which requires react-native 0.60+

You may find that react-native-firebase v5.6.x still works on react-native 0.59 (the test suite still does), but you will not be able to integrate Sign-in with Apple until you upgrade as that library is react-native 0.60+ only.

It works well with https://github.com/invertase/react-native-apple-authentication including a guide specifically for integrating with react-native-firebase, though note the import statements are for v6, you'll need to import auth in the v5 style to use it: https://github.com/invertase/react-native-apple-authentication/blob/master/docs/FIREBASE.md

See discussion in the related issue: invertase/react-native-firebase#2884

https://rnfirebase.io/docs/v5.x.x/releases/v5.6.x

Changelog

Sourced from @​react-native-firebase/firestore's changelog.

23.4.0 (2025-09-24)

Features

  • ai: feature parity for AI package with Web SDK (2eaee5b)

Bug Fixes

  • firebase-ios-sdk 12.3.0 / firebase-android-sdk 34.3.0 (123e773)

23.3.1 (2025-09-08)

Bug Fixes

  • app-distribution, android: use correct app-distribution gradle version 5.1.1 (25fddad)

23.3.0 (2025-09-04)

Features

  • firebase-ai: Imagen model support (fb364ed)

23.2.2 (2025-09-03)

Bug Fixes

  • auth: export TOTP types in modular style (45c0649)

23.2.1 (2025-09-01)

Bug Fixes

23.2.0 (2025-08-29)

Features

  • auth: QR code generation from TOTP secrets (dd8e14b)
  • auth: support native TOTP app open (213ee45)
  • auth: support TOTP enroll and unenroll (0ad0658)
  • other: implement TOTP auth for Other platform (3fbc43a)

Bug Fixes

  • analytics, ios: reject getSessionId call if id is zero (9d2a393)
  • auth: add TotpSecret type definition (be01081)

... (truncated)

Commits
  • 86e646d chore(release): release packages
  • 2eaee5b feat(ai): feature parity for AI package with Web SDK
  • f45b420 test(ios): use dyanmically-detected sim throughout pre-boot script
  • 4d55c58 test(deps): use macOS 26 runner, which comes with iPhone26/iOS26 Simulator
  • 123e773 fix: firebase-ios-sdk 12.3.0 / firebase-android-sdk 34.3.0
  • 1be0996 docs(vertexai): more clearly indicate deprecation of vertexai package
  • 90ef814 chore(release): release packages
  • 25fddad fix(app-distribution, android): use correct app-distribution gradle version 5...
  • 7c041ac chore(release): release packages
  • fb364ed feat(firebase-ai): Imagen model support
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.


Note

Upgrade @react-native-firebase/firestore to 23.4.0 and align app and auth to 23.4.0 with lockfile updates.

  • Dependencies:
    • Upgrade @react-native-firebase/firestore to 23.4.0.
    • Align @react-native-firebase/app and @react-native-firebase/auth to 23.4.0 in package.json.
    • Update package-lock.json, including peer dependency on @react-native-firebase/[email protected].

Written by Cursor Bugbot for commit 3065208. This will update automatically on new commits. Configure here.

Bumps [@react-native-firebase/firestore](https://github.com/invertase/react-native-firebase) from 22.4.0 to 23.4.0.
- [Release notes](https://github.com/invertase/react-native-firebase/releases)
- [Changelog](https://github.com/invertase/react-native-firebase/blob/main/CHANGELOG.md)
- [Commits](invertase/react-native-firebase@v22.4.0...v23.4.0)

---
updated-dependencies:
- dependency-name: "@react-native-firebase/firestore"
  dependency-version: 23.4.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Oct 11, 2025

Labels

The following labels could not be found: dependencies, javascript. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

Updated Firebase dependencies to version 23.4.0.
@Rahul5430 Rahul5430 merged commit ae4a281 into main Dec 11, 2025
3 checks passed
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/react-native-firebase/firestore-23.4.0 branch December 11, 2025 19:43
Copy link

@cursor cursor bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This PR is being reviewed by Cursor Bugbot

Details

You are on the Bugbot Free tier. On this plan, Bugbot will review limited PRs each billing cycle.

To receive Bugbot reviews on all of your PRs, visit the Cursor dashboard to activate Pro and start your 14-day free trial.

"@react-native-firebase/app": "^22.1.0",
"@react-native-firebase/auth": "^22.1.0",
"@react-native-firebase/firestore": "^22.1.0",
"@react-native-firebase/firestore": "^23.4.0",
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bug: Package lock inconsistent with package.json Firebase versions

The package-lock.json is inconsistent with package.json. While package.json updates all three Firebase packages (app, auth, firestore) to ^23.4.0, the lock file only updates firestore and leaves app and auth at ^22.1.0. This causes a peer dependency violation since @react-native-firebase/[email protected] requires @react-native-firebase/[email protected], but the resolved app version is 22.4.0. The lock file needs to be regenerated to sync all Firebase packages to version 23.4.0.

Additional Locations (1)

Fix in Cursor Fix in Web

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants