Skip to content

deps(deps-dev): bump the js-dev-dependencies group across 1 directory with 2 updates - #216

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/fli-js/js-dev-dependencies-05e7a1191d
Open

deps(deps-dev): bump the js-dev-dependencies group across 1 directory with 2 updates#216
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/fli-js/js-dev-dependencies-05e7a1191d

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 13, 2026

Copy link
Copy Markdown
Contributor

Bumps the js-dev-dependencies group with 2 updates in the /fli-js directory: @types/node and typescript.

Updates @types/node from 25.9.5 to 26.1.1

Commits

Updates typescript from 6.0.3 to 7.0.2

Commits
Maintainer changes

This version was pushed to npm by microsoft1es, a new releaser for typescript since your current version.


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Greptile Summary

This PR updates two development dependencies for the JavaScript package. The changes are:

  • Upgrade @types/node from 25.x to 26.1.1.
  • Upgrade TypeScript from 6.0.3 to 7.0.2.

Confidence Score: 4/5

The frozen dependency installation path is broken and needs to be fixed before merging.

  • The package constraints no longer match the committed Bun lockfile.
  • CI and npm publishing enforce frozen lockfile installation, so both workflows stop before their checks and build.

fli-js/package.json and fli-js/bun.lock

Important Files Changed

Filename Overview
fli-js/package.json Upgrades the Node declarations and TypeScript compiler without refreshing the Bun lockfile used by frozen installs.

Fix All in Cursor Fix All in Claude Code Fix All in Codex

Prompt To Fix All With AI
Fix the following 1 code review issue. Work through them one at a time, proposing concise fixes.

---

### Issue 1 of 1
fli-js/package.json:86-88
**Frozen Lockfile Rejects Upgrades**

The committed Bun lockfile still records the previous `@types/node` and TypeScript constraints and resolutions. CI and npm publishing run `bun install --frozen-lockfile`, so these dependency changes make installation exit before linting, tests, or the release build can start.

Reviews (1): Last reviewed commit: "deps(deps-dev): bump the js-dev-dependen..." | Re-trigger Greptile

Greptile also left 1 inline comment on this PR.

Context used:

  • Context used - CLAUDE.md (source)

… with 2 updates

Bumps the js-dev-dependencies group with 2 updates in the /fli-js directory: [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) and [typescript](https://github.com/microsoft/TypeScript).


Updates `@types/node` from 25.9.5 to 26.1.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `typescript` from 6.0.3 to 7.0.2
- [Release notes](https://github.com/microsoft/TypeScript/releases)
- [Commits](https://github.com/microsoft/TypeScript/commits)

---
updated-dependencies:
- dependency-name: "@types/node"
  dependency-version: 26.1.1
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: js-dev-dependencies
- dependency-name: typescript
  dependency-version: 7.0.2
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: js-dev-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jul 13, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Test Results

    4 files   -   1      4 suites   - 56   55s ⏱️ ±0s
  432 tests  - 289    432 ✅  - 289  0 💤 ±0  0 ❌ ±0 
1 728 runs   - 291  1 728 ✅  - 291  0 💤 ±0  0 ❌ ±0 

Results for commit 06fc834. ± Comparison against base commit 121d34f.

This pull request removes 289 tests.
Airline enum ‑ AIRLINE_NAMES carries the name
Airline enum ‑ CSV-quoted names with embedded commas are unquoted
Airline enum ‑ alliance pseudo-codes are included
Airline enum ‑ digit-prefixed codes use underscore
Airline enum ‑ major carriers are present
Airport CSV quoting ‑ RFC4180 escaped quotes (`""`) decode to a single `"`
Airport CSV quoting ‑ names with embedded commas are unquoted
Airport enum ‑ AIRPORT_NAMES carries the name
Airport enum ‑ common codes are present
Airport enum ‑ enum covers >7000 codes
…

Comment thread fli-js/package.json
Comment on lines +86 to +88
"@types/node": "^26.1.1",
"oxlint": "^1.66.0",
"typescript": "^6.0.3"
"typescript": "^7.0.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Frozen Lockfile Rejects Upgrades

The committed Bun lockfile still records the previous @types/node and TypeScript constraints and resolutions. CI and npm publishing run bun install --frozen-lockfile, so these dependency changes make installation exit before linting, tests, or the release build can start.

Context Used: CLAUDE.md (source)

Prompt To Fix With AI
This is a comment left during a code review.
Path: fli-js/package.json
Line: 86-88

Comment:
**Frozen Lockfile Rejects Upgrades**

The committed Bun lockfile still records the previous `@types/node` and TypeScript constraints and resolutions. CI and npm publishing run `bun install --frozen-lockfile`, so these dependency changes make installation exit before linting, tests, or the release build can start.

**Context Used:** CLAUDE.md ([source](https://app.greptile.com/punit-s-org/github/punitarani/fli/-/custom-context?memory=90a8ba16-9510-4f10-b2ad-cb22d0733792))

How can I resolve this? If you propose a fix, please make it concise.

Fix in Cursor Fix in Claude Code Fix in Codex

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants