Skip to content

build(deps): bump the server-minor-and-patch group across 1 directory with 14 updates - #226

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/server/server-minor-and-patch-d9b6ce11b2
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/server/server-minor-and-patch-d9b6ce11b2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 8, 2026

Copy link
Copy Markdown
Contributor

Bumps the server-minor-and-patch group with 14 updates in the /server directory:

Package From To
@aws-sdk/client-ssm 3.1087.0 3.1146.0
@deepgram/sdk 5.5.0 5.14.0
express-rate-limit 8.5.2 8.7.0
groq-sdk 1.3.0 1.6.0
helmet 8.2.0 8.3.0
joi 18.2.3 18.2.9
mediasoup 3.20.9 3.28.0
mongoose 9.7.2 9.10.4
pino 10.3.1 10.4.0
socket.io 4.8.3 4.8.4
tsx 4.23.1 4.23.15
@types/node 26.1.1 26.6.4
mongodb-memory-server 11.2.0 11.3.0
supertest 7.2.2 7.3.1

Updates @aws-sdk/client-ssm from 3.1087.0 to 3.1146.0

Release notes

Sourced from @​aws-sdk/client-ssm's releases.

v3.1146.0

3.1146.0(2026-10-02)

Documentation Changes
  • client-lambda-web: Documentation update for AWS Lambda Web Functions, clarifies that the LambdaWeb APIs are experimental and not yet available to external customers. (de11d1e1)
New Features
  • client-mediapackagev2: Dynamic Multiview enables viewers to watch multiple live video streams in a single combined output. Static filter configuration allows users to configure endpoints with layouts and sources without using query parameters. The number of sources per multiview channel has been increased to 50. (8a1ac09c)
  • client-invoicing: API and doc updates related to adding MarketplacePunchOutEnabled and MarketplacePunchOutPreference fields to ProcurementPortalPreferences related APIs (948be4b5)
  • client-glue: Added refresh token grant type to Glue Connection supported OAuth 2.0 grant types (6101fef0)
  • client-cognito-identity-provider: Amazon Cognito User Pools now supports the OIDC-standard authentication context class reference (ACR) and authentication methods reference (AMR) claims on issued access and Id tokens. Amazon Cognito User Pools also now supports step-up authentication via our existing authentication APIs. (196e191f)
  • client-pinpoint-sms-voice-v2: AWS End User Messaging SMS CarrierLookup API now supports phone number cleansing on customer opt-in. when selected, the response includes the additional field "OriginalPhoneNumber". It can also return additional PhoneNumberType enums, VOIP and PREPAID. (42d43613)
  • client-securityagent: Adds trigger filters that control which pull request events, target branches, and labels start an automatic code review. (3d73df94)

For list of updated packages, view updated-packages.md in assets-3.1146.0.zip

v3.1145.0

3.1145.0(2026-10-01)

Chores
Documentation Changes
  • client-ec2: This release launches the AMI tag sharing feature, which lets AMI owners share tags alongside their AMIs, eliminating the need to build and maintain custom tag replication workflows. (82608f8c)
New Features
  • clients: update client endpoints as of 2026-10-01 (5244c2a9)
  • client-bedrock-agent: Adds an optional textReadyAt field to ListIngestionJobs and GetIngestionJob for Managed Knowledge Bases data source sync jobs. The field denotes the timestamp at which all the documents in the scope of a sync job had their text content indexed and are available for retrieval. (a810c753)
  • client-lambda-web: Lambda Web Functions GA launch. Lambda Web Functions enable customers to run web applications and API backends (ed0d0540)
  • client-quicksight: This release adds HierarchyFilter support for Amazon QuickSight analysis and dashboard and 2 legged OAuth for databricks datasources. (a1730e33)
  • client-endusermessaging: AWS End User Messaging now supports Brand profiles and Notify code configurations. Brand profiles capture your sender details once to reuse across phone number registrations. Notify code configurations let you define your OTP policy and delivery settings to send passcodes in minutes. (3e5402c6)
  • client-transfer: AWS Transfer Family Workflows adds support for the structuredLogDestinations option, enabling customers to specify a custom Amazon CloudWatch Logs log group for managed workflow execution logs. (db1f8330)
  • client-health: Adds DescribeServiceLifecycle operation returning lifecycle information for AWS services, including end-of-support dates, version recommendations, and lifecycle events. (db93c016)
  • client-cloudfront: Added always-amz-auth as a supported signing behavior for Origin Access Control (OAC), enabling CloudFront to authenticate requests to Lambda-Web origins. (e24eb7cf)
  • client-sagemaker: Release support for c8a.16xlarge and m8a.16xlarge instance types for SageMaker HyperPod (cfa700a6)
  • client-securityhub: Adds GetRemediationsV2 and ListExposuresByRemediationV2 APIs. This feature allows customers to see their highest priority remediations for their Exposure findings. Remediations target key changes customers can make to resources to drive finding resolution. (fe355577)
Bug Fixes
  • lib-transfer-manager: respect file read stream's byte range on upload (#8324) (449c2814)
  • ci: run format-check when a draft PR is marked ready for review (#8326) (d99dd58e)

... (truncated)

Changelog

Sourced from @​aws-sdk/client-ssm's changelog.

3.1146.0 (2026-10-02)

Note: Version bump only for package @​aws-sdk/client-ssm

3.1145.0 (2026-10-01)

Note: Version bump only for package @​aws-sdk/client-ssm

3.1144.0 (2026-09-30)

Note: Version bump only for package @​aws-sdk/client-ssm

3.1143.0 (2026-09-29)

Note: Version bump only for package @​aws-sdk/client-ssm

3.1142.0 (2026-09-28)

Features

  • client-ssm: Add support for sharing SSM documents with organizations and OUs using RAM. (4affe98)

3.1141.0 (2026-09-25)

Note: Version bump only for package @​aws-sdk/client-ssm

... (truncated)

Commits

Updates @deepgram/sdk from 5.5.0 to 5.14.0

Release notes

Sourced from @​deepgram/sdk's releases.

v5.14.0

5.14.0 (2026-10-01)

Features

v5.13.0

5.13.0 (2026-09-23)

Features

  • Listen v2 (Flux): change numerals during an active connection with socket.sendConfigure({ type: "Configure", numerals: true }). Numerals convert written numbers to numerical format for turns transcribed after the update. (#559) (667a729)

Bug Fixes

  • Compatibility: restore the v5 type and runtime safeguards lost during regeneration: legacy Voice Agent and listen-provider type paths, ListenV2CloseStream.Type, deprecated Aura/Flux model symbols, and DeepgramTimeoutError extending Error. (acd8e37)
  • Passthrough HTTP: client.fetch() again sends authentication to every first-party Deepgram REST host, including absolute agent.deepgram.com URLs, while keeping credentials off third-party origins. (acd8e37)

v5.12.0

5.12.0 (2026-09-18)

Features

  • Streaming WebSockets: All Voice Agent, Listen v1/v2, and Speak v1/v2 sockets now support for await...of. Callback handlers remain usable alongside iteration, and breaking from the loop closes the connection. (#550)
  • Voice Agent: Add FunctionCallCancelled messages and the defer_until_eot function setting, allowing integrations to avoid responding to invalidated calls and defer irreversible actions until end of turn. (#557)
  • Examples: Add a production-grade Listen v1 reconnection example with bounded audio buffering, jittered backoff, close-code handling, and timestamp continuity. (#539)

Improvements

  • Streaming WebSockets: Add off(event, callback) and per-close shouldReconnect control. Flux Listen v2 now treats the expected no-status (1005) close after sendCloseStream() as terminal. Existing on() replacement semantics are unchanged. (#557)

Documentation

  • Document the complete streaming WebSocket surface in the packaged README, including lifecycle and typed send methods. (#542)

v5.11.0

5.11.0 (2026-09-11)

Agent force-end-turn support, Flux TTS expressivity controls, and a wider Flux TTS speed range.

Features

  • Agent: add socket.sendForceEndTurn({ type: "ForceEndTurn" }) to end the current turn on demand. Agent Deepgram speak providers using Flux (version: "v2") also accept expressivity, a whole-number calm-to-animated setting from -2 to 2; 0 is the default. (#546) (96fca66)
  • Speak v2 (Flux TTS): speed now accepts values from 0.5 to 1.5 in 0.05 increments, instead of 0.85 to 1.15. Batch Speak v2 requests also accept expressivity from -2 to 2. (#546) (96fca66)

Compatibility

... (truncated)

Changelog

Sourced from @​deepgram/sdk's changelog.

5.14.0 (2026-10-01)

Features

  • Speak v2 (Flux TTS): Add inline pause markers for batch requests and IPA pronunciation overrides for batch and WebSocket requests. Pronunciation is Early Access; pause markers are batch-only. Invalid combinations report CONTROL_COMBINATION_INVALID, and pause markers on WebSocket requests produce DATA-0002. See Speed, Pause, Pronunciation. (#564) (7d76c6c)
  • Listen v2 (Flux): Add typed Warning server messages and onWarning(...) handling for warnings returned during a streaming session.

Compatibility

  • Topics and Intents: SharedTopics and SharedIntents now type the direct segments response shape returned by the API. Existing results traversal remains available in v5 through deprecated runtime facades.

5.13.0 (2026-09-23)

Features

  • Listen v2 (Flux): change numerals during an active connection with socket.sendConfigure({ type: "Configure", numerals: true }). Numerals convert written numbers to numerical format for turns transcribed after the update. (#559) (667a729)

Bug Fixes

  • Compatibility: restore the v5 type and runtime safeguards lost during regeneration: legacy Voice Agent and listen-provider type paths, ListenV2CloseStream.Type, deprecated Aura/Flux model symbols, and DeepgramTimeoutError extending Error. (acd8e37)
  • Passthrough HTTP: client.fetch() again sends authentication to every first-party Deepgram REST host, including absolute agent.deepgram.com URLs, while keeping credentials off third-party origins. (acd8e37)

5.12.0 (2026-09-18)

Features

  • Streaming WebSockets: All Voice Agent, Listen v1/v2, and Speak v1/v2 sockets now support for await...of. Callback handlers remain usable alongside iteration, and breaking from the loop closes the connection. (#550)
  • Voice Agent: Add FunctionCallCancelled messages and the defer_until_eot function setting, allowing integrations to avoid responding to invalidated calls and defer irreversible actions until end of turn. (#557)
  • Examples: Add a production-grade Listen v1 reconnection example with bounded audio buffering, jittered backoff, close-code handling, and timestamp continuity. (#539)

Improvements

  • Streaming WebSockets: Add off(event, callback) and per-close shouldReconnect control. Flux Listen v2 now treats the expected no-status (1005) close after sendCloseStream() as terminal. Existing on() replacement semantics are unchanged. (#557)

Documentation

  • Document the complete streaming WebSocket surface in the packaged README, including lifecycle and typed send methods. (#542)

5.11.0 (2026-09-11)

Agent force-end-turn support, Flux TTS expressivity controls, and a wider Flux TTS speed range.

Features

  • Agent: add socket.sendForceEndTurn({ type: "ForceEndTurn" }) to end the current turn on demand. Agent Deepgram speak providers using Flux (version: "v2") also accept expressivity, a whole-number calm-to-animated setting from -2 to 2; 0 is the default. (#546) (96fca66)
  • Speak v2 (Flux TTS): speed now accepts values from 0.5 to 1.5 in 0.05 increments, instead of 0.85 to 1.15. Batch Speak v2 requests also accept expressivity from -2 to 2. (#546) (96fca66)

... (truncated)

Commits
  • ecdcab9 chore(main): release 5.14.0 (#565)
  • 7d76c6c feat(regen): add Flux TTS Controls (#564)
  • 78bc3f3 chore(main): release 5.13.0 (#560)
  • ff6563f docs(changelog): expand 5.13.0 release notes
  • 1403936 chore(main): release 5.13.0
  • 667a729 feat(regen): add Flux numerals configuration (#559)
  • acd8e37 fix: restore regeneration compatibility notes
  • 36cb99b chore: restore release version after regeneration
  • ca2c8c3 test(listen): cover v2 numerals configure message
  • 1afadab chore: refresh lockfile after regeneration
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for @​deepgram/sdk since your current version.


Updates express-rate-limit from 8.5.2 to 8.7.0

Release notes

Sourced from express-rate-limit's releases.

v8.7.0

You can view the changelog here.

v8.6.2

You can view the changelog here.

v8.6.1

You can view the changelog here.

v8.6.0

You can view the changelog here.

Commits
  • 48db09e 8.7.0
  • dce5871 v8.7.0 changelog
  • 2f08044 Add inspect.software health badge (#673)
  • a29757c feat: add retryAfter option (#661)
  • 146e88b chore: rename license
  • 5cfb8e8 ci: drop top-level id-token: write from the workflow token (#676)
  • 062bbdd fix: re-wrap license.md so GitHub recognizes it as MIT (#675)
  • 514772d chore(deps-dev): bump mintlify in the development-dependencies group (#674)
  • 4f06c8a chore(deps-dev): bump the development-dependencies group with 2 updates (#671)
  • 83356a5 chore(deps): bump ip-address from 10.4.0 to 10.5.0 (#672)
  • Additional commits viewable in compare view

Updates groq-sdk from 1.3.0 to 1.6.0

Release notes

Sourced from groq-sdk's releases.

v1.6.0

1.6.0 (2026-08-25)

Full Changelog: v1.5.0...v1.6.0

Features

  • chat: add Qwen3.8 reasoning guidance (c2b0264)

Chores

  • GitHub Terraform: Create/Update .github/workflows/code-freeze-bypass.yaml [skip ci] (99fc8ef)
  • GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci] (8d224a0)
  • GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci] (2c5b7aa)
  • internal: allow the mock server port to be set with STAINLESS_MOCK_PORT (90cec2d)

Styles

  • chat: format completion params union (91d9de9)

v1.5.0

1.5.0 (2026-07-30)

Full Changelog: v1.4.1...v1.5.0

Features

v1.4.1

1.4.1 (2026-07-29)

Full Changelog: v1.4.0...v1.4.1

Chores

  • internal: codegen related update (873736d)

v1.4.0

1.4.0 (2026-07-24)

Full Changelog: v1.3.0...v1.4.0

Features

  • stlc: configurable CI runner and private-production-repo support in workflow templates (21fa0b8)

... (truncated)

Changelog

Sourced from groq-sdk's changelog.

1.6.0 (2026-08-25)

Full Changelog: v1.5.0...v1.6.0

Features

  • chat: add Qwen3.8 reasoning guidance (c2b0264)

Chores

  • GitHub Terraform: Create/Update .github/workflows/code-freeze-bypass.yaml [skip ci] (99fc8ef)
  • GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci] (8d224a0)
  • GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci] (2c5b7aa)
  • internal: allow the mock server port to be set with STAINLESS_MOCK_PORT (90cec2d)

Styles

  • chat: format completion params union (91d9de9)

1.5.0 (2026-07-30)

Full Changelog: v1.4.1...v1.5.0

Features

1.4.1 (2026-07-29)

Full Changelog: v1.4.0...v1.4.1

Chores

  • internal: codegen related update (873736d)

1.4.0 (2026-07-24)

Full Changelog: v1.3.0...v1.4.0

Features

  • stlc: configurable CI runner and private-production-repo support in workflow templates (21fa0b8)

Bug Fixes

  • ci: bump @​arethetypeswrong/cli to ^0.18.0 and run CI workflows on Node 24 (4f98c9b)

... (truncated)

Commits
  • 6de8d02 release: 1.6.0 (#273)
  • 8d224a0 chore: GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci]
  • 2c5b7aa chore: GitHub Terraform: Create/Update .github/workflows/stale.yaml [skip ci]
  • 99fc8ef chore: GitHub Terraform: Create/Update .github/workflows/code-freeze-bypass.y...
  • 9f75436 release: 1.5.0 (#270)
  • a4865c3 release: 1.4.1 (#269)
  • 709b1ab release: 1.4.0 (#266)
  • c6029f3 chore(deps): bump brace-expansion from 2.1.1 to 2.1.2 (#268)
  • 02a599a [codex] chore(deps): bump js-yaml patched versions (#265)
  • 1ddeb6d chore(deps): bump picomatch from 2.3.1 to 2.3.2 (#261)
  • Additional commits viewable in compare view

Updates helmet from 8.2.0 to 8.3.0

Changelog

Sourced from helmet's changelog.

8.3.0 - 2026-07-11

Changed

  • Content-Security-Policy: improved performance by ~7% when there are no dynamic directives
  • Content-Security-Policy: improved error handling for invalid directive names

Fixed

  • Content-Security-Policy: useDefaults: false with no directives is no longer valid, both at runtime and the type level
  • Content-Security-Policy: dynamically-computed directive values would throw, not call next, when invalid
  • Content-Security-Policy: dynamically-computed directive value entries would throw, not call next, when function threw
Commits
  • 75f1a98 8.3.0
  • f03f70d Update changelog for 8.3.0 release
  • a307fce Fix capitalization in CSP package changelog
  • 5347b43 Format default CSP in README for readability
  • 9afc570 CSP: fix middleware-specific README missing link
  • 266c95c Minor speedups to project setups test
  • 7a4196c CSP: update package-specific changelog
  • 02716b4 CSP: improve performance when there are no dynamic directives
  • 3f511ed CSP: move utility functions to separate file
  • 80338af CSP: disabling defaults with no directives is now an error
  • Additional commits viewable in compare view

Updates joi from 18.2.3 to 18.2.9

Commits
  • fc3f3bc 18.2.9
  • e7791cb Merge pull request #3152 from hapijs/chore/3151-cleanup
  • 7363128 chore: cleanup for #3151
  • 03a9543 Merge pull request #3151 from carfeii/fix/messages-flat-code-proto-pollution
  • 5b8333c Reject proto as a flat messages() code, closing a sibling of GHSA-gg4h-3h...
  • e30b50e 18.2.8
  • 1c9dede Merge pull request #3149 from hapijs/chore/optimize-schema-creation
  • cdad986 chore: optimize schema creation
  • 057dff2 18.2.7
  • a14051a Merge pull request #3148 from hapijs/chore/optimize-large-arrays
  • Additional commits viewable in compare view

Updates mediasoup from 3.20.9 to 3.28.0

Release notes

Sourced from mediasoup's releases.

3.28.0

3.27.1

3.27.0

3.26.0

3.25.0

3.24.2

3.24.1

... (truncated)

Changelog

Sourced from mediasoup's changelog.

3.28.0

3.27.1

3.27.0

3.26.0

3.25.0

3.24.2

... (truncated)

Commits
  • 3f3440e release 3.28.0 [no-ci]
  • 258f126 update npm dev deps
  • acfffbd Worker: Fall back to Sender Reports when a negotiated 'abs-capture-time' neve...
  • 70f4c23 NEW BWE: Trim BWE::BitrateProber down to what is reachable (#1960)
  • 7b3c149 NEW BWE: Improve RateCalculator and port the remaining integration tests of...
  • 9ab3428 Fix RTX codec with apt not pointing to a media codec (Rust panic, Node opaque...
  • 7b96939 Worker: Fix RTT computed from RTCP reports when the compact NTP timestamp wra...
  • 54437f5 test-ortc.ts: do not expect specific error message
  • 70ddb83 add missing CHANGELOG in rust/
  • 51ab3ef Worker: Fix RTP::Packet::RtxEncode() writing 2 bytes beyond the end of the pa...
  • Additional commits viewable in compare view

Updates mongoose from 9.7.2 to 9.10.4

Release notes

Sourced from mongoose's releases.

9.10.4 / 2026-10-02

  • fix: handle MongoDB server 9.x returning collation: { locale: 'simple' } on all indexes #16557
  • fix(populate): resolve dotted parent path when collecting deferred sub-populate children #16538 jfits
  • fix(array): compare dates by value in indexOf() so pull() removes them #16535 giaBaoJS
  • fix(map): register $set when Map#set() replaces an array #16540 #16539 luantaraschi
  • fix(query): cast case and then expressions in $expr $switch branches #16534 kwy404
  • docs(guide): fix read preference tag set example #16541 NotAFlightRisk

9.10.3 / 2026-09-29

  • fix(model): preserve unsaved documents after ordered bulkSave errors #16533 #16532 IbrahimHafez1
  • fix(model): don't mutate the caller's update object in bulkWrite updateMany #16526 fadiroot
  • fix(schema): run setters declared on the union path itself #16528 giaBaoJS
  • fix(collection): open collection if connection was already opened

… with 14 updates

Bumps the server-minor-and-patch group with 14 updates in the /server directory:

| Package | From | To |
| --- | --- | --- |
| [@aws-sdk/client-ssm](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-ssm) | `3.1087.0` | `3.1146.0` |
| [@deepgram/sdk](https://github.com/deepgram/deepgram-js-sdk) | `5.5.0` | `5.14.0` |
| [express-rate-limit](https://github.com/express-rate-limit/express-rate-limit) | `8.5.2` | `8.7.0` |
| [groq-sdk](https://github.com/groq/groq-typescript) | `1.3.0` | `1.6.0` |
| [helmet](https://github.com/helmetjs/helmet) | `8.2.0` | `8.3.0` |
| [joi](https://github.com/hapijs/joi) | `18.2.3` | `18.2.9` |
| [mediasoup](https://github.com/versatica/mediasoup) | `3.20.9` | `3.28.0` |
| [mongoose](https://github.com/Automattic/mongoose) | `9.7.2` | `9.10.4` |
| [pino](https://github.com/pinojs/pino) | `10.3.1` | `10.4.0` |
| [socket.io](https://github.com/socketio/socket.io) | `4.8.3` | `4.8.4` |
| [tsx](https://github.com/privatenumber/tsx) | `4.23.1` | `4.23.15` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.1.1` | `26.6.4` |
| [mongodb-memory-server](https://github.com/typegoose/mongodb-memory-server/tree/HEAD/packages/mongodb-memory-server) | `11.2.0` | `11.3.0` |
| [supertest](https://github.com/ladjs/supertest) | `7.2.2` | `7.3.1` |



Updates `@aws-sdk/client-ssm` from 3.1087.0 to 3.1146.0
- [Release notes](https://github.com/aws/aws-sdk-js-v3/releases)
- [Changelog](https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-ssm/CHANGELOG.md)
- [Commits](https://github.com/aws/aws-sdk-js-v3/commits/v3.1146.0/clients/client-ssm)

Updates `@deepgram/sdk` from 5.5.0 to 5.14.0
- [Release notes](https://github.com/deepgram/deepgram-js-sdk/releases)
- [Changelog](https://github.com/deepgram/deepgram-js-sdk/blob/main/CHANGELOG.md)
- [Commits](deepgram/deepgram-js-sdk@v5.5.0...v5.14.0)

Updates `express-rate-limit` from 8.5.2 to 8.7.0
- [Release notes](https://github.com/express-rate-limit/express-rate-limit/releases)
- [Commits](express-rate-limit/express-rate-limit@v8.5.2...v8.7.0)

Updates `groq-sdk` from 1.3.0 to 1.6.0
- [Release notes](https://github.com/groq/groq-typescript/releases)
- [Changelog](https://github.com/groq/groq-typescript/blob/main/CHANGELOG.md)
- [Commits](groq/groq-typescript@v1.3.0...v1.6.0)

Updates `helmet` from 8.2.0 to 8.3.0
- [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md)
- [Commits](helmetjs/helmet@v8.2.0...v8.3.0)

Updates `joi` from 18.2.3 to 18.2.9
- [Commits](hapijs/joi@v18.2.3...v18.2.9)

Updates `mediasoup` from 3.20.9 to 3.28.0
- [Release notes](https://github.com/versatica/mediasoup/releases)
- [Changelog](https://github.com/versatica/mediasoup/blob/v3/CHANGELOG.md)
- [Commits](versatica/mediasoup@3.20.9...3.28.0)

Updates `mongoose` from 9.7.2 to 9.10.4
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@9.7.2...9.10.4)

Updates `pino` from 10.3.1 to 10.4.0
- [Release notes](https://github.com/pinojs/pino/releases)
- [Commits](pinojs/pino@v10.3.1...v10.4.0)

Updates `socket.io` from 4.8.3 to 4.8.4
- [Release notes](https://github.com/socketio/socket.io/releases)
- [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md)
- [Commits](https://github.com/socketio/socket.io/compare/socket.io@4.8.3...socket.io@4.8.4)

Updates `tsx` from 4.23.1 to 4.23.15
- [Release notes](https://github.com/privatenumber/tsx/releases)
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs)
- [Commits](privatenumber/tsx@v4.23.1...v4.23.15)

Updates `@types/node` from 26.1.1 to 26.6.4
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `mongodb-memory-server` from 11.2.0 to 11.3.0
- [Release notes](https://github.com/typegoose/mongodb-memory-server/releases)
- [Changelog](https://github.com/typegoose/mongodb-memory-server/blob/master/CHANGELOG.md)
- [Commits](https://github.com/typegoose/mongodb-memory-server/commits/v11.3.0/packages/mongodb-memory-server)

Updates `supertest` from 7.2.2 to 7.3.1
- [Release notes](https://github.com/ladjs/supertest/releases)
- [Commits](forwardemail/supertest@v7.2.2...v7.3.1)

---
updated-dependencies:
- dependency-name: "@aws-sdk/client-ssm"
  dependency-version: 3.1146.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: "@deepgram/sdk"
  dependency-version: 5.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: express-rate-limit
  dependency-version: 8.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: groq-sdk
  dependency-version: 1.6.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: helmet
  dependency-version: 8.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: joi
  dependency-version: 18.2.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: server-minor-and-patch
- dependency-name: mediasoup
  dependency-version: 3.28.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: mongoose
  dependency-version: 9.10.4
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: pino
  dependency-version: 10.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: socket.io
  dependency-version: 4.8.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: server-minor-and-patch
- dependency-name: tsx
  dependency-version: 4.23.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: server-minor-and-patch
- dependency-name: "@types/node"
  dependency-version: 26.6.4
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: mongodb-memory-server
  dependency-version: 11.3.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
- dependency-name: supertest
  dependency-version: 7.3.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: server-minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 8, 2026
@vercel

vercel Bot commented Oct 8, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
a-meet Ready Ready Preview Oct 8, 2026 2:17pm UTC

This branch was successfully deployed

1 active deployment
Preview — e1c47bd9 Deployed Oct 8, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants