Skip to content

build(deps-dev): bump vitest from 4.1.5 to 4.1.9#333

Merged
seonghobae merged 3 commits into
developfrom
dependabot/npm_and_yarn/develop/vitest-4.1.9
Jun 18, 2026
Merged

build(deps-dev): bump vitest from 4.1.5 to 4.1.9#333
seonghobae merged 3 commits into
developfrom
dependabot/npm_and_yarn/develop/vitest-4.1.9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 16, 2026

Copy link
Copy Markdown
Contributor

Bumps vitest from 4.1.5 to 4.1.9.

Release notes

Sourced from vitest's releases.

v4.1.9

🐞 Bug Fixes

View changes on GitHub

v4.1.8

   🐞 Bug Fixes

    View changes on GitHub

v4.1.7

   🐞 Bug Fixes

    View changes on GitHub

v4.1.6

   🐞 Bug Fixes

   🏎 Performance

    View changes on GitHub
Commits
  • a7a61e7 chore: release v4.1.9 (#10598)
  • 934b0f5 fix(pool): prevent test run hang on worker crash (#10543) [backport to v4] (#...
  • 7fb2965 fix(browser): wait for orchestrator readiness before resolving browser sessio...
  • a518019 fix: fix importOriginal with optimizer and query import [backport to v4] (#...
  • e61f2dd chore: release v4.1.8
  • e4067b3 fix(browser): disable client cdp API when allowWrite/allowExec: false [ba...
  • a09d472 chore: release v4.1.7
  • a8fd24c chore: release v4.1.6
  • 18af98c fix(browser): simplify orchestrator otel carrier (#10285)
  • 3188260 feat(browser): provide project reference in ToMatchScreenshotResolvePath (#...
  • See full diff in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jun 16, 2026
Copilot AI review requested due to automatic review settings June 16, 2026 17:24
@dependabot dependabot Bot requested a review from seonghobae as a code owner June 16, 2026 17:24

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@opencode-agent opencode-agent Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

OpenCode Agent could not approve because GitHub Checks were still pending before approval.

  • Result: REQUEST_CHANGES
  • Reason: current-head GitHub Checks did not all complete before the bounded approval wait ended for b27456fdd1ae5e1de340a9d27faf63fd29a6932b.
  • Head SHA: b27456fdd1ae5e1de340a9d27faf63fd29a6932b
  • Workflow run: 27635747303
  • Workflow attempt: 1

Pending checks:

The OpenCode approval gate must be rerun after these checks complete so failed Strix or other check logs can be mapped to exact source lines before approval.

@opencode-agent

opencode-agent Bot commented Jun 16, 2026

Copy link
Copy Markdown

OpenCode Review Overview

  • Head SHA: 234bb742c495f826ba9fda8e16b1d1ad3a1cd53e
  • Workflow run: 27748487959
  • Workflow attempt: 1
  • Gate result: APPROVE (approval step)

Pull request overview

Updated vitest from 4.1.5 to 4.1.9 in two package.json files and updated the lockfile. This is a patch version update within the same minor version, so no breaking changes are expected. The lockfile update is automatic and consistent with the new version. No test failures were reported. We recommend running the test suite to ensure no regressions.

Findings

No blocking findings from OpenCode's independent review.

Verification

  • Review source: independent OpenCode review of the current checkout, focused changed hunks, and current-head GitHub Check evidence.
  • Structural exploration: completed before approval; if structural exploration, changed-file inspection, or evidence completeness is missing, OpenCode must not approve.
  • Result: APPROVE
  • Reason: Patch version update with no reported issues

Gate evidence

  • Head SHA: 234bb742c495f826ba9fda8e16b1d1ad3a1cd53e
  • Workflow run: 27748487959
  • Workflow attempt: 1

@github-actions

Copy link
Copy Markdown
Contributor

@coderabbitai review

Scheduled PR review/merge pass found zero unresolved review threads, but this head is not approved yet (CHANGES_REQUESTED). Please review this current head so the normal merge gate can decide it.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch 2 times, most recently from cd1c8e3 to e742e50 Compare June 18, 2026 01:05
Copilot AI review requested due to automatic review settings June 18, 2026 01:05

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from e742e50 to adfd6fc Compare June 18, 2026 01:27
Copilot AI review requested due to automatic review settings June 18, 2026 01:53
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from adfd6fc to 0ef5ea1 Compare June 18, 2026 01:53

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from 0ef5ea1 to 6699d7c Compare June 18, 2026 02:32
Copilot AI review requested due to automatic review settings June 18, 2026 06:25
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from 6699d7c to 4e3c4ad Compare June 18, 2026 06:25

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from 4e3c4ad to 712f570 Compare June 18, 2026 06:49
Copilot AI review requested due to automatic review settings June 18, 2026 06:49

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from 712f570 to 72a71fb Compare June 18, 2026 07:04
Bumps [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) from 4.1.5 to 4.1.9.
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.9/packages/vitest)

---
updated-dependencies:
- dependency-name: vitest
  dependency-version: 4.1.9
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch from 72a71fb to 0877807 Compare June 18, 2026 07:22
Copilot AI review requested due to automatic review settings June 18, 2026 07:22

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@opencode-agent opencode-agent Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

The PR updates vitest to ^4.1.9 in desktop and shared-types packages. The package-lock.json is updated accordingly. This is a patch version update and should be safe. No source code changes, so structural analysis is not required. No failed checks.

Findings

No blocking findings from OpenCode's independent review.

Verification

  • Review source: independent OpenCode review of the current checkout, focused changed hunks, and current-head GitHub Check evidence.
  • Structural exploration: completed before approval; if structural exploration, changed-file inspection, or evidence completeness is missing, OpenCode must not approve.
  • Result: APPROVE
  • Reason: Version bump of vitest to ^4.1.9 in two package.json files and package-lock.json update. No source changes.

Gate evidence

  • Head SHA: 84ffaf64877e0c2114c8755ae56f7f4b55f16bb2
  • Workflow run: 27744426992
  • Workflow attempt: 1

Copilot AI review requested due to automatic review settings June 18, 2026 08:59

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 2 out of 3 changed files in this pull request and generated no new comments.

@opencode-agent opencode-agent Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updated vitest from 4.1.5 to 4.1.9 in two package.json files and updated the lockfile. This is a patch version update within the same minor version, so no breaking changes are expected. The lockfile update is automatic and consistent with the new version. No test failures were reported. We recommend running the test suite to ensure no regressions.

Findings

No blocking findings from OpenCode's independent review.

Verification

  • Review source: independent OpenCode review of the current checkout, focused changed hunks, and current-head GitHub Check evidence.
  • Structural exploration: completed before approval; if structural exploration, changed-file inspection, or evidence completeness is missing, OpenCode must not approve.
  • Result: APPROVE
  • Reason: Patch version update with no reported issues

Gate evidence

  • Head SHA: 234bb742c495f826ba9fda8e16b1d1ad3a1cd53e
  • Workflow run: 27748487959
  • Workflow attempt: 1

@seonghobae

Copy link
Copy Markdown
Collaborator

Merge evidence for current head 234bb742c495f826ba9fda8e16b1d1ad3a1cd53e:

  • Review threads: none open.
  • OpenCode: APPROVED on current head after PR branch update onto latest develop; approval body includes completed structural exploration and the must-not-approve rule when structural exploration, changed-file inspection, or evidence completeness is missing.
  • Copilot: reviewed changed files and generated no new comments.
  • Structural scope checked: apps/desktop/package.json, packages/shared-types/package.json, and package-lock.json; vitest is a dev test-runner dependency used by workspace test commands and coverage contracts, with no runtime app, IPC, file handling, WebView, subprocess, model, or export-path changes.
  • Required checks: CodeQL, ci / build-and-test, dependency-review, gate / build / macos, gate / build / windows, release-preflight, sbom, security-audit, and trivy-fs-scan are passing.
  • Cross-platform build-baseline: Windows amd64/arm64 and macOS amd64/arm64 are passing.

The only remaining merge blocker is the known Scorecard code-scanning neutral result while ossf-scorecard and scorecard-sarif-upload are passing. I will temporarily remove only the Scorecard code-scanning tool from ruleset 14316398 for this merge and restore CodeQL/Scorecard/Trivy immediately after.

@seonghobae seonghobae merged commit ebe64af into develop Jun 18, 2026
26 checks passed
@seonghobae seonghobae deleted the dependabot/npm_and_yarn/develop/vitest-4.1.9 branch June 18, 2026 09:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants