Skip to content

chore(deps): bump dembrandt from 0.12.2 to 0.12.7 in the production-dependencies group#11

Merged
arvindrk merged 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-c888067553
May 25, 2026
Merged

chore(deps): bump dembrandt from 0.12.2 to 0.12.7 in the production-dependencies group#11
arvindrk merged 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-c888067553

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 23, 2026

Bumps the production-dependencies group with 1 update: dembrandt.

Updates dembrandt from 0.12.2 to 0.12.7

Release notes

Sourced from dembrandt's releases.

v0.12.7

Changes

Terminal output redesign for compactness and consistency:

  • Centralized theme (lib/formatters/theme.js): semantic ANSI colors that adapt to the terminal background, plus a canonical single-width icon set for stable alignment across terminals
  • Typography condensed to one line per font family (sizes + weights)
  • Colors shown one line per color (swatch, hex, role, rgb, oklch)
  • New end-of-run analysis summary line
  • Saved-file notices moved to the end and labeled with their flag
  • json-only stdout kept pure (summary and notices go to stderr)

Full changelog: dembrandt/dembrandt@v0.12.6...v0.12.7

v0.12.6

Changes

  • Support Google's DESIGN.md draft format (#57)
  • fix: skip elevation section when no box-shadow tokens were extracted
  • docs: README updates for motion tokens, gradients, and WCAG interactive state pairs

Full changelog: dembrandt/dembrandt@v0.12.5...v0.12.6

v0.12.5

Motion tokens: semantic context profiles, hover interaction deltas, pattern classification.

Extracts transition durations/easings per context (button, nav, card, modal, hero), captures hover transform/opacity deltas with pattern names (scale-up, fade-in, color-shift), and inventories keyframe animation names. Displayed as a new Motion section in terminal output.

Also: transparent colors no longer appear in palette, gradients section added to terminal output, logo extractor handles srcset-only images and CDN subdomains.

v0.12.4

`--wcag` now captures contrast pairs for interactive states (hover, focus, disabled).

Uses Playwright hover/focus simulation and `getComputedStyle` — works on all sites regardless of cross-origin CSS restrictions. Disabled elements (`[disabled]`, `[aria-disabled]`) are collected without interaction. Terminal output shows an "Interactive states" section with failing pairs listed first.

v0.12.3

Logo extractor rewrite: multi-instance support, PWA manifest logos, aria-label qualification, third-party brand disqualification (fixes false positives like Perplexity logo on figma.com).

Button extractor rewrite: filters nav/tab elements, scores by visual prominence.

Local UI improvements: brand cards with grouped nav, A/D keyboard navigation across all snapshots, color format popover (HEX/RGB/LCH/OKLCH copy), shadow and border radius copy, delete snapshot, copy CSS variables.

Nightly QA: removed circular self-diff, now smoke-tests extraction success rate.

Commits
  • 6ce0444 chore: bump version to 0.12.7
  • bbb14fa feat: redesign terminal output for compactness and consistency
  • ac1518a docs: clarify DESIGN.md reports only observed values, omits empty sections
  • c5bbe2d chore: bump version to 0.12.6
  • f7cb3b0 fix: skip elevation section when no box-shadow tokens were extracted
  • d4fea77 Support Google's DESIGN.md draft format (#57)
  • 8f7a1f3 docs: update README with motion tokens, gradients, and WCAG interactive state...
  • a485bf3 chore: bump version to 0.12.5
  • 782a65d feat: motion tokens — durations, easings, keyframes (#56)
  • d53fb0f fix: transparent colors in palette, missing gradients section (#55)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the production-dependencies group with 1 update: [dembrandt](https://github.com/dembrandt/dembrandt).


Updates `dembrandt` from 0.12.2 to 0.12.7
- [Release notes](https://github.com/dembrandt/dembrandt/releases)
- [Changelog](https://github.com/dembrandt/dembrandt/blob/main/CHANGELOG.md)
- [Commits](dembrandt/dembrandt@v0.12.2...v0.12.7)

---
updated-dependencies:
- dependency-name: dembrandt
  dependency-version: 0.12.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels May 23, 2026
@socket-security
Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updateddembrandt@​0.12.2 ⏵ 0.12.778 +2100100 +196 +1100

View full report

@arvindrk arvindrk merged commit f1bc344 into main May 25, 2026
4 checks passed
@dependabot dependabot Bot deleted the dependabot/npm_and_yarn/production-dependencies-c888067553 branch May 25, 2026 18:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant