From 8da50ec9d705911c9e226a0c42e05ad0c28224a5 Mon Sep 17 00:00:00 2001 From: Tushar Kant Naik <61114548+tknatwork@users.noreply.github.com> Date: Wed, 10 Jun 2026 23:28:50 +0530 Subject: [PATCH] chore(deps): apply Dependabot updates (actions + dev-deps; TS6 deferred) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Consolidates the three open Dependabot PRs (#3, #4, #5) into one tested update against current main: GitHub Actions: - actions/checkout v4 -> v6 - github/codeql-action v3 -> v4 (init + analyze) Dev dependencies (variables-styles-extractor): - @figma/plugin-typings ^1.98.0 -> ^1.128.0 - terser ^5.44.1 -> ^5.48.0 - typescript ^5.0.0 -> ^5.9.0 TypeScript 6.0 (proposed by Dependabot) is DEFERRED: @figma/plugin-typings 1.128 is not yet TS6-ready — under TS 6.0 the global Figma ambient types fail to load (218 TS2304 "Cannot find name 'figma'/'Variable'/…" errors) and TS6 also requires an explicit rootDir. Pinned to the latest stable 5.x (5.9.3) instead; revisit when plugin-typings ships TS6 support. Verified: pnpm install --frozen-lockfile, pnpm build (tsc + terser) clean, code.js byte-identical, node --check passes. Co-Authored-By: Claude Fable 5 --- .github/workflows/codeql.yml | 6 +++--- variables-styles-extractor/package.json | 6 +++--- variables-styles-extractor/pnpm-lock.yaml | 22 +++++++++++----------- 3 files changed, 17 insertions(+), 17 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 21269bc..1ae869e 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -39,10 +39,10 @@ jobs: steps: - name: Checkout repository - uses: actions/checkout@v4 + uses: actions/checkout@v6 - name: Initialize CodeQL - uses: github/codeql-action/init@v3 + uses: github/codeql-action/init@v4 with: languages: ${{ matrix.language }} # Use security-extended for stronger ruleset (default is "security") @@ -52,6 +52,6 @@ jobs: config-file: ./.github/codeql/codeql-config.yml - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v3 + uses: github/codeql-action/analyze@v4 with: category: "/language:${{ matrix.language }}" diff --git a/variables-styles-extractor/package.json b/variables-styles-extractor/package.json index f4b147a..e618b3b 100644 --- a/variables-styles-extractor/package.json +++ b/variables-styles-extractor/package.json @@ -9,9 +9,9 @@ "watch": "tsc --watch" }, "devDependencies": { - "@figma/plugin-typings": "^1.98.0", - "terser": "^5.44.1", - "typescript": "^5.0.0" + "@figma/plugin-typings": "^1.128.0", + "terser": "^5.48.0", + "typescript": "^5.9.0" }, "keywords": [ "figma", diff --git a/variables-styles-extractor/pnpm-lock.yaml b/variables-styles-extractor/pnpm-lock.yaml index 9069579..c3f2e23 100644 --- a/variables-styles-extractor/pnpm-lock.yaml +++ b/variables-styles-extractor/pnpm-lock.yaml @@ -9,19 +9,19 @@ importers: .: devDependencies: '@figma/plugin-typings': - specifier: ^1.98.0 - version: 1.121.0 + specifier: ^1.128.0 + version: 1.128.0 terser: - specifier: ^5.44.1 - version: 5.44.1 + specifier: ^5.48.0 + version: 5.48.0 typescript: - specifier: ^5.0.0 + specifier: ^5.9.0 version: 5.9.3 packages: - '@figma/plugin-typings@1.121.0': - resolution: {integrity: sha512-590qfxc5QtGs/AqdAEegNZUWzwEuaA9whl6T8LxscBaGjmqU3Z5jJHgHfYXissy1S5IBsXEZFmudKibpLcxGdQ==} + '@figma/plugin-typings@1.128.0': + resolution: {integrity: sha512-4hJeQj6E4bJiothKriow32MjV4bh2E7jPbeINdfmMQbISfSYSE8gU6YaUc6OioYXXiNiZqPN7RqYF2HBK8YRoQ==} '@jridgewell/gen-mapping@0.3.13': resolution: {integrity: sha512-2kkt/7niJ6MgEPxF0bYdQ6etZaA+fQvDcLKckhy1yIQOzaoKjBBjSj63/aLVjYE3qhRt5dvM+uUyfCg6UKCBbA==} @@ -57,8 +57,8 @@ packages: resolution: {integrity: sha512-UjgapumWlbMhkBgzT7Ykc5YXUT46F0iKu8SGXq0bcwP5dz/h0Plj6enJqjz1Zbq2l5WaqYnrVbwWOWMyF3F47g==} engines: {node: '>=0.10.0'} - terser@5.44.1: - resolution: {integrity: sha512-t/R3R/n0MSwnnazuPpPNVO60LX0SKL45pyl9YlvxIdkH0Of7D5qM2EVe+yASRIlY5pZ73nclYJfNANGWPwFDZw==} + terser@5.48.0: + resolution: {integrity: sha512-J/9An6vs9Us6wKRriSFXBWdRZapREHqFzdNUKk0pmu804EMR6dr6winwo7e5JDxN4xahxQsuysyYFwlwj4XN/Q==} engines: {node: '>=10'} hasBin: true @@ -69,7 +69,7 @@ packages: snapshots: - '@figma/plugin-typings@1.121.0': {} + '@figma/plugin-typings@1.128.0': {} '@jridgewell/gen-mapping@0.3.13': dependencies: @@ -103,7 +103,7 @@ snapshots: source-map@0.6.1: {} - terser@5.44.1: + terser@5.48.0: dependencies: '@jridgewell/source-map': 0.3.11 acorn: 8.15.0