From 4723de461def0d65c799d3a81ee6a1b10a1c40d0 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 17 Sep 2026 18:53:00 +0000 Subject: [PATCH 1/2] build(deps-dev): bump pm-changelog from 2026.9.6 to 2026.9.13 Bumps [pm-changelog](https://github.com/unbraind/pm-changelog) from 2026.9.6 to 2026.9.13. - [Release notes](https://github.com/unbraind/pm-changelog/releases) - [Changelog](https://github.com/unbraind/pm-changelog/blob/main/CHANGELOG.md) - [Commits](https://github.com/unbraind/pm-changelog/compare/v2026.9.6...v2026.9.13) --- updated-dependencies: - dependency-name: pm-changelog dependency-version: 2026.9.9 dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 5db1a76..713ff9b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -11,7 +11,7 @@ "devDependencies": { "@types/node": "^26.1.1", "@unbrained/pm-cli": "2026.9.12", - "pm-changelog": "2026.9.6", + "pm-changelog": "2026.9.13", "pm-ops": "^2026.9.11", "typescript": "^7.0.2" }, @@ -982,9 +982,9 @@ } }, "node_modules/pm-changelog": { - "version": "2026.9.6", - "resolved": "https://registry.npmjs.org/pm-changelog/-/pm-changelog-2026.9.6.tgz", - "integrity": "sha512-T5jltOiV/mxXZAeXynbrkZwAUZtDcsJWyPj/GzB/x1U3NqiSLWJoKjEiwHfZOFeLd8v1+jpCRZvg8UercEZlvQ==", + "version": "2026.9.13", + "resolved": "https://registry.npmjs.org/pm-changelog/-/pm-changelog-2026.9.13.tgz", + "integrity": "sha512-1AYlWSXRZol114mohh2zxCmYaNi2T3jsC7HcPQ3K+qQn34LZHY/5uRHfedkmx1Yv3ajY2AavrTMXRQ+yCGMbEw==", "dev": true, "license": "MIT", "bin": { diff --git a/package.json b/package.json index b5ea7f8..7291ca0 100644 --- a/package.json +++ b/package.json @@ -48,7 +48,7 @@ "devDependencies": { "@types/node": "^26.1.1", "@unbrained/pm-cli": "2026.9.12", - "pm-changelog": "2026.9.6", + "pm-changelog": "2026.9.13", "pm-ops": "^2026.9.11", "typescript": "^7.0.2" }, From 3b36a55d9b4ebba443de495cfc94a137443d2ce2 Mon Sep 17 00:00:00 2001 From: SteveBot <1153461+unbraind@users.noreply.github.com> Date: Thu, 17 Sep 2026 21:11:19 +0200 Subject: [PATCH 2/2] Regenerate the changelog under the bumped pm-changelog pm-changelog 2026.9.10 stopped attributing branch-only completions to release tags that do not contain them (pmc-3jq8). The committed CHANGELOG.md was generated before that fix, so the bumped generator and the committed file disagree and changelog:check fails on this branch. Regenerated with changelog:full (mode replace, --all-release-tags), which is the only script whose mode matches changelog:check. --- CHANGELOG.md | 13 +++++++++---- 1 file changed, 9 insertions(+), 4 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index d283182..04d95f4 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -46,6 +46,8 @@ ### Fixed +- A failed provenance publish silently falls back to an unattested one ([pm-slack-i9sz](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-i9sz.toon)) +- Stabilise the changelog gate release date by deriving it from the calendar version instead of the clock ([pm-slack-tfrk](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-tfrk.toon)) - Rebase suffix-stable changelog release verification ([pm-slack-n47a](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-n47a.toon)) - Harden publish scanner and preserve audit history ([pm-slack-lzun](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-lzun.toon)) - Preserve append-only provenance history during review repair ([pm-slack-muxy](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-muxy.toon)) @@ -54,8 +56,6 @@ ### Fixed -- A failed provenance publish silently falls back to an unattested one ([pm-slack-i9sz](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-i9sz.toon)) -- Stabilise the changelog gate release date by deriving it from the calendar version instead of the clock ([pm-slack-tfrk](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-tfrk.toon)) - changelog scripts read the pm workspace with default budgets instead of canonical complete reads ([pm-slack-wwrw](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-wwrw.toon)) ### Security @@ -66,11 +66,16 @@ - Drop inert pm manifest key and guard the closed manifest vocabulary ([pm-slack-kaku](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/chores/pm-slack-kaku.toon)) -## 2026.8.16 - 2026-08-16 +## 2026.8.17 - 2026-08-17 ### Fixed - The pm CLI compatibility floor was declared only in peerDependencies, which only npm enforces, and not in manifest.json pm_min_version, which is the field the CLI enforces ([pm-slack-4big](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-4big.toon)) + +## 2026.8.16 - 2026-08-16 + +### Fixed + - A slack posting command can silently lose its preflight webhook gate when the override scope drifts from the declared commands ([pm-slack-wymh](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/issues/pm-slack-wymh.toon)) ## 2026.8.15 - 2026-08-15 @@ -101,7 +106,7 @@ - Resolve pm-changelog to the release that derives release dates in UTC ([pm-slack-vrdp](https://github.com/unbraind/pm-slack/blob/main/.agents/pm/chores/pm-slack-vrdp.toon)) -## 2026.7.31 - 2026-07-31 +## 2026.8.1 - 2026-08-01 ### Fixed