Skip to content

build(deps): bump the npm-minor-patch group across 1 directory with 22 updates - #1917

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-4651d9db37
Closed

build(deps): bump the npm-minor-patch group across 1 directory with 22 updates#1917
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-patch-4651d9db37

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 13, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm-minor-patch group with 21 updates in the / directory:

Package From To
@google-cloud/text-to-speech 7.0.0 7.1.0
@types/node 26.0.0 26.5.1
chrome-devtools-mcp 1.8.0 1.9.0
openai 7.9.0 7.13.0
@flags-sdk/vercel 1.4.7 1.4.8
@sentry/nextjs 10.73.0 10.74.0
@stripe/stripe-js 9.15.0 9.16.0
@supabase/supabase-js 2.114.0 2.116.0
@upstash/redis 1.38.3 1.38.4
@vercel/functions 3.9.5 3.9.7
flags 4.3.0 4.3.1
lucide-react 1.39.0 1.43.0
stripe 22.6.1 22.6.2
swr 2.4.1 2.5.1
tldts 7.0.25 7.4.12
use-sync-external-store 1.6.0 1.7.0
workflow 4.8.5 4.8.8
zod 4.5.4 4.6.1
@playwright/test 1.62.1 1.63.0
@types/jpeg-js 0.3.0 0.3.7
autoprefixer 10.5.4 10.5.5

Updates @google-cloud/text-to-speech from 7.0.0 to 7.1.0

Release notes

Sourced from @​google-cloud/text-to-speech's releases.

os-login: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

resource-manager: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

secret-manager: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

service-directory: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

tasks: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

text-to-speech: v7.1.0

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)

video-intelligence: v7.1.0

7.1.0 (2026-09-08)

... (truncated)

Changelog

Sourced from @​google-cloud/text-to-speech's changelog.

7.1.0 (2026-09-08)

Features

  • Upgrade librarian gapic-generator-typescript to v5.2.0 (c249594)
Commits

Updates @types/node from 26.0.0 to 26.5.1

Commits

Updates chrome-devtools-mcp from 1.8.0 to 1.9.0

Release notes

Sourced from chrome-devtools-mcp's releases.

chrome-devtools-mcp: v1.9.0

1.9.0 (2026-09-08)

🎉 Features

  • Add --allow-unrestricted-paths by default for CLI (#2618) (2dc104c)
  • add Agent Plugins 1.0 package (#2623) (05d9e55)
  • add an option to turn off js execution tools (#2627) (a78566e)
  • Add cookie-debugging skill and improve network/pages tool descriptions (#2596) (6a67552)
  • add screencast fps option (#2312) (2e641d8)
  • extend --no-javascript-evaluation to cover navigations and initScripts (#2638) (4993a0f)
  • option to disable source maps (#2628) (4430a76)
  • performance: set default trace buffer size to match DevTools (1.2gb) (#2614) (d1baa90)
  • support configurable filesystem roots (#2605) (d00e6f8)

🛠️ Fixes

  • detect scheduled script navigations (#2622) (1b2c0e5)
  • do not enable the DevTools frontend Audits subscription (#2625) (d1e73ff)
  • filter out Chrome webui targets by default (#2648) (020c048)
  • honor background when new_page uses isolatedContext (#2658) (f215c82)
  • memory: expliclity mention the need of a flag (#2620) (46c3e05)
  • truncate long urls in concise network request output (#2513) (552c870)
  • validate viewport and geolocation inputs in emulate tool (#2663) (808aed6), closes #2662

📄 Documentation

🏗️ Refactor

Changelog

Sourced from chrome-devtools-mcp's changelog.

1.9.0 (2026-09-08)

🎉 Features

  • Add --allow-unrestricted-paths by default for CLI (#2618) (2dc104c)
  • add Agent Plugins 1.0 package (#2623) (05d9e55)
  • add an option to turn off js execution tools (#2627) (a78566e)
  • Add cookie-debugging skill and improve network/pages tool descriptions (#2596) (6a67552)
  • add screencast fps option (#2312) (2e641d8)
  • extend --no-javascript-evaluation to cover navigations and initScripts (#2638) (4993a0f)
  • option to disable source maps (#2628) (4430a76)
  • performance: set default trace buffer size to match DevTools (1.2gb) (#2614) (d1baa90)
  • support configurable filesystem roots (#2605) (d00e6f8)

🛠️ Fixes

  • detect scheduled script navigations (#2622) (1b2c0e5)
  • do not enable the DevTools frontend Audits subscription (#2625) (d1e73ff)
  • filter out Chrome webui targets by default (#2648) (020c048)
  • honor background when new_page uses isolatedContext (#2658) (f215c82)
  • memory: expliclity mention the need of a flag (#2620) (46c3e05)
  • truncate long urls in concise network request output (#2513) (552c870)
  • validate viewport and geolocation inputs in emulate tool (#2663) (808aed6), closes #2662

📄 Documentation

🏗️ Refactor

Commits
  • 1cec9cd chore(main): release chrome-devtools-mcp 1.9.0 (#2619)
  • 02c5911 test: migrate screencast tests off withMcpContext to unit tests (#2683)
  • bf9d0a4 chore(deps): bump third_party/devtools-frontend from 330f6aa to d1a4fbf (...
  • a918b7b refactor: extract browser options (#2654)
  • d820bd7 build: fix devtools-frontend dependabot ignore rule (#2681)
  • d4fa58b test: migrate emulation tests off withMcpContext to unit tests (#2665)
  • dc1d559 chore: disable prettier ignore for files updated by release-please (#2680)
  • 4430a76 feat: option to disable source maps (#2628)
  • 757b1fe chore(deps-dev): bump puppeteer from 25.9.0 to 25.10.0 in the bundled group (...
  • 086299a test: add sinon mock utils and emulate tool unit tests (#2641)
  • Additional commits viewable in compare view

Updates openai from 7.9.0 to 7.13.0

Release notes

Sourced from openai's releases.

v7.13.0

7.13.0 (2026-09-09)

Features

v7.12.1

7.12.1 (2026-09-09)

Includes the GPT Image 2.5 support from 7.12.0, which was not published to npm.

Features

  • api: add GPT Image 2.5 models and image options (#2705) (6500a16)

Bug Fixes

  • ci: run Cloudflare example regressions before release (#2706) (c5cc31c)

v7.12.0

7.12.0 (2026-09-08)

Features

  • api: add GPT Image 2.5 models and image options (#2705) (6500a16)

Bug Fixes

  • assistants: reject root IDs in run-step deltas (#2698) (63dfa4c)
  • files: use a monotonic clock for processing timeout (#2657) (bb0f51b)
  • preserve suppressed workload authorization (#2699) (57bbfd3)

v7.11.0

7.11.0 (2026-09-08)

Features

  • api: Add prompt cache diagnostics (#2608) (f83de8f)
  • api: add service-account API key expiration fields (#2618) (eecbebe)
  • api: correct function argument completion event fields (openapi-545) (#2611) (31bf7e7)
  • api: recognize incomplete web search call status (#2576) (c093c44)

Bug Fixes

... (truncated)

Changelog

Sourced from openai's changelog.

7.13.0 (2026-09-09)

Features

7.12.1 (2026-09-09)

Includes the GPT Image 2.5 support from 7.12.0, which was not published to npm.

Features

  • api: add GPT Image 2.5 models and image options (#2705) (6500a16)

Bug Fixes

  • ci: run Cloudflare example regressions before release (#2706) (c5cc31c)

7.12.0 (2026-09-08)

Features

  • api: add GPT Image 2.5 models and image options (#2705) (6500a16)

Bug Fixes

  • assistants: reject root IDs in run-step deltas (#2698) (63dfa4c)
  • files: use a monotonic clock for processing timeout (#2657) (bb0f51b)
  • preserve suppressed workload authorization (#2699) (57bbfd3)

7.11.0 (2026-09-08)

Features

  • api: Add prompt cache diagnostics (#2608) (f83de8f)
  • api: add service-account API key expiration fields (#2618) (eecbebe)
  • api: correct function argument completion event fields (openapi-545) (#2611) (31bf7e7)
  • api: recognize incomplete web search call status (#2576) (c093c44)

Bug Fixes

  • assistants: retain terminal message snapshots (#2650) (414677e)
  • audio: only signal started recording processes (#2665) (cebdf7c)
  • audio: prefer readable inputs over body metadata (#2548) (86ff7d5)

... (truncated)

Commits

Updates @flags-sdk/vercel from 1.4.7 to 1.4.8

Release notes

Sourced from @​flags-sdk/vercel's releases.

@​flags-sdk/vercel@​1.4.8

Patch Changes

  • #486 c9d2811 Thanks @​dferber90! - Implement the experimental_reportOverride adapter hook to forward override values to the underlying Vercel Flags client.

    This API is not supported for general use yet. Do not use it unless Vercel has explicitly enabled it for you.

  • Updated dependencies [c9d2811, c9d2811, e0eebe6]:

    • flags@4.3.1
    • @​vercel/flags-core@​1.8.1
Commits
  • 6444210 Version Packages (#493)
  • e0eebe6 fix(flags-core): request identity on the stream so Bun receives the first dat...
  • c9d2811 Experiments (#486)
  • 752a05f Trim duplicated vercel flags CLI docs from flags-sdk skill (#492)
  • 22083e7 Prefer vercel flags create over add in the skill (#488)
  • eaa7f1e Make flags-sdk skill setup-first for discovery (#487)
  • See full diff in compare view

Updates @sentry/nextjs from 10.73.0 to 10.74.0

Release notes

Sourced from @​sentry/nextjs's releases.

10.74.0

  • feat(v10): Streamline isolation scope handling & reset in isolation scopes (#24152)
  • fix(server-utils): Include Gemini reasoning tokens in Vercel AI token usage (#23433)
  • fix(v10/browser): Set user_agent.original on all spans for consistent filtering (#24226)
  • fix(v10/cloudflare): Auto-instrument classes re-exported from the worker entry (#24181)
  • fix(v10/core): Guard loadModule default parameter against ESM scope (#24154)
  • fix(v10/core): Match wrapped Facebook Mobile browser errors in DEFAULT_IGNORE_ERRORS (#23877)
  • fix(v10/core): Resolve MCP capture policy per operation (#23796)
  • fix(v10/nextjs): Fix SDK import crashing under jsdom/happy-dom (#23906)
  • fix(v10/nextjs): Keep the Pages Router runtime out of App Router client bundles (#24223)
  • fix(v10/nextjs): Register Vercel AI span processors on Next.js (#23773)
  • fix(v10/nuxt): Windows file:// for import-in-the-middle hook and isAbsolute for C:\ (#24026)
  • fix(v10/profiling-node): Bump @​sentry/node-cpu-profiler to 2.4.4 (#24238)
  • fix(v10/sveltekit): Handle SvelteKit 3 error kinds in handleErrorWithSentry (#23995)
  • fix(v10/sveltekit): Read Cloudflare execution context from platform.ctx (#23994)
  • fix(v10/sveltekit): Read SvelteKit config from the Vite plugin (#23998)
  • test(e2e): Assert Next.js Cloudflare worker bundle stays free of orchestrion bundler plugins (#23910)

Work in this release was contributed by @​halillusion and @​zkasuran. Thank you for your contributions!

Bundle size 📦

Path Size
@​sentry/browser 27.12 KB
@​sentry/browser - with treeshaking flags 25.59 KB
@​sentry/browser (incl. Tracing) 45.53 KB
@​sentry/browser (incl. Tracing + Span Streaming) 47.29 KB
@​sentry/browser (incl. Tracing, Profiling) 50.18 KB
@​sentry/browser (incl. Tracing, Replay) 83.87 KB
@​sentry/browser (incl. Tracing, Replay) - with treeshaking flags 73.74 KB
@​sentry/browser (incl. Tracing, Replay with Canvas) 88.49 KB
@​sentry/browser (incl. Tracing, Replay, Feedback) 100.82 KB
@​sentry/browser (incl. Feedback) 43.89 KB
@​sentry/browser (incl. sendFeedback) 31.8 KB
@​sentry/browser (incl. FeedbackAsync) 36.82 KB
@​sentry/browser (incl. Metrics) 28.19 KB
@​sentry/browser (incl. Logs) 28.41 KB
@​sentry/browser (incl. Metrics & Logs) 29.09 KB
@​sentry/react 28.89 KB
@​sentry/react (incl. Tracing) 47.74 KB
@​sentry/vue 32.42 KB
@​sentry/vue (incl. Tracing) 47.47 KB
@​sentry/svelte 27.15 KB

... (truncated)

Changelog

Sourced from @​sentry/nextjs's changelog.

10.74.0

  • feat(v10): Streamline isolation scope handling & reset in isolation scopes (#24152)
  • fix(server-utils): Include Gemini reasoning tokens in Vercel AI token usage (#23433)
  • fix(v10/browser): Set user_agent.original on all spans for consistent filtering (#24226)
  • fix(v10/cloudflare): Auto-instrument classes re-exported from the worker entry (#24181)
  • fix(v10/core): Guard loadModule default parameter against ESM scope (#24154)
  • fix(v10/core): Match wrapped Facebook Mobile browser errors in DEFAULT_IGNORE_ERRORS (#23877)
  • fix(v10/core): Resolve MCP capture policy per operation (#23796)
  • fix(v10/nextjs): Fix SDK import crashing under jsdom/happy-dom (#23906)
  • fix(v10/nextjs): Keep the Pages Router runtime out of App Router client bundles (#24223)
  • fix(v10/nextjs): Register Vercel AI span processors on Next.js (#23773)
  • fix(v10/nuxt): Windows file:// for import-in-the-middle hook and isAbsolute for C:\ (#24026)
  • fix(v10/profiling-node): Bump @​sentry/node-cpu-profiler to 2.4.4 (#24238)
  • fix(v10/sveltekit): Handle SvelteKit 3 error kinds in handleErrorWithSentry (#23995)
  • fix(v10/sveltekit): Read Cloudflare execution context from platform.ctx (#23994)
  • fix(v10/sveltekit): Read SvelteKit config from the Vite plugin (#23998)
  • test(e2e): Assert Next.js Cloudflare worker bundle stays free of orchestrion bundler plugins (#23910)

Work in this release was contributed by @​halillusion and @​zkasuran. Thank you for your contributions!

Commits
  • ce5009a release: 10.74.0
  • 4b24ddd meta(changelog): Update changelog for 10.74.0 (#24252)
  • 371ed5d fix(v10/profiling-node): Bump @​sentry/node-cpu-profiler to 2.4.4 (#24238)
  • 9f38e48 fix(v10/browser): Set user_agent.original on all spans for consistent filte...
  • 264f990 fix(v10/cloudflare): Auto-instrument classes re-exported from the worker entr...
  • c89f6e6 fix(v10/nextjs): Keep the Pages Router runtime out of App Router client bundl...
  • de25dcb fix(v10/core): Guard loadModule default parameter against ESM scope (#24154)
  • b627037 feat(v10): Streamline isolation scope handling & reset in isolation scopes (#...
  • 2ce0ea1 fix(v10/nuxt): Windows file:// for import-in-the-middle hook and isAbsolute f...
  • 3e0eccc fix(server-utils): Include Gemini reasoning tokens in Vercel AI token usage (...
  • Additional commits viewable in compare view

Updates @stripe/stripe-js from 9.15.0 to 9.16.0

Release notes

Sourced from @​stripe/stripe-js's releases.

v9.16.0

  • Add Link Signup Element types (#969)
  • Add Custom Checkout tiered and package pricing types (#966)

New features

Fixes

Changed

Commits

Updates @supabase/supabase-js from 2.114.0 to 2.116.0

Release notes

Sourced from @​supabase/supabase-js's releases.

v2.116.0

2.116.0 (2026-09-07)

🚀 Features

  • auth: add MFA recovery codes API (#2676)
  • storage: add bucket lifecycle configuration (#2659)
  • storage: topk 10k support (#2667)
  • storage: add versionId support to create URL methods (#2678)

🩹 Fixes

  • auth: silence commit-guard-discarded refresh in initial session (#2668)
  • storage: drop legacy prefix from lifecycles (#2674)
  • supabase: warn when schema is passed outside db options (#2663)

❤️ Thank You

  • fadymak
  • Ferhat Elmas
  • Katerina Skroumpelou @​mandarini
  • Tyler Hillery

v2.116.0-canary.3

2.116.0-canary.3 (2026-09-07)

🚀 Features

  • auth: add MFA recovery codes API (#2676)
  • storage: add versionId support to create URL methods (#2678)

❤️ Thank You

  • fadymak
  • Katerina Skroumpelou
  • Tyler Hillery

v2.116.0-canary.2

2.116.0-canary.2 (2026-09-07)

🚀 Features

  • storage: topk 10k support (#2667)

🩹 Fixes

  • storage: drop legacy prefix from lifecycles (#2674)

❤️ Thank You

... (truncated)

Changelog

Sourced from @​supabase/supabase-js's changelog.

2.116.0 (2026-09-07)

🚀 Features

  • auth: add MFA recovery codes API (#2676)

🩹 Fixes

  • supabase: warn when schema is passed outside db options (#2663)

❤️ Thank You

2.115.0 (2026-09-03)

🚀 Features

  • postgrest: add getOpenApiSpec() (#2651)

❤️ Thank You

Commits

Updates @upstash/redis from 1.38.3 to 1.38.4

Release notes

Sourced from @​upstash/redis's releases.

@​upstash/redis@​1.38.4

Patch Changes

  • 7ac8182: Fix read-your-writes sending a stale upstash-sync-token

    A read issued straight after a write travelled with the token from before that write, so the server was under no obligation to serve the write and readYourWrites silently did not hold.

    HttpClient.request() snapshotted the outgoing headers with mergeHeaders(this.headers, ...) and only afterwards wrote the freshest token into this.headers, so the token learned from response N first shipped with request N+2. The assignment now happens before the merge.

    This regressed in 1.34.5. In 1.34.0–1.34.4 the request options held headers: this.headers by reference, so the late write was still picked up before fetch; 1.34.5 introduced per-request header merging, which turned that reference into a copy without moving the assignment.

Commits

Updates @vercel/functions from 3.9.5 to 3.9.7

Changelog

Sourced from @​vercel/functions's changelog.

@​vercel/functions

Commits

Updates flags from 4.3.0 to 4.3.1

Release notes

Sourced from flags's releases.

flags@4.3.1

Patch Changes

  • #486 c9d2811 Thanks @​dferber90! - Add the experimental_reportOverride adapter hook for observing values set by the Flags SDK override cookie.

    This API is not supported for general use yet. Do not use it unless Vercel has explicitly enabled it for you.

Commits

Updates lucide-react from 1.39.0 to 1.43.0

Release notes

Sourced from lucide-react's releases.

Version 1.43.0

What's Changed

Full Changelog: lucide-icons/lucide@1.42.0...1.43.0

Version 1.42.0

What's Changed

…2 updates

Bumps the npm-minor-patch group with 21 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@google-cloud/text-to-speech](https://github.com/googleapis/google-cloud-node/tree/HEAD/packages/google-cloud-texttospeech) | `7.0.0` | `7.1.0` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `26.0.0` | `26.5.1` |
| [chrome-devtools-mcp](https://github.com/ChromeDevTools/chrome-devtools-mcp) | `1.8.0` | `1.9.0` |
| [openai](https://github.com/openai/openai-node) | `7.9.0` | `7.13.0` |
| [@flags-sdk/vercel](https://github.com/vercel/flags) | `1.4.7` | `1.4.8` |
| [@sentry/nextjs](https://github.com/getsentry/sentry-javascript) | `10.73.0` | `10.74.0` |
| [@stripe/stripe-js](https://github.com/stripe/stripe-js) | `9.15.0` | `9.16.0` |
| [@supabase/supabase-js](https://github.com/supabase/supabase-js/tree/HEAD/packages/core/supabase-js) | `2.114.0` | `2.116.0` |
| [@upstash/redis](https://github.com/upstash/redis-js) | `1.38.3` | `1.38.4` |
| [@vercel/functions](https://github.com/vercel/vercel/tree/HEAD/packages/functions) | `3.9.5` | `3.9.7` |
| [flags](https://github.com/vercel/flags) | `4.3.0` | `4.3.1` |
| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `1.39.0` | `1.43.0` |
| [stripe](https://github.com/stripe/stripe-node) | `22.6.1` | `22.6.2` |
| [swr](https://github.com/vercel/swr) | `2.4.1` | `2.5.1` |
| [tldts](https://github.com/remusao/tldts) | `7.0.25` | `7.4.12` |
| [use-sync-external-store](https://github.com/react/react/tree/HEAD/packages/use-sync-external-store) | `1.6.0` | `1.7.0` |
| [workflow](https://github.com/vercel/workflow/tree/HEAD/packages/workflow) | `4.8.5` | `4.8.8` |
| [zod](https://github.com/colinhacks/zod) | `4.5.4` | `4.6.1` |
| [@playwright/test](https://github.com/microsoft/playwright) | `1.62.1` | `1.63.0` |
| [@types/jpeg-js](https://github.com/eugeneware/jpeg-js) | `0.3.0` | `0.3.7` |
| [autoprefixer](https://github.com/postcss/autoprefixer) | `10.5.4` | `10.5.5` |



Updates `@google-cloud/text-to-speech` from 7.0.0 to 7.1.0
- [Release notes](https://github.com/googleapis/google-cloud-node/releases)
- [Changelog](https://github.com/googleapis/google-cloud-node/blob/main/packages/google-cloud-texttospeech/CHANGELOG.md)
- [Commits](https://github.com/googleapis/google-cloud-node/commits/dlp-v7.1.0/packages/google-cloud-texttospeech)

Updates `@types/node` from 26.0.0 to 26.5.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)

Updates `chrome-devtools-mcp` from 1.8.0 to 1.9.0
- [Release notes](https://github.com/ChromeDevTools/chrome-devtools-mcp/releases)
- [Changelog](https://github.com/ChromeDevTools/chrome-devtools-mcp/blob/main/CHANGELOG.md)
- [Commits](ChromeDevTools/chrome-devtools-mcp@chrome-devtools-mcp-v1.8.0...chrome-devtools-mcp-v1.9.0)

Updates `openai` from 7.9.0 to 7.13.0
- [Release notes](https://github.com/openai/openai-node/releases)
- [Changelog](https://github.com/openai/openai-node/blob/main/CHANGELOG.md)
- [Commits](openai/openai-node@v7.9.0...v7.13.0)

Updates `@flags-sdk/vercel` from 1.4.7 to 1.4.8
- [Release notes](https://github.com/vercel/flags/releases)
- [Commits](https://github.com/vercel/flags/compare/@flags-sdk/vercel@1.4.7...@flags-sdk/vercel@1.4.8)

Updates `@sentry/nextjs` from 10.73.0 to 10.74.0
- [Release notes](https://github.com/getsentry/sentry-javascript/releases)
- [Changelog](https://github.com/getsentry/sentry-javascript/blob/10.74.0/CHANGELOG.md)
- [Commits](getsentry/sentry-javascript@10.73.0...10.74.0)

Updates `@stripe/stripe-js` from 9.15.0 to 9.16.0
- [Release notes](https://github.com/stripe/stripe-js/releases)
- [Commits](stripe/stripe-js@v9.15.0...v9.16.0)

Updates `@supabase/supabase-js` from 2.114.0 to 2.116.0
- [Release notes](https://github.com/supabase/supabase-js/releases)
- [Changelog](https://github.com/supabase/supabase-js/blob/master/packages/core/supabase-js/CHANGELOG.md)
- [Commits](https://github.com/supabase/supabase-js/commits/v2.116.0/packages/core/supabase-js)

Updates `@upstash/redis` from 1.38.3 to 1.38.4
- [Release notes](https://github.com/upstash/redis-js/releases)
- [Commits](https://github.com/upstash/redis-js/compare/@upstash/redis@1.38.3...@upstash/redis@1.38.4)

Updates `@vercel/functions` from 3.9.5 to 3.9.7
- [Release notes](https://github.com/vercel/vercel/releases)
- [Changelog](https://github.com/vercel/vercel/blob/main/packages/functions/CHANGELOG.md)
- [Commits](https://github.com/vercel/vercel/commits/HEAD/packages/functions)

Updates `flags` from 4.3.0 to 4.3.1
- [Release notes](https://github.com/vercel/flags/releases)
- [Commits](https://github.com/vercel/flags/compare/flags@4.3.0...flags@4.3.1)

Updates `lucide-react` from 1.39.0 to 1.43.0
- [Release notes](https://github.com/lucide-icons/lucide/releases)
- [Commits](https://github.com/lucide-icons/lucide/commits/1.43.0/packages/lucide-react)

Updates `stripe` from 22.6.1 to 22.6.2
- [Release notes](https://github.com/stripe/stripe-node/releases)
- [Changelog](https://github.com/stripe/stripe-node/blob/master/CHANGELOG.md)
- [Commits](stripe/stripe-node@v22.6.1...v22.6.2)

Updates `swr` from 2.4.1 to 2.5.1
- [Release notes](https://github.com/vercel/swr/releases)
- [Commits](vercel/swr@v2.4.1...v2.5.1)

Updates `tldts` from 7.0.25 to 7.4.12
- [Release notes](https://github.com/remusao/tldts/releases)
- [Changelog](https://github.com/remusao/tldts/blob/master/CHANGELOG.md)
- [Commits](remusao/tldts@v7.0.25...v7.4.12)

Updates `use-sync-external-store` from 1.6.0 to 1.7.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/HEAD/packages/use-sync-external-store)

Updates `workflow` from 4.8.5 to 4.8.8
- [Release notes](https://github.com/vercel/workflow/releases)
- [Changelog](https://github.com/vercel/workflow/blob/workflow@4.8.8/packages/workflow/CHANGELOG.md)
- [Commits](https://github.com/vercel/workflow/commits/workflow@4.8.8/packages/workflow)

Updates `zod` from 4.5.4 to 4.6.1
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v4.5.4...v4.6.1)

Updates `@playwright/test` from 1.62.1 to 1.63.0
- [Release notes](https://github.com/microsoft/playwright/releases)
- [Commits](microsoft/playwright@v1.62.1...v1.63.0)

Updates `@types/jpeg-js` from 0.3.0 to 0.3.7
- [Release notes](https://github.com/eugeneware/jpeg-js/releases)
- [Commits](jpeg-js/jpeg-js@v0.3.0...v0.3.7)

Updates `autoprefixer` from 10.5.4 to 10.5.5
- [Release notes](https://github.com/postcss/autoprefixer/releases)
- [Changelog](https://github.com/postcss/autoprefixer/blob/main/CHANGELOG.md)
- [Commits](postcss/autoprefixer@10.5.4...10.5.5)

Updates `playwright` from 1.62.1 to 1.63.0
- [Release notes](https://github.com/microsoft/playwright/releases)
- [Commits](microsoft/playwright@v1.62.1...v1.63.0)

---
updated-dependencies:
- dependency-name: "@google-cloud/text-to-speech"
  dependency-version: 7.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@types/node"
  dependency-version: 26.5.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: chrome-devtools-mcp
  dependency-version: 1.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: openai
  dependency-version: 7.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@flags-sdk/vercel"
  dependency-version: 1.4.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@sentry/nextjs"
  dependency-version: 10.74.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@stripe/stripe-js"
  dependency-version: 9.16.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@supabase/supabase-js"
  dependency-version: 2.116.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@upstash/redis"
  dependency-version: 1.38.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: "@vercel/functions"
  dependency-version: 3.9.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: flags
  dependency-version: 4.3.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: lucide-react
  dependency-version: 1.43.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: stripe
  dependency-version: 22.6.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: swr
  dependency-version: 2.5.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: tldts
  dependency-version: 7.4.12
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: use-sync-external-store
  dependency-version: 1.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: workflow
  dependency-version: 4.8.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: zod
  dependency-version: 4.6.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@playwright/test"
  dependency-version: 1.63.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
- dependency-name: "@types/jpeg-js"
  dependency-version: 0.3.7
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: autoprefixer
  dependency-version: 10.5.5
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-minor-patch
- dependency-name: playwright
  dependency-version: 1.63.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 13, 2026
@dependabot
dependabot Bot requested a review from groupthinking as a code owner September 13, 2026 02:06
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 13, 2026
@vercel

vercel Bot commented Sep 13, 2026

Copy link
Copy Markdown
Contributor

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
v0-uvai Building Building Preview, v0 Sep 13, 2026 2:06am UTC

@github-actions

Copy link
Copy Markdown
Contributor

🔍 PR Validation

⚠️ Large PR detected (788 lines changed)

@coderabbitai

coderabbitai Bot commented Sep 13, 2026

Copy link
Copy Markdown
Contributor

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Path: .coderabbit.yaml

Review profile: ASSERTIVE

Plan: Advanced

Run ID: 11774378-0271-4db4-9dc9-29c916e9e8a6

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@github-actions

Copy link
Copy Markdown
Contributor

🔴 E2E Test Results: FAILURE DETECTED

Metric Value
Status 🔴 RED
Total Tests 6
Passed 11
Failed 6
Deployment https://v0-uvai-hvxk9bg89-garv1.vercel.app
Test Output
2m''�[39m�[33m;�[39m
    �[90m190|�[39m       �[34mexpect�[39m(ct)�[33m.�[39m�[34mtoContain�[39m(�[32m'text/event-stream'�[39m)�[33m;�[39m

�[31m�[2m⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯[3/6]⎯�[22m�[39m

�[41m�[1m FAIL �[22m�[49m tests/e2e/pipeline.test.ts�[2m > �[22mEventRelay E2E — Live Deployment�[2m > �[22mSSE Pipeline Stream�[2m > �[22mSSE stream emits at least a pipeline_status:running event
�[31m�[1mAssertionError�[22m: expected 0 to be greater than or equal to 1�[39m
�[36m �[2m❯�[22m tests/e2e/pipeline.test.ts:�[2m208:29�[22m�[39m
    �[90m206|�[39m
    �[90m207|�[39m       �[90m// Must have at least 1 event�[39m
    �[90m208|�[39m       �[34mexpect�[39m(events�[33m.�[39mlength)�[33m.�[39m�[34mtoBeGreaterThanOrEqual�[39m(�[34m1�[39m)�[33m;�[39m
    �[90m   |�[39m                             �[31m^�[39m
    �[90m209|�[39m
    �[90m210|�[39m       �[90m// Must start with pipeline_status:running�[39m

�[31m�[2m⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯[4/6]⎯�[22m�[39m

�[41m�[1m FAIL �[22m�[49m tests/e2e/pipeline.test.ts�[2m > �[22mEventRelay E2E — Live Deployment�[2m > �[22mError Handling�[2m > �[22mmissing URL returns 400, not a hang
�[31m�[1mAssertionError�[22m: expected 401 to be 400 // Object.is equality�[39m

�[32m- Expected�[39m
�[31m+ Received�[39m

�[32m- 400�[39m
�[31m+ 401�[39m

�[36m �[2m❯�[22m tests/e2e/pipeline.test.ts:�[2m358:26�[22m�[39m
    �[90m356|�[39m
    �[90m357|�[39m       �[35mconst�[39m elapsed �[33m=�[39m �[33mDate�[39m�[33m.�[39m�[34mnow�[39m() �[33m-�[39m start�[33m;�[39m
    �[90m358|�[39m       �[34mexpect�[39m(res�[33m.�[39mstatus)�[33m.�[39m�[34mtoBe�[39m(�[34m400�[39m)�[33m;�[39m
    �[90m   |�[39m                          �[31m^�[39m
    �[90m359|�[39m       �[34mexpect�[39m(elapsed)�[33m.�[39m�[34mtoBeLessThan�[39m(�[34m5_000�[39m)�[33m;�[39m �[90m// Should respond instantly�[39m
    �[90m360|�[39m     })�[33m;�[39m

�[31m�[2m⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯[5/6]⎯�[22m�[39m

�[41m�[1m FAIL �[22m�[49m tests/e2e/pipeline.test.ts�[2m > �[22mEventRelay E2E — Live Deployment�[2m > �[22mAPI Health�[2m > �[22mPOST /api/pipeline/stream with no body returns 400
�[31m�[1mAssertionError�[22m: expected [ 400, 500 ] to include 200�[39m
�[36m �[2m❯�[22m tests/e2e/pipeline.test.ts:�[2m441:26�[22m�[39m
    �[90m439|�[39m       )�[33m;�[39m
    �[90m440|�[39m       �[90m// Should handle gracefully — 400 or 500, but respond quickly�[39m
    �[90m441|�[39m       �[34mexpect�[39m([�[34m400�[39m�[33m,�[39m �[34m500�[39m])�[33m.�[39m�[34mtoContain�[39m(res�[33m.�[39mstatus)�[33m;�[39m
    �[90m   |�[39m                          �[31m^�[39m
    �[90m442|�[39m     })�[33m;�[39m
    �[90m443|�[39m   })�[33m;�[39m

�[31m�[2m⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯⎯[6/6]⎯�[22m�[39m


�[2m Test Files �[22m �[1m�[31m1 failed�[39m�[22m�[90m (1)�[39m
�[2m      Tests �[22m �[1m�[31m6 failed�[39m�[22m�[2m | �[22m�[1m�[32m11 passed�[39m�[22m�[90m (17)�[39m
�[2m   Start at �[22m 02:08:27
�[2m   Duration �[22m 5.59s�[2m (transform 56ms, setup 0ms, import 72ms, tests 5.37s, environment 0ms)�[22m


@github-actions

Copy link
Copy Markdown
Contributor

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

@dependabot @github

dependabot Bot commented on behalf of github Sep 13, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 13, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/npm-minor-patch-4651d9db37 branch September 13, 2026 20:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants