Skip to content

chore(deps): refresh resolved packages - #2098

Open
SimonFair wants to merge 2 commits into
mainfrom
codex/dependency-refresh
Open

SimonFair wants to merge 2 commits into
mainfrom
codex/dependency-refresh

Conversation

@SimonFair

@SimonFair SimonFair commented Sep 29, 2026 •

Copy link
Copy Markdown
Contributor

Refreshes resolved package versions and lockfile entries.

Verification: production dependency audit and API build pass.

Linear issue: CLD-1208

@coderabbitai

coderabbitai Bot commented Sep 29, 2026 •

Copy link
Copy Markdown
Contributor

Review in Change Stack →

Navigate logical layers of code changes, visualize relationships, and explore their blast radius.

No actionable comments were generated in the recent review. 🎉

ℹ️ Recent review info
⚙️ Run configuration

Configuration used: Repository UI

Review profile: CHILL

Plan: Advanced

Run ID: e1326d13-d51f-4354-aff6-e5b8b88ff88a

📥 Commits

Reviewing files that changed from the base of the PR and between d4d9733 and ad700c4.

⛔ Files ignored due to path filters (1)
  • pnpm-lock.yaml is excluded by !**/pnpm-lock.yaml
📒 Files selected for processing (5)
  • api/package.json
  • package.json
  • packages/unraid-api-plugin-connect/package.json
  • packages/unraid-shared/package.json
  • pnpm-workspace.yaml

Included review availability: This review used your included allowance. Your plan provides up to 2 included reviews per hour; 1 remain after this review.


Walkthrough

The pull request updates dependency overrides in the root package and workspace configuration. It also changes undici to 7.29.1 in API and package manifests.

Changes

Dependency Version Updates

Layer / File(s) Summary
Dependency override resolution
package.json, pnpm-workspace.yaml
The root overrides update pins and version ranges for brace-expansion, fast-uri, and ip-address. The workspace configuration adds overrides for listed packages and version ranges.
undici version declarations
api/package.json, packages/unraid-api-plugin-connect/package.json, packages/unraid-shared/package.json
The API package and package manifests update their undici dependency or peer dependency to 7.29.1.

Priority: ➖ Normal

Estimated code review effort: 2 (Simple) | ~10 minutes

Change: Other

Suggested reviewers: elibosley

Merge Risk: ⚪ Minimal · up to ad700

The dependency updates remain consistent with the lockfile, with no concrete merge-blocking issue identified. Merge after normal installation and build checks.

Architecture Summary

Architecture risk: 🔵 Low · up to ad700

The change affects 5 systems.

Changed systems: api, package.json, packages/unraid-api-plugin-connect, packages/unraid-shared, pnpm-workspace.yaml

Architecture concerns
No architecture-level concerns identified.

Review details

Systems and components

  • observed — api (service) was modified; 1 changed file maps to changed impact.
  • observed — package.json (service) was modified; 1 changed file maps to changed impact.
  • observed — packages/unraid-api-plugin-connect (library) was modified; 1 changed file maps to changed impact.
  • observed — packages/unraid-shared (library) was modified; 1 changed file maps to changed impact.

Before / after behavior

  • observed — Modified behavior in api/package.json: Updated the undici dependency version from 7.29.0 to 7.29.1.
  • observed — Modified behavior in package.json: The brace-expansion override ranges now pin to 1.1.19 for versions below 1.1.19 and 5.0.12 for versions from 3.0.0 up to (but excluding) 5.0.13, replacing the prior thresholds and pins. The fast-uri pin changes from 3.1.6 to 3.1.8.
  • observed — Modified behavior in package.json: The ip-address override changes from applying only to versions >=10.0.0 <10.3.1 at 10.3.1 to an unconditional 10.7.1 pin. The brace-expansion range from >=2.0.0 <2.1.4 at 2.1.4 is replaced with >=2.0.0 <2.1.8 at 2.1.7.
  • observed — Modified behavior in packages/unraid-api-plugin-connect/package.json: The undici version in devDependencies changed from 7.29.0 to 7.29.1.
🚥 Pre-merge checks | ✅ 5
✅ Passed checks (5 passed)
Check name Status Explanation
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0…
Linked Issues check ✅ Passed Check skipped because no linked issues were found for this pull request.
Out of Scope Changes check ✅ Passed Check skipped because no linked issues were found for this pull request.
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.
Title check ✅ Passed The title clearly describes the dependency version and lockfile refresh documented in the pull request.
✨ Finishing Touches
🧪 Generate unit tests (beta)
  • Commit to this branch
  • Create a new PR

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

A rabbit checks each version pin,
Then bounds along the workspace in.
undici hops to seven twenty-nine,
All package manifests fall in line.
The rabbit tucks the list away,
And nibbles clover through the day.

Comment @coderabbitai help to get the list of available commands.

@codecov

codecov Bot commented Sep 29, 2026 •

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 53.41%. Comparing base (d4d9733) to head (ad700c4).

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #2098      +/-   ##
==========================================
+ Coverage   53.38%   53.41%   +0.03%     
==========================================
  Files        1044     1044              
  Lines       72705    72705              
  Branches     8399     8407       +8     
==========================================
+ Hits        38811    38834      +23     
+ Misses      33767    33744      -23     
  Partials      127      127              

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@github-actions

Copy link
Copy Markdown
Contributor

This plugin has been deployed to Cloudflare R2 and is available for testing.
Download it at this URL:

https://preview.dl.unraid.net/unraid-api/tag/PR2098/dynamix.unraid.net.plg

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant