feat(deps): upgrade upstream dependencies - #2580
Conversation
- rolldown: 84c904b -> v1.2.6 (5375362) - oxfmt: 0.64.0 -> 0.65.0 - oxlint: 1.79.0 -> 1.80.0 - @oxc-project/runtime: 0.146.0 -> 0.147.0 - @oxc-project/types: 0.146.0 -> 0.147.0 - oxc-minify: 0.146.0 -> 0.147.0 - oxc-parser: 0.146.0 -> 0.147.0 - oxc-transform: 0.146.0 -> 0.147.0 - oxc Rust crates: 0.146.0 -> 0.147.0 - oxc_resolver / oxc_resolver_napi: 11.24.2 -> 11.24.3 - remeda (catalog): ^2.34.1 -> ^2.42.0 Code changes: - packages/cli/binding/index.d.cts: regenerated NAPI type declarations for rolldown v1.2.6 (BindingDevEngine.getModuleInfo / getModuleIds, TsconfigCache pathToTsconfig argument, string tsconfig option, batched BindingMatchGroup name/test signatures, BindingOutputs.mangleCache, BindingErrorsOr -> BindingResult in generateBundle/writeBundle, tsconfig fields on Vite resolve/transform plugin configs) - packages/core/package.json: bundledVersions.rolldown 1.2.5 -> 1.2.6 - Cargo.toml: oxc crate pins 0.146.0 -> 0.147.0 and oxc_resolver pins 11.24.2 -> 11.24.3 - pnpm-workspace.yaml: remeda catalog entry ^2.34.1 -> ^2.42.0 - packages/tools/.upstream-versions.json: rolldown hash 84c904b -> 5375362
✅ No upstream CLI help changes detectedCompared normalized ➖ Vite: no version update (8.2.2)No version update was detected, so there is no CLI help diff. ➖ Vitest: no version update (4.1.11)No version update was detected, so there is no CLI help diff. ✅ Oxlint: no CLI help changes (1.79.0 → 1.80.0)The version was updated, but the normalized CLI help output has no differences. ✅ Oxfmt: no CLI help changes (0.64.0 → 0.65.0)The version was updated, but the normalized CLI help output has no differences. ➖ tsdown: no version update (0.22.14)No version update was detected, so there is no CLI help diff. |
✅ Deploy Preview for viteplus-preview ready!
To edit notification comments on pull requests, go to your Netlify project configuration. |
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
CLI artifact sizes (
|
| Artifact | Format | Base | PR | Change |
|---|---|---|---|---|
packages/cli/dist |
Directory total | 1.59 MiB | 1.59 MiB | -15 B (-0.00%) |
packages/core/dist |
Directory total | 3.91 MiB | 3.92 MiB | +6.69 KiB (+0.17%) |
| Combined package dist | Directory total | 5.50 MiB | 5.50 MiB | +6.68 KiB (+0.12%) |
vp (Linux x64) |
Binary | 10.71 MiB | 10.72 MiB | +16.00 KiB (+0.15%) |
vp (Linux x64) |
gzip -9 | 4.63 MiB | 4.65 MiB | +13.03 KiB (+0.27%) |
| NAPI (Linux x64) | Binary | 32.39 MiB | 31.89 MiB | -516.00 KiB (-1.56%) |
| NAPI (Linux x64) | gzip -9 | 12.76 MiB | 12.59 MiB | -170.09 KiB (-1.30%) |
vp (macOS ARM64) |
Binary | 8.00 MiB | 8.02 MiB | +16.13 KiB (+0.20%) |
vp (macOS ARM64) |
gzip -9 | 4.04 MiB | 4.05 MiB | +6.52 KiB (+0.16%) |
| NAPI (macOS ARM64) | Binary | 39.93 MiB | 39.52 MiB | -420.25 KiB (-1.03%) |
| NAPI (macOS ARM64) | gzip -9 | 17.05 MiB | 16.92 MiB | -136.35 KiB (-0.78%) |
vp (Windows x64) |
Binary | 8.59 MiB | 8.61 MiB | +13.50 KiB (+0.15%) |
vp (Windows x64) |
gzip -9 | 3.75 MiB | 3.76 MiB | +13.53 KiB (+0.35%) |
| NAPI (Windows x64) | Binary | 27.20 MiB | 26.76 MiB | -458.50 KiB (-1.65%) |
| NAPI (Windows x64) | gzip -9 | 10.82 MiB | 10.67 MiB | -148.78 KiB (-1.34%) |
| Trampoline (Windows x64) | Binary | 14.00 KiB | 14.00 KiB | 0 B (0.00%) |
| Trampoline (Windows x64) | gzip -9 | 7.09 KiB | 7.09 KiB | -1 B (-0.01%) |
| Installer (Windows x64) | Binary | 4.50 MiB | 4.50 MiB | 0 B (0.00%) |
| Installer (Windows x64) | gzip -9 | 2.11 MiB | 2.11 MiB | 0 B (0.00%) |
`vp env` now manages Node.js and package-manager versions together. This release also fixes TanStack Start routing and stale Vitest aliases. ### Breaking Changes #### Package-manager setup Vite+ replaces Corepack with managed `npm`, `pnpm`, `yarn`, and `bun` commands. It removes the `corepack` shim and legacy global package-manager installations ([#2391](#2391)), by @liangmiQwQ. Replace Corepack setup commands in shell profiles, CI jobs, and Dockerfiles: | Previous setup | Replacement | | --- | --- | | `corepack enable` | `vp env setup` | | `vp install -g pnpm@<version>` | `vp env default pnpm@<version>` | | `vp install -g yarn@<version>` | `vp env default yarn@<version>` | | `vp install -g bun@<version>` | `vp env default bun@<version>` | | `vp install -g corepack` | Use the managed package-manager commands directly | Use `vp env pin <manager>@<version>` to set a project version. #### `vp env` command scope and JSON output Unscoped `vp env` commands now operate on Node.js and package managers. Package managers support independent defaults, project pins, session overrides, and installation commands ([#2398](#2398)), by @liangmiQwQ. Add `node` to limit an operation to Node.js, for example, `vp env off node` or `vp env unpin node`. Bare versions, such as `vp env default 22.19.0`, still select Node.js. Update scripts that read JSON output: | Command | New output structure | | --- | --- | | `vp env current --json` | `node` and `package_manager` objects | | `vp env list --json`, `vp env list-remote --json` | `node` and `package_managers` groups | See the [environment guide](https://viteplus.dev/guide/env). #### `vp pack` migration to `tsdown` `0.23` `vp pack` now uses `tsdown` `0.23`, which removes deprecated options and changes defaults ([#2614](#2614)), by @fengmk2. 1. Run `vp migrate` to update supported static configurations and package scripts, including projects that already use Vite+. 2. Check migration warnings in `vite.config.*`, `tsdown.config.*`, and `package.json`. 3. Update dynamic configurations manually. Arrays built with `.map()` require manual changes, even when migration reports no warning. 4. Run `vp pack` to check the result. | Previous option | Replacement | | --- | --- | | `bundle: false` | `unbundle: true` | | `outExtension` | `outExtensions` | | `publicDir` / `--public-dir` | `copy` / `--copy` | | `removeNodeProtocol: true` | `nodeProtocol: 'strip'` | | `injectStyle` | `css.inject` | | `inlineOnly` / `deps.onlyAllowBundle` | `deps.onlyBundle` | | `noExternal` | `deps.alwaysBundle` | | `skipNodeModulesBundle: true` / `deps.skipNodeModulesBundle: true` | `deps.neverBundle: true` | | `dts.tsgo: true` / `dts.oxc: true` | `dts.generator: 'tsgo'` / `dts.generator: 'oxc'` | Migration preserves the previous defaults for dependency resolution and ATTW. `tsdown` no longer supports Node.js `25`. Use Node.js `^22.18.0`, `^24.11.0`, or `>=26.0.0`. The programmatic `build()` API now returns `{ bundles, watch }`. See the [complete migration guide](https://github.com/rolldown/tsdown/releases/tag/v0.23.0) for declaration and TypeScript module-resolution changes. #### CLI argument validation `vp staged`, `vp config`, `vp hooks`, `vp migrate`, and `vp create` now reject unsupported options and extra positional arguments ([#2523](#2523)), by @fengmk2. Remove unsupported arguments from scripts. For example, replace `vp config --hooks-only` with `vp config --no-agent`. ### Highlights - Fix TanStack Start HTTP `404` responses caused by separate Vite runtime copies ([#2617](#2617)), by @fengmk2. - Reduce the Windows `vp-shim.exe` size from `214 KiB` to `14 KiB` ([#2466](#2466)), by @fengmk2. - Add `vp check --quiet` to hide lint warning diagnostics while retaining errors and summary counts ([#2593](#2593)), by @RSS1102. ### Features - Add `vp sync-versions --json` so automation can request dependency alignment plans from manifest snapshots without changing project files ([#2600](#2600)), by @afonsojramos. - Make `vp create --git` suggest an initial commit command after Git initialization ([#2581](#2581)), by @fengmk2. - Make `vp migrate` replace frozen `voidzero-dev/setup-vp@v1` workflow references with the supported version pin ([#2540](#2540)), by @fengmk2. - Upgrade `rolldown` from `1.2.5` to `1.2.7`, `tsdown` from `0.22.14` to `0.23.0`, and Oxc from `0.146.0` to `0.148.0`. Upgrade `oxlint` from `1.79.0` to `1.81.0` and `oxfmt` from `0.64.0` to `0.66.0`. These versions can flag code that passed before. Run `vp fmt` after upgrading if CI runs `vp check` ([#2580](#2580), [#2613](#2613)), by @voidzero-guard[bot]. ### Fixes & Enhancements - Resolve package-manager versions without rewriting `package.json`. Use `vp env pin` or `vp env unpin` to change project declarations explicitly ([#2399](#2399)), by @liangmiQwQ. - Let `vp migrate` repair stale `vitest` aliases that previously prevented the CLI from starting ([#2605](#2605)), by @fengmk2. - Keep Vite DevTools within the version ranges supported by the bundled Vite ([#2559](#2559)), by @fengmk2. - Keep automatic Vitest upgrades on the supported `4.x` major ([#2612](#2612)), by @fengmk2. - Remove a deprecated `tsdown` option from the prompts package build ([#2597](#2597)), by @jong-kyung. ### Refactor - Use the updated `which` dependency to resolve relative `PATH` entries ([#2583](#2583)), by @RSS1102. - Remove the unused `async-trait` annotation from `JsRuntimeProvider` ([#2538](#2538)), by @jong-kyung. ### Docs - Add Azure Pipelines setup instructions ([#2553](#2553)), by @naokihaba. - Correct Zed Oxc formatter settings and include JSX and TSX ([#2592](#2592)), by @joschuba. - Add Wrangler deployment configuration for the documentation site ([#2596](#2596)), by @mdong1909. - Explain conflicts between pnpm and Vite+ runtime management, including the `runtimeOnFail` setting ([#2620](#2620)), by @liangmiQwQ. ### Chore - Run CLI snapshots without published release packages ([#2625](#2625)), by @fengmk2. - Update the release-manager skill with package-install checks, changelog guidance, and announcement handling ([#2548](#2548)), by @fengmk2. - Wait for npm dependencies to become available before publishing dependent release packages ([#2601](#2601)), by @fengmk2. - Remove old Docker preview images ([#2539](#2539)), by @fengmk2. - Stabilize external-tool snapshots and isolate npm network cases ([#2577](#2577), [#2604](#2604)), by @fengmk2. - Avoid unreliable Fish PPA setup in CI ([#2560](#2560)), by @fengmk2. - Update the `vinext` fixture to an upstream fix ([#2571](#2571)), by @jong-kyung. - Stabilize the pnpm snapshot and Nuxt build in CI ([#2591](#2591)), by @voidzero-guard[bot]. - Pin pnpm in project-creation build-approval fixtures ([#2616](#2616)), by @liangmiQwQ. - Remove unused documentation components, assets, and the typewriter dependency ([#2550](#2550), [#2562](#2562)), by @jong-kyung. - Remove duplicate `tempfile` dependencies, an unused runtime helper, and unused error variants. Update the `unit_bindings` lint name ([#2555](#2555), [#2558](#2558), [#2566](#2566), [#2567](#2567)), by @jong-kyung. - Update GitHub Actions dependencies, including `actions/setup-node` `v7` ([#2544](#2544), [#2545](#2545), [#2582](#2582), [#2618](#2618)), by @renovate[bot]. - Update `crate-ci/typos` through `v1.50.1` ([#2584](#2584), [#2589](#2589), [#2609](#2609)), by @renovate[bot]. - Update repository pnpm to `11.24.0` ([#2590](#2590)), by @renovate[bot]. - Update `voidzero-dev/setup-vp` to `v1.19.0` ([#2619](#2619)), by @renovate[bot]. ### Bundled Versions | Tool | Version | Source | | --- | --- | --- | | `vite` | `8.2.2` | [`de1111a`](vitejs/vite@de1111a) | | `rolldown` | `1.2.7` | [`26b4c6e`](rolldown/rolldown@26b4c6e) | | `tsdown` | `0.23.0` | [npm](https://npmx.dev/package/tsdown/v/0.23.0) | | `vitest` | `4.1.11` | [npm](https://npmx.dev/package/vitest/v/4.1.11) | | `oxlint` | `1.81.0` | [npm](https://npmx.dev/package/oxlint/v/1.81.0) | | `oxlint-tsgolint` | `7.0.2001` | [npm](https://npmx.dev/package/oxlint-tsgolint/v/7.0.2001) | | `oxfmt` | `0.66.0` | [npm](https://npmx.dev/package/oxfmt/v/0.66.0) | ### Upgrade ```bash vp upgrade ``` ### New Contributors @afonsojramos, @joschuba **Full Changelog**: v0.3.0...v0.3.1 --- Merging this PR will trigger the release workflow. --------- Co-authored-by: voidzero-guard[bot] <278573678+voidzero-guard[bot]@users.noreply.github.com> Co-authored-by: MK (fengmk2) <fengmk2@gmail.com>
v1.2.6(84c904b->5375362), which also pulls the oxc Rust crates to0.147.0andoxc_resolver/oxc_resolver_napito11.24.3inCargo.toml.1.79.0->1.80.0, oxfmt0.64.0->0.65.0, and theoxc-*/@oxc-project/*packages0.146.0->0.147.0.packages/cli/binding/index.d.ctsand theremedacatalog bump inpnpm-workspace.yaml.Dependency updates
rolldownv1.2.5(84c904b)v1.2.6(5375362)oxfmt0.64.00.65.0oxlint1.79.01.80.0@oxc-project/runtime0.146.00.147.0@oxc-project/types0.146.00.147.0oxc-minify0.146.00.147.0oxc-parser0.146.00.147.0oxc-transform0.146.00.147.0oxc,oxc_allocator,oxc_ast, …)0.146.00.147.0oxc_resolver/oxc_resolver_napi11.24.211.24.3remeda(catalog)^2.34.1^2.42.0Unchanged dependencies
vite:v8.2.2 (de1111a)vitest:4.1.11@vitest/browser:4.1.11@vitest/browser-playwright:4.1.11@vitest/browser-preview:4.1.11@vitest/browser-webdriverio:4.1.11@vitest/expect:4.1.11@vitest/mocker:4.1.11@vitest/pretty-format:4.1.11@vitest/runner:4.1.11@vitest/snapshot:4.1.11@vitest/spy:4.1.11@vitest/utils:4.1.11tsdown:0.22.14@tsdown/css:0.22.14@tsdown/exe:0.22.14lightningcss:^1.33.0@oxc-node/cli:0.1.0@oxc-node/core:0.1.0oxlint-tsgolint:7.0.2001tsdown-migrate:0.23.0-rc.0VITEST_VERSION constant:4.1.11README vitest pins:4.1.11Code changes
packages/cli/binding/index.d.cts: regenerated NAPI type declarations for rolldownv1.2.6:BindingDevEnginegainsgetModuleInfo(moduleId)andgetModuleIds().TsconfigCacheconstructor takes an optionalpathToTsconfigargument.BindingEnhancedTransformOptions.tsconfigaccepts astringpath.BindingMatchGroup.name/.testswitch to batched signatures (Array<string>in,Array<VoidNullable<string>>/Uint8Arrayout).BindingOutputsgains an optionalmangleCache.generateBundle/writeBundlebundle parameter changes fromBindingErrorsOr<BindingOutputs>toBindingResult<BindingOutputs>.BindingViteResolvePluginConfigandBindingViteTransformPluginConfiggain an optionaltsconfigfield.packages/core/package.json:bundledVersions.rolldown1.2.5->1.2.6.Cargo.toml: oxc crate pins0.146.0->0.147.0;oxc_resolver/oxc_resolver_napi11.24.2->11.24.3.pnpm-workspace.yaml:remedacatalog entry^2.34.1->^2.42.0.packages/tools/.upstream-versions.json: rolldown hash84c904b->5375362.Cargo.lock(including transitivepnp0.12.10->0.12.12,simd-json0.17.3->0.18.1, newregress0.12.0) andpnpm-lock.yaml.Build status
sync-remote-and-build: successbuild-upstream: failure