Skip to content

chore: update @scalar/api-reference to latest#176

Merged
jaredwray merged 1 commit into
mainfrom
claude/mockhttp-deps-scalar
Jul 18, 2026
Merged

chore: update @scalar/api-reference to latest#176
jaredwray merged 1 commit into
mainfrom
claude/mockhttp-deps-scalar

Conversation

@jaredwray

Copy link
Copy Markdown
Owner

Please check if the PR fulfills these requirements

  • Followed the Contributing and Code of Conduct guidelines.
  • Tests for the changes have been added (for bug fixes/features) with 100% code coverage. — N/A (dependency-only change); the existing suite (473 tests) passes and coverage is unchanged.

What kind of change does this PR introduce?

Chore — dependency maintenance for @scalar/api-reference (the API reference UI served at /scalar). No source code changes.


Update — minor/patch (within existing semver range)

Package From To
@scalar/api-reference 1.59.3 1.62.5

Verification

  • Build: Passed
  • Lint (Biome) + tests (Vitest w/ coverage): Passed
  • 473 tests across 43 files; coverage unchanged (100% lines/functions)

Socket may flag its transitive @internationalized/date (Adobe's react-aria date library) as "obfuscated" — this is a false positive on a minified dist of a well-known package, and the Socket check itself passes.

Context — grouped maintenance series

Third of the per-family dependency PRs (one at a time). Merged so far: #174 (Fastify stack), #175 (build tooling). Remaining after this: hookified, then @fastify/static v10 (major). typescript 7.0.2 is deferred (experimental compiler API; exact-pinned).


Automated by the project-maintenance skill.


Generated by Claude Code

Update @scalar/api-reference from 1.59.3 to 1.62.5 within the existing semver range.

Verified with build + test:ci (473 tests passing, coverage unchanged).

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01NdfeGrhVzDqajGuC7eRo3R
@socket-security

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Added@​scalar/​api-reference@​1.62.59810091100100

View full report

@gemini-code-assist gemini-code-assist Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request upgrades the @scalar/api-reference dependency from version 1.59.3 to 1.62.5 in package.json, along with updating the corresponding lockfile entries in pnpm-lock.yaml. I have no feedback to provide as there are no review comments or issues identified in these dependency updates.

@socket-security

Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm @internationalized/date is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: pnpm-lock.yamlnpm/@scalar/api-reference@1.62.5npm/@internationalized/date@3.12.2

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/@internationalized/date@3.12.2. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@codecov

codecov Bot commented Jul 18, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 100.00%. Comparing base (9973a67) to head (7efd744).

Additional details and impacted files
@@            Coverage Diff            @@
##              main      #176   +/-   ##
=========================================
  Coverage   100.00%   100.00%           
=========================================
  Files           41        41           
  Lines         1310      1310           
  Branches       259       261    +2     
=========================================
  Hits          1310      1310           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@jaredwray
jaredwray merged commit 05deaa7 into main Jul 18, 2026
11 checks passed
@jaredwray
jaredwray deleted the claude/mockhttp-deps-scalar branch July 18, 2026 18:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants