Skip to content

fix(deps): update dependency @modelcontextprotocol/sdk (1.32.0 → 1.32.1) - #1181

Merged
joryirving merged 1 commit into
mainfrom
renovate/modelcontextprotocol-sdk-1.x-lockfile
Oct 5, 2026
Merged

joryirving merged 1 commit into
mainfrom
renovate/modelcontextprotocol-sdk-1.x-lockfile

Conversation

@its-miso

@its-miso its-miso Bot commented Oct 5, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
@modelcontextprotocol/sdk (source) 1.32.0 → 1.32.1 age adoption passing confidence

Release Notes

modelcontextprotocol/typescript-sdk (@​modelcontextprotocol/sdk)

v1.32.1

Compare Source

What's Changed

Full Changelog: modelcontextprotocol/typescript-sdk@1.32.0...1.32.1


Configuration

📅 Schedule: (in timezone America/Edmonton)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

@its-miso its-miso Bot added the type/patch label Oct 5, 2026
@its-miso
its-miso Bot requested a review from joryirving as a code owner October 5, 2026 12:21
@its-miso its-miso Bot added the type/patch label Oct 5, 2026
@joryirving
joryirving merged commit 148b435 into main Oct 5, 2026
15 checks passed
@joryirving
joryirving deleted the renovate/modelcontextprotocol-sdk-1.x-lockfile branch October 5, 2026 12:25
@its-miso its-miso Bot mentioned this pull request Oct 5, 2026

@its-saffron its-saffron Bot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

AI Automated Review

Full PR review.

Analysis engine: MiniMax-M3 (anthropic) — primary route · pr-reviewer-action v3.3.0

Recommendation

Approve. This is a clean, lockfile-only patch bump (@modelcontextprotocol/sdk 1.32.0 → 1.32.1) with CI green and no source/test changes.

Change-by-change findings

  • package-lock.json — exactly 3 lines change at node_modules/@modelcontextprotocol/sdk: version, resolved URL, and integrity hash. No other node_modules entries are touched (1.32.0 still appears, but only for the unrelated lightningcss family, which is unmodified).
  • package.json — unchanged. The pin is still "@modelcontextprotocol/sdk": "^1.29.0" (caret range), so the lockfile move to 1.32.1 is fully within the declared SemVer range and not a version-floor surprise.
  • src/ / tests / Dockerfile / charts — not touched. The MCP consumer (src/mcp/server.ts) still imports @modelcontextprotocol/sdk/server/mcp.js and @modelcontextprotocol/sdk/server/stdio.js and calls new McpServer(...) plus server.registerTool(...) — surface that is unchanged across the bump.

Upstream release notes (1.32.1)

The published 1.32.1 release contains only three commits, all documentation or chore: a CLAUDE.md rewrite for the v1 maintenance line, a README pointer to v2, and the version bump itself. No source-code or API-surface changes. CI across this repo (Tests, Typecheck, Lint, Build, Docker Build, Docker Build (MCP), npm audit, Workflow lint, Smoke, Coverage, Database migrations, Database integration) reached success against the upgraded lockfile, which directly addresses the "patch-level, backward-compatible" assumption Renovate's compatibility badge encoded.

Standards Compliance

  • AGENTS.md: "Lint/typecheck blocks CI; must pass" — both Lint and Typecheck reached success on the PR head commit, satisfying this requirement.
  • AGENTS.md: "Tokens are secrets... never logged or persisted" — the diff contains no tokens, env values, or paths to secrets; no risk surface introduced.

Tool Harness Findings

  • 15 tool calls across 9 rounds. The harness directly read package.json, package-lock.json (lines 1985–2045), src/mcp/server.ts, and src/mcp/server.test.ts; grepped the repo for the package name, for the new and old version strings, and for the upstream PR numbers. All searches returned consistent results and no additional modifications were found.

Notes on the must-checks

  • Check for breaking API changes in updated dependencies: satisfied. 1.32.0 → 1.32.1 is a docs/chore-only patch in upstream; the surface Dispatch consumes (McpServer, StdioServerTransport, registerTool) is unchanged, and CI passing against the lockfile confirms there is no runtime regression.
  • Run full test suite after upgrade: satisfied. CI reports Tests: success, Typecheck: success, Lint: success, Build: success, Coverage: success, plus Docker image builds and npm audit — a full gate run on the PR head commit (7c87795).

No further verification needed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant