Skip to content

chore(deps): update npm packages - #475

Merged
renovate[bot] merged 1 commit into
mainfrom
renovate/npm-packages
Sep 14, 2026
Merged

chore(deps): update npm packages#475
renovate[bot] merged 1 commit into
mainfrom
renovate/npm-packages

Conversation

@renovate

@renovate renovate Bot commented Sep 13, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
@angular/animations (source) 22.1.522.1.6 age adoption passing confidence
@angular/build 22.1.722.1.8 age adoption passing confidence
@angular/cdk 22.1.522.1.6 age adoption passing confidence
@angular/common (source) 22.1.522.1.6 age adoption passing confidence
@angular/compiler (source) 22.1.522.1.6 age adoption passing confidence
@angular/compiler-cli (source) 22.1.522.1.6 age adoption passing confidence
@angular/core (source) 22.1.522.1.6 age adoption passing confidence
@angular/forms (source) 22.1.522.1.6 age adoption passing confidence
@angular/material 22.1.522.1.6 age adoption passing confidence
@angular/platform-browser (source) 22.1.522.1.6 age adoption passing confidence
@angular/platform-browser-dynamic (source) 22.1.522.1.6 age adoption passing confidence
@angular/router (source) 22.1.522.1.6 age adoption passing confidence
@playwright/test (source) 1.62.11.63.0 age adoption passing confidence
@sanity/types (source) 6.12.06.13.1 age adoption passing confidence
autoprefixer 10.5.410.5.6 age adoption passing confidence
obug 2.1.42.2.1 age adoption passing confidence
posthog-js (source) 1.426.11.429.5 age adoption passing confidence
sass 1.103.11.104.0 age adoption passing confidence
vite (source) 8.2.28.3.0 age adoption passing confidence

Release Notes

angular/angular (@​angular/animations)

v22.1.6

Compare Source

compiler
Commit Type Description
cbb8702143 fix namespace @property declarations
compiler-cli
Commit Type Description
aea121e532 fix do not flag callable objects with zero parameters in uninvoked track function check
core
Commit Type Description
c19b948ef8 fix apply SkipSelf to only the starting node in embedded views
platform-server
Commit Type Description
d20a379583 fix avoid sourcemap corruption during domino path substitution
router
Commit Type Description
95c01e9cde fix keep detached route subtree contexts isolated and intact
angular/angular-cli (@​angular/build)

v22.1.8

Compare Source

@​angular/build
Commit Type Description
a6e30fa378 fix disable strictPort when port 0 is used in dev-server
35a5d4aa49 perf avoid full JSON parsing when updating sourcemap ignore list
48cc43cbf2 perf read rendered module length once per module in chunk optimizer (#​34045)
angular/components (@​angular/cdk)

v22.1.6

Compare Source

cdk
Commit Type Description
690ddb4a2 fix overlay: expose currently open overlays (#​33768)
microsoft/playwright (@​playwright/test)

v1.63.0

Compare Source

sanity-io/sanity (@​sanity/types)

v6.13.1

Compare Source

Sanity Studio v6.13.1

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-Ni4xMy4w

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog

Author Message Commit
@​stipsan ci(bundle-stats): roll back to v1 to unbreak the job on every pr (#​14676) 6270e12
@​stipsan fix(deps): update dependency @​sanity/cli to ^8.9.1 (#​14675) 5d97879
@​stipsan fix(deps): update portabletext (#​14674) 289f65f
@​bjoerge fix: key client-capturing memo caches by credential (#​14672) 02ff775
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​14658) 46a91f3
@​bjoerge fix(core): terminate document listener on 401 (#​14680) 59c29f7
squiggler-app[bot] fix(deps): update codemirror (#​14605) a991f45
@​stipsan fix(core): make styled-component style props transient so they do not leak to the dom (#​14639) 1c51ca5
squiggler-app[bot] fix(deps): update dependency motion to ^13.2.0 (#​14610) bae59a7
squiggler-app[bot] chore(deps): update dependency oxfmt to ^0.67.0 (#​14670) ca8179e
squiggler-app[bot] chore(deps): update dependency @​sanity/id-utils to ^1.1.0 (#​14669) 57a9032
squiggler-app[bot] chore(deps): update dependency @​sanity/ailf to ^7.37.0 (#​14668) 8712a95
@​stipsan perf(structure): stop document action re-render fan-out on every keystroke (#​14559) c0b4699
squiggler-app[bot] chore(deps): update dependency oxlint to ^1.82.0 (#​14671) 2248b2d
squiggler-app[bot] chore(deps): update dependency ui5 to v5.0.0-alpha.9 (#​14666) 9dab0bc
squiggler-app[bot] chore(deps): update dependency vite>rolldown to v1.2.7 (#​14582) 5285f81
squiggler-app[bot] chore(deps): update dependency @​tanstack/react-virtual to ^3.14.11 (#​14664) 24c03b7
squiggler-app[bot] chore(deps): update dependency vitest-browser-react to ^2.3.0 (#​14607) 26e0b71
squiggler-app[bot] fix(deps): update dev-non-major (#​14632) 72bd9e0
squiggler-app[bot] fix(deps): update dependency get-it to ^9.5.4 (#​14644) 9db2382
squiggler-app[bot] chore(deps): update dependency oxc-transform-react to ^0.149.0 (#​14659) 521af43
squiggler-app[bot] fix(deps): update dependency @​sanity/client to ^8.6.1 (#​14647) 0cb729f
@​stipsan fix(core): render the workspace menu project name without a layout shift (#​14560) b992c0b
squiggler-app[bot] chore(deps): update pnpm to v12 (#​14657) 1e309b4
squiggler-app[bot] chore(deps): update rexxars/bundle-stats action to v2 (#​14584) 3fc237d
squiggler-app[bot] chore(deps): update dependency @​sanity/ui to ^4.2.0 (#​14645) 234cb24

v6.13.0

Compare Source

Features
postcss/autoprefixer (autoprefixer)

v10.5.6

Compare Source

v10.5.5

Compare Source

sxzz/obug (obug)

v2.2.1

Compare Source

   🐞 Bug Fixes
  • Avoid object spread helpers and track entry sizes  -  by @​sxzz (66e72)
    View changes on GitHub

v2.2.0

Compare Source

   🚀 Features
   🏎 Performance
    View changes on GitHub
PostHog/posthog-js (posthog-js)

v1.429.5

Compare Source

1.429.5

Patch Changes
  • #​4579 19e78cc Thanks @​turnipdabeets! - Cap the retry delay for log exports at 30 seconds, the ceiling the logs contract states. It previously doubled to 64 times the flush interval — 192s on web, 640s on React Native — so a log export now resumes within 30 seconds of a failing endpoint recovering, at the cost of more retry requests while that endpoint is down.
    (2026-09-10)

  • #​4579 19e78cc Thanks @​turnipdabeets! - Keep backing off a failing log flush while new records arrive, instead of the next record resetting the retry to the flush interval.
    (2026-09-10)

  • #​4579 19e78cc Thanks @​turnipdabeets! - Logs and metrics now always send service.name and telemetry.sdk.*, even when a resourceAttributes value is too large to encode in full. Previously that value could crowd them out, and the records reached PostHog with no service attribution.
    (2026-09-10)

  • Updated dependencies [19e78cc, 19e78cc, 19e78cc, 19e78cc, 19e78cc, 19e78cc, 19e78cc]:

v1.429.4

Compare Source

1.429.4

Patch Changes
  • #​4862 3278cd0 Thanks @​pauldambra! - Call the original console method with the console as its receiver when recording console logs. The wrapper passed undefined instead, and passed no receiver at all when reporting its own failures, which a console implementation is free to reject.
    (2026-09-10)

  • #​4887 0da006c Thanks @​posthog! - Error tracking no longer counts an injected script as your own code. A stack frame is in_app only when its filename names a script your app was served — http(s), file, blob, app, capacitor, ionic, a bundler scheme, or a bare path. A frame served over any other scheme, such as an in-app browser bridge on iabjs:// or an extension content script on chrome-extension://, is kept for context but no longer groups the issue under your code.
    (2026-09-10)

  • #​4837 99b4fc7 Thanks @​pauldambra! - Stop recording autoplay attribute mutations on <video> and <audio> during session replay. The check compared a lowercase tag name against Element.tagName, which is uppercase for HTML elements, so a looping background video emitted a mutation for every autoplay toggle.
    (2026-09-10)

  • Updated dependencies [0da006c]:

v1.429.3

Compare Source

1.429.3

Patch Changes

v1.429.2

Compare Source

1.429.2

Patch Changes

v1.429.1

Compare Source

1.429.1

Patch Changes

v1.429.0

Compare Source

1.429.0

Minor Changes
  • #​4707 b441eb2 Thanks @​posthog! - Segment integration: allow segment to accept an integration config with filterProperties, so customers can filter PostHog-generated enrichment properties before Segment sends an event to its destinations. Returning null or throwing leaves the original Segment event unenriched.
    (2026-09-09)
Patch Changes

v1.428.11

Compare Source

1.428.11

Patch Changes
  • #​4725 d5abece Thanks @​bs1180! - fix(surveys): don't show the default "Start typing..." placeholder when the survey's placeholder text is empty
    (2026-09-09)

v1.428.10

Compare Source

1.428.10

Patch Changes

v1.428.9

Compare Source

1.428.9

Patch Changes

v1.428.8

Compare Source

v1.428.7

Compare Source

1.428.7

Patch Changes
  • #​4842 f93160d Thanks @​marandaneto! - Restore retry queue connectivity tracking when a page returns from the back-forward cache, without reactivating it after an explicit shutdown().
    (2026-09-08)

v1.428.6

Compare Source

1.428.6

Patch Changes
  • #​4791 b2affdc Thanks @​posthog! - Prefer sendBeacon for unbatched events, such as { send_instantly: true } captures, once PostHog's own pagehide handler (or unload fallback) marks the page as unloading. Captures from beforeunload or earlier pagehide listeners retain their normal transport. Preserve response-capable transports on active pages so failed requests can be retried, including when fetch is unavailable.
    (2026-09-08)
  • Updated dependencies [b2affdc]:

v1.428.5

Compare Source

v1.428.4

Compare Source

1.428.4

Patch Changes
  • #​4828 4ae6405 Thanks @​marandaneto! - Prevent waking an idle tab from extending the previous session recording across the entire idle gap.
    (2026-09-08)

v1.428.3

Compare Source

1.428.3

Patch Changes
  • #​4805 4cd5717 Thanks @​marandaneto! - Wait for the initial remote config outcome before using cached autocapture enablement, so a newly disabled project does not capture events while its settings load. Disabled remote requests retain local startup behavior, and failed or incomplete responses retain the cached fallback.
    (2026-09-07)

v1.428.2

Compare Source

1.428.2

Patch Changes
  • #​4803 87b34af Thanks @​marandaneto! - Preserve Error details, causes, aggregate errors, and custom enumerable properties in event properties, including cross-realm Errors. Apply string truncation to ordinary capture properties and retain custom toJSON serialization for exception additional properties.
    (2026-09-07)
  • Updated dependencies [87b34af]:

v1.428.1

Compare Source

1.428.1

Patch Changes

v1.428.0

Compare Source

1.428.0

Minor Changes
  • #​4809 3a5b322 Thanks @​marandaneto! - Add best-effort in-app browser attribution using $webview_app and $webview_app_version, without changing existing $browser or $browser_version values. Detect explicit user-agent markers for Facebook, Facebook Lite, Messenger, Instagram, Threads, LinkedIn, Twitter, TikTok, WhatsApp, Snapchat, WeChat, LINE, Google, Bing, Pinterest, Naver, and KakaoTalk. Unknown apps and versions are omitted; missing markers do not imply a standalone browser.
    (2026-09-07)
Patch Changes

v1.427.3

Compare Source

1.427.3

Patch Changes
  • #​4815 c207020 Thanks @​marandaneto! - Prevent queued session recording mutations from capturing content beneath DOM or shadow ancestors that have become blocked.
    (2026-09-07)

  • #​4785 74ca945 Thanks @​marandaneto! - Clarify feature flag return-value terminology across SDK APIs. A false value is a conclusive off evaluation, while undefined means no evaluation is available. Remote evaluation omits globally inactive flags, whereas backend local evaluation can resolve cached inactive definitions to false.
    (2026-09-07)

  • #​4797 fd4ece8 Thanks @​posthog! - Prevent exception autocapture from throwing when the handler it wraps belongs to another compartment or a destroyed document.
    (2026-09-07)

  • #​4754 d73455e Thanks @​posthog! - Session replay now reports why a recording holds its buffer. An epoch that starts without user interaction keeps its snapshots and uploads nothing, while $recording_status still reads active. Captured events now carry $sdk_debug_replay_flush_hold_reason (no_interaction_since_recording_started or no_interaction_since_session_rotated), and the SDK logs the reason once per held epoch in debug mode. Discarding a recording (for example when the server turns replay off) also no longer uploads the stylesheet mutations the recorder emits as it stops.
    (2026-09-07)

  • #​4788 95b159a Thanks @​fasyy612! - fix(replay): reset the idle clock on a session-id rotation so the new session's first snapshot is not dropped as idle and its recording does not start hours early
    (2026-09-07)

  • #​4770 24f1937 Thanks @​fasyy612! - fix(replay): drain the compression queue synchronously on a session-id rotation so the old session's unflushed tail ships under the old session id instead of being discarded
    (2026-09-07)

  • #​4666 5e74132 Thanks @​robbie-c! - Preserve universally safe JSON-LD properties and allowlisted tree structure when replay redacts other fields. Keep only DOM-backed ID fragments. Keep only @type values shaped like a Schema.org term, and limit types and payloads. Publish a reusable sanitization contract fixture.
    (2026-09-07)

  • #​4814 21dcebd Thanks @​posthog! - Prevent invalid clock values from breaking UUID generation and continue capturing replay chunks after a chunk fails.
    (2026-09-07)

  • Updated dependencies [74ca945, 5e74132, 21dcebd]:

v1.427.2

Compare Source

1.427.2

Patch Changes
  • #​4787 fd87caf Thanks @​marandaneto! - Prevent failures in automatic and manual exception processing from escaping into customer code.
    (2026-09-04)

Important

✂ PR body was truncated to here.


Configuration

📅 Schedule: (in timezone Asia/Shanghai)

  • Branch creation
    • "before 10am on monday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot enabled auto-merge (squash) September 13, 2026 17:36
@renovate
renovate Bot force-pushed the renovate/npm-packages branch from 3cc535f to 1bcfce6 Compare September 13, 2026 20:30
@renovate
renovate Bot merged commit 21738be into main Sep 14, 2026
10 checks passed
@renovate
renovate Bot deleted the renovate/npm-packages branch September 14, 2026 02:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant