Skip to content

chore(deps): bump @typescript-eslint/eslint-plugin from 8.70.0 to 8.70.1 in /clients/typescript - #5428

Merged
VascoSch92 merged 3 commits into
mainfrom
dependabot/npm_and_yarn/clients/typescript/typescript-eslint/eslint-plugin-8.70.1
Oct 2, 2026
Merged

VascoSch92 merged 3 commits into
mainfrom
dependabot/npm_and_yarn/clients/typescript/typescript-eslint/eslint-plugin-8.70.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026 •

Copy link
Copy Markdown
Contributor

Bumps @typescript-eslint/eslint-plugin from 8.70.0 to 8.70.1.

Release notes

Sourced from @​typescript-eslint/eslint-plugin's releases.

v8.70.1

8.70.1 (2026-09-21)

🩹 Fixes

  • ast-spec: narrow import attribute keys to identifiers and strings (#12879)
  • eslint-plugin: [no-useless-default-assignment] avoid false positives on tuples with a rest element (#12768)
  • eslint-plugin: [no-unnecessary-type-parameters] handle type precedence in the suggestion fixer (#12637)
  • eslint-plugin: [no-explicit-any] use unknown[] for bare any rest parameters (#12818)
  • eslint-plugin: [no-generated-empty-object-type] don't report a mapped type whose keys are not resolved yet (#12854)
  • eslint-plugin: [no-misused-spread] omit WeakMap spread suggestions (#12850)
  • eslint-plugin: [no-unnecessary-type-assertion] false positive for empty object asserted to a type alias of Record (#12869)
  • eslint-plugin: [no-meaningless-void-operator] allow void on assignment expressions (#12873)
  • eslint-plugin: [await-thenable] prevent autofix from breaking code when removing await (#12716)
  • eslint-plugin: [no-unnecessary-parameter-property-assignment] account for parameter reassignment (#12880)
  • eslint-plugin: [unbound-method] treat Intl.Collator.prototype.compare as spec-bound (#12845)
  • eslint-plugin: [no-unnecessary-condition] handle union-keyed index access on the left-hand side of nullish assignment (#12747)
  • eslint-plugin: [no-useless-default-assignment] convert the fixer to a suggestion fixer (#12826)
  • eslint-plugin: [no-misused-promises] handle multiple Promise constituents (#12904)
  • rule-tester: test the final autofix output instead of the first pass (#12867)
  • scope-manager: merge implicit global definitions (#12809)
  • type-utils: match package specifiers on whole path components (#12838)
  • typescript-estree: resolve symlinked paths when matching files to projects (#12725)
  • typescript-estree: add missing < token opening type arguments (#12821)
  • typescript-estree: require string literal import attribute values (#12894)
  • website: prevent playground from breaking down after opening link with the .js file type (#12777)

❤️ Thank You

See GitHub Releases for more information.

... (truncated)

Changelog

Sourced from @​typescript-eslint/eslint-plugin's changelog.

8.70.1 (2026-09-21)

🩹 Fixes

  • eslint-plugin: [no-misused-promises] handle multiple Promise constituents (#12904)
  • eslint-plugin: [no-useless-default-assignment] convert the fixer to a suggestion fixer (#12826)
  • eslint-plugin: [no-unnecessary-condition] handle union-keyed index access on the left-hand side of nullish assignment (#12747)
  • eslint-plugin: [unbound-method] treat Intl.Collator.prototype.compare as spec-bound (#12845)
  • eslint-plugin: [no-unnecessary-parameter-property-assignment] account for parameter reassignment (#12880)
  • eslint-plugin: [await-thenable] prevent autofix from breaking code when removing await (#12716)
  • eslint-plugin: [no-meaningless-void-operator] allow void on assignment expressions (#12873)
  • eslint-plugin: [no-unnecessary-type-assertion] false positive for empty object asserted to a type alias of Record (#12869)
  • eslint-plugin: [no-misused-spread] omit WeakMap spread suggestions (#12850)
  • eslint-plugin: [no-generated-empty-object-type] don't report a mapped type whose keys are not resolved yet (#12854)
  • eslint-plugin: [no-explicit-any] use unknown[] for bare any rest parameters (#12818)
  • eslint-plugin: [no-unnecessary-type-parameters] handle type precedence in the suggestion fixer (#12637)
  • eslint-plugin: [no-useless-default-assignment] avoid false positives on tuples with a rest element (#12768)

❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

Commits
  • 23d38ce chore(release): publish 8.70.1
  • 9d82e4b chore: expand eslint-plugin rules test files glob (#12878)
  • f7482f6 fix(eslint-plugin): [no-misused-promises] handle multiple Promise constituent...
  • 2673044 docs(eslint-plugin): [prefer-promise-reject-errors] add option sections and e...
  • 8f141a2 fix(eslint-plugin): [no-useless-default-assignment] convert the fixer to a su...
  • 479cd85 chore: enable assertion option requireData for all rule tests (#12816)
  • f3c190c fix(eslint-plugin): [no-unnecessary-condition] handle union-keyed index acces...
  • b1993df fix(eslint-plugin): [unbound-method] treat Intl.Collator.prototype.compare as...
  • da394bc fix(eslint-plugin): [no-unnecessary-parameter-property-assignment] account fo...
  • 4a742ff fix(eslint-plugin): [await-thenable] prevent autofix from breaking code when ...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

🐳 Agent Server images for this PR — GHCR package, pull/run commands, and all pushed tags (click to expand)

• GHCR package: https://github.com/OpenHands/agent-sdk/pkgs/container/agent-server

Variants & Base Images

Variant Architectures Base Image Docs / Tags
java amd64, arm64 eclipse-temurin:17-jdk Link
python-slim amd64, arm64 python-node-runtime Link
python-minimal amd64, arm64 python-node-runtime Link
python amd64, arm64 python-node-runtime Link
golang amd64, arm64 golang:1.21-bookworm Link

Pull (multi-arch manifest)

# Each variant is a multi-arch manifest supporting both amd64 and arm64
docker pull ghcr.io/openhands/agent-server:db4eca5-python

Run

docker run -it --rm \
  -p 8000:8000 \
  --name agent-server-db4eca5-python \
  ghcr.io/openhands/agent-server:db4eca5-python

All tags pushed for this build

ghcr.io/openhands/agent-server:db4eca5-golang-amd64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-golang-amd64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-golang-amd64
ghcr.io/openhands/agent-server:db4eca5-golang_tag_1.21-bookworm-amd64
ghcr.io/openhands/agent-server:db4eca5-golang-arm64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-golang-arm64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-golang-arm64
ghcr.io/openhands/agent-server:db4eca5-golang_tag_1.21-bookworm-arm64
ghcr.io/openhands/agent-server:db4eca5-java-amd64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-java-amd64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-java-amd64
ghcr.io/openhands/agent-server:db4eca5-eclipse-temurin_tag_17-jdk-amd64
ghcr.io/openhands/agent-server:db4eca5-java-arm64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-java-arm64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-java-arm64
ghcr.io/openhands/agent-server:db4eca5-eclipse-temurin_tag_17-jdk-arm64
ghcr.io/openhands/agent-server:db4eca5-python-amd64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-amd64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-amd64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-amd64
ghcr.io/openhands/agent-server:db4eca5-python-arm64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-arm64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-arm64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-arm64
ghcr.io/openhands/agent-server:db4eca5-python-minimal-amd64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-minimal-amd64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-minimal-amd64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-minimal-amd64
ghcr.io/openhands/agent-server:db4eca5-python-minimal-arm64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-minimal-arm64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-minimal-arm64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-minimal-arm64
ghcr.io/openhands/agent-server:db4eca5-python-slim-amd64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-slim-amd64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-slim-amd64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-slim-amd64
ghcr.io/openhands/agent-server:db4eca5-python-slim-arm64
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-slim-arm64
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-slim-arm64
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-slim-arm64
ghcr.io/openhands/agent-server:db4eca5-golang
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-golang
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-golang
ghcr.io/openhands/agent-server:db4eca5-golang_tag_1.21-bookworm
ghcr.io/openhands/agent-server:db4eca5-java
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-java
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-java
ghcr.io/openhands/agent-server:db4eca5-eclipse-temurin_tag_17-jdk
ghcr.io/openhands/agent-server:db4eca5-python-minimal
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-minimal
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-minimal
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-minimal
ghcr.io/openhands/agent-server:db4eca5-python-slim
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python-slim
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python-slim
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime-slim
ghcr.io/openhands/agent-server:db4eca5-python
ghcr.io/openhands/agent-server:db4eca5c5169b6fccb5dffbda0c50352ebcc8853-python
ghcr.io/openhands/agent-server:dependabot-npm-and-yarn-clients-typescript-typescript-eslint-eslint-plugin-8.70.1-python
ghcr.io/openhands/agent-server:db4eca5-python-node-runtime

About Multi-Architecture Support

  • Each variant tag (e.g., db4eca5-python) is a multi-arch manifest supporting both amd64 and arm64
  • Docker automatically pulls the correct architecture for your platform
  • Individual architecture tags (e.g., db4eca5-python-amd64) are also available if needed

Bumps [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) from 8.70.0 to 8.70.1.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.70.1/packages/eslint-plugin)

---
updated-dependencies:
- dependency-name: "@typescript-eslint/eslint-plugin"
  dependency-version: 8.70.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Oct 1, 2026
@github-actions

github-actions Bot commented Oct 1, 2026 •

Copy link
Copy Markdown
Contributor

REST API breakage checks (OpenAPI) — ✅ PASSED

Result: ✅ PASSED

Action log

@all-hands-bot

Copy link
Copy Markdown
Collaborator

🤖 OpenHands is fixing the failing CI on this dependabot version bump.

Head commit: ae10349b5a7fa0fee7c4820cebb397c2a0e78978
View the conversation: https://oss-agent-canvas-backup.ngrok.dev/conversations/bc3604fb-42cf-42e7-bbde-fac01bfe9e10

This comment was posted by an AI agent (OpenHands).

…client

Dependabot bumped @typescript-eslint/eslint-plugin to 8.70.1, which now
requires @typescript-eslint/parser ^8.70.1 as a peer. The bump left the
hoisted parser (and the typescript-eslint meta-package) at 8.70.0, so
npm ci failed with ERESOLVE and broke every TypeScript client CI job.

Regenerate the lockfile so the whole @typescript-eslint 8.70.x family and
the typescript-eslint meta-package resolve to 8.70.1 consistently.

Co-authored-by: openhands <openhands@all-hands.dev>

@all-hands-bot all-hands-bot left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This review was posted by an AI agent (OpenHands).

Review — chore(deps): bump @typescript-eslint/eslint-plugin from 8.70.0 to 8.70.1

Scope: the change is confined to clients/typescript/package-lock.json, a package this repository owns, and falls under the dependency-update checkpoint in .agents/skills/custom-codereview-guide.md. No material correctness, security, compatibility, or acceptance-criterion defect found.

Verification on head 2350dff363d935ab3b01f5243450c3387419dc02:

  • Diff touches only clients/typescript/package-lock.json. The entire @typescript-eslint 8.70.x family plus the typescript-eslint meta-package resolve to 8.70.1, and no 8.70.0 entries remain. This aligns the hoisted @typescript-eslint/parser with the plugin's new ^8.70.1 peer, which is what the first dependabot commit left inconsistent and what broke npm ci.
  • npm ci succeeds in clients/typescript/, confirming the lockfile satisfies the plugin/parser peer graph (no ERESOLVE).
  • npm run lint passes with 0 errors (7 pre-existing warnings) against the bumped plugin, and npm run test:coverage passes.
  • Lockfile is idempotent: npm install --package-lock-only produces no further changes, so it is a clean regeneration rather than a hand-edit.
  • Supply-chain guardrail: 8.70.1 was published 2026-09-21T17:08Z, about 10.6 days before this review, so it clears the repository's seven-day exclude-newer intent.
  • CI: every check run on this head is green.
  • No review threads or unresolved comments on this head.

✅ APPROVED

@VascoSch92
VascoSch92 enabled auto-merge (squash) October 2, 2026 07:39
@VascoSch92
VascoSch92 merged commit b535c8a into main Oct 2, 2026
45 checks passed
@VascoSch92
VascoSch92 deleted the dependabot/npm_and_yarn/clients/typescript/typescript-eslint/eslint-plugin-8.70.1 branch October 2, 2026 07:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants