Skip to content

chore: bump dependencies - #153

Merged
sasicodes merged 1 commit into
mainfrom
chore/bump-dependencies
Aug 8, 2026
Merged

chore: bump dependencies#153
sasicodes merged 1 commit into
mainfrom
chore/bump-dependencies

Conversation

@sasicodes

@sasicodes sasicodes commented Aug 8, 2026

Copy link
Copy Markdown
Owner

Summary

  • bump eligible package dependencies across desktop, relay, and web
  • refresh versioned package patches and security overrides
  • update pnpm and Biome schema versions

Validation

  • pnpm check
  • pnpm test
  • pnpm build
  • pnpm audit
  • pnpm audit:signatures

Greptile Summary

The PR refreshes pinned dependencies across the desktop, relay, and web packages while updating pnpm, Biome, security overrides, lockfile resolutions, and version-specific Electron patches.

  • Updates desktop runtime, UI, build, agent, and native-search dependencies.
  • Updates relay Hono/WebSocket dependencies and web build dependencies.
  • Retargets patched dependencies to their newly pinned versions.
  • Preserves the workspace's 24-hour minimum release age and existing build-script policy.

Confidence Score: 5/5

The PR appears safe to merge with no concrete dependency, security, installation, build, or runtime defect identified.

The manifests, lockfile, overrides, peer versions, patch mappings, and configured release-age policy remain internally aligned, and the investigated upgrade risks did not establish a reachable failure.

Important Files Changed

Filename Overview
package.json Updates the pinned pnpm and Biome versions with matching schema and lockfile changes.
packages/desktop/package.json Updates desktop build, UI, agent, analytics, and native-search packages, including major Motion and KaTeX releases; no concrete incompatibility was established.
packages/relay/package.json Aligns Hono and its Node server adapter at compatible pinned versions.
packages/web/package.json Updates Vite, Lenis, React type definitions, and the React Vite plugin with matching lockfile resolutions.
pnpm-workspace.yaml Refreshes security overrides and patched-dependency mappings while retaining the minimum-release-age and build-script controls.
pnpm-lock.yaml Regenerates resolved dependency and peer graphs consistently with the manifest, override, and patch updates.
patches/@earendil-works__pi-coding-agent@0.84.1.patch Retargets the required Electron asar module-resolution patch and refreshes its upstream hunk context.
patches/@earendil-works__pi-ai@0.84.1.patch Retargets the OAuth-page customization patch to the upgraded package version.
patches/@ff-labs__fff-node@0.10.3.patch Retargets the native binary asar-unpacking fix to the upgraded fff-node version.

Reviews (1): Last reviewed commit: "chore: bump dependencies" | Re-trigger Greptile

Context used:

@sasicodes
sasicodes merged commit 15d2f50 into main Aug 8, 2026
4 checks passed
@sasicodes
sasicodes deleted the chore/bump-dependencies branch August 8, 2026 11:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant