chore(deps): bump undici from 7.29.0 to 8.11.2 in /.repos/effect-smol - #69
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [undici](https://github.com/nodejs/undici) from 7.29.0 to 8.11.2. - [Release notes](https://github.com/nodejs/undici/releases) - [Commits](nodejs/undici@v7.29.0...v8.11.2) --- updated-dependencies: - dependency-name: undici dependency-version: 8.11.2 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
PR SummaryMedium Risk Overview The lockfile also drops the No Reviewed by Cursor Bugbot for commit b17599f. Bugbot is set up for automated code reviews on this repo. Configure here. |
Thread transfer impact✅ Thread transfer remains within every enforced ceiling.
Baseline: Scenario and decoded snapshot size10 historical turns, 5 command tools per turn, 878.9 KiB retained MCP result per historical turn, and a 1.05 MiB retained result in the measured turn.
Updated in place by a trusted workflow. PR artifacts are strictly validated and never executed. |
Bumps undici from 7.29.0 to 8.11.2.
Release notes
Sourced from undici's releases.
... (truncated)
Commits
7e016adBumped v8.11.2 (#5886)fcdd5a6fix: skip reconnecting for aborted requests (#5846)dd28c5cfix: close rejected HTTP/2 WebSocket handshake streams (#5873)5e0a2f8Bumped v8.11.1 (#5871)2b72898test: cover native fetch gzip decoding through the legacy bridge (#5874)636bf51docs: warn about buffering response bodies (#5872)8145595fix hang on 3xx response with large body (#5850)f3cbe48fix websocketstream bugs (#5863)1d4ea0aRevert "fix: preserve HTTP/2 for legacy fetch consumers" (#5860)77d7b3fdeslopify websocket test (#5851)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.
Need help on this PR? Tag
@codesmith-botwith what you need. Autofix is disabled.