chore(deps): update all dependencies - #45
Merged
Merged
Conversation
gw0-bot
force-pushed
the
renovate/all-deps
branch
2 times, most recently
from
September 4, 2026 08:24
aa2cb35 to
1e962cb
Compare
gw0-bot
force-pushed
the
renovate/all-deps
branch
from
September 4, 2026 12:42
1e962cb to
dd4b682
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
2.1.252→2.1.2601.30.1→1.30.31.4.0-slim→1.4.1-slim0.46.0→0.47.016.5.0→16.7.0Release Notes
anthropics/claude-code (@anthropic-ai/claude-code)
v2.1.260Compare Source
/diff/costand the status line'sprompt_cachefield/reload-pluginsto headless sessions, so it appears in the Claude Code Desktop and SDK command lists/advisor(/advisor,/advisor <model>,/advisor off) for the desktop app, Remote Control, and other headless (-p/Agent SDK) sessionsoidc.scope_on_refreshto the Claude apps gateway for IdPs that return an id_token on refresh only when asked foropenidagaindesktoppolicy blocks, includinguserPluginMarketplacesEnabledanduserPluginUploadsEnabledEdit/Write/Readpermission rules whose path contains parentheses being dropped as invalid or ignored by the Bash sandbox, which left "read-only" folders writable[) making every file edit fail withInvalid regular expression; such a deny rule now guards the literal path it spellspermissions.blockReadsOutsideWorkingDirectorieson macOS hiding the user's git config from sandboxed git and hiding a worktree-isolated sub-agent's own checkout/login/statuslisting a signed-in claude.ai account and a configured API key as if both were in effect; the credential not in use is now markedskillOverridesentries keyed on a bundled skill's alias (e.g.checkupfor/doctor) not applying, andSkill(name)deny rules not covering a nested skill listed as<dir>:namemodel: fableagents ignoring the[1m]tag on anANTHROPIC_DEFAULT_FABLE_MODELpin and silently running with a 200K context window/modelpicker not showing Fable 5.1 for organizations that can use it, which was only accepted when typed as/model claude-fable-5-1…)/rewindand--rewind-filesreporting success when checkpoint backup files were missing and nothing was actually restored/rewindleaving stale file-read tracking from the rewound-away turns, which caused "File unchanged since last read" stubs and full-file re-injection after external edits-p --resume/--continue(as used by the desktop app) failing on every retry once a session's worktree directory lost its git metadata; it now fails once, then resumes without the worktreeCLAUDE_CODE_RETRY_WATCHDOG) as retry notices evicted real messagesgitlab.com/group/subgroup/project)owner/repo#123issue references in rendered output linking to github.com when working in a GitLab repository; they now link to the gitlab.com issueRead()deny rules to Bash arguments; it deniednpm run buildunder aRead(./**/build/**)rule in every mode and madecd … && grepprompt even in auto modeagent({schema})rejects a JSON Schema that can never be satisfied up front, and retry-cap errors now include the last validation failure-p/ SDK) sessionsbedrock:CountTokens) instead of a one-token requestEdit(C:\dir\(name)\**), where\(is read as an escaped parenthesis rather than a path separator, to suggest an unambiguous spelling/ultrareviewandclaude ultrareviewto wait up to 45 minutes (previously 30) for long-running cloud reviews/efforton Claude Fable 5.1 so changing effort mid-session no longer invalidates the prompt cacheclaude-apiskill so its Go, Java, and C# samples use current-generation model IDs, and clarified that cheaper worker or sub-agent models should be current-generation tooctrl+l/cmd+kin fullscreen mode to clear the transcript view like a terminalclear; scroll up to see earlier messagesBash(ls) x), which never matched anything, to be reported as invalid settings instead of being silently ignoredclaudeMd) no longer triggers the security approval dialog; hooks, shell-command, sandbox, and unsafeenvsettings still require approval--chrome,/chromeand the browser tools are unavailableorgPluginSettingsin the list form read by Claude Desktop 1.15200.0 and later; older desktops ignore itdesktoppolicy misspells a field in a nested object of amanagedMcpServersororgPluginSettingsentry!bash-mode prompt to run outside the sandbox even when strict sandbox mode (sandbox.allowUnsandboxedCommands: false) is on, like typing into your own terminal--kill-session-after-minto release a session that is only waiting on its user (paused, resumable on the next message) instead of killing it and reporting a failurev2.1.259Compare Source
managedMcpServersmanaged setting: organizations can provide HTTP/SSE MCP servers to every user (same entry shape as.mcp.json); entries that name a command to run are skipped--permission-prompts nonefor unattended headless hosts: anything that would prompt is denied automatically while the active permission mode (including auto mode) keeps decidingglab mr create/merge/close/reopen/note/updateso GitLab merge requests show asMR !Nin the collapsed tool summary and refresh the footer MR badge--jsontoclaude plugin validatefor a machine-readable validation report~/.claude.jsonchanges — workspace trust no longer resets and MCP/project state is no longer lost when running many sessions at onceRead()deny rules not covering files given as option values (--ignore-revs-file=.env,-f.env,@file),git diff/git grepfile operands, orcd DIR && cat FILEcompounds;grep -r/cp -rover a directory holding a denied file now asksmodel:named one; the turn now keeps the session modelCLAUDE_CODE_MAX_CONTEXT_TOKENSbeing ignored for Vertex-style model IDs (@YYYYMMDDsuffix) of model versions Claude Code doesn't recognize--resumefailing (and--continueopening an empty conversation) when a saved session contains an attachment entry with no payloadmodel:on custom commands and skills being ignored in interactive sessionsnote" error in conversations continued from an older versionforceRemoteSettingsRefreshbeing ignored at startup when a policy helper configured by MDM or the managed settings file had already rungit rev-parsefails with a message other than "not a git repository"user.email,organization.id, anduser.account_uuidattributes?/#producing an unusable.gitclone URL/workflowsagent detail: JSON outcomes are pretty-printed with syntax colors and real line breaks, and long outcomes fold behind an expand toggle/install-github-appto explain it is GitHub-only and point to the GitLab CI/CD docs when run inside a GitLab repositoryallowedMcpServersto govern only servers users add: a literalmanaged-mcp.jsonserver your allowlist used to filter out now loads on upgrade; usedeniedMcpServersto keep it offv2.1.258Compare Source
v2.1.257Compare Source
claude-fable-5-1), now the default Fable model — 1M context, $10/$50 per Mtok with $0.25/Mtok cache readstimeFormat) andtimeZonesettings: 12-hour, 24-hour, 24-hour UTC, or a strftime pattern for the turn-end clock and transcript-view timestampsCLAUDE_CODE_SUBAGENT_MODEL_FORCEto applyCLAUDE_CODE_SUBAGENT_MODEL(or the main model) to every subagent, ignoring per-spawn and agent-definition model overridessin/effortto change effort for the current session only, matching/model/doctorwarning for stale sandbox mask files left by a killed sessionpermissions.blockReadsOutsideWorkingDirectories)descriptionon discovered/modelpicker entries (CLAUDE_CODE_ENABLE_GATEWAY_MODEL_DISCOVERY); entries without one still read "From gateway".claude/folder created after startup not being picked up until restart←always starting in the original session's permission mode, overriding the target directory'sdefaultModeand the agent'spermissionModekeybindings.jsonrebinds of Ctrl+G being ignored inclaude agents; its Ctrl+S / Ctrl+T are now rebindable via the newAgentscontextstate.jsondetailrepeating its own dispatch prompt after a scheduled wake-upclaude agentskeeping a background session you re-prompted buried in Completed after it finished again; Completed now orders by the latest finishclaude --bgfrom a directory that was just deleted reporting "backgrounded" and leaving a crashed session row; it now prints the reason and exits 1Authorizationheader overriding the configured credential on Bedrock, Mantle, Vertex, and WIF, and the Vertex setup wizard picking up a leftover Anthropic profile from~/.config/anthropicAuthorizationor profile headers to Foundry, Vertex, and Bedrock, and Foundry Entra ID upstreams not starting whenANTHROPIC_FOUNDRY_API_KEYis set/scheduleroutines whose prompt was saved without a message role and then ran with nothing to doclaude agentsnot saying that a background session is waiting for you to approve a message from another session, or who sent itpolicyHelpertimeoutMsandrefreshIntervalMsvalues above the timer maximum (2147483) causing failures or re-runs every millisecond; they are now clampedexample.com.): adeniedDomainsentry didn't block the host inside the sandbox, and "don't ask again" for such a host kept promptingnatclaude remote-control) counting as consent, so the next request connected without asking/mcpreconnect and enable still connecting a settings-file MCP server that a managed MCP allow/deny list orstrictPluginOnlyCustomizationloaded after startup should blockclaude mcp removeleaving a remote server's stored OAuth credentials behind whenstrictPluginOnlyCustomizationlocks MCP to plugin-only serversclaude remote-control) sessions started from the Claude app ignoring the selected model and running on the machine's default instead--disallowedToolsand session deny rules being dropped after the first settings reload whenallowManagedPermissionRulesOnlyis enabled--resumelisting a backgrounded conversation twice and--continuereopening its stalled pre-background copy;--continuenow also opens finished background sessions!shell command output to expand itclaude agents --jsonbriefly switching the terminal to raw mode and undoing another program's terminal settings on exit←doing nothing in the/btwpanel inside aclaude agentssession: it now returns to the agents list (even mid-answer), and the panel comes back when you reopen the session/recap, prompt suggestions) and re-sending the full conversation uncached each timeclaude -pexiting about 5 seconds after its final result while a Monitor the model armed was still running; it now waits for the watch to fire or time outpermissions.askrule being skipped in auto mode when the matching command ran inside a compound command or subshell, letting it run without the confirmation prompt/add-dirrejecting a directory inside the current working directory; it now loads that directory's skills, commands, and agents like--add-dirdoes at startup/feedbackclaude mcp add/removehanging or exhausting memory when the project's.mcp.jsonis a FIFO or a device-file symlink; it now fails fast with an actionable messageclaude -p --input-format stream-json; it now fails fast with a clear error←or Ctrl+B) while a subagent or other tool was running occasionally making the background session treat that tool as rejected instead of re-running itRead()/Edit()deny rules not applying to< fileredirects and reader commands liketacandegrep; a deny rule on any argument or redirect target now refuses the command$VARreads,"$(…)"and heredocs that never touch git as "too complex to verify that it stays inside the worktree"/modeland/effortshowing a prompt-cache warning after rewinding a conversation back to emptytimeoutorsetsid) surviving a task stop or Claude Code exit.gitdirectory aftercdinto a subdirectory/logininstead of reporting a network errorcc-daemon-*folders in the system temp directory after an interrupted background daemon start; thecleanupPeriodDaysretention sweep now removes them[[ ]]conditionals that zsh parses differently from bash; these commands now prompt for approval/statusnot showing the Organization for that sign-in/status, declining the managed-settings dialog prints why Claude Code exited, and helper timeouts are reported as timeouts/code-review --commentto post findings on GitLab merge requests viaglab mr noteinstead of reporting the target as unsupportedclaude self-hosted-runner --configure-gitto also enable git push negotiation, so the first push of a new branch from a stale clone uploads only the new commits instead of the whole treeCLAUDE_STREAM_IDLE_TIMEOUT_MSare not mistaken for a hung session/forkto keep the original conversation's prompt cache in the new background session: its worktree briefing now arrives as a message instead of a system-prompt change:satisfied:,:telephone:,:collision:, …)--effortto lift a new model's default-effort hold for that session only rather than permanently; an effort picked on claude.ai for a Remote Control session now applies during the holdpolicyHelperin MDM ormanaged-settings.jsonshadowed at launch by cached server-managed settings to run (or exit) as soon as the fetch reports them removed, not at the next launchmanagedSourcesBehavior: "merge"to takesandbox.credentials.awsPairsandsandbox.ripgrepwhole from the highest managed source that sets them instead of combining the sources' valuesCLAUDE_CODE_ENABLE_GATEWAY_MODEL_DISCOVERY=1) to run even whenCLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFICis set, since it only queries your gatewayclaude --resume <session-id> --bgto continue that session under its own ID when nothing is running it, instead of silently starting a copy; a copy is now announced/btwhistory browsing from←/→toShift+←/Shift+→(or[/]), stepping through your recent side questions and back to the live answerdefaultMode: "bypassPermissions"in.claude/settings.jsonor.claude/settings.local.jsonto be ignored, like"auto"; set it in user or managed settings, or pass--permission-modefableandbestin Claude apps gateway sessions to keep resolving to Fable 5 for now, since gateways not yet configured for Fable 5.1 reject it; pick Fable 5.1 in/modelto use it--add-dir,/add-dir, andadditionalDirectoriesto refuse network paths (UNC shares,/net/<host>automounts) with a message before touching them; on Windows use a mapped drive letterOwloops/claude-powerline (@owloops/claude-powerline)
v1.30.3Compare Source
Bug Fixes
v1.30.2Compare Source
Bug Fixes
oven-sh/bun (docker.io/oven/bun)
v1.4.1: Bun v1.4.1To install Bun v1.4.1
Windows:
powershell -c "irm bun.sh/install.ps1|iex"To upgrade to Bun v1.4.1:
Read Bun v1.4.1's release notes on Bun's blog
Thanks to 7 contributors!
rtk-ai/rtk (rtk-ai/rtk)
v0.47.0Compare Source
Features
Bug Fixes
^-anchors again (b166396)++or--(60ec79f)rtk grep --file-typeand its-tshort are removed. The option never reached the engine, so it was a silent no-op;-tnow flows through, which meansrtk rg -t rustfilters by type whilertk grep -t rustreturns grep's owninvalid option -- 't'.-land-munderrtk grepare likewise the native grep flags now rather than rtk's --max-len and --max.Performance Improvements
Miscellaneous Chores
Code Refactoring
sickn33/agentic-awesome-skills (sickn33/agentic-awesome-skills)
v16.7.0: "Replayable Agents and Grounded Engineering Knowledge"Compare Source
[16.7.0] - 2026-09-04 - "Replayable Agents and Grounded Engineering Knowledge"
This release helps Claude Code, Cursor, Codex CLI, Gemini CLI, Antigravity, and
related AI coding assistants investigate recorded agent behavior, compile
evidence-backed embodied-AI knowledge, and repair Laravel applications with
explicit safety and verification boundaries.
Start here:
npx agentic-awesome-skillsorca-replayfor reading model, shell, file-change,and MCP traces before explaining or replaying a past agent run.
entropy-boxfor querying and compiling a liveembodied-AI knowledge graph with provenance and confidence preserved.
laravel-development-workflowforroot-cause-oriented Laravel maintenance and regression testing.
Added
orca-replayfor evidence-first diagnosis ofrecorded coding-agent runs, including model traffic, shell results,
per-turn filesystem changes, MCP calls, replay, and bounded multi-model
comparison (#1330).
entropy-boxfor searching and consulting ahosted embodied-AI knowledge graph, preserving source identity, confidence,
temporal scope, and the distinction between retrieved evidence and optional
LLM synthesis (#1331).
laravel-development-workflowfor diagnosing Laravel and PHP defects at the root cause, matching the
existing application architecture, adding regression coverage, and running
proportionate verification
(#1327).
Changed
highlight.js11.11.2 to 11.12.0(#1332).
GitHub Actions, removing the runner deprecation warnings from protected
validation and failing downloads closed on digest mismatch.
redundant install-time request and adding three bounded attempts for
transient registry timeouts and 503 responses.
tests and build so source-only pull requests are evaluated against their
exact skill catalog rather than the previous canonical snapshot.
and preview jobs; dependency review and the protected fail-closed npm audit
remain mandatory.
marketplaces, editorial bundles, compatibility reports, and Codex/Claude
plugin distributions for 2,111 skills.
Fixed
fast-urifloor and refreshed its lockfile to resolve thehost-confusion and repeated-hostname-decoding SSRF advisories
(#1328).
qsoverride to 6.16.0 and synchronizedits lockfiles, resolving the bracket-key comma parsing array-limit advisory
in both canonical and mirrored package trees
(#1328).
Security and Reliability
instructions, requires approval before worktree mutation, and makes the
network and token cost of multi-model comparison explicit.
and confidence markers, and distinguishes the default non-synthesizing
consult response from the optional integrated LLM path.
existing approval, secret, data-mutation, and deployment policies.
repaired Loki example backend after the dependency updates.
Who should care
particular answer during a recorded run.
than uncited synthesis presented as established fact.
conventions and proves the regression is covered.
Validation
documentation-security checks, warning-budget enforcement, strict catalog
audit and security scan, plugin and bundle convergence, repository tests,
web-app tests and coverage, production build, npm audits, and protected
exact-head merge gates.
main, tag and npmparity, CI, CodeQL, release-only Pages, current and legacy public surfaces,
and every already-configured local AAS MCP host.
Limitations
multi-model comparison can mutate a worktree, reach external services, and
incur cost when explicitly enabled.
sources; low-confidence and proposed capabilities still require primary
source verification.
replace framework-specific tests, production review, and deployment gates.
not an independent security audit of every skill or upstream service.
Credits
orca-replayin#1330.
entropy-boxin#1331.
laravel-development-workflowin#1327.
v16.6.0: "Evidence-First Instructions and Safer Dependencies"Compare Source
[16.6.0] - 2026-09-02 - "Evidence-First Instructions and Safer Dependencies"
This release helps Claude Code, Cursor, Codex CLI, Gemini CLI, Antigravity, and
related AI coding assistants maintain repository instructions without erasing
project policy, polish email drafts without sending them, and use a catalog
whose current npm dependency audit is clean.
Start here:
npx agentic-awesome-skillsemail-issue-fixerfor proofreading and optionaltracking-parameter cleanup without changing the sender's voice.
agents-mdfor repository-evidence-first agentinstructions and scoped monorepo guidance.
Added
email-issue-fixerfor typo, grammar,clarity, and optional link-tracking cleanup while preserving intent, voice,
placeholders, and the boundary that the skill never sends the message
(#1318).
labels, discovery paths, and distribution surfaces across the catalog
(#1319).
Changed
agents-mdaround bounded repository evidence,preservation of maintainer intent, nested scope, exact commands, and
proportionate validation instead of universal symlink, attribution, section,
or line-count mandates
(#1315).
@supabase/supabase-jsfrom 2.112.2 to 2.112.3 andhighlight.jsfrom 11.11.1 to 11.11.2
(#1316,
#1317).
marketplaces, editorial bundles, compatibility reports, and Codex/Claude
plugin distributions for 2,108 skills.
Fixed
browserslist4.28.4 to 4.28.8, resolvingthe known unbounded-memory-growth and malformed-custom-stats crash/prototype
write advisories while keeping the dependency change lockfile-scoped
(#1322).
Security and Reliability
agents-mdrepository edits behind diff review and preserved existingapproval gates, secrets boundaries, and tool-specific instruction files.
email-issue-fixerto redact token values, preserve placeholders,avoid external transmission, and return edited text without sending it.
after the dependency updates.
Who should care
than generic conventions that can overwrite repository policy.
want a clearer entry point into the complete skill library.
without handing over message delivery.
and browser-compatibility d
Configuration
📅 Schedule: (in timezone UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Mend Renovate CLI.