Repository navigation
chore: Update dependencies - #53
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
|
Navigate logical layers of code changes, visualize relationships, and explore their blast radius. No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Organization UI Review profile: ASSERTIVE Plan: Advanced Run ID: ⛔ Files ignored due to path filters (1)
📒 Files selected for processing (10)
Included review availability: This review used your included allowance. Your plan provides up to 1 included review per hour; 0 remain after this review. 📝 WalkthroughWalkthroughThis change updates dependency versions across the workspace, adds warning filters to two React Vite configurations, adds Next to React development dependencies, and updates the Codecov action version. ChangesPackage version updates
React build warning handling
Coverage upload action
Priority: ⬆️ High Estimated code review effort: 2 (Simple) | ~10 minutes Change: Other Merge Risk: ⚪ Minimal · up to The dependency updates and React warning filters show no established regression, and the lockfile matches the new Next dependency. The Angular Node-version mismatch was already present; no concrete merge-blocking risk is identified. Architecture SummaryArchitecture risk: 🔵 Low · up to The change affects 7 systems. Changed systems: Architecture concerns Review detailsSystems and components
Before / after behavior
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✨ Finishing Touches📝 Generate docstrings
🧪 Generate unit tests (beta)
Warning Some tools did not complete. Review the errors below. 🔧 ESLint
ESLint install timed out. The project may have too many dependencies for the sandbox. Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. A rabbit checks the version rows, Comment |
|
There was a problem hiding this comment.
Copilot review overview
🔵 Needs a closer look
It includes major dependency bumps (notably Vitest 4→5 and framework upgrades) plus a regenerated lockfile whose runtime/build impact needs human verification of CI.
Review effort: Balanced
Findings: 1
What changed in this PR
This PR is a routine dependency-maintenance change for the @desource/image monorepo. It bumps workspace tooling and framework dependencies (Angular 22.2, Vite 8.3.1, Vitest 5, pnpm 12.8.1, Svelte, etc.), refreshes pnpm workspace overrides, pins the Codecov action to a new commit/tag, and adds onwarn handlers so that "use client" MODULE_LEVEL_DIRECTIVE warnings are suppressed during the React library and demo builds. It also adds Next.js to the React package's dev dependencies to satisfy the optional next peer and address a security advisory.
Changes:
- Bump dependencies across root,
core,angular,react,svelte, anddemopackages plus workspace overrides; updatepackageManagerto pnpm 12.8.1. - Add Rollup
onwarnfilters inpackages/react/vite.config.tsandpackages/react/demo/vite.config.tsto silence"use client"directive warnings. - Update the pinned Codecov action to
v7.1.1(commit verified to match the tag).
| File | Description |
|---|---|
pnpm-workspace.yaml |
Bumps Angular devkit/CLI overrides to 22.2.0 and sass/sharp overrides. |
packages/svelte/package.json |
Minor bumps to @sveltejs/vite-plugin-svelte and svelte. |
packages/react/vite.config.ts |
Adds onwarn to suppress "use client" directive warnings in the library build. |
packages/react/package.json |
Adds next@^16.3.7 dev dependency (matches optional next peer). |
packages/react/demo/vite.config.ts |
Adds rollupOptions.onwarn to suppress "use client" warnings; comment references preserveModules not present here. |
packages/core/package.json |
Bumps std-env to ^4.3.0. |
packages/angular/package.json |
Aligns Angular/Analog/ng-packagr dev dependencies to the 22.2.x line. |
package.json |
Updates pnpm version and multiple root devDependencies, including major bump of Vitest 4→5. |
demo/package.json |
Minor bumps to Svelte plugin, sass, and svelte. |
.github/workflows/coverage.yml |
Repins Codecov action to v7.1.1 (SHA verified). |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.




Description
What does this PR do?
Why is this change needed?
Type of Change
Testing
pnpm check:releaseScreenshots (if applicable)
Checklist
Manual Coverage (Optional)
Maintainers only (
write/maintain/adminaccess): open the workflow, clickRun workflow, and setpr_numberto this PR number to post/update a coverage comment on this PRSummary by CodeRabbit
"use client"warnings while preserving other warnings.