Skip to content

chore(deps): update pnpm.catalog.default @paypal/paypal-js to v11 - #888

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/paypal-paypal-js-11.x
Open

chore(deps): update pnpm.catalog.default @paypal/paypal-js to v11#888
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/paypal-paypal-js-11.x

Conversation

@renovate

@renovate renovate Bot commented Aug 31, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
@paypal/paypal-js (source) ^10.1.0^11.0.0 age confidence
@paypal/paypal-js (source) ^10.0.0^11.0.0 age confidence

Release Notes

paypal/paypal-js (@​paypal/paypal-js)

v11.0.0

Compare Source

Major Changes
  • 6b10c2b: A breaking change that removes PayPal's homegrown ApplePaySession browser-global typing from the v6 types.

    @paypal/paypal-js/sdk-v6 no longer declares a stripped ApplePaySession class or augments the global Window interface with ApplePaySession. That augmentation conflicted with the community @types/applepayjs package (TS2717 / TS2687), and because it shipped through the sdk-v6 barrel it landed in every consumer's compilation — even projects that never use Apple Pay.

Minor Changes
  • c3b5dbe: Update the v6 Google Pay types for 3D Secure (SCA) support.

    GooglePayOneTimePaymentSession.initiatePayerAction changes from the previous no-op
    placeholder to its real signature — initiatePayerAction(options: { orderId: string }): Promise<InitiatePayerActionResponse> — which resolves with the 3DS liabilityShift and
    rejects if the buyer cancels or authentication fails.

    Adds and exports three supporting types: LiabilityShiftType
    ("UNKNOWN" | "NO" | "YES" | "POSSIBLE"), InitiatePayerActionOptions, and
    InitiatePayerActionResponse.

  • be48634: Add TypeScript types for the v6 local payment methods (LPM) components. LPMPaymentsInstance and the LPMComponents union are now exported from @paypal/paypal-js/sdk-v6, and SdkInstance/Components/CreateInstanceOptions recognize LPM component names (e.g. "ideal-payments", "bancontact-payments") so createInstance returns the LPM methods when an LPM component is requested.

    SdkInstance now narrows the LPM methods it exposes to only the components actually requested — for example createInstance({ components: ["ideal-payments"] }) now types createIdealOneTimePaymentSession only, instead of surfacing all 50 LPM session-creation methods as optional. This is powered by a new single-source-of-truth LPMComponentToSessionMethod map (also exported) and an LPMInstanceFor<T> helper type, which replace the previous positionally-aligned LPMComponents/LPMSessionMethodName unions.

    Remove optional chaining (?) from LPMInstanceFor<T> methods since requested LPM components are guaranteed to exist at runtime on the SDK instance.

Patch Changes
  • be48634: Make addressLine2 and adminArea2 required (not optional) on the LPM LPMSessionFieldBillingAddress type, matching the internal SDK's BillingAddress shape where both fields are required.

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "on Monday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@vercel

vercel Bot commented Aug 31, 2026

Copy link
Copy Markdown
Contributor

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
scripts-playground Ready Ready Preview Aug 31, 2026 4:00am

Request Review

@socket-security

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Added@​paypal/​paypal-js@​11.0.010010010099100

View full report

@pkg-pr-new

pkg-pr-new Bot commented Aug 31, 2026

Copy link
Copy Markdown

Open in StackBlitz

npm i https://pkg.pr.new/@nuxt/scripts@888

commit: 07d9c9b

@github-actions

Copy link
Copy Markdown

📦 Package Size

🟢 3 size metrics smaller

📚 22 runtime dependencies (no change)

Package output Gzipped Δ
@nuxt/scripts · runtime dependencies 451 kB → 434 kB 🟢 -17 kB (-3.8%)
@nuxt/scripts · dependency magic-string 9.4 kB → 0 B 🟢 -9.4 kB (-100.0%)
@nuxt/scripts · dependency oxc-walker 7.6 kB → 0 B 🟢 -7.6 kB (-100.0%)
All tracked output (27)
Package output Gzipped Raw
@nuxt/scripts-cli · runtime dependencies 72 kB 355 kB
@nuxt/scripts-cli · dependency magicast 72 kB 355 kB
@nuxt/scripts-cli · export . 3.4 kB 12 kB
@nuxt/scripts-cli · published payload 3.4 kB 12 kB
@nuxt/scripts · runtime dependencies 434 kB 1.92 MB 🟢
@nuxt/scripts · dependency @nuxt/devtools-kit 2.9 kB 7.7 kB
@nuxt/scripts · dependency @oxc-project/types 0 B 0 B
@nuxt/scripts · dependency @vueuse/core 174 kB 707 kB
@nuxt/scripts · dependency @vueuse/shared 39 kB 154 kB
@nuxt/scripts · dependency h3 34 kB 146 kB
@nuxt/scripts · dependency magic-string 0 B 0 B 🟢
@nuxt/scripts · dependency oxc-walker 0 B 0 B 🟢
@nuxt/scripts · dependency semver 25 kB 72 kB
@nuxt/scripts · dependency sirv 8.8 kB 21 kB
@nuxt/scripts · dependency unstorage 70 kB 225 kB
@nuxt/scripts · dependency valibot 80 kB 592 kB
@nuxt/scripts · dist/runtime 98 kB 284 kB
@nuxt/scripts · export . 25 kB 106 kB
@nuxt/scripts · export ./registry 28 kB 89 kB
@nuxt/scripts · export ./stats 13 kB 89 kB
@nuxt/scripts · export ./types-source 43 kB 222 kB
@nuxt/scripts · published payload 208 kB 791 kB
@nuxt/scripts · components runtime 2.4 kB 6.2 kB
@nuxt/scripts · composables runtime 7.5 kB 24 kB
@nuxt/scripts · registry runtime 42 kB 123 kB
@nuxt/scripts · server runtime 28 kB 84 kB
@nuxt/scripts · utils runtime 2.5 kB 7.4 kB
Runtime dependencies (22)
Package Dependency Requested Resolved Cost
@nuxt/scripts-cli magicast ^0.5.4 0.5.4 📦 72 kB gzip
@nuxt/scripts-cli pathe ^2.0.3 2.0.3 ♻️ free via Nuxt 4.5.1
@nuxt/scripts @nuxt/devtools-kit ^3.4.1 3.4.1 📦 2.9 kB gzip
@nuxt/scripts @oxc-project/types ^0.143.0 0.143.0 📦 0 B gzip
@nuxt/scripts @vueuse/core ^14.4.0 14.4.0 📦 174 kB gzip
@nuxt/scripts @vueuse/shared ^14.4.0 14.4.0 📦 39 kB gzip
@nuxt/scripts consola ^3.4.2 3.4.2 ♻️ free via Nuxt 4.5.1
@nuxt/scripts defu ^6.1.7 6.1.7 ♻️ free via Nuxt 4.5.1
@nuxt/scripts h3 ^1.15.11 1.15.11 📦 34 kB gzip
@nuxt/scripts magic-string ^1.1.0 1.1.0 ♻️ free via Nuxt 4.5.1
@nuxt/scripts ofetch ^1.5.1 1.5.1 ♻️ free via Nuxt 4.5.1
@nuxt/scripts ohash ^2.0.11 2.0.11 ♻️ free via Nuxt 4.5.1
@nuxt/scripts oxc-walker ^1.1.1 1.1.1 ♻️ free via Nuxt 4.5.1
@nuxt/scripts pathe ^2.0.3 2.0.3 ♻️ free via Nuxt 4.5.1
@nuxt/scripts semver ^7.8.5 7.8.5 📦 25 kB gzip
@nuxt/scripts sirv ^3.0.2 3.0.2 📦 8.8 kB gzip
@nuxt/scripts std-env ^4.2.0 4.2.0 ♻️ free via Nuxt 4.5.1
@nuxt/scripts ufo ^1.6.4 1.6.4 ♻️ free via Nuxt 4.5.1
@nuxt/scripts ultrahtml ^1.7.0 1.7.0 ♻️ free via Nuxt 4.5.1
@nuxt/scripts unplugin ^3.3.0 3.3.0 ♻️ free via Nuxt 4.5.1
@nuxt/scripts unstorage ^1.17.5 1.17.5 📦 70 kB gzip
@nuxt/scripts valibot ^1.4.2 1.4.2 📦 80 kB gzip

Baseline: main_@_9368f012___2026-08-24 · gzip is the comparison metric · changes below 16 B gzip are ignored

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants