Oneseco Media GITHUB

Oneseco Media GITHUB

4943 bookmarks
Newest
[Oneseco-Media/rsshub] Bump eslint-plugin-unicorn from 74.0.0 to 75.0.0
[Oneseco-Media/rsshub] Bump eslint-plugin-unicorn from 74.0.0 to 75.0.0

[Oneseco-Media/rsshub]

Bump eslint-plugin-unicorn from 74.0.0 to 75.0.0

By dependabot[bot]

Assigned to

Bumps eslint-plugin-unicorn from 74.0.0 to 75.0.0.

Release notes

Sourced from eslint-plugin-unicorn's releases.

v75.0.0

New rules

prefer-combined-guards (#3680) 5d9d745c

no-unused-iterator-helper (#3677) 82137379

no-unused-builtin-method-return (#3676) b3d56a35

prefer-iterator-zip (#3675) 60d3b53a

no-useless-set-construction (#3672) 639c9844

prefer-iterator-helpers (#3670) 4c805e26

prefer-json-import (#3668) 1df640dd

prefer-temporal-conversion (#3667) 74bc02e7

no-async-iterator-callback (#3666) bb6c2450

no-using-resource-escape (#3663) 34247853

prefer-uint8array-hex (#3661) 92551329

no-deprecated-css-features (#3651) e1161021

no-unscoped-css-nesting-selector (#3650) ebd03bdf

no-duplicate-css-selectors (#3646) 508d9f50

no-unknown-pseudo-selectors (#3644) 99492cd7

no-invalid-media-features (#3643) ef37c1f1

no-unknown-css-annotations (#3642) 19637ee8

no-nesting-with-mixed-specificity (#3640) b2f2bf9d

prefer-media-feature-range-syntax (#3639) 19f112f6

no-duplicate-font-family-names (#3638) c8f81bc8

no-redundant-nested-style-rules (#3637) 31603ad6

Improvements

Add TOML support (#3687) f61393aa

Improve performance 3cfa32ce

prefer-continue: Add checkShortBodies option (#3699) 274d5815

filename-case: Add directoryRoots option (#3647) d2d6cc3e

custom-error-definition: Allow flexible options placement (#3698) 2f8e2e5d

prefer-smaller-scope: Check initialized declarations (#3697) 960b3745

no-unsafe-string-replacement: Allow safe repeated strings (#3696) 742bdcee

no-array-fill-with-reference-type: Recognize function return types (#3695) 60f00ffa

prefer-continue: Support trailing conditionals (#3694) bf480f6f

no-immediate-mutation: Support conditionals (#3688) 73235b9a

prefer-set-methods: Extend supported methods (#3674) 3459a293

prefer-minimal-ternary: Check property reads with checkComputedMemberAccess (#3673) 37d76148

prefer-array-from-async: Recognize ordinary serial mapping loops (#3671) 65ad1bb5

prefer-uint8array-base64: Prefer native encoding options (#3665) 6ecc9121

prefer-group-by: Recognize accumulation loops (#3664) a8e7d0e2

no-negated-condition: Preserve comments in autofixes (#3662) 8f407a73

prefer-minimal-ternary: Support objects, arrays, and constructors (#3658) 40c860a1

prefer-ternary: Handle flat return statements (#3657) 2edc1587

no-useless-else: Prevent unsafe combined fixes (#3654) 7beaf7df

no-useless-length-check: Check for…of loops (#3652) fdf47c59

no-unknown-css-annotations: Fix identifier lookup across @eslint/css-tree versions 9b6f37bc

prefer-dom-node-replace-children: Combine consecutive mutations (#3648) 52dd1cec

... (truncated)

Commits

80939f9 75.0.0

274d581 prefer-continue: Add checkShortBodies option (#3699)

2f8e2e5 custom-error-definition: Allow flexible options placement (#3698)

960b374 prefer-smaller-scope: Check initialized declarations (#3697)

742bdce no-unsafe-string-replacement: Allow safe repeated strings (#3696)

60f00ff no-array-fill-with-reference-type: Recognize function return types (#3695)

bf480f6 prefer-continue: Support trailing conditionals (#3694)

73235b9 no-immediate-mutation: Support conditionals (#3688)

f61393a Add TOML support (#3687)

05fd60e prefer-single-call: Document argument-count limitation (#3686)

Additional commits viewable in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:20AM

via GitHub https://ift.tt/Nf5mJTv

·github.com·
[Oneseco-Media/rsshub] Bump eslint-plugin-unicorn from 74.0.0 to 75.0.0
[Oneseco-Media/rsshub] Bump imapflow from 2.0.2 to 2.0.5
[Oneseco-Media/rsshub] Bump imapflow from 2.0.2 to 2.0.5

[Oneseco-Media/rsshub]

Bump imapflow from 2.0.2 to 2.0.5

By dependabot[bot]

Assigned to

Bumps imapflow from 2.0.2 to 2.0.5.

Changelog

Sourced from imapflow's changelog.

2.0.5 (2026-09-15)

Bug Fixes

deps: update mailsplit to 5.4.17 (4eb90d8)

2.0.4 (2026-09-15)

Bug Fixes

deps: update libmime to 5.4.4 and encoding-japanese to 2.4.0 (ffa0f93)

2.0.3 (2026-09-14)

Bug Fixes

bound the chunked download loop by the reported message size (fc9b4eb)

stop chunked download when the server ignores the partial spec (#396) (e216fde)

Commits

de4e0ce Merge pull request #400 from postalsys/release-please--branches--master--comp...

1a75a5e chore(master): release 2.0.5 [skip-ci]

4eb90d8 fix(deps): update mailsplit to 5.4.17

ee1bf2d Merge pull request #399 from postalsys/release-please--branches--master--comp...

aa1e4c1 chore(master): release 2.0.4 [skip-ci]

ffa0f93 fix(deps): update libmime to 5.4.4 and encoding-japanese to 2.4.0

75cca5b chore(master): release 2.0.3 [skip-ci] (#397)

fc9b4eb fix: bound the chunked download loop by the reported message size

e216fde fix: stop chunked download when the server ignores the partial spec (#396)

See full diff in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:19AM

via GitHub https://ift.tt/L8jBWDO

·github.com·
[Oneseco-Media/rsshub] Bump imapflow from 2.0.2 to 2.0.5
[Oneseco-Media/rsshub] Bump rate-limiter-flexible from 11.2.0 to 11.2.1
[Oneseco-Media/rsshub] Bump rate-limiter-flexible from 11.2.0 to 11.2.1

[Oneseco-Media/rsshub]

Bump rate-limiter-flexible from 11.2.0 to 11.2.1

By dependabot[bot]

Assigned to

Bumps rate-limiter-flexible from 11.2.0 to 11.2.1.

Release notes

Sourced from rate-limiter-flexible's releases.

Extend types for RateLimiterValkey options

What's Changed

extend IRateLimiterValkeyOptions by rejectIfValkeyNotReady by @​streifehoernli in animir/node-rate-limiter-flexible#367

New Contributors

@​streifehoernli made their first contribution in animir/node-rate-limiter-flexible#367

Full Changelog: https://github.com/animir/node-rate-limiter-flexible/compare/v11.2.0...v11.2.1

:cat:

Commits

1bf9eb1 11.2.1

13f88b4 extend IRateLimiterValkeyOptions by rejectIfValkeyNotReady (#367)

97fd58a update context

See full diff in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:18AM

via GitHub https://ift.tt/sIdmAet

·github.com·
[Oneseco-Media/rsshub] Bump rate-limiter-flexible from 11.2.0 to 11.2.1
[Oneseco-Media/rsshub] Bump @types/node from 26.5.1 to 26.6.1
[Oneseco-Media/rsshub] Bump @types/node from 26.5.1 to 26.6.1

[Oneseco-Media/rsshub]

Bump @types/node from 26.5.1 to 26.6.1

By dependabot[bot]

Assigned to

Bumps @types/node from 26.5.1 to 26.6.1.

Commits

See full diff in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:18AM

via GitHub https://ift.tt/0xrPotC

·github.com·
[Oneseco-Media/rsshub] Bump @types/node from 26.5.1 to 26.6.1
[Oneseco-Media/rsshub] Bump jsdom from 30.0.1 to 30.1.0
[Oneseco-Media/rsshub] Bump jsdom from 30.0.1 to 30.1.0

[Oneseco-Media/rsshub]

Bump jsdom from 30.0.1 to 30.1.0

By dependabot[bot]

Assigned to

Bumps jsdom from 30.0.1 to 30.1.0.

Release notes

Sourced from jsdom's releases.

v30.1.0

jsdom is feeling the AGI!

This release is dedicated to @​scttcper, who unleashed @​codex upon jsdom and found tons of performance improvements. Along the way, he found and fixed many correctness issues as well.

We really appreciate his thoughtful PRs, which did a great job following the project's contribution guidelines, and were clearly human-curated, with their PR descriptions edited to be brief and respectful of the maintainers' time.

Thanks to @​scttcper, as well as all the other contributors of this release (most of whom were AI-assisted).

Added named access to elements on document, such as document.myForm for <form name="myForm">. (@​vojtisprime11)

Added QuotaExceededError, including its use for storage quota errors and oversized crypto.getRandomValues() requests.

Added support for the relaxed DOM naming rules when creating elements, attributes, and document types.

Improved performance of DOM construction, tree mutations, range operations, and live collection access, especially on large documents. (@​scttcper, @​erezrokah)

Improved performance of getComputedStyle(), style changes, and CSS serialization. (@​scttcper, @​jhult)

Improved performance of event dispatch, form control and label lookups, and updates to <select> elements and radio button groups. (@​scttcper)

Reduced memory use when creating and working with DOM nodes, attributes, event listeners, and mutation observers. (@​scttcper)

Changed window.close() to preserve access to the document and its DOM through retained references.

Fixed element.querySelectorAll() returning no matches when the first part of the selector matches the element itself, which regressed in v30.0.0. (@​asamuzaK)

Fixed case sensitivity in CSS attribute selectors, including selectors matching data-state="", title="", and other case-sensitive values. (@​asamuzaK)

Fixed document.querySelector() failing to find a matching element when an earlier element has the same ID but does not match the rest of the selector. (@​vojtisprime11)

Fixed :focus matching in shadow trees. (@​asamuzaK)

Fixed DOM insertion and replacement, including valid document.replaceChildren() calls, invalid document element and doctype placements, and mutations during element.replaceWith().

Fixed the ordering of script execution, custom element callbacks, iframe loading, and mutation observer notifications during DOM insertion, including in shadow trees.

Fixed queued events and navigation continuing after window.close() or iframe removal, and prevented new scripts, resource loads, timers, and animation frames from starting in destroyed documents. (@​scttcper)

Fixed parent documents waiting indefinitely for loading to finish when a child iframe removes itself during loading.

Fixed request cancellation across redirects, during pending requestInterceptor() callbacks, and when reusing an XMLHttpRequest after aborting it.

Fixed resource loading and JSDOM.fromURL() potentially hanging when response handling throws and response stream cleanup does not finish.

Fixed successful cached resource loads being treated as aborted.

Fixed getComputedStyle() and document.styleSheets using the wrong stylesheet order after inserting or updating <style> elements.

Fixed getComputedStyle() ignoring nested @import and @media rules in imported stylesheets, and returning stale results after imports finish loading.

Fixed style invalidation, stylesheet removal, and frame source updates in shadow trees.

Fixed repeated getComputedStyle() calls changing case-sensitive background URLs, and inconsistent resolution of border shorthands containing system colors. (@​scttcper)

Fixed computed border widths, including borderless elements incorrectly reporting 16px, which regressed in v30.0.0. (@​Alberto-BaseNet)

Fixed getComputedStyle() to resolve 'font-weight' keywords to numeric values. (@​tianrking)

Fixed getComputedStyle() to convert lengths to pixels inside CSS math functions containing percentages, and to resolve percentages in 'font-size' math functions. (@​soroushm)

Fixed serialization of min() and max() containing nested calc(), which regressed in v30.0.0. (@​asamuzaK)

Fixed CSS values mixing lengths or percentages with math functions, such as 'grid-template-columns' values containing both 100px and calc(). (@​rome-xi)

Fixed parsing of 'background' and 'border' shorthands with adjacent components, such as url(a.png)no-repeat, including a crash when parsing inline styles. Also fixed handling of invalid shorthand assignments and escaped or unusual characters in CSS declarations. (@​asamuzaK)

Fixed parsing of unitless zero values in 'flex' shorthands, such as 35 1 0, and rejection of negative 'flex-basis' lengths and percentages. (@​asamuzaK)

Fixed shorthand style assignments producing extra mutation records and custom element callbacks for intermediate values. (@​scttcper)

Fixed Range and Selection handling of CDATA sections, including boundary offsets and range cloning, extraction, deletion, insertion, and stringification. (@​scttcper)

Fixed text.normalize() incorrectly removing the text node or merging its siblings. (@​scttcper)

Fixed cloning and importing CDATA sections and processing instructions whose contents have been modified, and serialization of CDATA sections adopted into HTML documents.

Fixed stale named-property collections on window, and incorrect named access from empty or namespaced id="" and name="" values. (@​scttcper)

Fixed elements in documents created with DOMParser or document.implementation.createHTMLDocument() appearing as named properties on window and being retained in memory. (@​Iaotle)

Fixed memory leaks from mutation observers retaining observed nodes, abort signals retaining removed event listeners, and storage event tracking retaining closed windows. (@​scttcper)

Fixed storage events being sent to windows created after the storage change, and ensured surviving recipients still receive events when the source document is destroyed.

Fixed attribute lookups after namespace prefix changes, and namespaced attributes incorrectly affecting ID lookups and element behavior. (@​scttcper)

Fixed input.list in detached element trees. (@​scttcper)

Fixed attr.ownerDocument after setting an attribute node on an element in another document or adopting its element. (@​Kjubikstronk)

... (truncated)

Commits

556b11f 30.1.0

9547fbf Tie queued tasks to document lifetime

3be65d9 Disable unused HTML reports in the WPT runner

d555e61 Replace SymbolTree with a DOM-specific tree

f28983d Clone CDATA and processing instructions without revalidation

33e4fa7 Invalidate computed styles after CSS imports load

ec6fd5b Select storage event recipients at mutation time

bcc037a Honor script type and legacy event attributes

faa5c4f Preserve currentScript across nested scripts

8d7a37f Avoid quadratic HTML collection iteration

Additional commits viewable in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:17AM

via GitHub https://ift.tt/0nQ5xCh

·github.com·
[Oneseco-Media/rsshub] Bump jsdom from 30.0.1 to 30.1.0
[Oneseco-Media/rsshub] Bump rolldown from 1.2.8 to 1.2.9
[Oneseco-Media/rsshub] Bump rolldown from 1.2.8 to 1.2.9

[Oneseco-Media/rsshub]

Bump rolldown from 1.2.8 to 1.2.9

By dependabot[bot]

Assigned to

Bumps rolldown from 1.2.8 to 1.2.9.

Release notes

Sourced from rolldown's releases.

v1.2.9

[1.2.9] - 2026-09-16

🚀 Features

add MODULE_LEVEL_DIRECTIVE warning (#10791) by @​sapphi-red

🐛 Bug Fixes

handle CommonJS exports through top-level this (#10872) by @​IWANABETHATGUY

scripts: make setup-vite CLI invocation work on Windows (#10885) by @​shulaoda

remove deleted property from output bundle proxy target (#10815) by @​Vladexy88x

treat module-scope await using as top-level await (#10739) by @​MarshallOfSound

watch: preserve plugin attribution in warnings (#10473) by @​Nic-Polumeyv

test-dev-server: link the workspace rolldown before building vite (#10857) by @​h-a-n-a

minify: preserve annotation comments when minified (#10854) (#10855) by @​justonemorenight

⚡ Performance

dev/lazy: fetch a lazy route in one request (#10789) by @​h-a-n-a

plugin: reduce binding binary size (#10776) by @​Boshen

vite-reporter: reuse emitted sourcemap sizes (#10841) by @​hyfdev

🧪 Testing

dev: full-bundle-mode regression test for cyclic import binding (#9946) (#9947) by @​ShMcK

cover asset option callback timings (#10870) by @​IWANABETHATGUY

⚙️ Miscellaneous Tasks

wait for npm bindings before publishing rolldown (#10866) by @​shulaoda

deps: update dependency @​napi-rs/cli to v3.10.1 (#10889) by @​renovate[bot]

deps: update napi (#10888) by @​renovate[bot]

compress debug info archives with zstd (#10778) by @​IWANABETHATGUY

publish split debug info for release bindings (#10777) by @​IWANABETHATGUY

rolldown_utils: simplify MIME guessing and remove UTF-8 check bypass (#10884) by @​shulaoda

add npm bugs metadata for rolldown (#9694) by @​kingshuaishuai

deps: upgrade oxc to 0.150.0 (#10877) by @​camc314

deps: update rust crates (#10869) by @​renovate[bot]

deps: update dependency vite-plus to v0.3.2 (#10878) by @​renovate[bot]

deps: update rollup submodule for tests to v4.63.3 (#10880) by @​rolldown-guard[bot]

deps: update test262 submodule for tests (#10881) by @​rolldown-guard[bot]

deps: update github actions (#10867) by @​renovate[bot]

deps: update npm packages (#10868) by @​renovate[bot]

deps: update napi to v3.12.4 (#10862) by @​renovate[bot]

deps: update napi (#10861) by @​renovate[bot]

❤️ New Contributors

@​Vladexy88x made their first contribution in #10815

... (truncated)

Changelog

Sourced from rolldown's changelog.

[1.2.9] - 2026-09-16

🚀 Features

add MODULE_LEVEL_DIRECTIVE warning (#10791) by @​sapphi-red

🐛 Bug Fixes

handle CommonJS exports through top-level this (#10872) by @​IWANABETHATGUY

scripts: make setup-vite CLI invocation work on Windows (#10885) by @​shulaoda

remove deleted property from output bundle proxy target (#10815) by @​Vladexy88x

treat module-scope await using as top-level await (#10739) by @​MarshallOfSound

watch: preserve plugin attribution in warnings (#10473) by @​Nic-Polumeyv

test-dev-server: link the workspace rolldown before building vite (#10857) by @​h-a-n-a

minify: preserve annotation comments when minified (#10854) (#10855) by @​justonemorenight

⚡ Performance

dev/lazy: fetch a lazy route in one request (#10789) by @​h-a-n-a

plugin: reduce binding binary size (#10776) by @​Boshen

vite-reporter: reuse emitted sourcemap sizes (#10841) by @​hyfdev

🧪 Testing

dev: full-bundle-mode regression test for cyclic import binding (#9946) (#9947) by @​ShMcK

cover asset option callback timings (#10870) by @​IWANABETHATGUY

⚙️ Miscellaneous Tasks

wait for npm bindings before publishing rolldown (#10866) by @​shulaoda

deps: update dependency @​napi-rs/cli to v3.10.1 (#10889) by @​renovate[bot]

deps: update napi (#10888) by @​renovate[bot]

compress debug info archives with zstd (#10778) by @​IWANABETHATGUY

publish split debug info for release bindings (#10777) by @​IWANABETHATGUY

rolldown_utils: simplify MIME guessing and remove UTF-8 check bypass (#10884) by @​shulaoda

add npm bugs metadata for rolldown (#9694) by @​kingshuaishuai

deps: upgrade oxc to 0.150.0 (#10877) by @​camc314

deps: update rust crates (#10869) by @​renovate[bot]

deps: update dependency vite-plus to v0.3.2 (#10878) by @​renovate[bot]

deps: update rollup submodule for tests to v4.63.3 (#10880) by @​rolldown-guard[bot]

deps: update test262 submodule for tests (#10881) by @​rolldown-guard[bot]

deps: update github actions (#10867) by @​renovate[bot]

deps: update npm packages (#10868) by @​renovate[bot]

deps: update napi to v3.12.4 (#10862) by @​renovate[bot]

deps: update napi (#10861) by @​renovate[bot]

❤️ New Contributors

@​Vladexy88x made their first contribution in #10815

@​MarshallOfSound made their first contribution in #10739

... (truncated)

Commits

5b4746e release: v1.2.9 (#10895)

c1dc973 ci: wait for npm bindings before publishing rolldown (#10866)

4ce09b9 chore(deps): update dependency @​napi-rs/cli to v3.10.1 (#10889)

3a1bd9d chore(deps): update napi (#10888)

a34b6f5 ci: publish split debug info for release bindings (#10777)

802b4aa fix: remove deleted property from output bundle proxy target (#10815)

2a5d72c fix(watch): preserve plugin attribution in warnings (#10473)

d8915ba chore: add npm bugs metadata for rolldown (#9694)

5db55b9 chore(deps): upgrade oxc to 0.150.0 (#10877)

f9c98e4 test: cover asset option callback timings (#10870)

Additional commits viewable in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:17AM

via GitHub https://ift.tt/EGM5yBX

·github.com·
[Oneseco-Media/rsshub] Bump rolldown from 1.2.8 to 1.2.9
[Oneseco-Media/rsshub] Bump @sentry/node from 10.74.0 to 10.75.0
[Oneseco-Media/rsshub] Bump @sentry/node from 10.74.0 to 10.75.0

[Oneseco-Media/rsshub]

Bump @sentry/node from 10.74.0 to 10.75.0

By dependabot[bot]

Assigned to

Bumps @sentry/node from 10.74.0 to 10.75.0.

Release notes

Sourced from @​sentry/node's releases.

10.75.0

Important Changes

feat(v10/effect): Capture errors through the Effect v4 ErrorReporter API (#24445)

On Effect v4, Sentry.effectLayer now registers a Sentry ErrorReporter. Failures that pass through Effect.withErrorReporting, ErrorReporter.report or the built-in HTTP and RPC reporting boundaries are captured automatically, with ErrorReporter.ignore, ErrorReporter.severity and ErrorReporter.attributes annotations respected. Nothing changes on Effect v3.

Other Changes

feat(v10/core): Accept a CollectBehavior shorthand for dataCollection.httpHeaders (#24339)

fix(v10/browser): Release the XHR virtualError once the request completed (#24307)

fix(v10/browser-utils): Skip nullish LCP entries in vendored web-vitals (#24349)

fix(v10/bundler-plugins): Stamp debug IDs onto emitted source maps when disable-upload is set (#24332)

fix(v10/core): Don't instrument the SDK's own envelope requests (#24276)

fix(v10/nextjs): Only include emitted chunk directories in Turbopack sourcemap upload (#24295)

fix(v10/nitro): Import from nitro/h3 instead of h3 directly (#24444)

fix(v10/node-core): Don't recurse in logAndExitProcess on a broken stdio pipe (#24353)

fix(v10/nuxt): Detect Nitro version via the app's Nuxt dependency chain (#24025)

fix(v10/replay): Don't rewrite already-emitted nodes when syncing mirror attributes (#23588)

Bundle size 📦

Path

Size

@​sentry/browser

27.18 KB

@​sentry/browser - with treeshaking flags

25.66 KB

@​sentry/browser (incl. Tracing)

45.6 KB

@​sentry/browser (incl. Tracing + Span Streaming)

47.34 KB

@​sentry/browser (incl. Tracing, Profiling)

50.24 KB

@​sentry/browser (incl. Tracing, Replay)

83.99 KB

@​sentry/browser (incl. Tracing, Replay) - with treeshaking flags

73.84 KB

@​sentry/browser (incl. Tracing, Replay with Canvas)

88.6 KB

@​sentry/browser (incl. Tracing, Replay, Feedback)

100.94 KB

@​sentry/browser (incl. Feedback)

43.94 KB

@​sentry/browser (incl. sendFeedback)

31.87 KB

@​sentry/browser (incl. FeedbackAsync)

36.88 KB

@​sentry/browser (incl. Metrics)

28.25 KB

@​sentry/browser (incl. Logs)

28.47 KB

@​sentry/browser (incl. Metrics & Logs)

29.15 KB

@​sentry/react

28.93 KB

@​sentry/react (incl. Tracing)

47.81 KB

@​sentry/vue

32.47 KB

@​sentry/vue (incl. Tracing)

47.55 KB

@​sentry/svelte

27.21 KB

CDN Bundle

29.53 KB

CDN Bundle (incl. Tracing)

47.52 KB

CDN Bundle (incl. Logs, Metrics)

31.07 KB

CDN Bundle (incl. Tracing, Logs, Metrics)

48.81 KB

CDN Bundle (incl. Replay, Logs, Metrics)

69.49 KB

CDN Bundle (incl. Tracing, Replay)

84.22 KB

... (truncated)

Changelog

Sourced from @​sentry/node's changelog.

10.75.0

Important Changes

feat(v10/effect): Capture errors through the Effect v4 ErrorReporter API (#24445)

On Effect v4, Sentry.effectLayer now registers a Sentry ErrorReporter. Failures that pass through Effect.withErrorReporting, ErrorReporter.report or the built-in HTTP and RPC reporting boundaries are captured automatically, with ErrorReporter.ignore, ErrorReporter.severity and ErrorReporter.attributes annotations respected. Nothing changes on Effect v3.

Other Changes

feat(v10/core): Accept a CollectBehavior shorthand for dataCollection.httpHeaders (#24339)

fix(v10/browser): Release the XHR virtualError once the request completed (#24307)

fix(v10/browser-utils): Skip nullish LCP entries in vendored web-vitals (#24349)

fix(v10/bundler-plugins): Stamp debug IDs onto emitted source maps when disable-upload is set (#24332)

fix(v10/core): Don't instrument the SDK's own envelope requests (#24276)

fix(v10/nextjs): Only include emitted chunk directories in Turbopack sourcemap upload (#24295)

fix(v10/nitro): Import from nitro/h3 instead of h3 directly (#24444)

fix(v10/node-core): Don't recurse in logAndExitProcess on a broken stdio pipe (#24353)

fix(v10/nuxt): Detect Nitro version via the app's Nuxt dependency chain (#24025)

fix(v10/replay): Don't rewrite already-emitted nodes when syncing mirror attributes (#23588)

Commits

9ffb58c release: 10.75.0

664c906 meta(changelog): Update changelog for 10.75.0 (#24446)

e3e7acc fix(v10/nitro): Import from nitro/h3 instead of h3 directly (#24444)

4bb51d1 feat(v10/effect): Capture errors through the Effect v4 ErrorReporter API (#24...

738f17e fix(v10/core): Don't instrument the SDK's own envelope requests (#24276)

f63c56a fix(v10/node-core): Don't recurse in logAndExitProcess on a broken stdio pipe...

0e24355 fix(v10/browser-utils): Skip nullish LCP entries in vendored web-vitals (#24349)

ac3ea13 fix(v10/nuxt): Detect Nitro version via the app's Nuxt dependency chain (#24025)

9235d43 fix(v10/nextjs): Only include emitted chunk directories in Turbopack sourcema...

e2deda0 feat(v10/core): Accept CollectBehavior shorthand for `dataCollection.httpHe...

Additional commits viewable in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:16AM

via GitHub https://ift.tt/1gwNcsh

·github.com·
[Oneseco-Media/rsshub] Bump @sentry/node from 10.74.0 to 10.75.0
[Oneseco-Media/rsshub] Bump dotenv from 17.4.2 to 18.0.0
[Oneseco-Media/rsshub] Bump dotenv from 17.4.2 to 18.0.0

[Oneseco-Media/rsshub]

Bump dotenv from 17.4.2 to 18.0.0

By dependabot[bot]

Assigned to

Bumps dotenv from 17.4.2 to 18.0.0.

Changelog

Sourced from dotenv's changelog.

18.0.0 (2026-09-17)

Added

NEW: Dotenv now has a CLI. (#1022)

$ dotenv run -- node index.js ◇ injected env (2) from .env Hello Dotenv

NEW: Dotenv now has a fast parser thanks to @​homanp of superagent.sh. Pass config({ fast: true }), flag --fast, or set DOTENV_FAST=true to opt-in to ~2x faster character-scanner parser. (#1010)

$ dotenv run --fast -- node index.js ◇ injected env (2) from .env Hello Dotenv

Changed

Injecting message sent to stderr rather than stdout and tips removed (#1037)

Removed

Remove tips (#1031)

Remove skill files (#1032)

Remove Spanish README (#1034)

Remove .env.vault support (#1033)

Remove preloading. Instead use cli dotenv run -- your-command (#1035)

Commits

2815fa8 18.0.0

451c6cb add spacing

7c7ed02 update README and changelog

7454f56 Merge pull request #1052 from motdotla/cli-cleanup

f5de622 .cmd coverage

75289b1 changelog

33bd964 spawn for windows

2b4cc00 update changelog

de91a69 cli cleanup

fa8788e Merge pull request #1049 from webdevelopersrinu/fix-populate-null

Additional commits viewable in compare view

[Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • `@dependabot show

Labeled:

September 21, 2026 at 03:15AM

via GitHub https://ift.tt/PDMIBFO

·github.com·
[Oneseco-Media/rsshub] Bump dotenv from 17.4.2 to 18.0.0
[Cybersoulja/Agentic-Telegram-TMA] chore(env): add secrets store id keychain template
[Cybersoulja/Agentic-Telegram-TMA] chore(env): add secrets store id keychain template

[Cybersoulja/Agentic-Telegram-TMA]

chore(env): add secrets store id keychain template

By Cybersoulja

Assigned to

Adds a root .env.template that references the Cloudflare Secrets Store ID via the macOS Keychain (keychain-env) instead of committing the value. It is a new file only: CLOUDFLARE_SECRETS_STORE_ID=KEYCHAIN:CLOUDFLARE_SECRETS_STORE_ID. There are no source, wrangler, or build changes, so the trillastrob Worker is unaffected. The real value is stored locally with keychain-env set CLOUDFLARE_SECRETS_STORE_ID.

Labeled:

September 21, 2026 at 01:55AM

via GitHub https://ift.tt/FROoW5j

·github.com·
[Cybersoulja/Agentic-Telegram-TMA] chore(env): add secrets store id keychain template
Personal Access Tokens (Classic)
Personal Access Tokens (Classic)
GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.
·github.com·
Personal Access Tokens (Classic)
Installed GitHub App - Expo
Installed GitHub App - Expo
GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.
·github.com·
Installed GitHub App - Expo