Skip to content

feat(deps): upgrade upstream dependencies - #2519

Merged
fengmk2 merged 10 commits into
mainfrom
deps/upstream-update
Aug 21, 2026
Merged

feat(deps): upgrade upstream dependencies#2519
fengmk2 merged 10 commits into
mainfrom
deps/upstream-update

Conversation

@voidzero-guard

@voidzero-guard voidzero-guard Bot commented Aug 21, 2026

Copy link
Copy Markdown
Contributor

This PR upgrades upstream dependencies and adds two projects to ecosystem CI.

Nuxt DevTools uses the @vitejs/devtools version from packages/core/package.json.
Its test runs the build, type check, and unit tests on Linux and Windows.
The fixture trusts the lockfile that the same CI job creates for the local Vite+ registry.

The Tiptap test runs on Ubuntu.
It runs vp run build && vp run build:demos, vp run lint, and vp run test:unit.
The fixture keeps Tiptap's upstream lint behavior after vp migrate.

The ecosystem workflow now uses the name Ecosystem CI.
The dependency upgrade workflow preserves the baseline PR details.
It adds verified release and commit links to the Dependency updates table.

  • This PR upgrades the upstream dependencies.
  • It updates the pinned vite commit to v8.2.2 (de1111a) and @vitejs/devtools to 0.5.1.
  • rolldown stays on v1.2.5 (84c904b). Vitest, tsdown, Oxlint, Oxfmt, and the Oxc packages are unchanged.
  • The required changes widen the @vitejs/devtools peer range and update the recorded bundled Vite version. They also update one PTY snapshot.

Dependency updates

Package From To
vite v8.2.1 (4216158) v8.2.2 (de1111a)
@vitejs/devtools 0.5.0 0.5.1
Unchanged dependencies
  • rolldown: v1.2.5 (84c904b)
  • vitest: 4.1.11
  • @vitest/browser: 4.1.11
  • @vitest/browser-playwright: 4.1.11
  • @vitest/browser-preview: 4.1.11
  • @vitest/browser-webdriverio: 4.1.11
  • @vitest/expect: 4.1.11
  • @vitest/mocker: 4.1.11
  • @vitest/pretty-format: 4.1.11
  • @vitest/runner: 4.1.11
  • @vitest/snapshot: 4.1.11
  • @vitest/spy: 4.1.11
  • @vitest/utils: 4.1.11
  • tsdown: 0.22.14
  • @tsdown/css: 0.22.14
  • @tsdown/exe: 0.22.14
  • lightningcss: ^1.33.0
  • @oxc-node/cli: 0.1.0
  • @oxc-node/core: 0.1.0
  • oxfmt: 0.64.0
  • oxlint: 1.79.0
  • oxlint-tsgolint: 7.0.2001
  • @oxc-project/runtime: 0.146.0
  • @oxc-project/types: 0.146.0
  • oxc-minify: 0.146.0
  • oxc-parser: 0.146.0
  • oxc-transform: 0.146.0
  • VITEST_VERSION constant: 4.1.11
  • README Vitest pins: 4.1.11

Code changes

  • packages/core/package.json updates the @vitejs/devtools dependency from ^0.5.0 to ^0.5.1.
  • The same file updates the peer range from ^0.4.0 to ^0.4.0 || ^0.5.0.
  • The same file updates bundledVersions.vite from 8.2.1 to 8.2.2.
  • packages/tools/.upstream-versions.json updates the pinned Vite hash to de1111ab0be00879b404e7ed3b2a80e264edddc1.
  • crates/vp_cli_snapshots/tests/cli_snapshots/fixtures/create_approve_builds_bun/snapshots/create_approve_builds_bun.md updates the recorded bun pm trust <version> (...) build hash.
  • pnpm-lock.yaml refreshes the lockfile and its transitive dependencies.
  • .github/workflows/e2e-test.yml adds the Nuxt DevTools and Tiptap tests. It also renames the workflow to Ecosystem CI.
  • ecosystem-ci/repo.json adds the pinned Nuxt DevTools and Tiptap repositories.
  • ecosystem-ci/patch-project.ts aligns the DevTools version and trusts the Nuxt lockfile. It also preserves Tiptap's lint behavior.
  • .github/workflows/upgrade-deps.yml preserves baseline PR details. It adds verified links to the dependency table.

@voidzero-guard

Copy link
Copy Markdown
Contributor Author

✅ No upstream CLI help changes detected

Compared normalized --help output for the upstream CLIs mirrored by Vite+.

✅ Vite: no CLI help changes (8.2.1 → 8.2.2)

The version was updated, but the normalized CLI help output has no differences.

➖ Vitest: no version update (4.1.11)

No version update was detected, so there is no CLI help diff.

➖ Oxlint: no version update (1.79.0)

No version update was detected, so there is no CLI help diff.

➖ Oxfmt: no version update (0.64.0)

No version update was detected, so there is no CLI help diff.

➖ tsdown: no version update (0.22.14)

No version update was detected, so there is no CLI help diff.

@netlify

netlify Bot commented Aug 21, 2026

Copy link
Copy Markdown

Deploy Preview for viteplus-preview canceled.

Name Link
🔨 Latest commit 33cbe4a
🔍 Latest deploy log https://app.netlify.com/projects/viteplus-preview/deploys/6a883552b324e2000879c9d2

@fengmk2 fengmk2 self-assigned this Aug 21, 2026
@fengmk2
fengmk2 force-pushed the deps/upstream-update branch from 5e7dc28 to 366e49f Compare August 21, 2026 03:31
@socket-security

socket-security Bot commented Aug 21, 2026

Copy link
Copy Markdown

@github-actions

github-actions Bot commented Aug 21, 2026

Copy link
Copy Markdown
Contributor

Native binary sizes (33cbe4a)

Final release artifacts built by the canonical build-upstream and build-windows-cli actions.

Artifact Format Base PR Change
vp (Linux x64) Binary 10.73 MiB 10.73 MiB 0 B (0.00%)
vp (Linux x64) gzip -9 4.64 MiB 4.64 MiB 0 B (0.00%)
NAPI (Linux x64) Binary 32.20 MiB 32.20 MiB 0 B (0.00%)
NAPI (Linux x64) gzip -9 12.69 MiB 12.69 MiB 0 B (0.00%)
vp (macOS ARM64) Binary 8.03 MiB 8.03 MiB 0 B (0.00%)
vp (macOS ARM64) gzip -9 4.05 MiB 4.05 MiB 0 B (0.00%)
NAPI (macOS ARM64) Binary 39.80 MiB 39.80 MiB 0 B (0.00%)
NAPI (macOS ARM64) gzip -9 16.98 MiB 16.98 MiB -3 B (-0.00%)
vp (Windows x64) Binary 8.63 MiB 8.63 MiB 0 B (0.00%)
vp (Windows x64) gzip -9 3.77 MiB 3.77 MiB -1 B (-0.00%)
NAPI (Windows x64) Binary 27.03 MiB 27.03 MiB 0 B (0.00%)
NAPI (Windows x64) gzip -9 10.75 MiB 10.75 MiB -2 B (-0.00%)
Trampoline (Windows x64) Binary 216.50 KiB 216.50 KiB 0 B (0.00%)
Trampoline (Windows x64) gzip -9 104.34 KiB 104.34 KiB 0 B (0.00%)
Installer (Windows x64) Binary 4.50 MiB 4.50 MiB 0 B (0.00%)
Installer (Windows x64) gzip -9 2.11 MiB 2.11 MiB +1 B (+0.00%)

@fengmk2
fengmk2 force-pushed the deps/upstream-update branch from 9be0866 to e414958 Compare August 21, 2026 03:52
@fengmk2 fengmk2 added the preview-build Publish this PR's commits to the registry bridge as preview builds label Aug 21, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Registry bridge build (959053f)

This commit build is published to the registry bridge, which serves these as ordinary npm versions (every other package proxies to npmjs):

Package Version
vite-plus 0.0.0-commit.959053f6d6177f2df145df06269f79915ba4bd68
@voidzero-dev/vite-plus-core 0.0.0-commit.959053f6d6177f2df145df06269f79915ba4bd68

Install the Vite+ CLI built from this commit, then migrate a project:

# macOS / Linux
curl -fsSL https://raw.githubusercontent.com/voidzero-dev/vite-plus/959053f6d6177f2df145df06269f79915ba4bd68/packages/cli/install.sh | VP_PR_VERSION=2519 bash
# Windows (PowerShell)
$env:VP_PR_VERSION="2519"; irm https://raw.githubusercontent.com/voidzero-dev/vite-plus/959053f6d6177f2df145df06269f79915ba4bd68/packages/cli/install.ps1 | iex

Or download the standalone Windows installer built from this commit:

Architecture Installer
x64 vp-setup-x86_64-pc-windows-msvc.exe
Arm64 vp-setup-aarch64-pc-windows-msvc.exe

GitHub requires you to sign in and downloads each installer as a ZIP artifact. Extract vp-setup.exe, then run it against this preview build:

.\vp-setup.exe --version "0.0.0-commit.959053f6d6177f2df145df06269f79915ba4bd68" --registry "https://registry-bridge.viteplus.dev/"

After installing, upgrade the current project's vite-plus to this test build with:

vp migrate

Or point your package manager at the bridge registry https://registry-bridge.viteplus.dev/:

Package manager Registry config
npm / pnpm / Bun .npmrc: registry=https://registry-bridge.viteplus.dev/
Yarn (v2+) .yarnrc.yml: npmRegistryServer: "https://registry-bridge.viteplus.dev/"

Then pin the build (vite aliases to vite-plus-core; pnpm can use a catalog, npm an overrides entry):

{
  "devDependencies": {
    "vite-plus": "0.0.0-commit.959053f6d6177f2df145df06269f79915ba4bd68",
    "vite": "npm:@voidzero-dev/vite-plus-core@0.0.0-commit.959053f6d6177f2df145df06269f79915ba4bd68"
  }
}

@github-actions

Copy link
Copy Markdown
Contributor

🐳 Docker preview image

Built from this PR's registry bridge build:

Image Compressed size
ghcr.io/voidzero-dev/vite-plus:pr-2519 236MB
# remove any stale local copy from a previous run, then pull fresh
docker rmi ghcr.io/voidzero-dev/vite-plus:pr-2519 2>/dev/null; docker pull ghcr.io/voidzero-dev/vite-plus:pr-2519

Quick check:

docker run --rm ghcr.io/voidzero-dev/vite-plus:pr-2519 vp --version

See docs/guide/docker.md for usage.

@fengmk2
fengmk2 force-pushed the deps/upstream-update branch 2 times, most recently from be9039b to c11daa0 Compare August 21, 2026 08:19
voidzero-guard Bot and others added 9 commits August 21, 2026 16:39
- vite: 4216158 -> v8.2.2 (de1111a)
- @vitejs/devtools: 0.5.0 -> 0.5.1

Code changes:
- packages/core/package.json: bundled vite version 8.2.1 -> 8.2.2, and
  widen the @vitejs/devtools peer range to ^0.4.0 || ^0.5.0
- crates/vp_cli_snapshots/tests/cli_snapshots/fixtures/create_approve_builds_bun/snapshots/create_approve_builds_bun.md:
  update the `bun pm trust` build hash in the recorded snapshot
- pnpm-lock.yaml: refresh transitive dependencies (publint, tsx,
  postcss, sass-embedded, browserslist, esbuild, unplugin-* and others)
@fengmk2
fengmk2 force-pushed the deps/upstream-update branch from c11daa0 to 3dfb942 Compare August 21, 2026 08:39
@fengmk2
fengmk2 merged commit e2fae6b into main Aug 21, 2026
106 checks passed
@fengmk2
fengmk2 deleted the deps/upstream-update branch August 21, 2026 11:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

preview-build Publish this PR's commits to the registry bridge as preview builds

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant