Skip to content

chore(deps): bump vite from 8.0.11 to 8.0.12 in the vite group#1917

Merged
pethers merged 3 commits into
mainfrom
dependabot/npm_and_yarn/vite-c24196cdb4
May 11, 2026
Merged

chore(deps): bump vite from 8.0.11 to 8.0.12 in the vite group#1917
pethers merged 3 commits into
mainfrom
dependabot/npm_and_yarn/vite-c24196cdb4

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 11, 2026

Bumps the vite group with 1 update: vite.

Updates vite from 8.0.11 to 8.0.12

Release notes

Sourced from vite's releases.

v8.0.12

Please refer to CHANGELOG.md for details.

Changelog

Sourced from vite's changelog.

8.0.12 (2026-05-11)

Features

Bug Fixes

  • create-vite: pass react framework to TanStack CLI (#22397) (18f0f90)
  • deps: update all non-major dependencies (#22420) (2be6000)
  • module-runner: prevent partial-exports race on concurrent imports of in-flight invalidated re-export chains (#22369) (f5a22e6)
  • refer to rolldownOptions instead of deprecated rollupOptions in messages (#22400) (b675c7b)
  • worker: apply build.target to worker bundle (#22404) (3c93fde)
  • worker: forward define to worker bundle transform (#22408) (d4838a0)

Miscellaneous Chores

Commits
  • 4dce8b4 release: v8.0.12
  • b675c7b fix: refer to rolldownOptions instead of deprecated rollupOptions in mess...
  • 66b9eb3 chore(deps): update rolldown-related dependencies (#22421)
  • 2fe7bd2 chore(deps): update dependency eslint-plugin-n to v18 (#22423)
  • 2be6000 fix(deps): update all non-major dependencies (#22420)
  • d4838a0 fix(worker): forward define to worker bundle transform (#22408)
  • cf0ff41 feat: update rolldown to 1.0.0 (#22401)
  • 3c93fde fix(worker): apply build.target to worker bundle (#22404)
  • f5a22e6 fix(module-runner): prevent partial-exports race on concurrent imports of in-...
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the vite group with 1 update: [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite).


Updates `vite` from 8.0.11 to 8.0.12
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v8.0.12/packages/vite)

---
updated-dependencies:
- dependency-name: vite
  dependency-version: 8.0.12
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: vite
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Dependency updates npm labels May 11, 2026
Copilot AI review requested due to automatic review settings May 11, 2026 09:51
@dependabot dependabot Bot requested a review from pethers as a code owner May 11, 2026 09:51
@dependabot dependabot Bot added the dependencies Dependency updates label May 11, 2026
@dependabot dependabot Bot review requested due to automatic review settings May 11, 2026 09:51
@dependabot dependabot Bot added the npm label May 11, 2026
@github-actions github-actions Bot added the infrastructure CI/CD and build infrastructure label May 11, 2026
@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented May 11, 2026

Dependency Review

โœ… No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

Scorecard details
PackageVersionScoreDetails
npm/@oxc-project/types 0.129.0 UnknownUnknown
npm/@rolldown/binding-android-arm64 1.0.0 UnknownUnknown
npm/@rolldown/binding-darwin-arm64 1.0.0 UnknownUnknown
npm/@rolldown/binding-darwin-x64 1.0.0 UnknownUnknown
npm/@rolldown/binding-freebsd-x64 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-arm-gnueabihf 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-arm64-gnu 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-arm64-musl 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-ppc64-gnu 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-s390x-gnu 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-x64-gnu 1.0.0 UnknownUnknown
npm/@rolldown/binding-linux-x64-musl 1.0.0 UnknownUnknown
npm/@rolldown/binding-openharmony-arm64 1.0.0 UnknownUnknown
npm/@rolldown/binding-wasm32-wasi 1.0.0 UnknownUnknown
npm/@rolldown/binding-win32-arm64-msvc 1.0.0 UnknownUnknown
npm/@rolldown/binding-win32-x64-msvc 1.0.0 UnknownUnknown
npm/@rolldown/pluginutils 1.0.0 UnknownUnknown
npm/rolldown 1.0.0 UnknownUnknown
npm/vite 8.0.12 ๐ŸŸข 6.8
Details
CheckScoreReason
Code-Review๐ŸŸข 8Found 20/25 approved changesets -- score normalized to 8
Maintained๐ŸŸข 1030 commit(s) and 19 issue activity found in the last 90 days -- score normalized to 10
CII-Best-Practicesโš ๏ธ 0no effort to earn an OpenSSF best practices badge detected
Packagingโš ๏ธ -1packaging workflow not detected
Security-Policy๐ŸŸข 10security policy file detected
Dangerous-Workflow๐ŸŸข 10no dangerous workflow patterns detected
Token-Permissions๐ŸŸข 5detected GitHub workflow tokens with excessive permissions
Binary-Artifacts๐ŸŸข 5binaries present in source code
Pinned-Dependencies๐ŸŸข 6dependency not pinned by hash detected -- score normalized to 6
License๐ŸŸข 10license file detected
Branch-Protectionโš ๏ธ -1internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
Signed-Releasesโš ๏ธ -1no releases found
Fuzzingโš ๏ธ 0project is not fuzzed
SAST๐ŸŸข 5SAST tool is not run on all commits -- score normalized to 5

Scanned Files

  • package-lock.json

@github-actions
Copy link
Copy Markdown
Contributor

๐Ÿ“ธ Automated UI Screenshots

๐Ÿ“‹ Screenshots Captured (8)

# Screenshot
1 01-splash-screen.png - 01 splash screen.png
2 02-intro-screen-menu.png - 02 intro screen menu.png
3 03-intro-screen-archetype-selector.png - 03 intro screen archetype selector.png
4 04-controls-screen.png - 04 controls screen.png
5 05-philosophy-screen.png - 05 philosophy screen.png
6 06-training-screen.png - 06 training screen.png
7 07-combat-screen-practice.png - 07 combat screen practice.png
8 08-combat-screen-versus.png - 08 combat screen versus.png

๐Ÿ“ฆ Download Screenshots

๐Ÿ“ฅ Download all screenshots from workflow artifacts

Screenshots are preserved as workflow artifacts for 30 days.


๐Ÿค– Generated by Playwright automation

@pethers
Copy link
Copy Markdown
Member

pethers commented May 11, 2026

@copilot analyse and fix all issues in Test and Report / unit-tests (pull_request)
Test and Report / unit-tests (pull_request)Failing after 5m

Copilot AI review requested due to automatic review settings May 11, 2026 10:19
@dependabot dependabot Bot review requested due to automatic review settings May 11, 2026 10:19
Copy link
Copy Markdown
Contributor

Copilot AI commented May 11, 2026

@copilot analyse and fix all issues in Test and Report / unit-tests (pull_request)
Test and Report / unit-te...

Fixed in 2a11f25. I investigated run 25662993481 / job 75328709440 and addressed the failing test (LateralityTransform.test.ts) by replacing the single-shot timing check with a warmed-up 25-iteration average plus a bounded worst-case threshold to avoid CI jitter flakes while keeping the <5ms average budget. Validation passed (npm run check && npm run lint && npm test && npm run build) and parallel validation is clean. No UI changes were made, so screenshot is not applicable.

@github-actions github-actions Bot added testing Testing improvements test-coverage-impact Impacts test coverage labels May 11, 2026
Copilot AI requested a review from pethers May 11, 2026 10:21
@github-actions
Copy link
Copy Markdown
Contributor

๐Ÿ“ธ Automated UI Screenshots

๐Ÿ“‹ Screenshots Captured (8)

# Screenshot
1 01-splash-screen.png - 01 splash screen.png
2 02-intro-screen-menu.png - 02 intro screen menu.png
3 03-intro-screen-archetype-selector.png - 03 intro screen archetype selector.png
4 04-controls-screen.png - 04 controls screen.png
5 05-philosophy-screen.png - 05 philosophy screen.png
6 06-training-screen.png - 06 training screen.png
7 07-combat-screen-practice.png - 07 combat screen practice.png
8 08-combat-screen-versus.png - 08 combat screen versus.png

๐Ÿ“ฆ Download Screenshots

๐Ÿ“ฅ Download all screenshots from workflow artifacts

Screenshots are preserved as workflow artifacts for 30 days.


๐Ÿค– Generated by Playwright automation

@pethers
Copy link
Copy Markdown
Member

pethers commented May 11, 2026

@copilot improve test, fix flakey test to have higher pass rate failing checks
Test and Report / e2e-tests (pull_request)
Test and Report / e2e-tests (pull_request)Failing after 13m

Copilot AI review requested due to automatic review settings May 11, 2026 14:35
@dependabot dependabot Bot review requested due to automatic review settings May 11, 2026 14:35
Copy link
Copy Markdown
Contributor

Copilot AI commented May 11, 2026

@copilot improve test, fix flakey test to have higher pass rate failing checks
[Test and Report / e2e-tests (pull_request)](https://github.com/Hack23/blacktrigram/actions/runs/25664293323/job/7533648...

Fixed in cb4debb. I analyzed run 25664293323 / job 75336481460 and the failure was in the post-cache step, not Cypress tests: hashFiles('**/package-lock.json') failed during Post Cache Cypress binary. I updated .github/workflows/test-and-report.yml to use hashFiles('package-lock.json') so only the repo root lockfile is hashed, which removes the flaky recursive scan failure and keeps cache invalidation correct. Parallel validation is clean. No UI changes were made, so screenshot is not applicable.

@github-actions
Copy link
Copy Markdown
Contributor

๐Ÿ“ธ Automated UI Screenshots

๐Ÿ“‹ Screenshots Captured (8)

# Screenshot
1 01-splash-screen.png - 01 splash screen.png
2 02-intro-screen-menu.png - 02 intro screen menu.png
3 03-intro-screen-archetype-selector.png - 03 intro screen archetype selector.png
4 04-controls-screen.png - 04 controls screen.png
5 05-philosophy-screen.png - 05 philosophy screen.png
6 06-training-screen.png - 06 training screen.png
7 07-combat-screen-practice.png - 07 combat screen practice.png
8 08-combat-screen-versus.png - 08 combat screen versus.png

๐Ÿ“ฆ Download Screenshots

๐Ÿ“ฅ Download all screenshots from workflow artifacts

Screenshots are preserved as workflow artifacts for 30 days.


๐Ÿค– Generated by Playwright automation

@pethers pethers merged commit 9266b70 into main May 11, 2026
13 checks passed
@pethers pethers deleted the dependabot/npm_and_yarn/vite-c24196cdb4 branch May 11, 2026 16:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Dependency updates infrastructure CI/CD and build infrastructure npm test-coverage-impact Impacts test coverage testing Testing improvements

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants