Skip to content

chore(deps): update sanity monorepo to v6#322

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/major-6-sanity-monorepo
Open

chore(deps): update sanity monorepo to v6#322
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/major-6-sanity-monorepo

Conversation

@renovate

@renovate renovate Bot commented Jul 1, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence
groq (source) ^5.25.1^6.5.0 age confidence
sanity (source) ^5.25.1^6.5.0 age confidence

Release Notes

sanity-io/sanity (groq)

v6.5.0

Compare Source

Sanity Studio v6.5.0

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-Ni40LjA

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog

Author Message Commit
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13514) df9d16f
@​stipsan fix(release-notes): produce schema-valid suggested content (#​13515) 1acd626
@​stipsan fix(form): keep empty reference array items when clicking custom item UI (#​13508) 73aeb3b
@​pedrobonamin fix(core): defer onDeleteComplete until after dialog cleanup (#​13512) 7837303
@​pedrobonamin fix(core): clear scheduled draft perspective after deleting scheduled draft (#​13509) 1d3ea79
@​bjoerge chore(dev): perf bench followups (#​13507) f6bd1e6
@​snorrees fix(structure): allow all document actions when a Canvas-linked document is editable (#​13506) 02c71ff
@​bjoerge chore(dev): add perf bench (#​13442) 376f1dd
squiggler-app[bot] fix(deps): update dependency @​sanity/cli to ^7.8.0 (#​13501) d5384dc
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13492) c9a1a58
@​bjoerge fix: only show document sync state toast on actual commit failures (#​13487) 0c7bf65
@​bjoerge fix: keep editState + document versions warm across subscription churn (#​13490) f7a0425
@​pedrobonamin feat(variants): allow creating variant documents in releases (#​13488) bef5e19
@​stipsan chore(lint): turn off no-unnecessary-type-assertion (#​13486) b7d3c8d
squiggler-app[bot] chore(deps): update dependency i18next to ^26.3.6 (#​13418) e7270c1
@​juice49 chore: revert "chore(lint): make no-unnecessary-type-assertion an error with grandfathered suppressions (#​13375)" (#​13484) ebae0ce
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13483) 5fe5c6f
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13471) da58c4f
squiggler-app[bot] chore(deps): update dependency vite to ^8.1.4 (#​13369) b74d8ce
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13444) 8d0f761
@​juice49 chore(sanity): lint getVariantsDocumentCounts (#​13479) 4b4bb83
Copilot fix(variants): pass variant id to useSetVariant from pin button (#​13478) 5fc9d92
@​jordanl17 feat(telemetry): track workspace feature flags in workspace features observed (#​13386) bb9fccb
@​pedrobonamin feat(variants): add pin button to variants tool (#​13468) 20dc63d
@​juice49 refactor(sanity): reduce data needed by setVariant to simply the variant id (#​13473) 529eb0e
@​christianhg feat(comments): anchor text comments on the block's data path (#​13116) dc5f601
@​christianhg test(test-studio): toggle inline containers on the Container Table field (#​13116) 93e1bb7
@​christianhg fix(comments): match CommentsField threads by path prefix (#​13116) 51859f8
@​pedrobonamin feat(variants): prevent variant deletion when it has documents (#​13467) 241ba91
@​binoy14 feat(schema): add descriptor upload client (#​13284) 4b4bf8a
@​bjoerge chore: migrate more internal cli's to optique (#​13470) 7b4f70e
@​bjoerge fix(core): delegate useProject request errors to the studio error channel (#​13459) 6e197c4
@​pedrobonamin feat(variants): show live document counts in variants overview (#​13460) 4650c5b
@​bjoerge refactor(internal): migrate internal clis from yargs to optique (#​13466) 00f41e9
@​bjoerge fix(sanity): base reload prompt on served package version, drop range heuristic (#​13462) 210efaf
@​bjoerge fix: treat session not found as an invalid session (#​13458) 0a2698e
@​juice49 chore(sanity): expose variants preview state to document group inventory machine (#​13463) e4496c0
@​juice49 chore(sanity): expose variants to document group inventory machine (#​13463) 211bb21
@​bjoerge fix(structure): delegate intent resolution request failures to studio error handler (#​13464) e19ca5c
@​pedrobonamin feat(perspective): support setting variant and perspective atomically (#​13461) a2242c9
@​bjoerge fix: only offer reload-to-update for versions auto-update will serve (#​13451) 11edcfa
squiggler-app[bot] fix(deps): update dependency @​sanity/cli to ^7.7.1 (#​13453) bcebe7c
@​pedrobonamin refactor(releases): split bundle document type into shared, release and variant types (#​13446) dc3438c
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13456) 5535b98
@​pedrobonamin fix(core): variants details not rendering the documents (#​13455) 4ab4b17
@​pedrobonamin chore: disable automatic issue triage (#​13452) d51f56c
@​pedrobonamin fix(vision): make saved queries side panel scrollable (#​13449) 4e796ad
@​pedrobonamin chore(core): updates to variant detail page (#​13230) d38f654
squiggler-app[bot] fix(deps): update dependency @​sanity/preview-url-secret to ^4.0.8 (#​13420) e81a160

v6.4.0

Compare Source

Sanity Studio v6.4.0

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-Ni4zLjA

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog

Author Message Commit
squiggler-app[bot] chore(deps): update dependency @​sanity/visual-editing-csm to ^3.0.10 (#​13417) 1038d73
squiggler-app[bot] chore(deps): update dependency @​sanity/functions to v1.4.0 (#​13423) 7a8c0dd
squiggler-app[bot] fix(deps): update portabletext (#​13441) 064bb11
squiggler-app[bot] chore(deps): update dependency turbo to ^2.10.1 (#​13425) f8ae2cf
squiggler-app[bot] fix(deps): update linters (#​13422) e512bbb
@​pedrobonamin fix(core): updates array i18n efps test to use langauge (#​13436) b716a60
@​stipsan fix(core): allow pasting references to documents that only exist in a release (#​13399) 8072fbc
@​bjoerge fix(sanity): delegate document pair snapshot fetch failures to the re… (#​13432) 03cf5d0
@​pedrobonamin refactor(variants): use sanity::partOfVariant for document queries (#​13430) d4a12a8
@​stipsan refactor(sanity): replace classnames with clsx (#​13415) 20d3e72
@​juice49 test(efps): improve caret handling (#​13435) af7d569
@​juice49 test(efps): improve pte measurement stability (#​13435) aef1605
@​juice49 test(efps): harden event matching when measuring fps in input and pte (#​13435) de3416b
@​juice49 chore(sanity): expose agent bundle store directly (#​13388) a9f6079
@​juice49 chore(sanity): correct type name (#​13388) 5b995f6
@​juice49 chore(sanity): add agent bundle data to document group inventory machine (#​13388) ad42526
@​juice49 chore(sanity): filter agent bundles in document group inventory (#​13388) 2a8e8d7
@​juice49 chore(sanity): include user's most recent agent bundle in document group inventory (#​13388) 0487621
@​bjoerge fix(sanity): delegate grants request errors to request error handler (#​13427) f1a0341
@​juice49 test(sanity): mock timers in observeVersionDocumentIds to fix flakiness (#​13431) 88d60cb
@​stipsan fix(core): draw change connector when hovering image and file diffs (#​13428) 028ff93
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13416) 2af7031
squiggler-app[bot] chore(deps): update dependency @​sanity/media-library-types to ^1.5.0 (#​13413) f253ff7
squiggler-app[bot] chore(deps): update dependency @​vanilla-extract/css to ^1.21.1 (#​13412) ce7cacc
@​stipsan fix(sanity): clear change connectors when review changes panel closes (#​13402) b1c42e4
@​bjoerge fix(releases): make virtualized table rows visible in Safari (#​13414) e83ba05
@​bjoerge fix(core): only cancel commits for known-terminal client errors (#​13396) e38afdc
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13385) 0e0ad3d
squiggler-app[bot] chore(deps): update dependency typescript to v6 (#​13408) e5513e4
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13411) 5222f52
@​bjoerge fix(core): force logout only on 401s tagged as session expiry (#​13394) ef537bc
squiggler-app[bot] fix(deps): update dev-non-major (#​13406) baba6d1
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13410) 2b15108
squiggler-app[bot] fix(deps): update dependency react-rx to ^4.2.3 (#​13405) 10d1a5a
squiggler-app[bot] chore(deps): update dependency @​sanity/pkg-utils to ^10.9.0 (#​13407) bb2b35e
squiggler-app[bot] fix(deps): update dependency @​sanity/icons to v5 (#​13409) f788296
squiggler-app[bot] chore(deps): update dependency @​sanity/google-maps-input to ^6.1.1 (#​13404) 218795d
@​stipsan perf(sanity): debarrel @​sanity/icons imports (#​13393) 2e250dc
@​stipsan docs(agents): add cursor cloud setup notes for vitest tsc and dev studio auth (#​13398) 4070eaf
@​ChrisLaRocque feat(types): add user attribute types to CurrentUser (#​13395) b7b7fc1
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13392) cf7a807
@​juice49 fix(sanity): clip document group inventory border (#​13380) e3e1245
@​bjoerge feat: improve request error handling (#​13367) b2817c1
squiggler-app[bot] chore(deps): update dependency oxfmt to ^0.57.0 (#​13382) 846ddee
squiggler-app[bot] fix(deps): update dependency @​sanity/cli to ^7.5.0 (#​13389) 24bce9d
@​bjoerge test(efps): wait for each keystroke to register before typing next (#​13391) a209448
squiggler-app[bot] chore(tests): generate dts tests 🤖 ✨ (#​13378) 82d6ff4
@​christianhg fix(portable-text): resolve render-callback schema types by path (#​13350) 4b785dc
@​christianhg fix(portable-text): collect form members at any depth (#​13350) e8af647
@​christianhg fix(portable-text): track focus into nested-container blocks (#​13350) 4c6e970
@​christianhg fix(portable-text): key the element-ref registry by full path (#​13350) 7ebc0ec
@​christianhg test(portable-text): cover focus tracking into nested-container blocks (#​13350) 24c1e7a
@​stipsan chore(deps): bump @​sanity/ui to 3.3.0 and fix polymorphic type errors (#​13383) ce38099
squiggler-app[bot] fix(deps): update dependency @​sanity/icons to ^3.7.6 (#​13384) 260a282
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13376) 3a9eaa8
@​stipsan chore(lint): make no-unnecessary-type-assertion an error with grandfathered suppressions (#​13375) 8650c2e
@​pedrobonamin chore: restore "chore(core): deprecate useDocumentVersionInfo hook (#​13113)" (#​13334) 42826d2
@​pedrobonamin chore: restore "chore(core): variant documents creation (#​13105)" (#​13334) fd78ff2
@​pedrobonamin chore: restore "refactor(core): abstract use bundle documents , reuse for variants (#​13226)" (#​13334) f49190e

v6.3.0

Compare Source

Sanity Studio v6.3.0

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-Ni4yLjA

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog
Author Message Commit
squiggler-app[bot] fix(deps): update dependency @​sanity/cli to ^7.4.2 (#​13374) 83b59b6
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13373) 8cbf47a
squiggler-app[bot] chore(deps): update renovatebot/github-action action to v46.1.17 (#​13370) da9e9ca
squiggler-app[bot] chore(deps): update dependency @​sanity/pkg-utils to ^10.8.1 (#​13319) 93fd49b
squiggler-app[bot] chore(deps): update oxlint (#​13371) b2aa577
squiggler-app[bot] fix(deps): update playwright monorepo to v1.61.1 (#​13364) f55971f
@​stipsan fix(build): strip leftover vite hash marker from published css (#​13360) df7ab24
@​stipsan ci(e2e): remove e2e-ui workflow and sanity ui override (#​13359) 381e0ce
squiggler-app[bot] chore(deps): update dependency @​sentry/react to ^10.62.0 (#​13365) fd14dca
squiggler-app[bot] chore(deps): update dependency es-toolkit to ^1.49.0 (#​13366) da8dae1
squiggler-app[bot] chore(deps): update dependency i18next to ^26.3.3 (#​13362) 4a8a497
squiggler-app[bot] chore(deps): update dependency algoliasearch to ^5.55.1 (#​13361) f35c85d
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​13358) 3c9e2c1
squiggler-app[bot] fix(deps): update portabletext (#​13357) 2963186
squiggler-app[bot] fix(deps): update dependency motion to ^12.42.0 (#​13356) 98e30ca
@​jordanl17 fix(releases): truncate document type column with tooltip on overflow (#​13335) c1fbdd2
squiggler-app[bot] fix(deps): update dependency xstate to ^5.32.2 (#​13355) 528e635
squiggler-app[bot] fix(deps): update dependency groq-js to ^1.30.3 (#​13354) 49db0b0
squiggler-app[bot] fix(deps): update dependency @​sanity/cli to ^7.4.1 (#​13353) f6a51e6
squiggler-app[bot] chore(deps): update dependency nanoid to ^5.1.16 ([#​13352](https://redirect.githu

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "before 3am on the first day of the month"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate using a curated preset maintained by Sanity. View repository job log here

@changeset-bot

changeset-bot Bot commented Jul 1, 2026

Copy link
Copy Markdown

⚠️ No Changeset found

Latest commit: 9f770bf

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@socket-security

socket-security Bot commented Jul 1, 2026

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedgroq@​6.5.010010080100100
Addedsanity@​6.5.09510010098100

View full report

@socket-security

socket-security Bot commented Jul 1, 2026

Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm @emnapi/runtime is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: pnpm-lock.yamlnpm/rollup-plugin-visualizer@7.0.1npm/@rolldown/plugin-babel@0.2.3npm/sanity@6.5.0npm/@emnapi/runtime@1.11.1

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/@emnapi/runtime@1.11.1. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm adm-zip is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: pnpm-lock.yamlnpm/sanity@6.5.0npm/adm-zip@0.5.10

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/adm-zip@0.5.10. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm web-vitals is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: pnpm-lock.yamlnpm/sanity@6.5.0npm/web-vitals@5.3.0

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/web-vitals@5.3.0. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@renovate
renovate Bot force-pushed the renovate/major-6-sanity-monorepo branch 3 times, most recently from 481c407 to 1e47363 Compare July 15, 2026 19:33
@renovate
renovate Bot force-pushed the renovate/major-6-sanity-monorepo branch from 1e47363 to 9f770bf Compare July 16, 2026 14:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants