Skip to content

Commit 6b20236

Browse files
warengonzagadependabot[bot]CopilotCopilot
authored
🔧 update: consolidate webhook, ci, and dependency maintenance changes (#64)
* ☕ chore: bump pnpm/action-setup from 4 to 5 (#44) Bumps [pnpm/action-setup](https://github.com/pnpm/action-setup) from 4 to 5. - [Release notes](https://github.com/pnpm/action-setup/releases) - [Commits](pnpm/action-setup@v4...v5) --- updated-dependencies: - dependency-name: pnpm/action-setup dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump actions/checkout from 4 to 6 (#32) Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 6. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v6) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump actions/setup-node from 4 to 6 (#33) Bumps [actions/setup-node](https://github.com/actions/setup-node) from 4 to 6. - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@v4...v6) --- updated-dependencies: - dependency-name: actions/setup-node dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump wgtechlabs/container-build-flow-action from 1.3.1 to 1.7.0 (#34) Bumps [wgtechlabs/container-build-flow-action](https://github.com/wgtechlabs/container-build-flow-action) from 1.3.1 to 1.7.0. - [Release notes](https://github.com/wgtechlabs/container-build-flow-action/releases) - [Changelog](https://github.com/wgtechlabs/container-build-flow-action/blob/main/CHANGELOG.md) - [Commits](wgtechlabs/container-build-flow-action@v1.3.1...v1.7.0) --- updated-dependencies: - dependency-name: wgtechlabs/container-build-flow-action dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump eslint-plugin-security from 3.0.1 to 4.0.0 (#36) Bumps [eslint-plugin-security](https://github.com/eslint-community/eslint-plugin-security) from 3.0.1 to 4.0.0. - [Release notes](https://github.com/eslint-community/eslint-plugin-security/releases) - [Changelog](https://github.com/eslint-community/eslint-plugin-security/blob/main/CHANGELOG.md) - [Commits](eslint-community/eslint-plugin-security@v3.0.1...eslint-plugin-security-v4.0.0) --- updated-dependencies: - dependency-name: eslint-plugin-security dependency-version: 4.0.0 dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump redis from 4.7.1 to 5.11.0 (#37) Bumps [redis](https://github.com/redis/node-redis) from 4.7.1 to 5.11.0. - [Release notes](https://github.com/redis/node-redis/releases) - [Changelog](https://github.com/redis/node-redis/blob/master/CHANGELOG.md) - [Commits](https://github.com/redis/node-redis/compare/redis@4.7.1...redis@5.11.0) --- updated-dependencies: - dependency-name: redis dependency-version: 5.11.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump dotenv from 16.6.1 to 17.3.1 (#38) Bumps [dotenv](https://github.com/motdotla/dotenv) from 16.6.1 to 17.3.1. - [Changelog](https://github.com/motdotla/dotenv/blob/master/CHANGELOG.md) - [Commits](motdotla/dotenv@v16.6.1...v17.3.1) --- updated-dependencies: - dependency-name: dotenv dependency-version: 17.3.1 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump @types/node from 22.18.8 to 25.3.3 (#41) Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 22.18.8 to 25.3.3. - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) --- updated-dependencies: - dependency-name: "@types/node" dependency-version: 25.3.3 dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump @eslint/js from 9.36.0 to 9.39.3 (#40) Bumps [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) from 9.36.0 to 9.39.3. - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](https://github.com/eslint/eslint/commits/v9.39.3/packages/js) --- updated-dependencies: - dependency-name: "@eslint/js" dependency-version: 9.39.3 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump wgtechlabs/release-build-flow-action from 1.6.0 to 1.7.0 (#43) Bumps [wgtechlabs/release-build-flow-action](https://github.com/wgtechlabs/release-build-flow-action) from 1.6.0 to 1.7.0. - [Release notes](https://github.com/wgtechlabs/release-build-flow-action/releases) - [Changelog](https://github.com/wgtechlabs/release-build-flow-action/blob/main/CHANGELOG.md) - [Commits](wgtechlabs/release-build-flow-action@v1.6.0...v1.7.0) --- updated-dependencies: - dependency-name: wgtechlabs/release-build-flow-action dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump express and @types/express (#39) Bumps [express](https://github.com/expressjs/express) and [@types/express](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/express). These dependencies needed to be updated together. Updates `express` from 4.21.2 to 5.2.1 - [Release notes](https://github.com/expressjs/express/releases) - [Changelog](https://github.com/expressjs/express/blob/master/History.md) - [Commits](expressjs/express@4.21.2...v5.2.1) Updates `@types/express` from 5.0.3 to 5.0.6 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/express) --- updated-dependencies: - dependency-name: express dependency-version: 5.2.1 dependency-type: direct:production update-type: version-update:semver-major - dependency-name: "@types/express" dependency-version: 5.0.6 dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump the minor-and-patch group across 1 directory with 9 updates (#46) Bumps the minor-and-patch group with 9 updates in the / directory: | Package | From | To | | --- | --- | --- | | [npm](https://github.com/npm/cli) | `11.4.2` | `11.12.0` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.3.3` | `25.5.0` | | [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.45.0` | `8.57.2` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.45.0` | `8.57.2` | | [axios](https://github.com/axios/axios) | `1.13.5` | `1.13.6` | | [eslint-plugin-n](https://github.com/eslint-community/eslint-plugin-n) | `17.23.1` | `17.24.0` | | [eslint-plugin-no-secrets](https://github.com/nickdeis/eslint-plugin-no-secrets) | `2.2.1` | `2.3.3` | | [nodemon](https://github.com/remy/nodemon) | `3.1.10` | `3.1.14` | | [only-allow](https://github.com/pnpm/only-allow) | `1.2.1` | `1.2.2` | Updates `npm` from 11.4.2 to 11.12.0 - [Release notes](https://github.com/npm/cli/releases) - [Changelog](https://github.com/npm/cli/blob/latest/CHANGELOG.md) - [Commits](npm/cli@v11.4.2...v11.12.0) Updates `@types/node` from 25.3.3 to 25.5.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `@typescript-eslint/eslint-plugin` from 8.45.0 to 8.57.2 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.57.2/packages/eslint-plugin) Updates `@typescript-eslint/parser` from 8.45.0 to 8.57.2 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.57.2/packages/parser) Updates `axios` from 1.13.5 to 1.13.6 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.13.5...v1.13.6) Updates `eslint-plugin-n` from 17.23.1 to 17.24.0 - [Release notes](https://github.com/eslint-community/eslint-plugin-n/releases) - [Changelog](https://github.com/eslint-community/eslint-plugin-n/blob/master/CHANGELOG.md) - [Commits](eslint-community/eslint-plugin-n@v17.23.1...v17.24.0) Updates `eslint-plugin-no-secrets` from 2.2.1 to 2.3.3 - [Changelog](https://github.com/nickdeis/eslint-plugin-no-secrets/blob/master/CHANGELOG.md) - [Commits](https://github.com/nickdeis/eslint-plugin-no-secrets/commits) Updates `nodemon` from 3.1.10 to 3.1.14 - [Release notes](https://github.com/remy/nodemon/releases) - [Commits](remy/nodemon@v3.1.10...v3.1.14) Updates `only-allow` from 1.2.1 to 1.2.2 - [Commits](https://github.com/pnpm/only-allow/commits) --- updated-dependencies: - dependency-name: npm dependency-version: 11.12.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@types/node" dependency-version: 25.5.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/eslint-plugin" dependency-version: 8.57.2 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.57.2 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: axios dependency-version: 1.13.6 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: eslint-plugin-n dependency-version: 17.24.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: eslint-plugin-no-secrets dependency-version: 2.3.3 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: nodemon dependency-version: 3.1.14 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: only-allow dependency-version: 1.2.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Waren Gonzaga <opensource@warengonzaga.com> * ☕ chore: bump @eslint/js from 9.39.3 to 9.39.4 (#50) Bumps [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) from 9.39.3 to 9.39.4. - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](https://github.com/eslint/eslint/commits/v9.39.4/packages/js) --- updated-dependencies: - dependency-name: "@eslint/js" dependency-version: 9.39.4 dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump the minor-and-patch group with 6 updates (#49) Bumps the minor-and-patch group with 6 updates: | Package | From | To | | --- | --- | --- | | [npm](https://github.com/npm/cli) | `11.12.0` | `11.12.1` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.3.3` | `25.5.0` | | [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.57.2` | `8.45.0` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.57.2` | `8.45.0` | | [axios](https://github.com/axios/axios) | `1.13.6` | `1.14.0` | | [only-allow](https://github.com/pnpm/only-allow) | `1.2.1` | `1.2.2` | Updates `npm` from 11.12.0 to 11.12.1 - [Release notes](https://github.com/npm/cli/releases) - [Changelog](https://github.com/npm/cli/blob/latest/CHANGELOG.md) - [Commits](npm/cli@v11.12.0...v11.12.1) Updates `@types/node` from 25.3.3 to 25.5.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `@typescript-eslint/eslint-plugin` from 8.57.2 to 8.45.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.45.0/packages/eslint-plugin) Updates `@typescript-eslint/parser` from 8.57.2 to 8.45.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.45.0/packages/parser) Updates `axios` from 1.13.6 to 1.14.0 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.13.6...v1.14.0) Updates `only-allow` from 1.2.1 to 1.2.2 - [Commits](https://github.com/pnpm/only-allow/commits) --- updated-dependencies: - dependency-name: npm dependency-version: 11.12.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@types/node" dependency-version: 25.5.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/eslint-plugin" dependency-version: 8.45.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.45.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: axios dependency-version: 1.14.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: only-allow dependency-version: 1.2.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump the minor-and-patch group across 1 directory with 7 updates (#56) Bumps the minor-and-patch group with 7 updates in the / directory: | Package | From | To | | --- | --- | --- | | [dotenv](https://github.com/motdotla/dotenv) | `17.3.1` | `17.4.2` | | [express-validator](https://github.com/express-validator/express-validator) | `7.3.1` | `7.3.2` | | [redis](https://github.com/redis/node-redis) | `5.11.0` | `5.12.1` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.5.0` | `25.6.0` | | [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.45.0` | `8.58.2` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.45.0` | `8.58.2` | | [axios](https://github.com/axios/axios) | `1.14.0` | `1.15.1` | Updates `dotenv` from 17.3.1 to 17.4.2 - [Changelog](https://github.com/motdotla/dotenv/blob/master/CHANGELOG.md) - [Commits](motdotla/dotenv@v17.3.1...v17.4.2) Updates `express-validator` from 7.3.1 to 7.3.2 - [Release notes](https://github.com/express-validator/express-validator/releases) - [Commits](express-validator/express-validator@v7.3.1...v7.3.2) Updates `redis` from 5.11.0 to 5.12.1 - [Release notes](https://github.com/redis/node-redis/releases) - [Changelog](https://github.com/redis/node-redis/blob/master/CHANGELOG.md) - [Commits](https://github.com/redis/node-redis/compare/redis@5.11.0...redis@5.12.1) Updates `@types/node` from 25.5.0 to 25.6.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `@typescript-eslint/eslint-plugin` from 8.45.0 to 8.58.2 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.2/packages/eslint-plugin) Updates `@typescript-eslint/parser` from 8.45.0 to 8.58.2 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.2/packages/parser) Updates `axios` from 1.14.0 to 1.15.1 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.14.0...v1.15.1) --- updated-dependencies: - dependency-name: dotenv dependency-version: 17.4.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: express-validator dependency-version: 7.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: redis dependency-version: 5.12.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@types/node" dependency-version: 25.6.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/eslint-plugin" dependency-version: 8.58.2 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.58.2 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: axios dependency-version: 1.15.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump wgtechlabs/container-build-flow-action from 1.7.0 to 1.7.1 (#54) Bumps [wgtechlabs/container-build-flow-action](https://github.com/wgtechlabs/container-build-flow-action) from 1.7.0 to 1.7.1. - [Release notes](https://github.com/wgtechlabs/container-build-flow-action/releases) - [Changelog](https://github.com/wgtechlabs/container-build-flow-action/blob/main/CHANGELOG.md) - [Commits](wgtechlabs/container-build-flow-action@v1.7.0...v1.7.1) --- updated-dependencies: - dependency-name: wgtechlabs/container-build-flow-action dependency-version: 1.7.1 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump pnpm/action-setup from 5 to 6 (#53) Bumps [pnpm/action-setup](https://github.com/pnpm/action-setup) from 5 to 6. - [Release notes](https://github.com/pnpm/action-setup/releases) - [Commits](pnpm/action-setup@v5...v6) --- updated-dependencies: - dependency-name: pnpm/action-setup dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * 🔧 update: migrate package management to bun (#47) * 🔧 update: migrate package management to bun Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/5f4e086b-dfe8-4d11-8265-00e469769b14 * 🔧 update: complete bun migration with lockfile and hardened dockerfile --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> Co-authored-by: Waren Gonzaga <opensource@warengonzaga.com> * ⚙️ setup (gitattributes): configure line ending normalization * ☕ chore: bump the minor-and-patch group with 6 updates (#59) Bumps the minor-and-patch group with 6 updates: | Package | From | To | | --- | --- | --- | | [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin) | `8.58.2` | `8.59.0` | | [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) | `8.58.2` | `8.59.0` | | [@vitest/coverage-v8](https://github.com/vitest-dev/vitest/tree/HEAD/packages/coverage-v8) | `4.1.1` | `4.1.5` | | [@vitest/ui](https://github.com/vitest-dev/vitest/tree/HEAD/packages/ui) | `4.1.1` | `4.1.5` | | [eslint-plugin-promise](https://github.com/eslint-community/eslint-plugin-promise) | `7.2.1` | `7.3.0` | | [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) | `4.1.1` | `4.1.5` | Updates `@typescript-eslint/eslint-plugin` from 8.58.2 to 8.59.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.0/packages/eslint-plugin) Updates `@typescript-eslint/parser` from 8.58.2 to 8.59.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.0/packages/parser) Updates `@vitest/coverage-v8` from 4.1.1 to 4.1.5 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.5/packages/coverage-v8) Updates `@vitest/ui` from 4.1.1 to 4.1.5 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.5/packages/ui) Updates `eslint-plugin-promise` from 7.2.1 to 7.3.0 - [Release notes](https://github.com/eslint-community/eslint-plugin-promise/releases) - [Changelog](https://github.com/eslint-community/eslint-plugin-promise/blob/main/CHANGELOG.md) - [Commits](eslint-community/eslint-plugin-promise@v7.2.1...v7.3.0) Updates `vitest` from 4.1.1 to 4.1.5 - [Release notes](https://github.com/vitest-dev/vitest/releases) - [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.5/packages/vitest) --- updated-dependencies: - dependency-name: "@typescript-eslint/eslint-plugin" dependency-version: 8.59.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@typescript-eslint/parser" dependency-version: 8.59.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: "@vitest/coverage-v8" dependency-version: 4.1.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: "@vitest/ui" dependency-version: 4.1.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch - dependency-name: eslint-plugin-promise dependency-version: 7.3.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: minor-and-patch - dependency-name: vitest dependency-version: 4.1.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump @eslint/js from 9.39.4 to 10.0.1 (#60) Bumps [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) from 9.39.4 to 10.0.1. - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](https://github.com/eslint/eslint/commits/v10.0.1/packages/js) --- updated-dependencies: - dependency-name: "@eslint/js" dependency-version: 10.0.1 dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump eslint from 9.39.4 to 10.2.1 (#62) Bumps [eslint](https://github.com/eslint/eslint) from 9.39.4 to 10.2.1. - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v9.39.4...v10.2.1) --- updated-dependencies: - dependency-name: eslint dependency-version: 10.2.1 dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * ☕ chore: bump typescript from 5.9.3 to 6.0.3 (#61) * ☕ chore: bump typescript from 5.9.3 to 6.0.3 Bumps [typescript](https://github.com/microsoft/TypeScript) from 5.9.3 to 6.0.3. - [Release notes](https://github.com/microsoft/TypeScript/releases) - [Commits](microsoft/TypeScript@v5.9.3...v6.0.3) --- updated-dependencies: - dependency-name: typescript dependency-version: 6.0.3 dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com> * 🔧 update: regenerate bun.lock to sync with TypeScript 6.0.3 bump Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/b7c79468-409f-49a1-acc3-2ad314a8f764 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update: stabilize webhook dedupe fingerprints (#63) * 🔧 update: stabilize webhook dedupe fingerprints * ☕ chore: update bun.lock to sync with eslint@10.2.1 Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/4595d94f-0e2b-4610-84e5-c07f4d92b608 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update (webhookService): fix volatile fingerprint fallback and improve docs Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/25ea979f-071c-4c08-b293-295436ae52c6 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update: harden webhook flow and fix bun lockfile ci failures (#58) * Initial plan * 🔧 update: harden webhook auth and bun test migration Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/59e8727e-25a1-41fc-81bd-f71bb6030467 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update: tighten redis port validation fallback Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/59e8727e-25a1-41fc-81bd-f71bb6030467 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update: apply review thread fixes Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/0677dcf1-207f-4210-8bfd-a8c7249c57e7 Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * 🔧 update: resolve merge conflicts with dev Agent-Logs-Url: https://github.com/wgtechlabs/unthread-webhook-server/sessions/ac32861e-bbe9-41a8-bcbf-5402f7e71dfe Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> * ⚙️ setup: update TypeScript compiler config * 🔧 update (webhookService): refactor service and remove outdated tests * 🧪 test (validation): fix middleware chain execution in test helper * ☕ chore: refresh bun lockfile --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> Co-authored-by: Waren Gonzaga <opensource@warengonzaga.com> * 🔧 update: address PR #64 review feedback - Remove dead background-processing methods and stale comments in WebhookController; document inline await as the intentional fix for duplicate Redis events - Drop test:ui from README and CONTRIBUTING (not provided by bun:test) - Replace remaining Vitest references with bun:test in docs - Remove obsolete vitest.* settings from .vscode/settings.json Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: warengonzaga <15052701+warengonzaga@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
1 parent c06b804 commit 6b20236

33 files changed

Lines changed: 1785 additions & 5595 deletions

.gitattributes

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
1+
* text=auto eol=lf
2+
bun.lock text eol=lf

.github/workflows/build.yml

Lines changed: 11 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -13,30 +13,29 @@ jobs:
1313

1414
steps:
1515
- name: Checkout code
16-
uses: actions/checkout@v4
16+
uses: actions/checkout@v6
1717

18-
- name: Setup pnpm
19-
uses: pnpm/action-setup@v4
18+
- name: Setup Bun
19+
uses: oven-sh/setup-bun@v2
2020
with:
21-
version: 9.15.4
21+
bun-version: 1.3.11
2222

2323
- name: Setup Node.js
24-
uses: actions/setup-node@v4
24+
uses: actions/setup-node@v6
2525
with:
2626
node-version: '22'
27-
cache: 'pnpm'
2827

2928
- name: Install dependencies
30-
run: pnpm install --frozen-lockfile
29+
run: bun install --frozen-lockfile
3130

3231
- name: Type checking
33-
run: pnpm type-check
32+
run: bun run type-check
3433

3534
- name: Run tests
36-
run: pnpm test
35+
run: bun run test
3736

3837
- name: Generate coverage
39-
run: pnpm test:coverage
38+
run: bun run test:coverage
4039
continue-on-error: true
4140

4241
build:
@@ -50,10 +49,10 @@ jobs:
5049

5150
steps:
5251
- name: Checkout code
53-
uses: actions/checkout@v4
52+
uses: actions/checkout@v6
5453

5554
- name: Build and Push Container
56-
uses: wgtechlabs/container-build-flow-action@v1.3.1
55+
uses: wgtechlabs/container-build-flow-action@v1.7.1
5756
with:
5857
# Registry Configuration
5958
registry: both

.github/workflows/container.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,10 +15,10 @@ jobs:
1515

1616
steps:
1717
- name: Checkout code
18-
uses: actions/checkout@v4
18+
uses: actions/checkout@v6
1919

2020
- name: Build and Push Production Container
21-
uses: wgtechlabs/container-build-flow-action@v1.3.1
21+
uses: wgtechlabs/container-build-flow-action@v1.7.1
2222
with:
2323
# Registry Configuration
2424
registry: both

.github/workflows/release.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,13 +13,13 @@ jobs:
1313

1414
steps:
1515
- name: Checkout code
16-
uses: actions/checkout@v4
16+
uses: actions/checkout@v6
1717
with:
1818
fetch-depth: 0
1919

2020
- name: Create Release
2121
id: release
22-
uses: wgtechlabs/release-build-flow-action@v1.6.0
22+
uses: wgtechlabs/release-build-flow-action@v1.7.0
2323
with:
2424
# Use PAT so the release event triggers downstream workflows
2525
# (e.g., container build flow)

.github/workflows/validate.yml

Lines changed: 10 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -11,34 +11,33 @@ jobs:
1111

1212
steps:
1313
- name: Checkout code
14-
uses: actions/checkout@v4
14+
uses: actions/checkout@v6
1515

16-
- name: Setup pnpm
17-
uses: pnpm/action-setup@v4
16+
- name: Setup Bun
17+
uses: oven-sh/setup-bun@v2
1818
with:
19-
version: 9.15.4
19+
bun-version: 1.3.11
2020

2121
- name: Setup Node.js
22-
uses: actions/setup-node@v4
22+
uses: actions/setup-node@v6
2323
with:
2424
node-version: '22'
25-
cache: 'pnpm'
2625

2726
- name: Install dependencies
28-
run: pnpm install --frozen-lockfile
27+
run: bun install --frozen-lockfile
2928

3029
- name: Type checking
31-
run: pnpm type-check
30+
run: bun run type-check
3231

3332
- name: Run tests
34-
run: pnpm test
33+
run: bun run test
3534

3635
- name: Generate coverage
37-
run: pnpm test:coverage
36+
run: bun run test:coverage
3837
continue-on-error: true
3938

4039
- name: Build TypeScript
41-
run: pnpm build
40+
run: bun run build
4241

4342
- name: Test Docker build (no push)
4443
run: |

.gitignore

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -138,8 +138,9 @@ Thumbs.db
138138
docs/
139139
ai_context/
140140

141-
# Enforce pnpm usage - ignore npm and yarn lockfiles
141+
# Enforce bun usage - ignore non-bun lockfiles
142142
package-lock.json
143+
pnpm-lock.yaml
143144
yarn.lock
144145

145146
# Environment files with sensitive data

.npmrc

Lines changed: 0 additions & 13 deletions
This file was deleted.

.vscode/settings.json

Lines changed: 0 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -21,8 +21,6 @@
2121
"[javascript]": {
2222
"editor.defaultFormatter": "dbaeumer.vscode-eslint"
2323
},
24-
"vitest.enable": true,
25-
"vitest.commandLine": "pnpm test:watch",
2624
"python-envs.defaultEnvManager": "ms-python.python:system",
2725
"python-envs.pythonProjects": []
2826
}

CONTRIBUTING.md

Lines changed: 33 additions & 34 deletions
Original file line numberDiff line numberDiff line change
@@ -26,9 +26,9 @@ To get started with development:
2626

2727
2. **Install dependencies**
2828
```bash
29-
pnpm install
29+
bun install
3030
```
31-
> ⚠️ **Important**: This project enforces the use of pnpm. npm and yarn install will be blocked automatically.
31+
> ⚠️ **Important**: This project currently uses Bun as the package manager.
3232
3333
3. **Set up environment variables**
3434
- Copy `.env.example` to `.env`
@@ -52,7 +52,7 @@ To get started with development:
5252

5353
5. **Start the project in development mode**
5454
```bash
55-
pnpm dev
55+
bun run dev
5656
```
5757

5858
Please refer to the [README](./README.md) for more detailed setup instructions.
@@ -61,31 +61,30 @@ Please refer to the [README](./README.md) for more detailed setup instructions.
6161

6262
```bash
6363
# Development with auto-reload
64-
pnpm dev
64+
bun run dev
6565

6666
# Build for production
67-
pnpm build
67+
bun run build
6868

6969
# Type checking only
70-
pnpm type-check
70+
bun run type-check
7171

7272
# Linting
73-
pnpm lint # Run ESLint on all source files
74-
pnpm lint:fix # Run ESLint with auto-fix
75-
pnpm lint:security # Focus on security-related issues
76-
pnpm lint:ci # CI-friendly linting (fails on warnings)
73+
bun run lint # Run ESLint on all source files
74+
bun run lint:fix # Run ESLint with auto-fix
75+
bun run lint:security # Focus on security-related issues
76+
bun run lint:ci # CI-friendly linting (fails on warnings)
7777

7878
# Clean build artifacts
79-
pnpm clean
79+
bun run clean
8080

8181
# Start production build
82-
pnpm start
82+
bun run start
8383

8484
# Run tests
85-
pnpm test # Run all tests once
86-
pnpm test:watch # Run tests in watch mode
87-
pnpm test:ui # Interactive test UI
88-
pnpm test:coverage # Generate coverage report
85+
bun run test # Run all tests once
86+
bun run test:watch # Run tests in watch mode
87+
bun run test:coverage # Generate coverage report
8988
```
9089

9190
#### 🏛️ Project Structure
@@ -116,7 +115,7 @@ src/
116115
- **Code Quality**: Follow ESLint rules and security best practices enforced by automated linting
117116
- **Structured Logging**: Use `@wgtechlabs/log-engine` for all logging with built-in PII protection and security features
118117
- **Error Handling**: Implement comprehensive error handling with detailed logging
119-
- **Package Manager**: Use pnpm exclusively (enforced via preinstall script)
118+
- **Package Manager**: Use Bun for dependency management and project scripts
120119
- **Code Style**: Follow existing patterns and maintain consistency
121120
- **Environment**: Use Node.js 22+ for development
122121
- **Redis Integration**: Ensure Redis connectivity for all webhook-related features
@@ -138,16 +137,16 @@ This project uses **ESLint** with comprehensive security plugins to maintain cod
138137

139138
```bash
140139
# Check for issues
141-
pnpm lint
140+
bun run lint
142141

143142
# Automatically fix issues
144-
pnpm lint:fix
143+
bun run lint:fix
145144

146145
# Security-focused check
147-
pnpm lint:security
146+
bun run lint:security
148147

149148
# CI mode (fails on warnings)
150-
pnpm lint:ci
149+
bun run lint:ci
151150
```
152151

153152
**Comprehensive ESLint Configuration:**
@@ -174,8 +173,8 @@ For complete configuration details, see [eslint.config.js](./eslint.config.js).
174173
- **Fix all linting errors** before submitting PRs (required)
175174
- **Address security warnings** unless there's a documented reason to ignore them
176175
- **Use ESLint disable comments sparingly** and only with proper justification
177-
- **Run `pnpm lint:fix`** to auto-fix style issues before committing
178-
- **Test security rules** with `pnpm lint:security` for security-focused checks
176+
- **Run `bun run lint:fix`** to auto-fix style issues before committing
177+
- **Test security rules** with `bun run lint:security` for security-focused checks
179178
- **VSCode users** get automatic linting and auto-fix on save with ESLint extension
180179
- **Document any rule disables** in code comments explaining why they're necessary
181180

@@ -193,14 +192,14 @@ const data: any = response;
193192

194193
#### 🧪 Testing Guidelines
195194

196-
This project uses [Vitest](https://vitest.dev/) for automated testing. When contributing:
195+
This project uses [Bun's built-in test runner](https://bun.com/docs/cli/test) (`bun:test`) for automated testing. When contributing:
197196

198197
**Automated Testing:**
199198
- Write tests for new features and bug fixes
200-
- Ensure all tests pass: `pnpm test`
201-
- Maintain minimum 80% code coverage: `pnpm test:coverage`
199+
- Ensure all tests pass: `bun run test`
200+
- Maintain minimum 80% code coverage: `bun run test:coverage`
202201
- Follow co-located test patterns (e.g., `signature.ts``signature.test.ts`)
203-
- Use `pnpm test:watch` for development, `pnpm test:ui` for interactive testing
202+
- Use `bun run test:watch` for development
204203

205204
**Manual Testing:**
206205
- Test your changes using tools like ngrok for webhook testing
@@ -212,15 +211,15 @@ This project uses [Vitest](https://vitest.dev/) for automated testing. When cont
212211
#### 🔍 Code Review Process
213212

214213
1. **Pre-submission checks**:
215-
- [ ] Code builds without errors (`pnpm build`)
216-
- [ ] TypeScript type checking passes (`pnpm type-check`)
217-
- [ ] Linting passes without errors (`pnpm lint`)
218-
- [ ] All tests pass (`pnpm test`)
219-
- [ ] Coverage requirements met (`pnpm test:coverage`)
220-
- [ ] Development server starts successfully (`pnpm dev`)
214+
- [ ] Code builds without errors (`bun run build`)
215+
- [ ] TypeScript type checking passes (`bun run type-check`)
216+
- [ ] Linting passes without errors (`bun run lint`)
217+
- [ ] All tests pass (`bun run test`)
218+
- [ ] Coverage requirements met (`bun run test:coverage`)
219+
- [ ] Development server starts successfully (`bun run dev`)
221220
- [ ] Redis integration works properly
222221
- [ ] Error handling is comprehensive
223-
- [ ] No security warnings from `pnpm lint:security`
222+
- [ ] No security warnings from `bun run lint:security`
224223

225224
2. **Pull Request Requirements**:
226225
- [ ] Target the `dev` branch (PRs to `main` will be rejected)

Dockerfile

Lines changed: 26 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,11 @@
44
# Multi-stage Docker build for the Unthread Webhook Server
55
#
66
# Build stages:
7-
# 1. base - Base Alpine image with Node.js and security updates
8-
# 2. deps - Install production dependencies only
9-
# 3. build - Install dev dependencies and build the application
10-
# 4. final - Create minimal runtime image with built app
7+
# 1. base - Base Alpine image with Node.js and security updates (runtime)
8+
# 2. bun-base - base + Bun, used only for dependency install and build
9+
# 3. deps - Install production dependencies only
10+
# 4. build - Install dev dependencies and build the application
11+
# 5. final - Minimal runtime image (no Bun) with built app
1112
#
1213
# Usage:
1314
# docker build -t unthread-webhook-server .
@@ -34,27 +35,32 @@ RUN apk update && apk upgrade && \
3435
apk add --no-cache dumb-init && \
3536
rm -rf /var/cache/apk/*
3637

37-
# Enable and install pnpm via corepack
38-
# Note: Version must match packageManager field in package.json (currently 9.15.4)
39-
RUN corepack enable && \
40-
corepack prepare pnpm@9.15.4 --activate
41-
4238
# Set working directory for all subsequent stages
4339
WORKDIR /usr/src/app
4440

41+
# =============================================================================
42+
# STAGE 1b: Bun Base (build-time only)
43+
# =============================================================================
44+
# Bun is installed only in this stage so it never ends up in the final runtime
45+
# image, keeping the production image smaller and reducing attack surface.
46+
FROM base AS bun-base
47+
48+
# Install Bun for dependency management
49+
# Note: Version must match packageManager field in package.json (currently 1.3.11)
50+
RUN npm install --global bun@1.3.11
51+
4552
# =============================================================================
4653
# STAGE 2: Production Dependencies
4754
# =============================================================================
4855
# Install only production dependencies for runtime
49-
FROM base AS deps
56+
FROM bun-base AS deps
5057

5158
# Use bind mounts and cache for faster builds
52-
# Downloads dependencies without copying package files into the layer
59+
# Mount the Bun lockfile and use --frozen-lockfile for reproducible installs
5360
RUN --mount=type=bind,source=package.json,target=package.json \
54-
--mount=type=bind,source=pnpm-lock.yaml,target=pnpm-lock.yaml \
55-
--mount=type=bind,source=.npmrc,target=.npmrc \
56-
--mount=type=cache,id=s/${RAILWAY_SERVICE_ID}-pnpm-store,target=/root/.local/share/pnpm/store \
57-
pnpm install --prod --frozen-lockfile
61+
--mount=type=bind,source=bun.lock,target=bun.lock \
62+
--mount=type=cache,id=s/${RAILWAY_SERVICE_ID}-bun-cache,target=/root/.bun/install/cache \
63+
bun install --production --frozen-lockfile
5864

5965
# =============================================================================
6066
# STAGE 3: Build Application
@@ -64,14 +70,13 @@ FROM deps AS build
6470

6571
# Install all dependencies (including devDependencies for building)
6672
RUN --mount=type=bind,source=package.json,target=package.json \
67-
--mount=type=bind,source=pnpm-lock.yaml,target=pnpm-lock.yaml \
68-
--mount=type=bind,source=.npmrc,target=.npmrc \
69-
--mount=type=cache,id=s/${RAILWAY_SERVICE_ID}-pnpm-store,target=/root/.local/share/pnpm/store \
70-
pnpm install --frozen-lockfile
73+
--mount=type=bind,source=bun.lock,target=bun.lock \
74+
--mount=type=cache,id=s/${RAILWAY_SERVICE_ID}-bun-cache,target=/root/.bun/install/cache \
75+
bun install --frozen-lockfile
7176

7277
# Copy source code and build the application
7378
COPY . .
74-
RUN pnpm run build
79+
RUN bun run build
7580

7681
# =============================================================================
7782
# STAGE 4: Final Runtime Image
@@ -109,4 +114,4 @@ HEALTHCHECK --interval=30s --timeout=3s --start-period=5s --retries=3 \
109114

110115
# Use dumb-init for proper signal handling and start the application
111116
ENTRYPOINT ["dumb-init", "--"]
112-
CMD ["node", "dist/app.js"]
117+
CMD ["node", "dist/app.js"]

0 commit comments

Comments
 (0)