Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 30, 2025

Bumps the patch-versions group with 2 updates: prettier and wrangler.

Updates prettier from 3.6.2 to 3.7.3

Release notes

Sourced from prettier's releases.

3.7.3

What's Changed

🔗 Changelog

3.7.2

What's Changed

🔗 Changelog

3.7.1

🔗 Changelog

3.7.0

diff

🔗 Release note

Changelog

Sourced from prettier's changelog.

3.7.3

diff

API: Fix prettier.getFileInfo() change that breaks VSCode extension (#18375 by @​fisker)

An internal refactor accidentally broke the VSCode extension plugin loading.

3.7.2

diff

JavaScript: Fix string print when switching quotes (#18351 by @​fisker)

// Input
console.log("A descriptor\\'s .kind must be \"method\" or \"field\".")
// Prettier 3.7.1
console.log('A descriptor\'s .kind must be "method" or "field".');
// Prettier 3.7.2
console.log('A descriptor\'s .kind must be "method" or "field".');

JavaScript: Preserve quote for embedded HTML attribute values (#18352 by @​kovsu)

// Input
const html = /* HTML */ ` <div class="${styles.banner}"></div> `;
// Prettier 3.7.1
const html = /* HTML */ &lt;div class=${styles.banner}&gt;&lt;/div&gt;;
// Prettier 3.7.2
const html = /* HTML */ &lt;div class=&quot;${styles.banner}&quot;&gt;&lt;/div&gt;;

TypeScript: Fix comment in empty type literal (#18364 by @​fisker)

// Input
export type XXX = {
  // tbd
};
// Prettier 3.7.1
</tr></table>

... (truncated)

Commits
Maintainer changes

This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for prettier since your current version.


Updates wrangler from 4.50.0 to 4.51.0

Release notes

Sourced from wrangler's releases.

[email protected]

Minor Changes

  • #11345 d524e55 Thanks @​penalosa! - Enable experimental support for autoconfig-powered Astro projects

  • #11228 43903a3 Thanks @​petebacondarwin! - Support CLOUDFLARE_ENV environment variable for selecting the active environment

    This change enables users to select the environment for commands such as CLOUDFLARE_ENV=prod wrangler versions upload. The --env command line argument takes precedence.

    The CLOUDFLARE_ENV environment variable is mostly used with the @cloudflare/vite-plugin to select the environment for building the Worker to be deployed. This build also generates a "redirected deploy config" that is flattened to only contain the active environment. To avoid accidentally deploying a version that is built for one environment to a different environment, there is an additional check to ensure that if the user specifies an environment in Wrangler it matches the original selected environment from the build.

Patch Changes

Commits
  • f87b057 Version Packages (#11374)
  • 1133c4d chore(deps): bump the workerd-and-workers-types group with 2 updates (#11396)
  • 43903a3 Support CLOUDFLARE_ENV environment variable for selecting the active enviro...
  • 235142e Improve stability of wrangler dev related tests (#11182)
  • 9365b02 test: make the startWorker e2e test more resilient to flakes (#11347)
  • aa4a5f1 Move findWranglerConfig tests to workers-utils (#11349)
  • 4d61fae modernize kv-asset-handler so that we can test is in Node 22+ (#11348)
  • 69f4dc3 chore(deps): bump the workerd-and-workers-types group with 2 updates (#11376)
  • e496280 Rate limit r2 bulk put (#11367)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Summary by CodeRabbit

  • Chores
    • Updated development tool dependencies (prettier, wrangler) to newer compatible releases for improved consistency.
    • Updated top-level package manager to a newer Yarn release.
    • Bumped Rust/runtime-related dependencies (wasm-bindgen, worker, worker-macros) to newer compatible versions to keep native tooling current and secure.

✏️ Tip: You can customize this high-level summary in your review settings.

Bumps the patch-versions group with 2 updates: [prettier](https://github.com/prettier/prettier) and [wrangler](https://github.com/cloudflare/workers-sdk/tree/HEAD/packages/wrangler).


Updates `prettier` from 3.6.2 to 3.7.3
- [Release notes](https://github.com/prettier/prettier/releases)
- [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md)
- [Commits](prettier/prettier@3.6.2...3.7.3)

Updates `wrangler` from 4.50.0 to 4.51.0
- [Release notes](https://github.com/cloudflare/workers-sdk/releases)
- [Commits](https://github.com/cloudflare/workers-sdk/commits/[email protected]/packages/wrangler)

---
updated-dependencies:
- dependency-name: prettier
  dependency-version: 3.7.3
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: patch-versions
- dependency-name: wrangler
  dependency-version: 4.51.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: patch-versions
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Nov 30, 2025
@dependabot dependabot bot requested a review from a team as a code owner November 30, 2025 23:30
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Nov 30, 2025
@coderabbitai
Copy link
Contributor

coderabbitai bot commented Nov 30, 2025

Important

Review skipped

Review was skipped due to path filters

⛔ Files ignored due to path filters (1)
  • Cargo.lock is excluded by !**/*.lock

CodeRabbit blocks several paths by default. You can override this behavior by explicitly including those paths in the path filters. For example, including **/dist/** will override the default block on the dist directory, by removing the pattern from both the lists.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Walkthrough

Updated JS tooling versions and top-level package manager in package.json; bumped several Rust crate versions in Cargo.toml (including worker, worker-macros, and a pinned wasm-bindgen). No other source or public API edits.

Changes

Cohort / File(s) Change Summary
JS tooling & package manager
package.json
Bumped devDependencies: prettier ^3.6.2 → ^3.7.3; wrangler ^4.50.0 → ^4.51.0. Updated top-level packageManager from [email protected][email protected].
Rust dependencies (manifests)
Cargo.toml
Bumped crate versions: worker 0.6 → 0.7 (features: http, axum, optional = true); worker-macros 0.6 → 0.7 (features: http, optional = true); wasm-bindgen changed from "0.2"=0.2.105. No other manifest changes.

Estimated code review effort

🎯 2 (Simple) | ⏱️ ~10 minutes

  • Areas to spot-check:
    • Verify any breaking changes between worker/worker-macros 0.6 → 0.7 (public API or feature behavior).
    • Confirm pinning wasm-bindgen = "=0.2.105" is intentional and doesn't conflict with other crates.
    • Ensure CI/tooling (wrangler, yarn) compatibility with the bumped versions and that lockfiles are updated.

Possibly related PRs

Suggested reviewers

  • LesnyRumcajs
  • akaladarshi

Poem

🐇 I hopped through bytes and tidy trees,
Bumped little crates and polished keys.
Yarn and Wrangler got a gentle nudge,
Wasm-pin snug — I gave a little judge.
Nibble, test, and then a joyful thud. 🥕

Pre-merge checks and finishing touches

❌ Failed checks (1 inconclusive)
Check name Status Explanation Resolution
Title check ❓ Inconclusive The PR title references 'patch-versions group with 2 updates' but the changeset includes updates to Cargo.toml (wasm-bindgen, worker, worker-macros) in addition to package.json dev dependencies, and some changes involve minor version bumps (worker 0.6→0.7), not just patches. Clarify whether the title should reflect all dependency changes across both package.json and Cargo.toml, or if the scope is only dev dependencies. Consider if 'patch-versions' accurately describes the worker dependency changes (0.6→0.7 appears to be a minor version bump).
✅ Passed checks (2 passed)
Check name Status Explanation
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check.
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.

Comment @coderabbitai help to get the list of available commands and usage tips.

@codecov-commenter
Copy link

codecov-commenter commented Nov 30, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 41.11%. Comparing base (8320773) to head (82e15dd).

Additional details and impacted files
@@           Coverage Diff           @@
##             main     #360   +/-   ##
=======================================
  Coverage   41.11%   41.11%           
=======================================
  Files          40       40           
  Lines        2668     2668           
=======================================
  Hits         1097     1097           
  Misses       1571     1571           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

Copy link
Contributor

@coderabbitai coderabbitai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Actionable comments posted: 1

📜 Review details

Configuration used: CodeRabbit UI

Review profile: CHILL

Plan: Pro

📥 Commits

Reviewing files that changed from the base of the PR and between 7bc9e5f and d8c22e5.

⛔ Files ignored due to path filters (1)
  • Cargo.lock is excluded by !**/*.lock
📒 Files selected for processing (1)
  • Cargo.toml (1 hunks)
⏰ Context from checks skipped due to timeout of 90000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (6)
  • GitHub Check: lint
  • GitHub Check: E2E Claim Token API CORS Tests
  • GitHub Check: E2E API Tests
  • GitHub Check: E2E Browser Tests
  • GitHub Check: codedov
  • GitHub Check: deploy

@hanabi1224 hanabi1224 force-pushed the dependabot/npm_and_yarn/patch-versions-fc9c5e60e8 branch from a7158e8 to 21867b3 Compare December 1, 2025 00:36
@hanabi1224 hanabi1224 enabled auto-merge December 1, 2025 01:46
hanabi1224
hanabi1224 previously approved these changes Dec 1, 2025
akaladarshi
akaladarshi previously approved these changes Dec 1, 2025
@hanabi1224 hanabi1224 added this pull request to the merge queue Dec 1, 2025
@github-merge-queue github-merge-queue bot removed this pull request from the merge queue due to failed status checks Dec 1, 2025
@hanabi1224 hanabi1224 added this pull request to the merge queue Dec 1, 2025
@github-merge-queue github-merge-queue bot removed this pull request from the merge queue due to failed status checks Dec 1, 2025
@sudo-shashank sudo-shashank added this pull request to the merge queue Dec 1, 2025
@github-merge-queue github-merge-queue bot removed this pull request from the merge queue due to failed status checks Dec 1, 2025
@hanabi1224 hanabi1224 dismissed stale reviews from akaladarshi and themself via 82e15dd December 1, 2025 09:00
@LesnyRumcajs LesnyRumcajs added this pull request to the merge queue Dec 1, 2025
Merged via the queue into main with commit e78ca90 Dec 1, 2025
7 checks passed
@LesnyRumcajs LesnyRumcajs deleted the dependabot/npm_and_yarn/patch-versions-fc9c5e60e8 branch December 1, 2025 09:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants