Skip to content

chore(deps): update example dependencies to v5 (major)#480

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/major-5-example
Open

chore(deps): update example dependencies to v5 (major)#480
renovate[bot] wants to merge 1 commit intomainfrom
renovate/major-5-example

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate bot commented Apr 6, 2026

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence Type Update
@portabletext/react ^3.0.18^5.0.0 age confidence dependencies major
@sanity/vision (source) ^3.99.0^5.20.0 age confidence devDependencies major
@sanity/vision (source) ^3.74.0^5.20.0 age confidence dependencies major
actions/checkout v4v5 age confidence action major
sanity (source) ^3.99.0^5.20.0 age confidence devDependencies major
sanity (source) ^3.74.0^5.20.0 age confidence dependencies major
type-fest ^4.18.2^5.5.0 age confidence dependencies major

Release Notes

portabletext/react-portabletext (@​portabletext/react)

v5.0.0

Compare Source

Major Changes

v4.0.3

Compare Source

Patch Changes

v4.0.2

Compare Source

Patch Changes

v4.0.1

Compare Source

Patch Changes

v4.0.0

Compare Source

Major Changes

v3.2.4

Compare Source

Patch Changes

v3.2.3

Compare Source

Patch Changes

v3.2.2

Compare Source

Patch Changes
sanity-io/sanity (@​sanity/vision)

v5.20.0

Compare Source

Sanity Studio v5.20.0

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-NS4xOS4w

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog

Author Message Commit
squiggler-app[bot] chore(deps): dedupe pnpm-lock.yaml (#​12583) 449f40c
@​codythatsme fix(types): preserve type autocomplete for defineField inside defineType (#​12576) d566c31
squiggler-app[bot] chore(deps): update dependency lodash-es to ^4.18.1 (#​12582) e855996
@​jordanl17 fix(form): add deeply nested array preview types and integrate into schema (#​12489) 35af7f5
@​pedrobonamin feat(core): adds useProjectOrganizationData hook (#​12539) f180ebf
squiggler-app[bot] chore(deps): update rexxars/bundle-stats digest to 1bc291f (#​12569) 48a5609
@​binoy14 ci(renovate): inline reusable workflow to fix access error (#​12567) 95a9bca
@​binoy14 ci: use main branch for action (#​12566) bbd1304
@​binoy14 ci(renovate): add self-hosted renovate bot workflow (#​12565) 111f86e
@​juice49 fix(sanity): inline comment input re-animate on every value change (#​12564) fa34c76
@​juice49 fix(sanity): add missing perspective when calling observeDocumentTypeFromId for references (#​12561) 80e57e9
@​bjoerge chore(ci): expand and clarify release PR description (#​12562) 611e177
@​juice49 fix(sanity): array input with no ArrayFunctions vanishing after pane expansion (#​12559) d7c56cd
@​juice49 feat(test-studio): add example array with no ArrayFunctions (#​12559) 4da66bc

v5.19.0

Compare Source

Sanity Studio v5.19.0

This release includes various improvements and bug fixes.

For the complete changelog with all details, please visit:
www.sanity.io/changelog/studio-NS4xOC4w

Install or upgrade Sanity Studio

To upgrade to this version, run:

npm install sanity@latest

To initiate a new Sanity Studio project or learn more about upgrading, please refer to our comprehensive guide on Installing and Upgrading Sanity Studio.

📓 Full changelog
Author Message Commit
@​pedrobonamin chore: replace deprecated placement in menuButton for popover.placement (#​12421) 867cccb
@​juice49 feat(sanity): tag version creation request during release duplication (#​12554) 5b90d9a
@​juice49 refactor(sanity): pass only document id when duplicating release (#​12554) 8f01554
@​bjoerge test(e2e): remove unnecessary Firefox skips from PTE fullscreen tests (#​12552) 70eca29
@​bjoerge chore(ci): bump renovate nodeMaxMemory to 2.5GB (#​12555) 63fb9e3
@​bjoerge chore(ci): bump renovate nodeMaxMemory to 2GB (#​12553) fa002f6
@​binoy14 fix(deps): update @​sanity/cli to v6.3.1 (#​12546) 27690b4
@​bjoerge chore(ci): change nodeMaxMemory from string to number (#​12550) c06062a
@​bjoerge chore(ci): set renovate nodeMaxMemory to 1GB (#​12548) 0d380fa
renovate[bot] chore(deps): update dependency oxfmt to ^0.43.0 (#​12450) e374c45
@​binoy14 chore(deps): bump GitHub Actions dependencies to latest versions (#​12544) 91b4993
@​binoy14 chore(ci): add renovate concurrency limits (#​12545) fd39d6f
renovate[bot] chore(deps): update davelosert/vitest-coverage-report-action digest to bd52af5 (#​12535) 02f8197
@​christianhg fix(deps): update @​portabletext packages to latest versions (#​12538) 6095f0d
@​binoy14 fix(deps): update @​sanity/cli to v6.3.0 (#​12537) 1976167
@​RitaDias feat: add feedbackDialog and sendFeedback methods (#​12497) 0477e25
@​RitaDias refactor: always send error reporting to sentry, always strip PII (#​12534) 4b2dc94
@​Chrilleweb fix(sanity): log deprecation warning once (#​12526) abc296d
@​bjoerge feat(telemetry): track auth store timings (#​12529) 468ff0b
@​bjoerge chore(telemetry): improve debug logging output (#​12528) 15943dd
@​TiwariLokesh fix(core): prevent PointerOverlayDiv from blocking clicks on initial render in CommandList (#​12480) 9ca91b5
@​bjoerge fix(auth): return stats from handleCallbackResult (#​12522) 9d4bd08
@​pedrobonamin fix(structure): add empty state to incoming refs inspector (#​12524) 0add49d
@​pedrobonamin fix(core): prevent task form operations from leaking into the main workspace store (#​12523) 5439954
@​stipsan fix(deps): bump misc sanity packages (#​12470) 5c56d11
@​bjoerge ci(e2e): optimize Playwright CI workflows (#​12519) e5c05b0
renovate[bot] chore(deps): update davelosert/vitest-coverage-report-action digest to 2500daf (#​12516) 89b7d7e
@​bjoerge test(e2e): replace waitForSelector and waitForTimeout with locator APIs (#​12510) fc5c7f3
@​bjoerge chore(ci): replace lerna with release-notes bump command (#​12513) 6171d67
@​pedrobonamin fix(core): publishing anonymous versions (#​12514) a1c9e4b
renovate[bot] chore(deps): pin dorny/paths-filter action to fbd0ab8 (#​12515) 5aee0d5
@​jordanl17 fix: show initial value template icons in new document pickers (#​12508) 990a3c4
renovate[bot] chore(deps): update pnpm to v10.32.1 (#​12453) d14c754
renovate[bot] chore(deps): update dependency knip to ^5.88.1 (#​12449) 3d05c77
@​jordanl17 fix: pasting a document into a schema with read-only fields will exclude those fields from paste (#​12488) 500e413
@​jordanl17 fix(validation): allow relative URLs when scheme excludes http (#​12486) d5c2b1c
@​markmichon fix(release-notes): unset releaseAutomation before publishing content release (#​12505) 3643a20
renovate[bot] chore(deps): update actions/create-github-app-token action to v3 (#​12455) 0c59a22
@​bjoerge chore(e2e): fix test timeouts and remove unnecessary test.slow() calls (#​12499) b6f0480

v5.18.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.17.1

Compare Source

Note: Version bump only for package @​sanity/vision

v5.17.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.16.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.15.0

Compare Source

Features

v5.14.1

Compare Source

Note: Version bump only for package @​sanity/vision

v5.14.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.13.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.12.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.11.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.10.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.9.0

Compare Source

Reverts

v5.8.1

Compare Source

Note: Version bump only for package @​sanity/vision

v5.8.0

Compare Source

Bug Fixes

v5.7.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.6.0

Compare Source

Bug Fixes

v5.5.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.4.0

Compare Source

Bug Fixes

v5.3.1

Compare Source

Note: Version bump only for package @​sanity/vision

v5.3.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.2.0

Compare Source

Bug Fixes

v5.1.0

Compare Source

Note: Version bump only for package @​sanity/vision

v5.0.1

Compare Source

Note: Version bump only for package @​sanity/vision

v5.0.0

Compare Source

⚠ BREAKING CHANGES
Bug Fixes

v4.22.0

Compare Source

Bug Fixes

v4.21.1

Compare Source

Note: Version bump only for package @​sanity/vision

v4.21.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.20.3

Compare Source

Note: Version bump only for package @​sanity/vision

v4.20.2

Compare Source

Note: Version bump only for package @​sanity/vision

v4.20.1

Compare Source

Note: Version bump only for package @​sanity/vision

v4.20.0

Compare Source

Bug Fixes

v4.19.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.18.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.17.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.16.0

Compare Source

Bug Fixes

v4.15.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.14.2

Compare Source

Note: Version bump only for package @​sanity/vision

v4.14.1

Compare Source

Note: Version bump only for package @​sanity/vision

v4.14.0

Compare Source

Features
  • vision perspective scheduled drafts (#​10999) (4876ac2) by Jordan Lawrence (<jordanl17@​me.com>)
Bug Fixes

v4.13.0

Compare Source

Bug Fixes

v4.12.0

Compare Source

Note: Version bump only for package @​sanity/vision

v4.11.0

Compare Source

Bug Fixes

v4.10.3

Compare Source

Bug Fixes

v4.10.2

Compare Source

Note: Version bump only for package @​sanity/vision

v4.10.1

Compare Source

Note: Version bump only for package @​sanity/vision

v4.10.0

Compare Source

Bug Fixes

v4.9.0

Compare Source

Bug Fixes

v4.8.1

Compare Source

Note: Version bump only for package @​sanity/vision

v4.8.0

Compare Source

Bug Fixes

v4.7.0

Compare Source

Bug Fixes

v4.6.1

[Compare Source](https://redirect.github.com/sani


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "before 3am on Monday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate using a curated preset maintained by Sanity. View repository job log here

@renovate
Copy link
Copy Markdown
Contributor Author

renovate bot commented Apr 6, 2026

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: example/package-lock.json
npm warn Unknown env config "store". This will stop working in the next major version of npm. See `npm help npmrc` for supported config options.
npm error code ERESOLVE
npm error ERESOLVE unable to resolve dependency tree
npm error
npm error While resolving: sanity-plugin-mux-input-example@0.1.0
npm error Found: react@18.3.1
npm error node_modules/react
npm error   react@"^18.3.1" from the root project
npm error
npm error Could not resolve dependency:
npm error peer react@"^19.2.2" from @sanity/vision@5.20.0
npm error node_modules/@sanity/vision
npm error   @sanity/vision@"^5.20.0" from the root project
npm error
npm error Fix the upstream dependency conflict, or retry
npm error this command with --force or --legacy-peer-deps
npm error to accept an incorrect (and potentially broken) dependency resolution.
npm error
npm error
npm error For a full report see:
npm error /runner/cache/others/npm/_logs/2026-04-08T17_51_02_931Z-eresolve-report.txt
npm error A complete log of this run can be found in: /runner/cache/others/npm/_logs/2026-04-08T17_51_02_931Z-debug-0.log

@vercel
Copy link
Copy Markdown

vercel bot commented Apr 6, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
sanity-plugin-mux-input Error Error Apr 8, 2026 5:52pm
sanity-plugin-mux-input-example Error Error Apr 8, 2026 5:52pm

Request Review

@socket-security
Copy link
Copy Markdown

socket-security bot commented Apr 6, 2026

@socket-security
Copy link
Copy Markdown

socket-security bot commented Apr 6, 2026

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm markdown-it is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: package-lock.jsonnpm/sanity@5.20.0npm/markdown-it@14.1.1

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/markdown-it@14.1.1. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants