feat(deps): upgrade upstream dependencies - #2302
Merged
Merged
Conversation
- rolldown: 03e1e34 -> v1.2.1 (93c535d) - vite: 5e7fe12 -> v8.2.0 (fa79f9a) - oxfmt: 0.60.0 -> 0.61.0 - oxlint: 1.75.0 -> 1.76.0 - @oxc-project/runtime: 0.141.0 -> 0.142.0 - @oxc-project/types: 0.141.0 -> 0.142.0 - oxc-minify: 0.141.0 -> 0.142.0 - oxc-parser: 0.141.0 -> 0.142.0 - oxc-transform: 0.141.0 -> 0.142.0 - @vitejs/devtools: 0.4.5 -> 0.4.10 Code changes: - Cargo.toml: bump oxc crates to 0.142.0 and drop the rolldown vite plugin crates removed upstream (rolldown_filter_analyzer, rolldown_plugin_vite_asset, rolldown_plugin_vite_asset_import_meta_url, rolldown_plugin_vite_css, rolldown_plugin_vite_css_post, rolldown_plugin_vite_html, rolldown_plugin_vite_html_inline_proxy). - pnpm-workspace.yaml: add the `rollup-tests` catalog synced with rolldown's pnpm-workspace.yaml; bump @napi-rs/cli, @napi-rs/wasm-runtime, fs-extra and source-map; add @emnapi/core and @emnapi/runtime; exclude @napi-rs/cli from minimumReleaseAge. - packages/core/build.ts: rework ensureAnsisImports to scan every relative chunk import instead of a fixed main-*.js chunk (rolldown moved the ansis colors between chunks). - packages/tools/src/brand-vite.ts: add a config.ts patch that suppresses Vite's native config-loader migration notice. - packages/core/package.json: add the ./rolldown/experimental/runtime export and bump @vitejs/devtools plus bundledVersions (vite 8.2.0, rolldown 1.2.1). - packages/cli/binding/index.cjs, packages/cli/binding/index.d.cts: regenerated NAPI bindings.
✅ Deploy Preview for viteplus-preview canceled.
|
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub. |
Contributor
Native binary sizes (
|
| Artifact | Format | Base | PR | Change |
|---|---|---|---|---|
vp (Linux x64) |
Binary | 10.36 MiB | 10.36 MiB | 0 B (0.00%) |
vp (Linux x64) |
gzip -9 | 4.44 MiB | 4.44 MiB | 0 B (0.00%) |
| NAPI (Linux x64) | Binary | 33.11 MiB | 33.41 MiB | +308.19 KiB (+0.91%) |
| NAPI (Linux x64) | gzip -9 | 12.74 MiB | 12.90 MiB | +170.47 KiB (+1.31%) |
vp (macOS ARM64) |
Binary | 7.68 MiB | 7.68 MiB | 0 B (0.00%) |
vp (macOS ARM64) |
gzip -9 | 3.85 MiB | 3.85 MiB | 0 B (0.00%) |
| NAPI (macOS ARM64) | Binary | 40.51 MiB | 40.75 MiB | +241.80 KiB (+0.58%) |
| NAPI (macOS ARM64) | gzip -9 | 16.99 MiB | 17.12 MiB | +139.52 KiB (+0.80%) |
vp (Windows x64) |
Binary | 8.40 MiB | 8.40 MiB | 0 B (0.00%) |
vp (Windows x64) |
gzip -9 | 3.66 MiB | 3.66 MiB | 0 B (0.00%) |
| NAPI (Windows x64) | Binary | 27.50 MiB | 27.70 MiB | +202.50 KiB (+0.72%) |
| NAPI (Windows x64) | gzip -9 | 10.70 MiB | 10.84 MiB | +142.06 KiB (+1.30%) |
| Trampoline (Windows x64) | Binary | 203.00 KiB | 203.00 KiB | 0 B (0.00%) |
| Trampoline (Windows x64) | gzip -9 | 97.91 KiB | 97.91 KiB | -1 B (-0.00%) |
| Installer (Windows x64) | Binary | 4.47 MiB | 4.47 MiB | 0 B (0.00%) |
| Installer (Windows x64) | gzip -9 | 2.09 MiB | 2.09 MiB | -2 B (-0.00%) |
Member
|
@codex review |
|
Codex Review: Didn't find any major issues. Can't wait for the next one! Reviewed commit: ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
fengmk2
approved these changes
Aug 3, 2026
fengmk2
added a commit
that referenced
this pull request
Aug 5, 2026
…t variable renames, and install fixes (#2325) Release vite-plus v0.2.8: monorepo target resolution, breaking `VP_*` environment variable renames, and install fixes. Bare `vp dev`/`build`/`preview`/`pack` at a monorepo root now resolve a target package instead of silently running against the root, and three Vite+-specific environment variables move to the `VP_*` prefix without compatibility aliases. Two failures that broke Vite+ before it could run are also fixed: the crash on container images that ship no CA certificates, and the missing Rolldown binding under pnpm's global virtual store. ### Breaking Changes - Rename three Vite+-specific environment variables to the `VP_*` prefix, with no compatibility aliases, so the old names stop working ([#2312](#2312)), by @jong-kyung: | Old | New | | --- | --- | | `VITE_LOG` | `VP_LOG` | | `VITE_GLOBAL_CLI_JS_SCRIPTS_DIR` | `VP_GLOBAL_CLI_JS_SCRIPTS_DIR` | | `VITE_UPDATE_TASK_TYPES` | `VP_UPDATE_TASK_TYPES` | Update any shell profile, CI job, or Dockerfile that sets the old names. ### Highlights - Resolve a target package for `vp dev`, `build`, `preview`, and `pack` at a monorepo root: interactive shells get a fuzzy package picker, non-interactive runs list the candidates and exit 1 instead of building the root, and a new global `-C <dir>` flag or a `defaultPackage` setting (a single directory, or an object mapping each of the four commands to its own directory) skips the prompt ([#2031](#2031), [#2305](#2305)), by @fengmk2 - Stop aborting with exit 134 on container images that ship no CA certificates (Debian slim, distroless): the shared HTTP client now retries once with the bundled Mozilla root list, like Node's own bundled roots, and reports a real error instead of panicking when it still cannot be built ([#2273](#2273), [#2295](#2295)), by @jbmusso and @fengmk2 - Resolve the bundled Rolldown binding through platform packages instead of an undeclared require back into `vite-plus`, fixing `Cannot find module 'vite-plus/binding'` under pnpm `enable-global-virtual-store` and in standalone `@voidzero-dev/vite-plus-core` installs ([#2313](#2313)), by @fengmk2 - Add `vp pm ci` for reproducible frozen-lockfile installs, and `vp pm patch` / `vp pm patch-commit` for editing dependencies in place on pnpm, bun, and Yarn Berry (npm and Yarn Classic warn and exit successfully) ([#2082](#2082), [#2308](#2308)), by @forehalo and @jong-kyung ### Features - Upgrade the bundled toolchain: vite `8.1.5` -> `8.2.0`, rolldown `1.2.0` -> `1.2.2`, oxlint `1.75.0` -> `1.76.0`, oxfmt `0.60.0` -> `0.61.0`, and Vite DevTools `0.4.5` -> `0.4.10` ([#2302](#2302), [#2311](#2311)), by @voidzero-guard[bot]. The new oxfmt and oxlint can flag code that passed before, so run `vp fmt` after upgrading if your CI runs `vp check`. - Read the Node.js version from `.nvmrc` when no other version source is present ([#2244](#2244)), by @BlankParticle - Support pnpm v12, which ships as a native binary: Vite+ now downloads the platform-specific `@pnpm/exe.*` package and generates native shims, so `pnpm` and `pnpx` work instead of failing to exec ([#2289](#2289)), by @jong-kyung - Verify the downloaded bun platform tarball against the registry `dist.integrity` hash ([#2310](#2310)), by @jong-kyung ### Fixes & Enhancements - Let `vp config` install the Git hook dispatcher without creating or modifying project hook scripts or staged-file configuration, so a custom `.vite-hooks/pre-commit` survives ([#2280](#2280)), by @TheAlexLichter - Nest immutable global package installs under `packages/<package>/<uuid>` instead of using `#` in the path, which Node treated as a URL fragment and which broke dynamic imports inside installed packages ([#2222](#2222)), by @liangmiQwQ - Keep the recorded version spec on global installs, so `vp update -g` follows a dist tag or range instead of silently resolving back to `latest`, `vp outdated -g` reports Wanted versus Latest, and `vp update -g --latest` explicitly moves packages back to `latest` ([#2249](#2249)), by @TheAlexLichter - Stop deleting a managed Node.js runtime that another process is concurrently installing ([#2248](#2248)), by @shulaoda - Preserve the real exit code when a spawned process is terminated by a signal on Unix ([#2154](#2154)), by @liangmiQwQ - Honor an explicit `vp create --package-manager` outside monorepos instead of inheriting the manager from a non-monorepo ancestor directory ([#2226](#2226)), by @jong-kyung - Scaffold the `vite:library` template into a directory that contains only `.git`, while still refusing to overwrite existing user files ([#2287](#2287)), by @RSS1102 - Render help for delegated commands from the local CLI, so `vp <command> --help` matches the installed toolchain instead of drifting ([#2184](#2184)), by @liangmiQwQ - Resolve `typeAware` and `typeCheck` options inherited through Oxlint `extends`, so `vp check --no-lint` runs and classifies type checking correctly ([#2228](#2228)), by @jong-kyung - Report `(no version)` instead of `unknown` when globally installing a local package that has no `version` field ([#2232](#2232)), by @liangmiQwQ ### Refactor - Rename the Git hooks environment variable to `VP_GIT_HOOKS`, keeping `VITE_GIT_HOOKS` working as a deprecated alias ([#2195](#2195)), by @dennybiasiolli - Consolidate the package manager infrastructure so typed command arguments are the source of truth for per-manager compatibility ([#2140](#2140)), by @forehalo - Generate the Zed language settings from a language list instead of 17 near-identical blocks ([#2294](#2294)), by @jong-kyung - Share the agent-file detect and write traversal helpers so both passes apply identical rules ([#2296](#2296)), by @jong-kyung - Drop redundant clippy allow attributes in the global CLI ([#2235](#2235)), by @shulaoda ### Docs - Avoid a duplicate `vp` installation step in the onboarding prompt ([#2291](#2291)), by @Arcadi4 - Recommend stacked pull requests for submitting changes ([#2281](#2281)), by @fengmk2 - Correct stale delegation comments in the global CLI ([#2236](#2236)), by @shulaoda - Improve the release draft review guidance in the release-manager skill ([#2285](#2285)), by @wan9chi ### Chore - Stop emitting unmet peer warnings for the `vite-plus` peer of oxfmt and oxlint on every install ([#2321](#2321)), by @fengmk2 - Remove duplicate direct dependency declarations so each build dependency is owned by one workspace ([#2318](#2318)), by @jong-kyung - Declare `@emnapi` peers where `@napi-rs/cli` is used ([#2319](#2319)), by @jong-kyung - Exclude `rollup-tests` from the workspace and update `basic-ftp` ([#2322](#2322)), by @fengmk2 - Remove unused `EnvConfig` fields ([#2320](#2320)), by @jong-kyung - Remove the obsolete peer dependency merger tool ([#2303](#2303)), by @jong-kyung - Stop the staging deploy from triggering on external pull requests ([#2293](#2293)), by @BlankParticle - Kill the real `vp` process, and kill it before its children, in the `env_install_interrupt` snapshot test ([#2299](#2299), [#2316](#2316)), by @fengmk2 - Suppress racy optimizer logs in the `vitest_browser_mode` snapshot test ([#2297](#2297)), by @fengmk2 - Remove the obsolete auto-install environment from the snapshot tests ([#2163](#2163)), by @liangmiQwQ ### Bundled Versions | Tool | Version | Source | | --------------- | ---------- | ------------------------------------------------------------------------------------------------- | | vite | `8.2.0` | [`fa79f9a`](vitejs/vite@fa79f9a) | | rolldown | `1.2.2` | [`872b98a`](rolldown/rolldown@872b98a) | | tsdown | `0.22.14` | [npm](https://npmx.dev/package/tsdown/v/0.22.14) | | vitest | `4.1.10` | [npm](https://npmx.dev/package/vitest/v/4.1.10) | | oxlint | `1.76.0` | [npm](https://npmx.dev/package/oxlint/v/1.76.0) | | oxlint-tsgolint | `7.0.2001` | [npm](https://npmx.dev/package/oxlint-tsgolint/v/7.0.2001) | | oxfmt | `0.61.0` | [npm](https://npmx.dev/package/oxfmt/v/0.61.0) | ### Upgrade ```bash vp upgrade ``` ### New Contributors @jbmusso, @Arcadi4, @dennybiasiolli, @RSS1102 **Full Changelog**: v0.2.7...v0.2.8 --- Merging this PR will trigger the release workflow. --------- Co-authored-by: voidzero-guard[bot] <278573678+voidzero-guard[bot]@users.noreply.github.com> Co-authored-by: MK <fengmk2@gmail.com>
2 tasks
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
v1.2.1and vitev8.2.0.1.76.0, oxfmt0.61.0,oxc-*/@oxc-project/*0.142.0) and@vitejs/devtools0.4.10.Cargo.tomldrops rolldown vite plugin crates removed upstream and bumps oxc to0.142.0;pnpm-workspace.yamladds therollup-testscatalog and bumps napi/emnapi/fs-extra/source-map.packages/core/build.tsandpackages/tools/src/brand-vite.tsadjust branding to the new rolldown chunking and Vite config-loader notice; NAPI bindings regenerated.Dependency updates
rolldown03e1e34v1.2.1 (93c535d)vite5e7fe12v8.2.0 (fa79f9a)oxfmt0.60.00.61.0oxlint1.75.01.76.0@oxc-project/runtime0.141.00.142.0@oxc-project/types0.141.00.142.0oxc-minify0.141.00.142.0oxc-parser0.141.00.142.0oxc-transform0.141.00.142.0@vitejs/devtools0.4.50.4.10Unchanged dependencies
vitest:4.1.10@vitest/browser:4.1.10@vitest/browser-playwright:4.1.10@vitest/browser-preview:4.1.10@vitest/browser-webdriverio:4.1.10@vitest/expect:4.1.10@vitest/mocker:4.1.10@vitest/pretty-format:4.1.10@vitest/runner:4.1.10@vitest/snapshot:4.1.10@vitest/spy:4.1.10@vitest/utils:4.1.10tsdown:0.22.14@tsdown/css:0.22.14@tsdown/exe:0.22.14lightningcss:^1.33.0@oxc-node/cli:0.1.0@oxc-node/core:0.1.0oxlint-tsgolint:7.0.2001VITEST_VERSION constant:4.1.10README vitest pins:4.1.10Code changes
Cargo.toml: bump oxc crates to0.142.0and drop the rolldown vite plugin crates removed upstream (rolldown_filter_analyzer,rolldown_plugin_vite_asset,rolldown_plugin_vite_asset_import_meta_url,rolldown_plugin_vite_css,rolldown_plugin_vite_css_post,rolldown_plugin_vite_html,rolldown_plugin_vite_html_inline_proxy) from workspace members and the cargo-shear ignore list.pnpm-workspace.yaml: add therollup-testscatalog synced with rolldown'spnpm-workspace.yaml; bump@napi-rs/cli,@napi-rs/wasm-runtime,fs-extraandsource-map; add@emnapi/coreand@emnapi/runtime; exclude@napi-rs/clifromminimumReleaseAge.packages/core/build.ts: reworkensureAnsisImportsto scan every relative chunk import instead of a fixedmain-*.jschunk, since rolldown moved the ansis colors between chunks.packages/tools/src/brand-vite.ts: add aconfig.tspatch that suppresses Vite's native config-loader migration notice.packages/core/package.json: add the./rolldown/experimental/runtimeexport and bump@vitejs/devtools(dep/peer) plusbundledVersions(vite8.2.0, rolldown1.2.1).packages/cli/binding/index.cjs,packages/cli/binding/index.d.cts: regenerated NAPI bindings.Build status
sync-remote-and-build: failurebuild-upstream: failure