build(deps-dev): bump @anthropic-ai/claude-code from 2.1.259 to 2.1.283 - #121
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [@anthropic-ai/claude-code](https://github.com/anthropics/claude-code) from 2.1.259 to 2.1.283. - [Release notes](https://github.com/anthropics/claude-code/releases) - [Changelog](https://github.com/anthropics/claude-code/blob/main/CHANGELOG.md) - [Commits](anthropics/claude-code@v2.1.259...v2.1.283) --- updated-dependencies: - dependency-name: "@anthropic-ai/claude-code" dependency-version: 2.1.283 dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
There was a problem hiding this comment.
Routine Dependabot devDependency bump of @anthropic-ai/claude-code (2.1.259 → 2.1.283), isolated to its own PR per this repo's .github/dependabot.yml grouping. package.json and package-lock.json are updated consistently, the commit type (build) correctly maps to a patch release per release.config.ts's commitTypes, and the PR body is Dependabot's own complete, standard release-notes body — nothing to fix there.
One finding:
- Should fix [policy] —
package.json:43'sallowScriptsentry still pins the pre-bump version (@anthropic-ai/claude-code@2.1.259), not updated alongside the version bumped everywhere else in this diff. See inline comment for detail; I could not confirm whether this field is actually enforced anywhere in this repo's own tooling, so I can't say how much practical effect the staleness has, but the inconsistency itself is concrete and worth closing.
Using Comment rather than Changes Requested here: this is a Dependabot-authored automated bump, the finding is in a field whose enforcement in this pipeline I could not verify, and blocking an otherwise-correct routine bump over an unverified consequence felt like the wrong default — a maintainer should weigh that trade-off rather than have it made for them.
|
🗜️ Headroom context compression
|
Bumps @anthropic-ai/claude-code from 2.1.259 to 2.1.283.
Release notes
Sourced from @anthropic-ai/claude-code's releases.
... (truncated)
Changelog
Sourced from @anthropic-ai/claude-code's changelog.
... (truncated)
Commits
7779afbchore: Update CHANGELOG.md and feed.xmlc948155diff: the focus hook answers to either name the engine stamps on its elements...e1bb7b0telemetry, agents-md: the test plugins hook and call the collector stream by ...163ae3achore: Update CHANGELOG.md and feed.xml6557bbetelemetry: log and mark are what the mod's hooks do, the noun added only wher...684ffc4agents-md: the truncated-read tests laid out as the formatter lays them653d32ffix(agents-md): retain instructions after truncated readsddcb43achore: Update CHANGELOG.md and feed.xml32251d1diff: the shared diff arguments' doc says what --no-color pins4536209fix(diff): preserve hunks when Git forces colored outputDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)