Bump fastmcp from 3.1.1 to 3.4.2 in /app - #3
Closed
dependabot[bot] wants to merge 1 commit into
Closed
Conversation
Bumps [fastmcp](https://github.com/PrefectHQ/fastmcp) from 3.1.1 to 3.4.2. - [Release notes](https://github.com/PrefectHQ/fastmcp/releases) - [Changelog](https://github.com/PrefectHQ/fastmcp/blob/main/docs/changelog.mdx) - [Commits](PrefectHQ/fastmcp@v3.1.1...v3.4.2) --- updated-dependencies: - dependency-name: fastmcp dependency-version: 3.4.2 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
Author
|
Superseded by #15. |
calreynolds
pushed a commit
that referenced
this pull request
Jul 27, 2026
Phase 3 of the review follow-up. Canvas.tsx 1098→827 lines.
Hooks (platform-diagram/hooks/):
- use-diagram-history: undo/redo + burst snapshots; owns all history
refs internally (breaks the scheduleSave↔restore cycle via an
internal ref + setScheduleSave) so Canvas needs none.
- use-node-mutations: onResize/onRename/onAnnotate (the three
setNodesRef/scheduleSaveRef/edgesRef hacks now live inside the hook).
- use-edge-mutations: every edge mutator incl. setEdgeCenterX, so
edgeOps gets it directly (no setEdgeCenterXRef).
- use-paste-image: Ctrl/Cmd+V paste (takes addAnnotation as an arg, no
addAnnotationRef).
All 8 use-before-define refs removed from Canvas (5 gone entirely, 3
encapsulated in use-node-mutations).
Perf (review finding #3): the effect that rewrote EVERY node's data
object on each selection/editMode change is deleted. `selected` now
comes only from ReactFlow's NodeProp (removed from data + schemaToFlow),
editMode flows via a new EditModeContext, draggability via the
<ReactFlow nodesDraggable> prop. Node data identity stays stable across
selection/mode changes → React.memo holds.
tsc + bun build clean. Verified live before commit: render, select
(grips + ring), View/Edit toggle hides/shows grips, real drag enables
Undo. (A backend dev-server 500 later blocked further UI checks — env
issue, unrelated to this frontend-only change.)
Co-authored-by: Isaac
calreynolds
pushed a commit
that referenced
this pull request
Jul 27, 2026
- Particle/flow edges (biggest win): key EdgeFlow by edge id, not path, so a drag/resize updates the `path` attribute instead of unmounting + remounting the whole SMIL subtree every frame. Cut particle count 22→8. Suppress the animation entirely below 35% zoom (glyphs are sub-pixel there) via a primitive useStore(transform[2]) gate; the base line carries the edge. Total animated SVG elements ~halved. - Stabilise edgeOps (review #5): nodeRect/nodeAt/portsOf now read nodes from a nodesRef ([] deps) instead of closing over the live array, and use-edge-mutations takes nodesRef too — so the EdgeOpsContext value no longer churns every drag frame (was re-rendering every FlowEdge). - Memoise componentLookup(schema) once (review #4): the render-path `selected` lookup + the add/change-type callbacks reused it, rebuilding the whole catalog Map per frame. - Folded in nodeAt z-order tie-break (review nit): hit-test picks the topmost node by zIndex, not array order. O(E^2) fan-out hoist (review #2) left as documented backlog — negligible at the diagram's realistic edge counts and a riskier refactor. tsc + build clean. Verified live: 8 particles, dot=1 motion, zoom-out drops all flow then restores on zoom-in, no new console errors. Co-authored-by: Isaac
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps fastmcp from 3.1.1 to 3.4.2.
Release notes
Sourced from fastmcp's releases.
... (truncated)
Commits
3b8538eAllow private JWT headers (#4290)0445c31chore: Update SDK documentation (#4223)9261793Docs: add v3.4.1 changelog entries (#4289)e1b52d0Add explicit starlette>=1.0.1 floor (CVE-2026-48710) (#4286)e58f386Log refresh-token misses in OAuthProxy instead of failing silently (#4276)3f09c68Document --notes-start-tag requirement in release instructions (#4275)e124bdeFix MDX syntax error in changelog (#4270)dae11bbBackfill changelog and updates through v3.4.0 (#4269)0f4f78cFix resource templates with query params on proxied servers (#4251)1a06130Fix GitHub MCP resource integration test (#4253)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)