Skip to content

deps: Bump happy-dom from 20.8.4 to 20.9.0 - #8

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/happy-dom-20.9.0
Closed

deps: Bump happy-dom from 20.8.4 to 20.9.0#8
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/happy-dom-20.9.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 12, 2026

Copy link
Copy Markdown

Bumps happy-dom from 20.8.4 to 20.9.0.

Release notes

Sourced from happy-dom's releases.

v20.9.0

🎨 Features

  • Adds support for event listener properties on Window (e.g. Window.onkeydown) - By @​capricorn86 in task #2131

v20.8.9

👷‍♂️ Patch fixes

  • Fixes issue where cookies from the current origin was being forwarded to the target origin in fetch requests - By @​capricorn86 in task #2117

v20.8.8

👷‍♂️ Patch fixes

  • Fixes issue where export names can be interpolated as executable code in ESM - By @​capricorn86 in task #2113
    • A security advisory (GHSA-6q6h-j7hj-3r64) has been reported that shows a security vulnerability where it may be possible to escape the VM context and get access to process level functionality in unsafe environments using CommonJS. Big thanks to @​tndud042713 for reporting this!

v20.8.7

👷‍♂️ Patch fixes

  • Replace implementing Node.js Console with common IConsole interface to support latest version of Bun - By @​YevheniiKotyrlo in task #1845

v20.8.6

👷‍♂️ Patch fixes

v20.8.5

👷‍♂️ Patch fixes

  • Fixes error thrown when modifying DOM structure in connectedCallback() - By @​capricorn86 in task #2110
Commits
  • 4090ade fix: #0 Fix github release workflow (#2140)
  • c7c2bb5 fix: #0 Fix github release workflow (#2139)
  • d541143 fix: #0 Fix github release workflow (#2138)
  • a78d89e feat: #2131 Adds support for event listener properties on Window (#2132)
  • 68324c2 fix: #2117 Fixes issue related to cookies from the current origin being for...
  • 5437fdf fix: #2113 Fixes issue where export names can be interpolated as executable...
  • 7e97acb fix: #1845 Replace implementing Node js Console with common IConsole interf...
  • 3373929 fix: #2106 Request.formData() should honor Content-Type header (#2107)
  • 55c17ba fix: #2110 Fixes error thrown when modifying DOM structure in connectedCall...
  • See full diff in compare view
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for happy-dom since your current version.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [happy-dom](https://github.com/capricorn86/happy-dom) from 20.8.4 to 20.9.0.
- [Release notes](https://github.com/capricorn86/happy-dom/releases)
- [Commits](capricorn86/happy-dom@v20.8.4...v20.9.0)

---
updated-dependencies:
- dependency-name: happy-dom
  dependency-version: 20.9.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github May 12, 2026

Copy link
Copy Markdown
Author

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

AlbSar added a commit that referenced this pull request May 14, 2026
…on — 17 madde fix

Sprint 168 v1→v4 zinciri:
- v1 (commit fc91fcd): brainstorming output
- v2 systematic-debugging eval (Agent A): 79/100, Phase 4.5 trigger, 5 critical/high
- v3 devil's advocate eval (Agent B): 22/100 — hedef <30 KARŞILANDI ✅
- v4 (bu commit): 17 madde fix integration
- v5 Alperen final approval bekliyor

17 madde fix entegre:
1. (Agent A #1 CRITICAL) C0e cross-sprint orphan handling — Option C selective filter + startup invocation
2. (Agent A #2 CRITICAL) C0a bundle split → C0a-1/C0a-2/C0a-3/C0a-4 (4 sub-anchor)
3. (Agent A #3 CRITICAL) C0c subscriber owner: decision-engine.ts designate + function signature + BRAIN→SPAWN:BLOCKED event mandatory test
4. (Agent A #4 + B V7 HIGH) ADR-047 Manuel Subagent Dispatch Protocol Sprint 168'de (önceki 168.5 ertelenmiş)
5. (Agent A #5 + B Saldırı #2 HIGH) Smoke test complex scenario: 3+ task (collision + crash + parallel)
6. (B V5 HIGH) Sprint 168 NO_GO → Sprint 168.5 fallback explicit (recursion paradox kabul)
7. (B V7 HIGH) TDD skip enforcement gate (skip artış 0 + Alperen review)
8. (Agent A #8 MED) checkSpawnLock singular helper eklendi
9. (Agent A #9 MED) auto_archive_directives Alperen decision NOW (spec yazımı sırasında)
10. (Agent B #5 MED) Subagent git branch isolation (worktree per cluster)
11. (Agent B #7 MED) ADR-046 invariant test C0a-2 + C0a-3 integration test
12. (Agent B #6 MED) ADR-048 multi-provider parity (Docker + Subprocess + Tmux)
13. (Agent B #4 MED) ADR-048 Wave 1.5 serial gate + Alperen CHECKPOINT
14. (P4.5 MED) Cross-cluster dependency graph spec içinde explicit (Section 2)
15. (Agent B #3 MED) Baseline tolerance "0 yeni skip" GO/NO_GO row
16. (Agent B V6 LOW) Effort yeniden tahmin 22-30h → 35h gerçekçi
17. (Agent B #1 LOW) Brain "kırık" iddiası modül-fonksiyon-satır kanıtı (Section 1)

v1 → v4 büyük yapı değişiklikleri:
- Scope 5 task → 8 task (C0a split + ADR-047 yeni)
- Effort tahmin 22-30h → 35h
- ADR sayısı 1 (ADR-048) → 2 (ADR-047 + ADR-048)
- Smoke test 2-task echo → 3+ task complex (collision + crash + parallel)
- Subagent dispatch "manuel" → "hardened (worktree + file authority + lock + TDD gate)"
- Sprint 168.5 dependency açıklama (NO_GO → manuel dispatch replay)
- Section 2 cross-cluster dependency graph yeni
- Section 3.2 (dispatch mechanism + lock pattern + TDD gate + fallback) yeni
- Section 5.3 complex smoke test suite yeni
- Pre-Flight checklist 11 → 14 madde (git worktree, dispatch locks, smoke test, Alperen auto_archive decision)

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
AlbSar added a commit that referenced this pull request May 20, 2026
…rift

Sprint 176 worker on task 176-001 produced a 3 KB NO_GO refuse note
documenting auto-debt-injection empty-scope failure — a live reproduction
of spec §1d.1, the exact bug W1-1 fixes. On SIGTERM the brain-honest-
gate mechanism stub-overwrote the result file to 364 bytes erasing the
forensic notes.

This document restores the original notes from the conversation
transcript + records the two concurrent dogfood bugs that triggered the
kill: (1) config.json template-regen losing spawn_backend (cascade from
PR #16 git rm --cached); (2) nervous_system.directives_protection
auto_restore rolling DIRECTIVES.md back to Sprint 175 after cleanup.

Cross-referenced in sub-project #2 plan Task 1 — to be cited in the
regression fixture for sprint-planner debt injection. Open question
captured for sub-project #2 backlog #8 (nervous_system baseline-update
hook on deckent_set_directives success).

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
AlbSar added a commit that referenced this pull request May 20, 2026
Sprint 177 CLEANUP/RETRO phase auto-generated bookkeeping:
- docs/CHANGELOG.md + docs/SPRINT-LOG.md + docs/vision/roadmap.md +
  docs/ROADMAP-GOD-LEVEL.md: Sprint 177 entry appended by sprint-docs-
  updater.
- .deckent/ci-baseline.json + features-manifest.json + provider-cache.json:
  runtime stats refresh.
- .deckent/archive/metrics/metrics-sprint-{165,167}.jsonl.gz: aged out
  per sprint_file_retention.keep_last_n=10 policy.
- .gitignore: add .tmp/ (Sprint 177 worker runtime artifact pattern;
  sub-project #2 backlog cleanup-debris #8 follow-up).

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
@dependabot @github

dependabot Bot commented on behalf of github Jun 4, 2026

Copy link
Copy Markdown
Author

Superseded by #20.

@dependabot dependabot Bot closed this Jun 4, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/happy-dom-20.9.0 branch June 4, 2026 00:33
AlbSar added a commit that referenced this pull request Jun 16, 2026
…nt docs

- doc-honesty: beta-tracker.md moved docs/release/ → docs/archive/ (commit
  ebc55b0, superseded internal-strategy doc). Retarget the Gate #8 PARTIAL /
  Docker-runtime honesty assertion to the archive path (content preserved).
- release-notes-beta.test.ts: the release notes were rewritten for the
  v1.0.0-beta.1 public beta. The test asserted a long-retired Sprint-042/047
  format (".deck Secret System", "NO_GO Trend" table, "9,300+ tests",
  "Generated from Sprint 042"). Rewritten to validate the CURRENT release notes
  against code-reality: version, 4-provider fleet, 15 agents / 21 skills,
  8-phase lifecycle, Memory V2, Nervous/Autonomous, and the honest known-
  limitations (Ollama partial, ADR-037 advisory RBAC). Retains a guard that the
  obsolete structure is genuinely gone.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants