chore(deps): update composer dev dependencies - #48
Open
renovate[bot] wants to merge 1 commit into
Open
Conversation
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
from
June 17, 2026 19:09
8497d8c to
e33f569
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
8 times, most recently
from
June 27, 2026 12:47
a395b5a to
a7ec7d9
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
4 times, most recently
from
July 9, 2026 10:26
4af49d1 to
b6a7562
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
3 times, most recently
from
July 19, 2026 02:37
5c429a7 to
2df86e7
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
4 times, most recently
from
July 31, 2026 01:00
30359b7 to
0b40846
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
4 times, most recently
from
August 7, 2026 22:39
3204b4f to
528bcda
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
4 times, most recently
from
August 18, 2026 22:39
27d5b33 to
d0ae62d
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
from
August 19, 2026 22:48
d0ae62d to
79b2241
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
4 times, most recently
from
August 27, 2026 12:16
4ff6168 to
9c597a3
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
9 times, most recently
from
September 4, 2026 04:41
6d46ff2 to
48a2ea8
Compare
renovate
Bot
force-pushed
the
renovate/composer-dev
branch
from
September 4, 2026 18:36
48a2ea8 to
d462317
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
1.29.0→1.47.610.5.63→10.5.642.4.5→2.6.67.4.10→7.4.17Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
carthage-software/mago (carthage-software/mago)
v1.47.6: Mago 1.47.6Compare Source
Mago 1.47.6
Mago 1.47.6 strengthens property and control-flow narrowing, preserves collection precision, and fixes formatter comment and string handling.
🐛 Bug Fixes
Analyzer
isset: marks roots defined after guarded nested offset checks. (#2303,1da40ab)e3aefe1)instanceof: narrows receivers and properties after nullsafe type checks. (#2308,ea927d0)strlen()comparisons. (#2307,fff0817)801fc7f)ed44977)elseifandmatch. (#2312,2a248f1)ce98d0d)414c4e0)007de69)696def4)Prelude
ReflectionClass<T>::getName()asclass-string<T>. (#2314,f38df5b)Formatter
88d062f)6aa441c)🏗️ Internal
Performance
16335f4)Maintenance
5113670)64f3e9f)🙏 Thank You
Contributors
A huge thank you to everyone who contributed code to this release:
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.47.5...1.47.6
v1.47.5: Mago 1.47.5Compare Source
Mago 1.47.5
Mago 1.47.5 improves conditional and nullsafe narrowing, class-string handling, constructor analysis, and wide-shape performance.
🐛 Bug Fixes
Analyzer
f13467c)da58581)2d316d5)aefba3d)edb7082)95d6cd6,62a418d)1b7741e)4bf8961)637b850)8d063e9)de61ef7)63b663f)c9fd26e)850ad19)Codex
class-stringis required. (#2285,ad348fc)7568d72)Prelude
$allow_string, and tests dynamic classes. (#2284, #2286,6b73f42,a7a055c)Formatter
25140c4)🏗️ Internal
Performance
f112ef2,1c5e349)Maintenance
7ba104a)5ead238)3ac6783)d961fb7)cca4229)🙏 Thank You
Contributors
A huge thank you to everyone who contributed code to this release:
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.47.4...1.47.5
v1.47.4: Mago 1.47.4Compare Source
Mago 1.47.4
Mago 1.47.4 improves numeric-string analysis,
instanceofnarrowing, formatter stability, and array-inference performance.🐛 Bug Fixes
Analyzer
($value ?? null) instanceof T. (#2249,889e259)b17a46f)0b424e8)7b103aa)39b9577)Codex
89a45de)Linter
b302702)8ff624e)Formatter
3435bf3)elseandelseif. (#2150, #2237,03d9726)098540e)c581aa7)Prelude
array_sum: returnsint|floatfor numeric-string arrays. (#2258,4000b2f)🏗️ Internal
Analyzer
e67a00e)🙏 Thank You
Contributors
A huge thank you to everyone who contributed code to this release:
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.47.3...1.47.4
v1.47.3: Mago 1.47.3Compare Source
Mago 1.47.3
Mago 1.47.3 improves pipe expressions, numeric inference, match narrowing, readonly offsets, nullsafe chains, and loop control.
✨ Features
Analyzer
int. (#2232,506066a)Formatter
preserve-breaking-pipe-expressionto retain existing line breaks. (#2141,0cfc8ec)🐛 Bug Fixes
Analyzer
4e678b8)ArrayAccessobjects. (#2227,af3c576)0cfc8ec)9316487)instanceofconditions. (#2231,d6cdf19)breakandcontinuelevels acrossswitch. (#2233,c5eff01)🏗️ Internal
Performance
4c2581f)🙏 Thank You
Contributors
No external pull requests were merged for this release.
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.47.2...1.47.3
v1.47.2: Mago 1.47.2Compare Source
Mago 1.47.2
Mago 1.47.2 prevents invalid UTF-8 reporting crashes, preserves formatter semantics, and fixes several analyzer false positives.
🐛 Bug Fixes
Analyzer
staticfactories. (#2220,0766957)1705475)0936c30)Formatter
requireexpressions. (#2221,38f9e2a)Reporting
e91cc71)🏗️ Internal
Maintenance
1668678)782d2cc)🙏 Thank You
Contributors
No external pull requests were merged for this release.
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.47.1...1.47.2
v1.47.1: Mago 1.47.1Compare Source
Mago 1.47.1
This patch release has no user-facing changes. It fixes the release pipeline so every supported target and crate can be published successfully.
🏗️ Internal
Release Pipeline
7f9e4ff)mago-extensionto the crate publishing order. (68c0818)Full Changelog: carthage-software/mago@1.47.0...1.47.1
v1.47.0: Mago 1.47.0Compare Source
Mago 1.47.0
Extensions in any language, Sponsored by CHECK24
Thanks to CHECK24 (@check24-opensource) for sponsoring Mago's new Extension API and PHP SDK.
✨ Features
Extensions
See the extension documentation to get started.
Analyzer
--skip-ignores: disables configured analyzer ignores for a run. (#2191,f05c849)array_key_existscheck. (#2199,c58e48b,7cc1739)🐛 Bug Fixes
Analyzer
a53bc78)cea8d53)nullwhen inferring into amixedparameter. (#2175,97988bb)never. (#2179, #2206,8d34248,c8bd837)StructureTypefromtype_structure(). (#2186,ccde5ae)13090af)e5a949e,874ffac)7a7faa1)8a8958a)efe7526)353233b)b84241a)f1e029b)2c59ad3)7ca65e2)5029124)@vardocblocks onglobalstatements. (#2181, #2202,a7023c7)f77c965)Closure. (#2203,d54d88e)aabe675)24c9304,f1558d4)b59529d)2e4260f)Codex
@apimetadata: preserves@apion properties, methods, and constants. (#2214,37450cd)Linter
clone,exit, anddiefrom ambiguous function calls. (#2196,828cc42)PHPDoc Syntax
d46b35f)Prelude
ImagickPixel. (#2210,5e9b671)Extensions
111413a)WASM
9e8b752)📖 Documentation
Extensions
7d67272)bb98a97)Website
ffd725e)3597d38)🏗️ Internal
Maintenance
3a28052,3d301af,acd2d56)02b352e)e07980f,e595c13)4b68329)82b7522,2053081,332368a)8cec88c)🙏 Thank You
Special thanks to CHECK24 for fully funding the Extension API's full-time development.
Contributors
A huge thank you to everyone who contributed code to this release:
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Full Changelog: carthage-software/mago@1.46.0...1.47.0
v1.46.0: Mago 1.46.0Compare Source
Mago 1.46.0
This release fixes a workflow-command injection in the GitHub reporting format (GHSA-f256-xqf4-x8pr), adds a
redundant-staticlinter rule and a--statsshorthand, corrects a batch of generic-narrowing and late-static-binding false positives across the analyzer and codex, and speeds up the PHP parser.🔒 Security
Reporting
cc8d5e4)Reported by Liyi Zhou, Ziyue, Strick, Maurice, and Chenchen of the University of Sydney.
✨ Features
Linter
redundant-static: reportsstaticin a final class whereselfis equivalent. (#2154,ef06262)CLI
--stats: adds a shorthand for count output. (#2130,db4a2cb)Prelude
json_validate: assertsnon-empty-stringwhen the call succeeds. (#2155,198f2b4)🐛 Bug Fixes
Analyzer
2af1cbc,784b93b)ebf2f8d)caselabels. (#2162,4119141)b6e97ee)c2c7bb4)fe272b8)voidconditionals: stops demanding a return from conditionals invoidfunctions. (#2160,bd85d70)selfin attributes: resolvesselfin attributes applied to class-likes. (#2168,7f88255)b0b0b91)42cfd1f)Codex
instanceofnarrowing of generics parameterised by a bounded template. (#2135,a45ffec,8b2edf6)aff9ce8)327ca0a)voidwithnever: keepsvoidwhen combined withnever. (#2159,864d0f7)fcd42ec)Linter
7c54906)missing-docs: renames the exclusion config field. (#2134,a5eab2d)Syntax
06871ea)3610502)Prelude
Attribute: adds the missingTARGET_CONSTANTconstant. (9bef302)Composer
209f980)📖 Documentation
Reporting
--sort: clarifies that the flag is a no-op for some formats. (#2173, #2174,654b3f4)🏗️ Internal
Performance
1ec8868)Analyzer
b4aa9ad)4d9c611)🙏 Thank You
Contributors
A huge thank you to everyone who contributed code to this release:
Issue Reporters
Thank you to everyone who reported issues that shaped this release:
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.