Skip to content

chore(deps): update all dependencies - #38

Merged
gw0 merged 1 commit into
mainfrom
renovate/all-deps
Aug 17, 2026
Merged

chore(deps): update all dependencies#38
gw0 merged 1 commit into
mainfrom
renovate/all-deps

Conversation

@gw0-bot

@gw0-bot gw0-bot commented Aug 17, 2026

Copy link
Copy Markdown
Collaborator

This PR contains the following updates:

Package Change Age Confidence Type Update
@owloops/claude-powerline 1.28.01.30.1 age confidence minor
Jeffallan/claude-skills 0.4.150.4.16 age confidence patch
docker/login-action (changelog) af1e73fdbcb813 action digest
github/codeql-action (changelog) e4fba86ff2f1c6 action digest
markdownlint-cli2 0.23.10.23.2 age confidence patch
renovatebot/github-action v46.1.20v46.2.2 age confidence action minor
rtk-ai/rtk 0.43.00.45.0 age confidence minor

Release Notes

Owloops/claude-powerline (@​owloops/claude-powerline)

v1.30.1

Compare Source

Bug Fixes

v1.30.0

Compare Source

Features
  • segments: add outputStyle segment showing the active output style (87f6461)

v1.29.0

Compare Source

Bug Fixes
  • cache: include agent transcripts in the invalidation mtime check (2029576), closes #​98
Features
  • git: add showWorktree to surface the indicator without showRepoName (8cf7981), closes #​94
Jeffallan/claude-skills (Jeffallan/claude-skills)

v0.4.16

Compare Source

Added
  • New skill: django-storages-s3 — production AWS S3 file storage for Django with django-storages and boto3. Covers the Django 4.2+ STORAGES dict, public/private custom backends, presigned GET/POST URLs, CloudFront integration, a least-privilege IAM policy, and S3 mocking (InMemoryStorage/moto). Cross-referenced with django-expert (#​218)
  • ReferencePathChecker in scripts/validate-skills.py: validates that file paths cited in skill markdown (backtick paths and markdown links) resolve relative to the containing file or the skill root. Broken paths previously failed silently when an agent tried to load deferred reference content; this class of bug has now recurred across several releases and is guarded automatically in CI and make validate
  • devops-engineer: new references/gitlab-ci.md covering GitLab CI/CD best practices (pipeline dedup via workflow:rules, needs: DAG, cache vs artifacts, CI/CD components, environments, OIDC secrets, runner isolation, MR-widget reporting) plus a routing-table row; the GitLab counterpart to the existing GitHub Actions reference (#​219)
Changed
  • devops-engineer/references/gitlab-ci.md: post-merge patch replacing the kaniko build example with BuildKit rootless (moby/buildkit:rootless + buildctl-daemonless.sh with registry cache) and noting kaniko's archived status in the core principles; kaniko is unmaintained and should not be the recommended build path
Fixed
  • vue-expert-js/SKILL.md: three shared-Vue reference paths pointed at vue-expert/references/*.md, which does not resolve from the skill directory; corrected to ../vue-expert/references/*.md (#​225)
  • react-expert/references/migration-class-to-modern.md: self-referencing path react-expert/references/server-components.md corrected to references/server-components.md (#​225)
  • fastapi-expert/references/migration-from-django.md: cross-reference to legacy-modernizer used an absolute-style path (/skills/legacy-modernizer/...) that resolves nowhere; corrected to ../legacy-modernizer/references/migration-strategies.md. Found by the new ReferencePathChecker audit
  • nestjs-expert/references/migration-from-express.md: cross-reference to legacy-modernizer's strangler-fig reference was a hardcoded contributor-machine absolute path (/Users/.../claude-skills/skills/...); corrected to ../legacy-modernizer/references/strangler-fig-pattern.md. Caught by ReferencePathChecker on CI's clean runner; the checker now rejects absolute paths unconditionally so a stale local clone can never mask one
  • site/package-lock.json: applied npm audit fix to clear docs-site dependency vulnerabilities (14 findings down to 9; the remainder stem from advisories published after the fix was cut). Verified via clean npm ci, npm audit, and a successful 98-page site build before merge (#​220)
  • site/package-lock.json: follow-up fresh npm audit fix clearing post-July advisories (9 findings down to 5). The remaining 5 require a semver-major Astro 7 upgrade (cascading @​astrojs/starlight and @​astrojs/mdx majors) and are dev-server/SSR-context advisories with low exposure for a statically built site; tracked as separate upgrade work
  • rag-architect/SKILL.md: reranking example instantiated the Cohere client with a hard-coded "YOUR_API_KEY" placeholder; now reads COHERE_API_KEY from the environment with a note on secrets handling, closing #​210 (#​216)
  • terraform-engineer/SKILL.md: core workflow allowed proceeding from terraform plan straight to terraform apply; now requires presenting a plan summary (highlighting destructive actions) and receiving explicit user approval before apply, refusing when approval is withheld, closing #​211 (#​213)
  • devops-engineer/SKILL.md: the "never deploy to production without explicit approval" constraint was not operationalized in the core workflow; the deploy step now determines the target environment and, for production or customer-facing targets, presents the deployment summary and rollback plan and requires explicit user approval before running deployment commands, closing #​196 and #​212
Contributors

Documentation: https://jeffallan.github.io/claude-skills/

DavidAnson/markdownlint-cli2 (markdownlint-cli2)

v0.23.2

Compare Source

  • Update dependencies
renovatebot/github-action (renovatebot/github-action)

v46.2.2

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.1 (7cb7826)
Miscellaneous Chores
  • deps: update dependency globals to v17.9.0 (fe8cd8f)
  • deps: update dependency lint-staged to v17.3.0 (0170d05)
  • deps: update dependency npm-run-all2 to v9.0.3 (28cc32f)
  • deps: update node.js to v24.19.0 (7871c30)
  • deps: update pnpm/action-setup action to v6.0.10 (d50b9ec)
Build System
  • deps: lock file maintenance (aff7566)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.10.0 (06d3a61)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.0 (01f82e1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.1 (cbdd6e6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.3 (b198ad1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.4 (08eadc2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.6 (90ab0cf)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.8 (7450504)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.12.0 (7e359f7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.1 (8a0db28)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.2 (aaca99e)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.3 (a0789b3)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.1 (3c34056)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.10 (e7b39a3)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.12 (043e499)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.3 (#​1069) (c2d39c0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.5 (ed777cd)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.7 (670a1df)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.8 (b057f09)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.16.1 (7b73ff6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.0 (28c55b1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.1 (216aee1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.7.4 (9d9a18a)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.8.0 (a339330)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.8.1 (f82ef19)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.9.2 (2a6f771)

v46.2.1

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.0 (b48aa6c)
Miscellaneous Chores
  • deps: update dependency globals to v17.8.0 (3e46bd7)
  • deps: update dependency lint-staged to v17.2.0 (9c685f2)
  • deps: update node.js to v24.18.1 (f525256)
Build System
  • deps: lock file maintenance (3d8211a)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.0.1 (d471d52)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.2.1 (5cb64df)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.2.2 (a6b5808)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.2.3 (ab4d1eb)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.3.0 (a427843)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.3.3 (2ac8329)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.4.0 (7665449)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.4.2 (0166c9f)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.4.3 (8662b55)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.4.5 (1e71262)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.4.6 (7bec40c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.5.0 (d146e8b)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.5.1 (ddd5dca)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.5.2 (0731dab)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.5.3 (700f3b5)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.6.0 (7edb80e)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.7.0 (127e8ef)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.7.1 (f7532d1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.7.2 (0fcd35b)
  • deps: update ghcr.io/zizmorcore/zizmor docker tag to v1.29.0 (#​1068) (581f6ac)
  • deps: update zizmorcore/zizmor-action action to v0.6.2 (e36e81c)

v46.2.0

Compare Source

Features
  • deps: Update ghcr.io/renovatebot/renovate Docker tag to v44 (#​1067) (efa6654)
Documentation
  • update references to renovatebot/github-action to v46.1.21 (66c62f6)
Miscellaneous Chores
  • deps: update dependency lint-staged to v17.1.1 (403000c)
  • deps: update dependency prettier to v3.9.6 (6787cf2)
  • deps: update dependency typescript-eslint to v8.65.0 (656e12f)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.283.0 (560e916)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.284.0 (92c373e)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.284.1 (b0f9fee)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.285.0 (bfb9d5d)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.285.3 (91ba9dc)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.285.4 (e41061b)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.285.6 (e8a7a1c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.285.7 (7a22a55)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.286.0 (7590e1e)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.286.1 (cae6616)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.287.0 (#​1066) (4f87158)

v46.1.21

Compare Source

Documentation
  • mention that GITHUB_TOKEN can be used (#​1064) (13e8ee8)
  • update references to actions/checkout to v6.1.0 (fab6a17)
  • update references to renovatebot/github-action to v46.1.20 (9296462)
Miscellaneous Chores
  • deps: update dependency lint-staged to v17.1.0 (f528fd4)
  • deps: update dependency semantic-release to v25.0.7 (8771fb6)
  • deps: update dependency semantic-release to v25.0.8 (9efb0fc)
  • deps: update dependency typescript-eslint to v8.64.0 (4eed979)
Build System
  • deps: lock file maintenance (6e7b049)
Continuous Integration
  • deps: update actions/checkout action to v6.1.0 (c4fc050)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.1 (9355a07)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.3 (91aae03)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.4 (be1b582)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.5 (1885f40)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.6 (99c53af)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.272.9 (3946100)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.273.0 (143ca70)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.274.0 (b25398a)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.275.0 (d84cbc1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.275.1 (42a4757)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.275.2 (f53dbc7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.277.0 (091f8fd)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.277.1 (c5ab157)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.278.2 (0ffec41)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.278.3 (9586883)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.278.4 (a571ddf)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.278.5 (b018556)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.279.0 (f5099e2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.279.1 (0a6a7a9)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.280.0 (c97e3db)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.280.2 (b8f0962)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.280.3 (1194ce5)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.280.4 (2fbf14d)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.280.5 (9f45e34)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.281.0 (e1ffcae)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v43.281.1 (8ebe465)
  • deps: update ghcr.io/zizmorcore/zizmor docker tag to v1.28.0 (#​1065) (05b68f0)
  • deps: update zizmorcore/zizmor-action action to v0.6.1 (344a7d4)
rtk-ai/rtk (rtk-ai/rtk)

v0.45.0

Compare Source

Features
  • hooks: add transparent hook support for Mistral Vibe CLI (d480f1e)
  • rewrite: rewrite multiline blocks (3044911)
Bug Fixes
  • hooks: heal only rtk's own legacy camelCase entry, keep user config (db31da9)
  • hooks: self-heal stale dual-schema Copilot hook config (d1f7139)
  • hooks: stop Copilot from silently deciding permission on unconfigured commands (8722378)

v0.44.2

Compare Source

Bug Fixes
  • security: store history db, tee logs and audit log owner-only (57b7900)
  • security: tighten data dirs that already exist (18925c2)
  • tee: quote recovery hint paths with spaces (8a24ce2)

v0.44.1

Compare Source

Bug Fixes
  • cicd: git app token for next release (cdfb14c)
  • hook: detect Copilot CLI shell tool on Windows (10ca886), closes #​3178
  • search: display nb line only if requested (a8b9eb3)

v0.44.0

Compare Source

Features
  • add git checkout support (be1844c)
  • add uv run support (a5f0774)
  • cargo: route --message-format=json builds through explicit arg detection (5ea03f3)
  • hook: add Cargo.lock (531bc93)
  • hook: add support for Kimi AI agent (7624c43)
  • hooks: add Factory Droid integration (8a8b356)
  • hook: wire TOML filters + better tee tail hint (31f9d43)
  • hook: wire TOML filters into the rewrite path + reversible truncation (73b8cb3)
  • php: consolidated PHP tooling (php, artisan, phpunit, phpstan, pest, paratest, ecs, pint) (1052c1c)
  • pipe: expose PHP tool filters as stdin pipe filters (214a79a)
  • sbt: add SBT (Scala Build Tool) support (4f86523)
  • trust: gate custom filters (project + user-global) + init opt-in flags (1130a7c)
  • trust: rtk trust uses the same opt-in prompt as init (e0a83ac)
Bug Fixes
  • analytics: floor prefix slices to char boundary instead of full-string fallback (c9468ee)
  • analytics: truncate display strings on UTF-8 char boundaries (47b22e0), closes #​2787
  • benchmark: use deterministic curl and wget responses (6c57836)
  • benchmark: use stable indexed MockHTTP responses (8dd5a34)
  • cargo: give the json batch filter the exit code (a3e65e9)
  • cargo: honor last --message-format when the flag is repeated (25d6a09)
  • cargo: keep "No issues found" wording for clean clippy json runs (1f74614)
  • cargo: label check output as "check" instead of "build" (90b4f5f)
  • cargo: match the human path when skipping the json warning summary (59ed885)
  • cargo: restore failure check before trusting reused build filter (e4bfe35)
  • cargo: skip "N warnings generated" record in json diagnostics (9ae0872)
  • cargo: strip ansi from json rendered diagnostics (b47653a)
  • cargo: surface --message-format=json test compile errors (f9b720c)
  • cargo: tee-hint dropped json diagnostics beyond the cap (cf1caf9)
  • cargo: tighten json warning-summary skip to ends_with (6c9a60d)
  • ccusage: accept period key from current ccusage (d823aaf)
  • cicd: next release pr target fork compatibel (6e34bba)
  • copilot: add missing 'get' to kubectl example in init template (f9d8c77)
  • copilot: remove unnecessary test (b49568f)
  • copilot: support IDE terminal hooks (1d6798d)
  • detect absolute rtk path in Claude hook settings (5d32d07)
  • filter: address review findings in the TOML filter path (315a943)
  • gain: note untrusted custom filters so they can be re-trusted (a4872d9)
  • git: compact git stash show instead of forcing -p (1b38eec)
  • grep: only insert -- separator when context flags are active (34a0f0e)
  • grep: preserve -- separator between non-adjacent match blocks (6871e55)
  • hook: handle AskRewrite in Cursor hook when no rules configured (ff0b9ac), closes #​2372
  • hook: include ask rules in cursor_has_explicit_rules check (3362325)
  • hook: kimi init writes AGENTS.md instead of dead .kimirules (8fe4a40)
  • hooks: distinguish explicit ask from default in AskRewrite (0df6929)
  • hooks: don't force-allow Droid rewrites (9dd8211)
  • hooks: emit permissionDecision allow for simple Copilot CLI rewrites (23d1e89)
  • hooks: source Droid verdicts from Droid's own permission lists (70ed82a)
  • hook: use ask action in audit log for AskRewrite verdict (36dd8f2)
  • hook: use ask permission for AskRewrite in Cursor hook (a0c16ef)
  • init: honor RTK_TELEMETRY_DISABLED in consent prompt (#​1307) (debac0f)
  • openclaw: handle exit code 3 from rtk rewrite (487a2e7), closes #​2202
  • parser: use byte offsets instead of char indices in extract_json_object (32dda24)
  • parser: use byte offsets instead of char indices in extract_json_object (27f9739), closes #​2509
  • permissions: stop extra whitespace from evading deny rules (3483786)
  • permissions: stop extra whitespace from evading deny rules (f6b9290)
  • php: address phpstan review feedback (resolution, text fallback, path compaction) (07c231e)
  • php: anchor phpunit failure-heading detection to the "N) " format (128d04f)
  • php: classify php subcommands in the PASSTHROUGH list (4a37246)
  • php: default pint applied_fixers when key is absent (0cc15dc)
  • php: detect phpstan analyse after global flags; avoid duplicate format (7cc46b4)
  • php: drop bogus pest.php check in test-runner detection (28366ce)
  • php: rewrite ./vendor/bin/<tool> form for phpunit/pest/paratest/ecs/pint (88e56ce)
  • php: route php_tool_command through resolved_command (8eae6b7)
  • php: strip ANSI in phpunit filter and split errors from failures (8825480)
  • pipe: anchor phpunit auto-detection to the leading banner (50a8743)
  • pytest: strip ANSI so colored runs don't dump raw output (aba7643)
  • python: stop reporting a failed tool run as clean (86b34df)
  • remove absolute Claude hook commands (b0c0b20)
  • rewrite only safe final pipeline commands (590445e)
  • rewrite: keep pipeline-final wc commands raw (1c5a23c)
  • ruff: honour a user-supplied --output-format (44982e0)
  • run: propagate signal exit code instead of unwrap_or(1) (113ae11)
  • sbt: address review feedback on output guard, routing, and dead code (ef38103)
  • sbt: compute tee label before args_display move (3dff2aa)
  • sbt: drop sbt 0.13 legacy task names (f6a4c41)
  • sbt: filter testOnly/testQuick like sbt test (194f392)
  • sbt: separate tee label for selective test tasks (973b3b6)
  • search: stream piped grep and rg output (66b95cb)
  • test: adapt new rewrite_command signature in php-tooling tests (c37eed9)
  • tokenize |& as a single pipe operator (ee149ee)
  • trust: label detected filters as project- or global-scoped (a9c33e2)
  • trust: skip untrusted filters silently on the command path (9d3b678)
  • trust: surface parse errors, skip already-trusted files, fail loudly when non-interactive (2d487cb)
  • uv: make tee recovery hints resolve to the data they promise (bf14bf5)
  • uv: pass guard_raw arg to print_with_hint after signature change (7e42d92)
  • uv: preserve program stdout and restore inner-command filtering (8dd4aac)
  • uv: remove uv run from transparent prefixes to fix rewrite conflicts (96f9422)
Performance Improvements
  • hook: match TOML filters with a match-only RegexSet (34c0bcf)
  • php: cache composer_bin_dirs to avoid per-segment file reads (5d2928c)
  • php: resolve cwd once in pint output instead of per file (b5c3f7f)
Reverts
  • cargo: drop --message-format=json install routing (751bf3e)

Configuration

📅 Schedule: (in timezone UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@gw0
gw0 merged commit 6cf5ba3 into main Aug 17, 2026
2 checks passed
@gw0
gw0 deleted the renovate/all-deps branch August 17, 2026 17:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants