Skip to content

build(deps): bump the npm-deps group in /web with 4 updates#530

Merged
d-oit merged 3 commits into
mainfrom
dependabot/npm_and_yarn/web/npm-deps-bd2465cde1
Jul 20, 2026
Merged

build(deps): bump the npm-deps group in /web with 4 updates#530
d-oit merged 3 commits into
mainfrom
dependabot/npm_and_yarn/web/npm-deps-bd2465cde1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 20, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm-deps group in /web with 4 updates:

Package From To
@tailwindcss/postcss 4.3.2 4.3.3
@typescript-eslint/eslint-plugin 8.63.0 8.64.0
@typescript-eslint/parser 8.63.0 8.64.0
tailwindcss 4.3.2 4.3.3

Key changes:

  • tailwindcss 4.3.3: Fixes Preflight iframe focus-visible outline, selector parsing, spacing optimization
  • typescript-eslint 8.64.0: Minor updates

Full changelogs available in the linked repositories.

Bumps the npm-deps group in /web with 4 updates: [@tailwindcss/postcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/@tailwindcss-postcss), [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin), [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) and [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss).


Updates `@tailwindcss/postcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/@tailwindcss-postcss)

Updates `@typescript-eslint/eslint-plugin` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/eslint-plugin)

Updates `@typescript-eslint/parser` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/parser)

Updates `tailwindcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/tailwindcss)

---
updated-dependencies:
- dependency-name: "@tailwindcss/postcss"
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/eslint-plugin"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/parser"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: tailwindcss
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file frontend labels Jul 20, 2026
@vercel

vercel Bot commented Jul 20, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
do-web-doc-resolover Ready Ready Preview, Comment Jul 20, 2026 12:24pm

@codacy-production

Copy link
Copy Markdown
Contributor

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

🟢 Metrics 0 complexity

Metric Results
Complexity 0

View in Codacy

NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.

@d-oit d-oit changed the title build(deps)(deps-dev): bump the npm-deps group in /web with 4 updates build(deps): bump the npm-deps group in /web with 4 updates Jul 20, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jul 20, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@d-oit d-oit reopened this Jul 20, 2026
@d-oit
d-oit enabled auto-merge (squash) July 20, 2026 12:23
@d-oit
d-oit merged commit 8df1ca1 into main Jul 20, 2026
50 checks passed
@d-oit
d-oit deleted the dependabot/npm_and_yarn/web/npm-deps-bd2465cde1 branch July 20, 2026 12:35
d-oit added a commit that referenced this pull request Jul 25, 2026
…#530)

Bumps the npm-deps group in /web with 4 updates: [@tailwindcss/postcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/@tailwindcss-postcss), [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin), [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) and [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss).

Updates `@tailwindcss/postcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/@tailwindcss-postcss)

Updates `@typescript-eslint/eslint-plugin` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/eslint-plugin)

Updates `@typescript-eslint/parser` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/parser)

Updates `tailwindcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/tailwindcss)

---
updated-dependencies:
- dependency-name: "@tailwindcss/postcss"
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/eslint-plugin"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/parser"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: tailwindcss
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Dominik Oswald <6849456+d-oit@users.noreply.github.com>
d-oit added a commit that referenced this pull request Jul 25, 2026
* perf(cli): optimize compaction boilerplate detection (#526)

* perf(cli): optimize compaction boilerplate detection

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* perf(cli): optimize compaction boilerplate detection & fix cargo-audit locked dependency scan

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* perf(cli): optimize compaction boilerplate detection & fix cargo-audit locked dependency scan

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* perf(cli): optimize compaction boilerplate detection & address PR feedback

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* perf(cli): optimize compaction boilerplate detection & address PR feedback

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

---------

Co-authored-by: google-labs-jules[bot] <161369871+google-labs-jules[bot]@users.noreply.github.com>

* docs(resolver): align prompt templates and output example with latest 2026 LLM-Readable-Doc standards (#527)

Refactor synthesis prompt templates in Python and Rust to follow
the 2026 LLM-Readable-Doc standards. Add --locked to cargo
audit in security scan workflow to ensure dependency stability.
Update sample output file with latest timestamp.

Co-authored-by: do-it <do-it@ik.me>

* feat(ux): Keyboard Shortcuts Accessibility and Discoverability Improvements (#525)

* feat(ux): improve keyboard shortcuts modal accessibility and discoverability

- Convert the KeyboardShortcutsModal into a fully compliant WAI-ARIA dialog.
- Implement automated initial focus onto the close button when opened.
- Implement robust keyboard focus trap and wrap inside the modal.
- Implement focus restoration to the previously active element upon closing.
- Add a "Shortcuts" trigger button to the main header next to "Help" for better discoverability.
- Add robust E2E Playwright integration tests specifically verifying focus trap/wrap behavior.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): improve keyboard shortcuts modal accessibility and discoverability

- Convert the KeyboardShortcutsModal into a fully compliant WAI-ARIA dialog.
- Implement automated initial focus onto the close button when opened.
- Implement robust keyboard focus trap and wrap inside the modal.
- Implement focus restoration to the previously active element upon closing.
- Add a "Shortcuts" trigger button to the main header next to "Help" for better discoverability.
- Add robust E2E Playwright integration tests specifically verifying focus trap/wrap behavior.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): improve keyboard shortcuts modal accessibility and discoverability

- Convert the KeyboardShortcutsModal into a fully compliant WAI-ARIA dialog.
- Implement automated initial focus onto the close button when opened.
- Implement robust keyboard focus trap and wrap inside the modal.
- Implement focus restoration to the previously active element upon closing.
- Add a "Shortcuts" trigger button to the main header next to "Help" for better discoverability.
- Add robust E2E Playwright integration tests specifically verifying focus trap/wrap behavior.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* fix(web): address Codacy ESLint issues in keyboard shortcuts

Remove redundant conditions in focus trap, wrap void
expression in braces, and revert jsx to preserve.

* feat(ux): improve keyboard shortcuts modal accessibility and discoverability

- Convert the KeyboardShortcutsModal into a fully compliant WAI-ARIA dialog.
- Implement automated initial focus onto the close button when opened.
- Implement robust keyboard focus trap and wrap inside the modal.
- Implement focus restoration to the previously active element upon closing.
- Add a "Shortcuts" trigger button to the main header next to "Help" for better discoverability.
- Add robust E2E Playwright integration tests specifically verifying focus trap/wrap behavior.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* fix(web): address Codacy ESLint issues in keyboard shortcuts

Remove unnecessary guard clause in focus trap, use non-null
assertions for guaranteed elements, wrap void expression in
braces, and revert jsx to preserve.

* fix(web): use optional chaining instead of non-null assertions

* fix(web): suppress Codacy false positives with lint directives

Add eslint-disable for xss/no-mixed-html and unbound-method
false positives. Add biome-ignore for Qwik-specific rule.
Use direct property access after TypeScript narrowing.

* fix(web): restore non-null assertions and remove invalid lint comments

TypeScript noUncheckedIndexedAccess requires non-null assertions
after length guard. Remove eslint-disable comments for rules
not present in local config (Codacy uses its own engine).

* fix(web): resolve all Codacy issues without suppressions

Use instanceof check for activeElement to avoid xss flag.
Use early return guard for element access to avoid non-null
assertions. Restructure MainHeader to avoid unbound-method.

* fix(web): use non-null assertions and props access pattern

Use non-null assertions after length guard (safe, TypeScript
narrowing limitation). Use props.xxx to avoid unbound-method.

* fix(web): use type assertion instead of non-null assertion

* feat(ux): resolve typescript typecheck and linting errors

- Implement robust truthiness guards for firstElement and lastElement.
- Remove invalid eslint override comment for xss rule.
- Ensure all Next.js web application build and typecheck steps pass cleanly.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* fix(web): resolve all Codacy code issues

- Wrap void expression in braces (no-confusing-void-expression)
- Use instanceof check instead of cast (xss_no-mixed-html)
- Remove redundant truthiness guard (no-unnecessary-condition)
- Use props.xxx to avoid unbound-method on destructured props

* fix(web): use type assertions instead of non-null assertions

Avoids no-non-null-assertion Codacy issue while maintaining
TypeScript safety.

* fix(web): use optional chaining to avoid type assertion issues

Avoids both non-null-assertion and xss_no-mixed-html Codacy
issues by using optional chaining on focus calls.

* fix(web): fix Codacy issues with official docs guidance

- Use Array.at() for possibly-undefined access per typescript-eslint docs
- Use function declaration instead of arrow function to avoid Biome Qwik rule
- Both approaches follow official documentation recommendations

---------

Co-authored-by: google-labs-jules[bot] <161369871+google-labs-jules[bot]@users.noreply.github.com>
Co-authored-by: do-it <do-it@ik.me>

* feat(resolver): deprioritize serper and robustify exception handling (#528)

* feat(resolver): deprioritize serper and robustify exception handling

- Documented Serper instability in agents-docs/ISSUES.md as per Sunday checks.
- Handled (httpx.RequestError, OSError, TimeoutError) in Jina and Serper providers.
- Improved test isolation in conftest.py and resolved target mocking in test_resolve.py.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(resolver): deprioritize serper and robustify exception handling

- Documented Serper instability in agents-docs/ISSUES.md as per Sunday checks.
- Deprioritized Serper in query routing with a dedicated Alert comment in scripts/routing.py.
- Handled (httpx.RequestError, OSError, TimeoutError) in Jina and Serper providers.
- Improved test isolation in conftest.py and resolved target mocking in test_resolve.py.
- Fixed a formatting/list spacing issue in AGENTS.md to satisfy markdownlint.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

---------

Co-authored-by: google-labs-jules[bot] <161369871+google-labs-jules[bot]@users.noreply.github.com>

* docs(agents): document July 2026 Semantic Health report (#529)

* docs(agents): document July 2026 Semantic Health report

This update documents the exceptionally healthy state of the wdr CLI
and Python-Rust bridge against standard documentation-heavy workloads.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* docs(agents): document July 2026 Semantic Health report and fix md linting

This update documents the exceptionally healthy state of the wdr CLI
and Python-Rust bridge against standard documentation-heavy workloads.
It also fixes pre-existing and new Markdown linting violations.

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

---------

Co-authored-by: google-labs-jules[bot] <161369871+google-labs-jules[bot]@users.noreply.github.com>

* build(deps)(deps-dev): bump the npm-deps group in /web with 4 updates (#530)

Bumps the npm-deps group in /web with 4 updates: [@tailwindcss/postcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/@tailwindcss-postcss), [@typescript-eslint/eslint-plugin](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/eslint-plugin), [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) and [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss).

Updates `@tailwindcss/postcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/@tailwindcss-postcss)

Updates `@typescript-eslint/eslint-plugin` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/eslint-plugin/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/eslint-plugin)

Updates `@typescript-eslint/parser` from 8.63.0 to 8.64.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.64.0/packages/parser)

Updates `tailwindcss` from 4.3.2 to 4.3.3
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.3.3/packages/tailwindcss)

---
updated-dependencies:
- dependency-name: "@tailwindcss/postcss"
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/eslint-plugin"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: "@typescript-eslint/parser"
  dependency-version: 8.64.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: npm-deps
- dependency-name: tailwindcss
  dependency-version: 4.3.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: npm-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Dominik Oswald <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* feat(ux): add close button to mobile sidebar

Co-authored-by: d-oit <6849456+d-oit@users.noreply.github.com>

* fix(deps): update lockfile for security overrides

* fix(security): remove stale lock files causing Trivy failures

- Remove web/pnpm-lock.yaml (stale pnpm lock file)
- Add .cache/ and cli/target/package/ to .gitignore
- These files contained outdated dependencies with CVEs

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: google-labs-jules[bot] <161369871+google-labs-jules[bot]@users.noreply.github.com>
Co-authored-by: do-it <do-it@ik.me>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file frontend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant