Skip to content
This repository was archived by the owner on May 18, 2026. It is now read-only.

chore(deps): bump the npm_and_yarn group across 6 directories with 9 updates#12

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/packages/client-auto/npm_and_yarn-68745bde10
Closed

chore(deps): bump the npm_and_yarn group across 6 directories with 9 updates#12
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/packages/client-auto/npm_and_yarn-68745bde10

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Mar 3, 2026

Copy link
Copy Markdown

Bumps the npm_and_yarn group with 1 update in the /packages/client-auto directory: multer.
Bumps the npm_and_yarn group with 1 update in the /packages/client-direct directory: multer.
Bumps the npm_and_yarn group with 2 updates in the /packages/core directory: pm2 and rollup.
Bumps the npm_and_yarn group with 4 updates in the /packages/plugin-node directory: multer, pm2, systeminformation and tar.
Bumps the npm_and_yarn group with 1 update in the /packages/plugin-whatsapp directory: axios.
Bumps the npm_and_yarn group with 2 updates in the /scripts/jsdoc-automation directory: ajv and diff.

Updates multer from 1.4.5-lts.1 to 2.1.0

Release notes

Sourced from multer's releases.

v2.1.0

Important

What's Changed

New Contributors

Full Changelog: expressjs/multer@v2.0.2...v2.1.0

v2.0.2

Important

Full Changelog: expressjs/multer@v2.0.1...v2.0.2

v2.0.1

Important

What's Changed

... (truncated)

Changelog

Sourced from multer's changelog.

2.1.0

2.0.2

2.0.1

2.0.0

1.4.5-lts.2

  • Fix out-of-band error event from busboy (#1177)
Commits
Maintainer changes

This version was pushed to npm by ulisesgascon, a new releaser for multer since your current version.


Updates multer from 1.4.5-lts.1 to 2.1.0

Release notes

Sourced from multer's releases.

v2.1.0

Important

What's Changed

New Contributors

Full Changelog: expressjs/multer@v2.0.2...v2.1.0

v2.0.2

Important

Full Changelog: expressjs/multer@v2.0.1...v2.0.2

v2.0.1

Important

What's Changed

... (truncated)

Changelog

Sourced from multer's changelog.

2.1.0

2.0.2

2.0.1

2.0.0

1.4.5-lts.2

  • Fix out-of-band error event from busboy (#1177)
Commits
Maintainer changes

This version was pushed to npm by ulisesgascon, a new releaser for multer since your current version.


Updates pm2 from 5.4.3 to 6.0.14

Release notes

Sourced from pm2's releases.

v6.0.14

6.0.14

v6.0.13

  • fix blessed dep

v6.0.12

  • #6037 Drop npm-shrinkwrap in favor of fixed dependencies versions
  • #5577 fix pm2 monit crash

v6.0.11

  • #6034 replace package-lock.json by npm-shrinkwrap.json
  • #5915 fix allowing to update namespaced pm2 NPM module (@​org/module-name)

v6.0.10

v6.0.9

6.0.9

  • updates all typescript definitions
  • upgrade github ci workflows
  • upgrade mocha dep and adapt tests
  • bump packages
  • fix:Potential ReDoS Vulnerability or Inefficient Regular Expression in Project: Need for Assessment and Mitigation #5971

v6.0.8

  • fix: package-lock update

v6.0.7

v6.0.6

v6.0.5

6.0.5

Changelog

Sourced from pm2's changelog.

6.0.14

6.0.13

  • Fix blessed package import

6.0.12

  • #6037 Drop npm-shrinkwrap in favor of fixed dependencies versions
  • #5577 fix pm2 monit crash

6.0.11

  • #6034 replace package-lock.json by npm-shrinkwrap.json
  • #5915 fix allowing to update namespaced pm2 NPM module (@​org/module-name)

6.0.10

6.0.9

  • updates all typescript definitions
  • upgrade github ci workflows
  • upgrade mocha dep and adapt tests
  • bump packages
  • fix:Potential ReDoS Vulnerability or Inefficient Regular Expression in Project: Need for Assessment and Mitigation #5971

6.0.8

  • fix: package-lock update

6.0.7

6.0.6

  • refactor: replace chalk with smaller alternative by @​webdiscus

6.0.5

... (truncated)

Commits

Updates rollup from 2.79.2 to 2.80.0

Changelog

Sourced from rollup's changelog.

2.80.0

2026-02-22

Features

  • Throw when the generated bundle contains paths that would leave the output directory (#6277)

Pull Requests

Commits
Install script changes

This version adds prepare script that runs during installation. Review the package contents before updating.


Updates multer from 1.4.5-lts.1 to 2.1.0

Release notes

Sourced from multer's releases.

v2.1.0

Important

What's Changed

New Contributors

Full Changelog: expressjs/multer@v2.0.2...v2.1.0

v2.0.2

Important

Full Changelog: expressjs/multer@v2.0.1...v2.0.2

v2.0.1

Important

What's Changed

... (truncated)

Changelog

Sourced from multer's changelog.

2.1.0

2.0.2

2.0.1

2.0.0

1.4.5-lts.2

  • Fix out-of-band error event from busboy (#1177)
Commits
Maintainer changes

This version was pushed to npm by ulisesgascon, a new releaser for multer since your current version.


Updates pm2 from 5.4.3 to 6.0.14

Release notes

Sourced from pm2's releases.

v6.0.14

6.0.14

v6.0.13

  • fix blessed dep

v6.0.12

  • #6037 Drop npm-shrinkwrap in favor of fixed dependencies versions
  • #5577 fix pm2 monit crash

v6.0.11

  • #6034 replace package-lock.json by npm-shrinkwrap.json
  • #5915 fix allowing to update namespaced pm2 NPM module (@​org/module-name)

v6.0.10

v6.0.9

6.0.9

  • updates all typescript definitions
  • upgrade github ci workflows
  • upgrade mocha dep and adapt tests
  • bump packages
  • fix:Potential ReDoS Vulnerability or Inefficient Regular Expression in Project: Need for Assessment and Mitigation #5971

v6.0.8

  • fix: package-lock update

v6.0.7

v6.0.6

v6.0.5

6.0.5

Changelog

Sourced from pm2's changelog.

6.0.14

6.0.13

  • Fix blessed package import

6.0.12

  • #6037 Drop npm-shrinkwrap in favor of fixed dependencies versions
  • #5577 fix pm2 monit crash

6.0.11

  • #6034 replace package-lock.json by npm-shrinkwrap.json
  • #5915 fix allowing to update namespaced pm2 NPM module (@​org/module-name)

6.0.10

6.0.9

  • updates all typescript definitions
  • upgrade github ci workflows
  • upgrade mocha dep and adapt tests
  • bump packages
  • fix:Potential ReDoS Vulnerability or Inefficient Regular Expression in Project: Need for Assessment and Mitigation #5971

6.0.8

  • fix: package-lock update

6.0.7

6.0.6

  • refactor: replace chalk with smaller alternative by @​webdiscus

6.0.5

... (truncated)

Commits

Updates systeminformation from 5.23.5 to 5.30.8

Release notes

Sourced from systeminformation's releases.

v5.30.8

Full Changelog: sebhildebrandt/systeminformation@v5.30.7...v5.30.8

v5.30.7

Full Changelog: sebhildebrandt/systeminformation@v5.30.6...v5.30.7

v5.30.6

Full Changelog: sebhildebrandt/systeminformation@v5.30.5...v5.30.6

v5.30.5

Full Changelog: sebhildebrandt/systeminformation@v5.30.4...v5.30.5

v5.30.4

Full Changelog: sebhildebrandt/systeminformation@v5.30.3...v5.30.4

v5.30.3

Full Changelog: sebhildebrandt/systeminformation@v5.30.2...v5.30.3

v5.30.2

Full Changelog: sebhildebrandt/systeminformation@v5.30.1...v5.30.2

v5.30.1

Full Changelog: sebhildebrandt/systeminformation@v5.30.0...v5.30.1

v5.30.0

Full Changelog: sebhildebrandt/systeminformation@v5.29.1...v5.30.0

v5.29.1

Full Changelog: sebhildebrandt/systeminformation@v5.29.0...v5.29.1

v5.29.0

Full Changelog: sebhildebrandt/systeminformation@v5.28.10...v5.29.0

Changelog

Sourced from systeminformation's changelog.

Changelog

Major Changes - Version 5

New Functions

  • audio() detailed audio information
  • bluetoothDevices() detailed information detected bluetooth devices
  • dockerImages() detailed information docker images
  • dockerVolumes() detailed information docker volumes
  • printers() detailed printer information
  • usb() detailed USB information
  • wifiInterfaces() detected Wi-Fi interfaces
  • wifiConnections() active Wi-Fi connections

Breaking Changes

Be aware, that the new version 5.x is NOT fully backward compatible to version 4.x ...

We had to make several interface changes to keep systeminformation as consistent as possible. We highly recommend to go through the complete list and adapt your own code to be again compatible to the new version 5.

Function Old New (V5) Comments
unsupported values -1 null values which are unknown orunsupported on platform
battery() hasbatterycyclecountischargingdesignedcapacitymaxcapacityacconnectedtimeremaining hasBatterycycleCountisChargingdesignedCapacitymaxCapacityacConnectedtimeRemaining pascalCase conformity
blockDevices() fstype fsType pascalCase conformity
cpu() speedminspeedmax speedMinspeedMax pascalCase conformity
cpu().speedcpu().speedMincpu().speedMax string values now returningnumerical values better value handling
cpuCurrentspeed() cpuCurrentSpeed() function name changedpascalCase conformity
currentLoad() avgloadcurrentloadcurrentload_usercurrentload_systemcurrentload_nicecurrentload_idlecurrentload_irqraw_currentload avgLoadcurrentLoadcurrentLoadUsercurrentLoadSystemcurrentLoadNicecurrentLoadIdlecurrentLoadIrqrawCurrentLoad pascalCase conformity
dockerContainerStats() mem_usagemem_limitmem_percentcpu_percentcpu_statsprecpu_statsmemory_stats memUsagememLimitmemPercentcpuPercentcpuStatsprecpuStatsmemoryStats pascalCase conformity
dockerContainerProcesses() pid_host pidHost pascalCase conformity
graphics().display pixeldepthresolutionxresolutionysizexsizey pixelDepthresolutionXresolutionYsizeXsizeY pascalCase conformity
networkConnections() localaddresslocalportpeeraddresspeerport localAddresslocalPortpeerAddresspeerPort pascalCase conformity
networkInterfaces() carrier_changes carrierChanges pascalCase conformity
processes() mem_vszmem_rsspcpupcpuupcpuspmem memVszmemRsscpucpuucpusmem pascalCase conformityrenamed attributes
processLoad() result as object result as array of objects function now allows to provide more thanone process (as a comma separated list)
services() pcpupmem cpumem renamed attributes
vbox() HPETPAEAPICX2APICACPIIOAPICbiosAPICmodeTRC hpetpaeapicx2ApicacpiioApicbiosApicModertc pascalCase conformity

Other Improvements and Changes

  • baseboard(): added memMax, memSlots
  • bios(): added language and features (linux)
  • blockDevices() added raid group member (linux)
  • cpu(): extended AMD processor list

... (truncated)

Commits
  • 612d97e 5.30.8
  • 22242aa wifiNetworks() fixed CWE-78 command injection issue (linux)
  • 41c7ea4 5.30.7
  • f4ff1d9 networkInterfaces() fixed getWindowsIEEE8021x issue (windows)
  • ea02021 5.30.6
  • 53cca2f graphics() improved nvidia-smi detection (windows)
  • 5231c64 fix nvidia-smi folder search (windows)
  • 42bc5a7 5.30.5
  • 505d327 networkInterfaces() fix uppercase iface names (linux)
  • 06e47be 5.30.4
  • Additional commits viewable in compare view

Updates tar from 7.4.3 to 7.5.8

Changelog

Sourced from tar's changelog.

Changelog

7.5

  • Added zstd compression support.
  • Consistent TOCTOU behavior in sync t.list
  • Only read from ustar block if not specified in Pax
  • Fix sync tar.list when file size reduces while reading
  • Sanitize absolute linkpaths properly
  • Prevent writing hardlink entries to the archive ahead of their file target

7.4

  • Deprecate onentry in favor of onReadEntry for clarity.

7.3

  • Add onWriteEntry option

7.2

  • DRY the command definitions into a single makeCommand method, and update the type signatures to more appropriately infer the return type from the options and arguments provided.

7.1

  • Update minipass to v7.1.0
  • Update the type definitions of write() and end() methods on Unpack and Parser classes to be compatible with the NodeJS.WritableStream type in the latest versions of @types/node.

7.0

  • Drop support for node <18
  • Rewrite in TypeScript, provide ESM and CommonJS hybrid interface
  • Add tree-shake friendly exports, like import('tar/create') and import('tar/read-entry') to get individual functions or classes.
  • Add chmod option that defaults to false, and deprecate noChmod. That is, reverse the default option regarding explicitly setting file system modes to match tar entry settings.
  • ...

    Description has been truncated


    Summary by cubic

    Upgrade dependencies across 6 packages to apply security fixes and small stability improvements. Highlights: multer 2.1.0, pm2 6.0.14, tar 7.5.8, rollup 2.80.0, systeminformation 5.30.8, axios 1.13.5.

    • Dependencies

      • multer → 2.1.0 (client-auto, client-direct, plugin-node): patches CVEs; adds UTF‑8 filename support.
      • pm2 → 6.0.14 (core, plugin-node): security/bug fixes; no config changes expected.
      • rollup → 2.80.0 (core): now throws if outputs escape the outDir.
      • systeminformation → 5.30.8 (plugin-node): security fix and minor improvements.
      • tar → 7.5.8 (plugin-node): adds zstd; requires Node 18+.
      • axios → 1.13.5 (plugin-whatsapp): patch updates.
    • Migration

      • Ensure Node 18+ for environments running plugin-node (tar 7.x requirement).
      • Smoke test file uploads (single/multi, large files, UTF‑8 names) after the multer upgrade.
      • Rebuild core to confirm rollup outputs stay within the configured outDir.

    Written for commit 4d1ff0d. Summary will update on new commits.

…updates

Bumps the npm_and_yarn group with 1 update in the /packages/client-auto directory: [multer](https://github.com/expressjs/multer).
Bumps the npm_and_yarn group with 1 update in the /packages/client-direct directory: [multer](https://github.com/expressjs/multer).
Bumps the npm_and_yarn group with 2 updates in the /packages/core directory: [pm2](https://github.com/Unitech/pm2) and [rollup](https://github.com/rollup/rollup).
Bumps the npm_and_yarn group with 4 updates in the /packages/plugin-node directory: [multer](https://github.com/expressjs/multer), [pm2](https://github.com/Unitech/pm2), [systeminformation](https://github.com/sebhildebrandt/systeminformation) and [tar](https://github.com/isaacs/node-tar).
Bumps the npm_and_yarn group with 1 update in the /packages/plugin-whatsapp directory: [axios](https://github.com/axios/axios).
Bumps the npm_and_yarn group with 2 updates in the /scripts/jsdoc-automation directory: [ajv](https://github.com/ajv-validator/ajv) and [diff](https://github.com/kpdecker/jsdiff).


Updates `multer` from 1.4.5-lts.1 to 2.1.0
- [Release notes](https://github.com/expressjs/multer/releases)
- [Changelog](https://github.com/expressjs/multer/blob/main/CHANGELOG.md)
- [Commits](expressjs/multer@v1.4.5-lts.1...v2.1.0)

Updates `multer` from 1.4.5-lts.1 to 2.1.0
- [Release notes](https://github.com/expressjs/multer/releases)
- [Changelog](https://github.com/expressjs/multer/blob/main/CHANGELOG.md)
- [Commits](expressjs/multer@v1.4.5-lts.1...v2.1.0)

Updates `pm2` from 5.4.3 to 6.0.14
- [Release notes](https://github.com/Unitech/pm2/releases)
- [Changelog](https://github.com/Unitech/pm2/blob/master/CHANGELOG.md)
- [Commits](https://github.com/Unitech/pm2/commits/v6.0.14)

Updates `rollup` from 2.79.2 to 2.80.0
- [Release notes](https://github.com/rollup/rollup/releases)
- [Changelog](https://github.com/rollup/rollup/blob/v2.80.0/CHANGELOG.md)
- [Commits](rollup/rollup@v2.79.2...v2.80.0)

Updates `multer` from 1.4.5-lts.1 to 2.1.0
- [Release notes](https://github.com/expressjs/multer/releases)
- [Changelog](https://github.com/expressjs/multer/blob/main/CHANGELOG.md)
- [Commits](expressjs/multer@v1.4.5-lts.1...v2.1.0)

Updates `pm2` from 5.4.3 to 6.0.14
- [Release notes](https://github.com/Unitech/pm2/releases)
- [Changelog](https://github.com/Unitech/pm2/blob/master/CHANGELOG.md)
- [Commits](https://github.com/Unitech/pm2/commits/v6.0.14)

Updates `systeminformation` from 5.23.5 to 5.30.8
- [Release notes](https://github.com/sebhildebrandt/systeminformation/releases)
- [Changelog](https://github.com/sebhildebrandt/systeminformation/blob/master/CHANGELOG.md)
- [Commits](sebhildebrandt/systeminformation@v5.23.5...v5.30.8)

Updates `tar` from 7.4.3 to 7.5.8
- [Release notes](https://github.com/isaacs/node-tar/releases)
- [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md)
- [Commits](isaacs/node-tar@v7.4.3...v7.5.8)

Updates `axios` from 1.7.8 to 1.13.5
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md)
- [Commits](axios/axios@v1.7.8...v1.13.5)

Updates `ajv` from 6.12.6 to 6.14.0
- [Release notes](https://github.com/ajv-validator/ajv/releases)
- [Commits](ajv-validator/ajv@v6.12.6...v6.14.0)

Updates `diff` from 4.0.2 to 4.0.4
- [Changelog](https://github.com/kpdecker/jsdiff/blob/master/release-notes.md)
- [Commits](kpdecker/jsdiff@v4.0.2...v4.0.4)

Updates `minimatch` from 3.1.2 to 3.1.5
- [Changelog](https://github.com/isaacs/minimatch/blob/main/changelog.md)
- [Commits](isaacs/minimatch@v3.1.2...v3.1.5)

---
updated-dependencies:
- dependency-name: multer
  dependency-version: 2.1.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: multer
  dependency-version: 2.1.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: pm2
  dependency-version: 6.0.14
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: rollup
  dependency-version: 2.80.0
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: multer
  dependency-version: 2.1.0
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: pm2
  dependency-version: 6.0.14
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: systeminformation
  dependency-version: 5.30.8
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: tar
  dependency-version: 7.5.8
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: axios
  dependency-version: 1.13.5
  dependency-type: direct:production
  dependency-group: npm_and_yarn
- dependency-name: ajv
  dependency-version: 6.14.0
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: diff
  dependency-version: 4.0.4
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: minimatch
  dependency-version: 3.1.5
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Mar 3, 2026
@ecc-tools

ecc-tools Bot commented Mar 3, 2026

Copy link
Copy Markdown

Analyzing 200 commits...

@ecc-tools

ecc-tools Bot commented Mar 3, 2026

Copy link
Copy Markdown

✅ Analysis Complete

Generated skill from 200 commits | Confidence: 95%

🔗 View Pull Request #13

Repository Profile
Attribute Value
Language TypeScript
Framework Not detected
Commit Convention freeform
Test Directory mixed
Detected Workflows (8)
Workflow Description
database-migration Database schema changes with migration files
feature-development Standard feature implementation workflow
dependency-updates Bulk dependency updates across multiple packages in monorepo
version-bump Synchronized version bumping across all packages
plugin-development Adding new blockchain/service plugins with standardized structure
Generated Instincts (36)
Domain Count
git 3
code-style 10
architecture 2
testing 7
workflow 14

After merging, import with:

/instinct-import .claude/homunculus/instincts/inherited/stoictradingAI-instincts.yaml

Files

  • .claude/skills/stoictradingAI/SKILL.md
  • .claude/homunculus/instincts/inherited/stoictradingAI-instincts.yaml

ECC Tools | Everything Claude Code

@cubic-dev-ai cubic-dev-ai Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

No issues found across 6 files

@affaan-m affaan-m closed this May 18, 2026
@dependabot @github

dependabot Bot commented on behalf of github May 18, 2026

Copy link
Copy Markdown
Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/packages/client-auto/npm_and_yarn-68745bde10 branch May 18, 2026 10:06
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant