Skip to content

Add undici@latest as direct dependency#252

Open
Copilot wants to merge 2 commits intodependabot/npm_and_yarn/rollup/rollup-linux-x64-gnu-4.59.0from
copilot/sub-pr-248-again
Open

Add undici@latest as direct dependency#252
Copilot wants to merge 2 commits intodependabot/npm_and_yarn/rollup/rollup-linux-x64-gnu-4.59.0from
copilot/sub-pr-248-again

Conversation

Copy link

Copilot AI commented Feb 23, 2026

Proactively pins undici to the latest major version (v7.22.0) as a direct dependency, rather than relying solely on older transitive versions pulled in by @actions/github (v5.29.0) and @actions/core (v6.23.0).

Changes

  • package.json: Adds undici@^7.22.0 to dependencies
  • package-lock.json: Updated to reflect the new top-level undici resolution

Notes

@actions/github and @actions/http-client continue to resolve their own nested undici copies (v5/v6) since they pin to older major versions. This change ensures the top-level undici is current.


🔒 GitHub Advanced Security automatically protects Copilot coding agent pull requests. You can protect all pull requests by enabling Advanced Security for your repositories. Learn more about Advanced Security.

Co-authored-by: salmanmkc <32169182+salmanmkc@users.noreply.github.com>
Copilot AI changed the title [WIP] Bump @rollup/rollup-linux-x64-gnu from 4.57.1 to 4.59.0 Add undici@latest as direct dependency Feb 23, 2026
@salmanmkc salmanmkc marked this pull request as ready for review February 24, 2026 13:51
@salmanmkc salmanmkc requested a review from a team as a code owner February 24, 2026 13:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants