Skip to content

chore(actions)(deps): bump actions/setup-node from 4 to 7 - #3

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/setup-node-7
Open

chore(actions)(deps): bump actions/setup-node from 4 to 7#3
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/setup-node-7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 10, 2026

Copy link
Copy Markdown
Contributor

Bumps actions/setup-node from 4 to 7.

Release notes

Sourced from actions/setup-node's releases.

v7.0.0

What's Changed

Enhancements:

Bug fixes:

Documentation updates:

Dependency update:

New Contributors

Full Changelog: actions/setup-node@v6...v7.0.0

v6.5.0

What's Changed

Full Changelog: actions/setup-node@v6.4.0...v6.5.0

v6.4.0

What's Changed

Dependency updates:

New Contributors

Full Changelog: actions/setup-node@v6...v6.4.0

v6.3.0

What's Changed

Enhancements:

... (truncated)

Commits
  • 8207627 Migrate to ESM and upgrade dependencies (#1574)
  • 04be95c Add cache-primary-key and cache-matched-key as outputs (#1577)
  • 7c2c68d docs: Update caching recommendations to mitigate cache poisoning risks (#1567)
  • 6a61c03 Merge pull request #1569 from jasongin/update-actions-cache-5.1.0
  • 30eb73b Resolve high-severity audit issues
  • 4e1a87a Update dist
  • 360237f Strict equality
  • 4f8aac5 Bump @​actions/cache to 5.1.0, log cache write denied
  • f4a67bb Only use mirrorToken in getManifest if it's provided (#1548)
  • 0355742 Remove dummy NODE_AUTH_TOKEN export (#1558)
  • Additional commits viewable in compare view

@dependabot @github

dependabot Bot commented on behalf of github Aug 10, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies, github-actions. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@github-actions

github-actions Bot commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

૮ >ﻌ< ა ci review

ran on cfbfae0

❌ Job failures

Check uv.lock / uv lock --check · View job

Job Check uv.lock / uv lock --check failed.


JS & TS checks / apps/desktop / check:lint · View job

Job JS & TS checks / apps/desktop / check:lint failed.


JS & TS checks / apps/desktop / check:test:ui · View job

Job JS & TS checks / apps/desktop / check:test:ui failed.


JS & TS checks / ui-tui / check · View job

Job JS & TS checks / ui-tui / check failed.


Python tests / Run tests slice 1/12 · View job

Job Python tests / Run tests slice 1/12 failed.


Python tests / Run tests slice 10/12 · View job

Job Python tests / Run tests slice 10/12 failed.


Python tests / Run tests slice 11/12 · View job

Job Python tests / Run tests slice 11/12 failed.


Python tests / Run tests slice 12/12 · View job

Job Python tests / Run tests slice 12/12 failed.


Python tests / Run tests slice 2/12 · View job

Job Python tests / Run tests slice 2/12 failed.


Python tests / Run tests slice 3/12 · View job

Job Python tests / Run tests slice 3/12 failed.


Python tests / Run tests slice 4/12 · View job

Job Python tests / Run tests slice 4/12 failed.


Python tests / Run tests slice 5/12 · View job

Job Python tests / Run tests slice 5/12 failed.


Python tests / Run tests slice 6/12 · View job

Job Python tests / Run tests slice 6/12 failed.


Python tests / Run tests slice 7/12 · View job

Job Python tests / Run tests slice 7/12 failed.


Python tests / Run tests slice 8/12 · View job

Job Python tests / Run tests slice 8/12 failed.


Python tests / Run tests slice 9/12 · View job

Job Python tests / Run tests slice 9/12 failed.


Python tests / e2e · View job

Job Python tests / e2e failed.


⚠️ Action required

CI-sensitive file review · View job

This PR changes CI-sensitive files (eslint config, workflow YAMLs, or composite actions). These influence what the js-autofix job executes and pushes to main.

Sensitive files changed:

How to fix:

Add the ci-reviewed label after verifying:

  • no new eslint rules with custom fix functions that write outside linted paths,
  • no workflow changes that widen permissions or remove guards,
  • no composite action changes that alter what gets executed.

uv.lock out of sync · View job

uv.lock is out of sync with pyproject.toml.

How to fix:

Run uv lock locally and commit the result. If on a PR, sync with main first:

git fetch origin main
git rebase origin/main
uv lock
git add uv.lock
git commit -m "chore: refresh uv.lock"

⚠️ Warnings

CI timings · View report · View job

Wall time 13m13s vs 7m52s (+68.0%). 23 job(s) slower, 13 faster, 2 unchanged.

  • JS & TS checks / apps/desktop / check:test:ui: -75.0s
  • JS & TS checks / apps/bootstrap-installer / check: +51.0s
  • Detect affected areas: +14.0s
  • JS & TS checks / ui-tui/packages/hermes-ink / check: +13.0s
  • JS & TS checks / web / check: +11.0s

DredusCLWN added a commit that referenced this pull request Aug 10, 2026
…fetch noise

#5 fix: reasoning_effort was a dead config key — nobody read it.
  - background_review.py: read reasoning_effort from task config in
    _resolve_review_runtime, apply as reasoning_config={'effort': ...}
    in the routed fork path (else branch). Prefill/pins stay in the
    not-routed branch as before.
  - config_defaults.py: revert to empty string (no false claim).
  Note: only fires when background_review is routed to a different
  model (provider != auto). Same-model path inherits parent's
  reasoning_config as before.

#3 fix: \w{2,} matches pure-digit tokens (118026, 268526, etc).
  - run_agent.py: skip token.isdigit() in speculative prefetch
    frequency count. Prevents numeric noise from filling the top-5
    keywords and sending garbage prefetch queries to providers.
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions/setup-node-7 branch from e474a97 to aaf6d2a Compare August 10, 2026 17:33
Bumps [actions/setup-node](https://github.com/actions/setup-node) from 4 to 7.
- [Release notes](https://github.com/actions/setup-node/releases)
- [Commits](actions/setup-node@v4...v7)

---
updated-dependencies:
- dependency-name: actions/setup-node
  dependency-version: '7'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions/setup-node-7 branch from aaf6d2a to cfbfae0 Compare August 11, 2026 19:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants