Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 8, 2025

Bumps terser from 5.42.0 to 5.44.0.

Changelog

Sourced from terser's changelog.

v5.44.0

  • Support using and await using declarations (#1635)

v5.43.1

  • Prevent niche optimizations that would move around block declarations
  • Add lhs_constants to CompressOptions type (#1621)

v5.43.0

  • Do not wrap callbacks in parentheses (wrap_func_args format option is now false by default)
  • Do not inline functions into for loops (for performance reasons)
Commits
  • a19ee63 5.44.0
  • 1fc6eda update changelog
  • 88493d7 Support using and await using declarations (#1635)
  • c86e89f increase test parallelism
  • 8f02ba6 internal: fix race condition in test output in some cases
  • 156018d chore(deps): update actions/checkout action to v5 (#1634)
  • da1e6fb 5.43.1
  • 730549e update changelog
  • ff86471 prevent some niche optimizations that would move around block declarations. C...
  • ca5bbb0 add lhs_constants to CompressOptions type (#1621)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [terser](https://github.com/terser/terser) from 5.42.0 to 5.44.0.
- [Changelog](https://github.com/terser/terser/blob/master/CHANGELOG.md)
- [Commits](terser/terser@v5.42.0...v5.44.0)

---
updated-dependencies:
- dependency-name: terser
  dependency-version: 5.44.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Sep 8, 2025
Copy link
Contributor

github-actions bot commented Sep 8, 2025

🐳 Docker Base Image Available

A new base Docker image has been built and pushed for this PR:

Image: ghcr.io/orionrobots/orionrobots-site.base:283

How to use this image:

# Pull the image
docker pull ghcr.io/orionrobots/orionrobots-site.base:283

# Run with the image
docker run -it ghcr.io/orionrobots/orionrobots-site.base:283 bash

For local development:

You can use this image as a base for testing changes without rebuilding dependencies.

This comment is automatically updated when the base image is rebuilt.

@dannystaple dannystaple requested a review from Copilot September 15, 2025 08:28
Copy link
Contributor

@Copilot Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR updates the Terser dependency from version 5.42.0 to 5.44.0, bringing support for newer JavaScript features and improved optimization behavior. The update includes support for using and await using declarations, prevents certain block declaration optimizations, and changes the default behavior for function callback wrapping.

Key changes:

  • Dependency version bump adds support for JavaScript's using and await using declarations
  • Improved optimization safety by preventing niche optimizations that could move block declarations
  • Updated default formatting behavior for function callbacks

@dannystaple
Copy link
Member

@copilot Can you use screenshots to verify that the site still matches the wireframes after the changes?

Copy link
Contributor

🦙 MegaLinter status: ❌ ERROR

Descriptor Linter Files Fixed Errors Warnings Elapsed time
❌ ACTION actionlint 5 6 0 0.09s
✅ BASH bash-exec 1 0 0 0.0s
✅ BASH shellcheck 1 0 0 0.04s
⚠️ BASH shfmt 1 1 0 0.0s
❌ C cppcheck 8 8 0 0.3s
❌ CPP cppcheck 8 8 0 0.27s
✅ JSON npm-package-json-lint yes no no 0.46s
✅ JSON v8r 12 0 0 13.25s
❌ MARKDOWN markdown-link-check 741 216 0 902.89s
✅ REPOSITORY gitleaks yes no no 13.37s
✅ REPOSITORY git_diff yes no no 0.82s
❌ REPOSITORY grype yes 2 no 34.41s
✅ REPOSITORY secretlint yes no no 41.76s
✅ REPOSITORY syft yes no no 1.92s
✅ REPOSITORY trivy-sbom yes no no 3.25s
✅ REPOSITORY trufflehog yes no no 4.98s
✅ XML xmllint 1 0 0 190.29s
✅ YAML v8r 13 0 0 8.45s

See detailed report in MegaLinter reports

MegaLinter is graciously provided by OX Security

@dannystaple dannystaple merged commit 153ec4b into master Sep 15, 2025
6 checks passed
@dannystaple dannystaple deleted the dependabot/npm_and_yarn/terser-5.44.0 branch September 15, 2025 13:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants