What's Changed
- chore: reduce Sentry span sampling outside development by @brendan-kellam in #1475
- chore: upgrade tar to ^7.5.20 to address CVE-2026-59875 by @linear-code[bot] in #1474
- fix(worker): preserve permissions on transient token refresh failures by @brendan-kellam in #1481
- fix(worker): classify permission sync failures by provider context by @brendan-kellam in #1482
- fix: surface permission sync issues requiring user action by @brendan-kellam in #1484
- chore: upgrade brace-expansion to address CVE-2026-13149 by @linear-code[bot] in #1471
- chore: upgrade shell-quote to ^1.10.0 to address CVE-2026-13311 by @linear-code[bot] in #1469
- chore: upgrade js-yaml to ^4.3.0 to address CVE-2026-59869 by @linear-code[bot] in #1470
- chore: upgrade JavaScript dependencies to address 22 CVEs and 6 GHSAs by @jsourcebot in #1502
- chore: bump vendor/zoekt to upgrade gRPC-Go to v1.82.1 by @jsourcebot in #1503
Full Changelog: v5.1.3...v5.1.4