Skip to content

chore(deps-dev): bump postcss from 8.5.16 to 8.5.26 in /client - #30

Closed
dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/client/postcss-8.5.25
Closed

dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/npm_and_yarn/client/postcss-8.5.25

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 2, 2026 •

Copy link
Copy Markdown

Bumps postcss from 8.5.16 to 8.5.26.

Release notes

Sourced from postcss's releases.

8.5.26

  • Fixed list.split() regression (by @​lazerg).
  • Track symlinks in path protection in source map loading (by @​drengir1).

8.5.25

  • Fixed 8.5.17 visitor regression.
  • Fixed list.split() for non-string values (by @​amir-rezaei).

8.5.24

  • Preserve the BOM after the processing (by @​hdimer).

8.5.23

  • Do not load source map without opts.from for security reasons.

8.5.22

8.5.21

8.5.20

8.5.19

  • Fixed cleaning before for new nodes inserted to Root (by @​MahinAnowar).

8.5.18

  • Restricted loading previous source maps file to the opts.from folder for security reasons (use unsafeMap: true to disable the check).

8.5.17

  • Fixed Maximum call stack size exceeded error.
  • Fixed Prototype hijacking for postcss.fromJSON().
  • Fixed Input#origin() for unmapped end position (by @​chatman-media).
Changelog

Sourced from postcss's changelog.

8.5.26

  • Fixed list.split() regression (by @​lazerg).
  • Track symlinks in path protection in source map loading (by @​drengir1).

8.5.25

  • Fixed 8.5.17 visitor regression.
  • Fixed list.split() for non-string values (by @​amir-rezaei).

8.5.24

  • Preserve the BOM after the processing (by @​hdimer).

8.5.23

  • Do not load source map without opts.from for security reasons.

8.5.22

8.5.21

8.5.20

8.5.19

  • Fixed cleaning before for new nodes inserted to Root (by @​MahinAnowar).

8.5.18

  • Restricted loading previous source maps file to the opts.from folder for security reasons (use unsafeMap: true to disable the check).

8.5.17

  • Fixed Maximum call stack size exceeded error.
  • Fixed Prototype hijacking for postcss.fromJSON().
  • Fixed Input#origin() for unmapped end position (by @​chatman-media).
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Aug 2, 2026
@Aparencia

Copy link
Copy Markdown
Owner

@dependabot rebase

@dependabot dependabot Bot changed the title build(deps-dev): bump postcss from 8.5.16 to 8.5.25 in /client chore(deps-dev): bump postcss from 8.5.16 to 8.5.25 in /client Aug 3, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/client/postcss-8.5.25 branch from 239e7d5 to 0ce8cd3 Compare August 3, 2026 14:25
@dependabot dependabot Bot changed the title chore(deps-dev): bump postcss from 8.5.16 to 8.5.25 in /client chore(deps-dev): bump postcss from 8.5.16 to 8.5.26 in /client Aug 16, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/client/postcss-8.5.25 branch from 0ce8cd3 to 375c271 Compare August 16, 2026 14:08
Bumps [postcss](https://github.com/postcss/postcss) from 8.5.16 to 8.5.26.
- [Release notes](https://github.com/postcss/postcss/releases)
- [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md)
- [Commits](postcss/postcss@8.5.16...8.5.26)

---
updated-dependencies:
- dependency-name: postcss
  dependency-version: 8.5.25
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/client/postcss-8.5.25 branch from 375c271 to 4b3363b Compare August 16, 2026 15:36
@dependabot @github

dependabot Bot commented on behalf of github Aug 19, 2026

Copy link
Copy Markdown
Author

Superseded by #44.

@dependabot dependabot Bot closed this Aug 19, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/client/postcss-8.5.25 branch August 19, 2026 23:14
Aparencia added a commit that referenced this pull request Sep 13, 2026
依据 = 计划 Task 21 卡 Step 1–5 + §C6.3(六件)+ §C9.10(逐字对照)+ §C4.3 / §C11.1 / §C11.4 / §C7.3 / §C9.1 / §C16.2。
形态 = **原文 + 就地加注**(保留历史原文,只加注)⇒ 本提交 **+24 行 / −0 行**,**没有任何 `-` 行**(V2 判据)。

【逐字对照:改了哪几行 / 原文是什么(改前原文逐字 = 改后仍逐字在文件里)】

1. §10 批 7 行(`:722` 时点锚 ⇒ 现 775)—— 原文(保留):
   「…**`structuredBlocks` 整模块存废**(批 1 控制方裁决:接线…**或**删除…二选一,**批 1 未决前不得删**) | **标签能写进去**;**档位选完真生效**;**`structuredBlocks` 已作出接线或删除的明确裁决**」
   加注(新):批 7 收口就地加注 = 逐导出裁决(第三条路)明文授权(① `escapeHtml` 只摘 `:11` import + `:13` 再导出 · ② `renderLatex`/`renderMarkdownTable` 删 · ③ `lowConfidenceClass` 留 + 加宽 ≥2)+ 另三处实测落位(12 条补 UI 实做 10 条 · registry 净值 311 · 撤下 3 条保留函数体的形态)。

2. §11-7(`:824` 时点锚 ⇒ 现批 1 进度注)—— 原文(保留):
   「…删除后复算 = registry 312 / 前端零引用 **25** 条(= 47 − 22,逐条与上列归属一致)。」
   加注(新):批 7 收口注 = registry **313 → 311** · 前端零引用 **24 → 11**(实测;口径与仪器、正控 68 / 负控 0 一并给出)+ 差额分解(−10 补 UI + −3 撤下)+ 新命令 `remember_video_profile_tier` PROD 2 不计入 + 残留 `update_fragment_group` 仍零引用。

3. §12「3 套 markdown 渲染器归一」行 + 批 5 加注之后(`:864` / `:870-875` 时点锚)—— 原文(保留):批 5 加注整块,含『`structuredBlocks.ts`(第 5 套、**无生产消费者**)』。
   加注(新):批 7 去向终态 = 已完成归一(`utils/markdownLine.ts` 100 行 · `ChatMessageMarkdown` 并入后删除 · 站点 2 → 1 / 插件站点 8 → 4 · 终态 2 套活)+ 🔴 逐字句「**归一 = 逻辑归一;观感统一未做,归批 8**」+ 🔴 **补登规格加注漏点**:第 4 套活渲染器 `components/NotePreviewView.tsx:40 renderMarkdown`(开工 346 行 / 终态 364 行;T16 `6509e04c` 已补表征测试)+ 残余(两处页内 seek 未接 ⇒ 批 8)。

4. §9 表内三处状态更正(#14 `kb_search` / #30 `video_profile_spec_by_kind` / #46 `update_fragment_group`;锚在表末 #47 行之后,**以免块引用把 47 行表格截断**)—— 原文(保留):三行表体原文一字未改。
   加注(新):#14「补 UI(本批)」批 3 Task 12 已交付(`b567f0e6`,T21 实测 PROD 1)· #30 **角色变更登记**(并行真源 → 离线降级路径;两张映射仍在、仍有生产调用点)· #46 记录同步批 1 已做,**但 T21 实测「接线」那一半未做**(全 `app/src/**` 含测试 0 命中,仍在 registry)⇒ 登记批 8 输入。

5. §9「删除的通用影响面」(`:694` 时点锚 ⇒ 现「**删除的通用影响面**:仅 `lib.rs` 的 `generate_handler!`…」)—— 原文(保留):整句。
   加注(新):就地更正 = 注册清单已搬到 `app/src-tauri/src/app_commands.rs`(批 0-C3),`lib.rs` 已无 `generate_handler!`;T21 实测该文件含 311 条目 ⇒ 原判断(影响面 = 注册清单一处)成立,只是换了文件。

【门禁读数(串行,工作树)】
- `node scripts/docs-check.mjs` ⇒ exit 0 ·「扫描 281 个 Markdown 文件(检查 181 个)」五项全 ✅(与批 7 工作树基线 281/181 逐字一致;本提交**未新增/删除 `.md`** ⇒ 扫描数不变)
- `node scripts/line-limits.mjs --full` ⇒ exit 0 ·「>600 硬限 0(棘轮内)· 301–600 档 121 · 登记条目 121」(`docs/**` 不在行数门禁域)
- `git diff --numstat -- <规格>` ⇒ **24 / 0**;`git diff` 的 `^-` 行数 = **0**(V2)
- 规格行数(`countLines()` 口径):**998 → 1022**

【诚实边界】
- 批 7 的**完整逐字对照表**另见 `task-21-report.md`(gitignored);本提交的 durable 形态 = 「原文保留在文件里 + 加注」⇒ 对照可复算。
- 三处 §9 注**放在表格之后**(而非各自行后):块引用会**截断 Markdown 表格**,而后 17 行原文一字不许改 ⇒ 只能整表之后就地注;注文逐条点名所属行号。
- `update_fragment_group` 的「接线那一半」**未做**是**实测发现**(不是卡里的预期),已逐字登记;**不得**读成「本批 12 条补 UI 已全部接线」。
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant