Skip to content

Bump vitest from 4.0.13 to 4.1.0#130

Open
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/vitest-4.1.0
Open

Bump vitest from 4.0.13 to 4.1.0#130
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/vitest-4.1.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 1, 2026

Copy link
Copy Markdown
Contributor

Bumps vitest from 4.0.13 to 4.1.0.

Release notes

Sourced from vitest's releases.

v4.1.0

Vitest 4.1 is out!

This release page lists all changes made to the project during the 4.1 beta. To get a review of all the new features, read our blog post.

   🚀 Features

... (truncated)

Commits
  • 4150b91 chore: release v4.1.0
  • 1de0aa2 fix: correctly identify concurrent test during static analysis (#9846)
  • c3cac1c fix: use isAgent check, not just TTY, for watch mode (#9841)
  • eab68ba chore(deps): update all non-major dependencies (#9824)
  • 031f02a fix: allow catch/finally for async assertion (#9827)
  • 3e9e096 feat(reporters): add agent reporter to reduce ai agent token usage (#9779)
  • 0c2c013 chore: release v4.1.0-beta.6
  • 8181e06 fix: hideSkippedTests should not hide test.todo (fix #9562) (#9781)
  • a8216b0 fix: manual and redirect mock shouldn't load or transform original module...
  • 689a22a fix(browser): types of getCDPSession and cdp() (#9716)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) from 4.0.13 to 4.1.0.
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Changelog](https://github.com/vitest-dev/vitest/blob/main/docs/releases.md)
- [Commits](https://github.com/vitest-dev/vitest/commits/v4.1.0/packages/vitest)

---
updated-dependencies:
- dependency-name: vitest
  dependency-version: 4.1.0
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jun 1, 2026

@albert20260301 albert20260301 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the dependency update. This one needs a follow-up before it can merge.

Required:

  • CI is failing during dependency installation before tests run.
  • The PR updates package.json but leaves bun.lock unchanged. Please regenerate and commit the lockfile for the Vitest 4.1.0 update.
  • The PR title also needs to follow Conventional Commits, for example: chore(deps): bump vitest from 4.0.13 to 4.1.0.

@albert20260301

Copy link
Copy Markdown
Contributor

Opened #131 as a stacked fix for the failing install step. The root cause is that package.json moved vitest to 4.1.0 but bun.lock still pinned the 4.0.13 dependency graph, so bun install --frozen-lockfile failed before tests could run.

Validated locally with Bun 1.3.0:

  • bun install --frozen-lockfile
  • bun run build
  • bun run typecheck
  • bun run lint
  • bun run test
  • bun run bundlesize

The remaining failing check is the PR title policy. I could not edit the Dependabot PR title with current permissions; a maintainer should rename it to chore(deps): bump vitest from 4.0.13 to 4.1.0.

## Summary
- refresh `bun.lock` for the Dependabot `vitest` 4.1.0 bump
- unblock `bun install --frozen-lockfile` in CI

## Validation
- `npx --yes bun@1.3.0 install --frozen-lockfile`
- `npx --yes bun@1.3.0 run build`
- `npx --yes bun@1.3.0 run typecheck`
- `npx --yes bun@1.3.0 run lint`
- `npx --yes bun@1.3.0 run test`
- `npx --yes bun@1.3.0 run bundlesize`

Stacked on #130.
@albert20260301

Copy link
Copy Markdown
Contributor

Lockfile is now refreshed via #131 and the test jobs are green. The remaining blocker is the semantic PR title check; this account still cannot edit the Dependabot PR title (HTTP 403 via the Issues API), so a maintainer needs to rename it to chore(deps): bump vitest from 4.0.13 to 4.1.0.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant