Skip to content

build(deps): bump the production-dependencies group with 14 updates - #147

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-6798ff44a8
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/production-dependencies-6798ff44a8

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 19, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the production-dependencies group with 14 updates:

Package From To
@ai-sdk/google 4.0.65 4.0.72
@ai-sdk/openai 4.0.63 4.0.67
@ai-sdk/otel 1.0.95 1.0.102
@arizeai/openinference-semantic-conventions 2.9.0 2.11.0
@arizeai/openinference-vercel 3.1.11 3.2.0
@better-auth/infra 0.4.7 0.4.9
ai 7.0.95 7.0.102
better-auth 1.7.3 1.7.5
lucide-react 1.43.0 1.46.0
react 19.2.8 19.3.0
react-dom 19.2.8 19.3.0
tailwind-merge 3.6.0 3.7.0
vercel 59.14.0 59.19.0
zod 4.5.4 4.6.5

Updates @ai-sdk/google from 4.0.65 to 4.0.72

Release notes

Sourced from @​ai-sdk/google's releases.

@​ai-sdk/openai@​4.0.71

Patch Changes

  • e76a0a3: fix(openai): cancel image edit URL downloads when the request is aborted
  • Updated dependencies [2973485]
  • Updated dependencies [a4db5ea]
  • Updated dependencies [2937ea2]
    • @​ai-sdk/provider-utils@​5.0.45

@​ai-sdk/openai@​4.0.70

Patch Changes

  • fd75cee: fix(openai): preserve provider file references in Responses tool results
  • 1f5bb62: fix(openai): send assistant text as Responses easy input messages
  • Updated dependencies [0455398]
    • @​ai-sdk/provider-utils@​5.0.44
Changelog

Sourced from @​ai-sdk/google's changelog.

4.0.72

Patch Changes

  • 4a994ad: feat(google): realtime session options for Gemini 3.8 Live

    Add thinkingConfig (thinkingLevel, thinkingBudget, includeThoughts) and defaultToolBehavior to GoogleRealtimeModelOptions. thinkingConfig is merged into the Live setup.generationConfig. Background-reasoning Live models such as gemini-3.8-live-extended-thinking require exactly one of thinkingLevel or thinkingBudget, so the provider sends thinkingLevel: 'low' on those models when neither is set. defaultToolBehavior stamps behavior on every function declaration in the setup.

    Forward the Live interactionStatus and waitingForInput server messages as custom events so applications can tell when a background-reasoning model is idle, since turnComplete alone no longer means that.

4.0.71

Patch Changes

  • Updated dependencies [5c0054d]
  • Updated dependencies [39535af]
    • @​ai-sdk/provider@​4.0.15
    • @​ai-sdk/provider-utils@​5.0.41

4.0.70

Patch Changes

  • 2a32459: fix(google): preserve JSON Schema instead of converting to OpenAPI schema

  • d93e295: fix(google): keep a realtime functionResponse.response an object

    Gemini types that field as a google.protobuf.Struct, which accepts an object and nothing else. onToolCall returns unknown and addToolOutput takes unknown, so a string, number, array or null tool result reached the wire unwrapped, Gemini closed the socket with 1007, and the close code was dropped on the way back so the application saw a plain disconnect. A non-object result is now wrapped under the output key the field's own docstring prescribes; an object is passed through unchanged, as before.

    An output that is not valid JSON no longer becomes {}. That branch told the model the tool had returned an empty object, with nothing thrown and the socket still up, so the answer was wrong with nothing to notice. The text is kept instead.

4.0.69

Patch Changes

... (truncated)

Commits

Updates @ai-sdk/openai from 4.0.63 to 4.0.67

Changelog

Sourced from @​ai-sdk/openai's changelog.

4.0.67

Patch Changes

  • 5c0054d: Add optional browser-direct WebRTC for experimental client-delegated Live conversations alongside the existing WebSocket path. Exchange SDP through an application endpoint with api.session, configure server-owned data-channel permissions, and preserve committed React session ownership. Capture follows the selected sender track, borrowed tracks remain caller-owned, and disconnect recovery and finalization stay bounded. Applications continue to handle client delegation and submit context; Live session updates and Responses delegation remain unsupported.

    Serialize microphone sender changes and close the peer if detachment fails, without stopping borrowed tracks. Validate nonempty SDP setup answers with a bounded response body, and document the same-origin broker authentication contract.

  • 39535af: Add experimental OpenAI Live provider support through the unified openai.experimental_realtime factory for server WebSocket sessions with client delegation. Applications own their agents and tools, receive continuous audio/transcript events and delegation metadata, and return context through validated channels. Support immutable startup options, microphone mute controls, graceful session close, and cumulative voice usage. Responses delegation and Live session updates reject before sending.

    Route known Live model IDs to Live, allow an OpenAI-specific api override for early-access models, and preserve legacy Realtime defaults for unknown IDs. Token minting follows the same selection rules and rejects Live before requesting unsupported credentials. Extend the realtime v4 specification with optional server WebSocket configuration, per-connection raw-event parsers, and model-wide startup/finalization capabilities. This provider layer supplies connection settings and protocol mapping for server adapters; browser lifecycle and UI integration belong to the core runtime and framework hooks.

    Preserve Realtime client event IDs for session updates and audio appends, and correlate server errors with the originating client event.

  • Updated dependencies [5c0054d]

  • Updated dependencies [39535af]

    • @​ai-sdk/provider@​4.0.15
    • @​ai-sdk/provider-utils@​5.0.41

4.0.66

Patch Changes

  • 5ec21a6: fix: reject unsupported batch request types
  • 7469a3b: feat: support image generation requests in batches
  • 0de8886: fix(openai): allow providers to disable web search source includes
  • d5e3024: fix(openai): remove propertyNames from JSON Schema
  • Updated dependencies [5ec21a6]
  • Updated dependencies [7469a3b]
  • Updated dependencies [813bb36]
  • Updated dependencies [c43e4b7]
    • @​ai-sdk/provider@​4.0.14
    • @​ai-sdk/provider-utils@​5.0.40

4.0.65

Patch Changes

  • 9942196: feat(openai): add batch cancellation and listing
  • Updated dependencies [9942196]
    • @​ai-sdk/provider@​4.0.13
    • @​ai-sdk/provider-utils@​5.0.39

4.0.64

Patch Changes

  • ccb8952: fix(openai): return an AI SDK error for empty chat completion choices
  • Updated dependencies [912fb01]
    • @​ai-sdk/provider@​4.0.12

... (truncated)

Commits

Updates @ai-sdk/otel from 1.0.95 to 1.0.102

Changelog

Sourced from @​ai-sdk/otel's changelog.

1.0.102

Patch Changes

  • Updated dependencies [5c0054d]
  • Updated dependencies [39535af]
  • Updated dependencies [8b92ba9]
  • Updated dependencies [4b306c2]
  • Updated dependencies [4b306c2]
    • @​ai-sdk/provider@​4.0.15
    • ai@7.0.102

1.0.101

Patch Changes

  • Updated dependencies [6aa7c54]
    • ai@7.0.101

1.0.100

Patch Changes

  • Updated dependencies [6431635]
    • ai@7.0.100

1.0.99

Patch Changes

  • Updated dependencies [615ac89]
    • ai@7.0.99

1.0.98

Patch Changes

  • db59d78: feat(ai): add runtime context attribution to embed, embedMany and rerank
  • eb70e72: fix(otel): attribute fallback spans to the successful provider
  • 2dd0244: fix(otel): preserve HTTP status codes on API error spans
  • Updated dependencies [5ec21a6]
  • Updated dependencies [db59d78]
  • Updated dependencies [7469a3b]
  • Updated dependencies [f87bf07]
  • Updated dependencies [bc5cb7a]
  • Updated dependencies [a5f449a]
    • @​ai-sdk/provider@​4.0.14
    • ai@7.0.98

1.0.97

... (truncated)

Commits

Updates @arizeai/openinference-semantic-conventions from 2.9.0 to 2.11.0

Release notes

Sourced from @​arizeai/openinference-semantic-conventions's releases.

@​arizeai/openinference-semantic-conventions@​2.11.0

Minor Changes

  • 0ff0af2: Add input.images and output.images semantic conventions, letting any span kind record images without the LLM message structure.

@​arizeai/openinference-semantic-conventions@​2.10.0

Minor Changes

  • 6d9f813: Add message_content.audio, message_content.video, and video.url constants.
Commits
  • 854feac chore(js): update versions
  • 1f09554 fix(google_adk): patch merged-tool-call tracer for google-adk 2.x (_batch_too...
  • 8c007a1 fix(anthropic): support anthropic 1.5.0 streaming accumulate_event and parsed...
  • 7103041 fix(pipecat): tolerate typed UserBotLatencyObserver in pipecat-ai 1.9 (#3739)
  • a332a5c chore(skills): phoenix-verify spec layout, uvx phoenix, final-round fixes
  • 569fe7a chore(skills): phoenix-verify review fixes
  • 04668cb chore(skills): split phoenix-verify reference by language and read-back path
  • 517e8bd chore(skills): apply code-review fixes to phoenix-verify
  • 1d52216 chore(skills): make phoenix-verify language-neutral
  • e7b71af chore(skills): phoenix-verify MCP read-back path
  • Additional commits viewable in compare view

Updates @arizeai/openinference-vercel from 3.1.11 to 3.2.0

Release notes

Sourced from @​arizeai/openinference-vercel's releases.

@​arizeai/openinference-vercel@​3.2.0

Minor Changes

  • 4a64b91: Add the llm.finish_reason attribute to Vercel AI SDK LLM spans by mapping ai.response.finishReason.

@​arizeai/openinference-vercel@​3.1.13

Patch Changes

  • Updated dependencies [0ff0af2]
  • Updated dependencies [0ff0af2]
    • @​arizeai/openinference-semantic-conventions@​2.11.0
    • @​arizeai/openinference-core@​2.7.0
    • @​arizeai/openinference-genai@​0.3.9

@​arizeai/openinference-vercel@​3.1.12

Patch Changes

  • Updated dependencies [6d9f813]
    • @​arizeai/openinference-semantic-conventions@​2.10.0
    • @​arizeai/openinference-core@​2.6.3
    • @​arizeai/openinference-genai@​0.3.8
Commits

Updates @better-auth/infra from 0.4.7 to 0.4.9

Commits

Updates ai from 7.0.95 to 7.0.102

Changelog

Sourced from ai's changelog.

7.0.102

Patch Changes

  • 5c0054d: Add optional browser-direct WebRTC for experimental client-delegated Live conversations alongside the existing WebSocket path. Exchange SDP through an application endpoint with api.session, configure server-owned data-channel permissions, and preserve committed React session ownership. Capture follows the selected sender track, borrowed tracks remain caller-owned, and disconnect recovery and finalization stay bounded. Applications continue to handle client delegation and submit context; Live session updates and Responses delegation remain unsupported.

    Serialize microphone sender changes and close the peer if detachment fails, without stopping borrowed tracks. Validate nonempty SDP setup answers with a bounded response body, and document the same-origin broker authentication contract.

  • 39535af: Add experimental OpenAI Live provider support through the unified openai.experimental_realtime factory for server WebSocket sessions with client delegation. Applications own their agents and tools, receive continuous audio/transcript events and delegation metadata, and return context through validated channels. Support immutable startup options, microphone mute controls, graceful session close, and cumulative voice usage. Responses delegation and Live session updates reject before sending.

    Route known Live model IDs to Live, allow an OpenAI-specific api override for early-access models, and preserve legacy Realtime defaults for unknown IDs. Token minting follows the same selection rules and rejects Live before requesting unsupported credentials. Extend the realtime v4 specification with optional server WebSocket configuration, per-connection raw-event parsers, and model-wide startup/finalization capabilities. This provider layer supplies connection settings and protocol mapping for server adapters; browser lifecycle and UI integration belong to the core runtime and framework hooks.

    Preserve Realtime client event IDs for session updates and audio appends, and correlate server errors with the originating client event.

  • 8b92ba9: fix(ai): settle automatically denied tool calls in UI streams

  • 4b306c2: Report abnormal realtime WebSocket close codes and reasons through the session error path.

  • 4b306c2: Add the client-delegation-first realtime WebSocket runtime with session lifecycle, exact final duration, bounded event queues and command acknowledgement tracking, transcripts, context append, and reversible capture. Continuous sessions support PCM16 audio-chunk playback over an application relay with a recoverable live-edge buffer policy. Legacy turn-based WebSockets retain queued playback and frontend tool handling.

    Remove the deferred managed Responses coordinator, autoContinueTools option, backend usage state, and Live tool-result aliases. Continuous text and delegation handling belong to the application; sendTextMessage and addToolOutput reject continuous sessions. Server-confirmed provider delegation and turn-based audio-delta on the continuous profile fail explicitly. maxPlaybackBufferSeconds is supported only for continuous PCM sessions.

    Fence callbacks, startup publications, tool results, and teardown by connection attempt. Validate token setup before opening a client-secret socket, require explicit relay transport mode, and include WebSocket URL, protocol values, and runtime timeouts/buffer settings in React session configuration keys.

    Retain immediate local capture for explicit legacy preconnect streams, including owned-track cleanup and capture continuity through asynchronous setup. Signal transport closing before draining accepted terminal events, share reentrant close settlement, and cancel stale readiness and deadlines. Enforce 128 KiB frame and combined buffered-send budgets only for Live continuous sessions, using actual encoded wire bytes; oversized manual operations remain recoverable while startup and automatic audio failures close the session. Legacy startup, text, tool output, and audio retain their pre-Live behavior without these byte caps. Live pending-audio overflow drains accepted terminal usage within the existing one-second drain window. Validate final provider-transformed WebSocket URL syntax without removing native authentication query parameters.

  • Updated dependencies [5c0054d]

  • Updated dependencies [39535af]

    • @​ai-sdk/provider@​4.0.15
    • @​ai-sdk/gateway@​4.0.82
    • @​ai-sdk/provider-utils@​5.0.41

7.0.101

Patch Changes

  • 6aa7c54: fix(ai): serialize tool output JSON values

7.0.100

Patch Changes

  • 6431635: feat(ai): expose typed AI SDK errors for UI transport and completion failures
  • Updated dependencies [23a0fff]
    • @​ai-sdk/gateway@​4.0.81

7.0.99

Patch Changes

  • 615ac89: feat(ai): use InvalidArgumentError for utility input validation
  • Updated dependencies [7f76d83]

... (truncated)

Commits

Updates better-auth from 1.7.3 to 1.7.5

Release notes

Sourced from better-auth's releases.

v1.7.5

better-auth

Features

  • Added database.schemaName support for direct PostgreSQL connections. (#11203)

Bug Fixes

  • Improved server-side logging for Cloudflare Turnstile verification failures. (#11283)
  • Fixed PostgreSQL migrations incorrectly identifying tables and views across schemas. (#11270)
  • Fixed MySQL index validation for existing string columns. (#11272)
  • Removed the unused optional better-sqlite3 peer dependency to prevent installation conflicts. (#11209)

For detailed changes, see CHANGELOG

@better-auth/core

Features

  • Added database.schemaName support for direct PostgreSQL connections. (#11203)

Bug Fixes

  • Fixed database option type inference outside Cloudflare Workers. (#11290)

For detailed changes, see CHANGELOG

@better-auth/cimd

Bug Fixes

  • Fixed unnecessary pacing of consecutive CIMD OAuth requests when metadata cannot be cached. (#11161)

For detailed changes, see CHANGELOG

@better-auth/drizzle-adapter

Bug Fixes

  • Fixed lazy database initialization when using Drizzle relations. (#11263)

For detailed changes, see CHANGELOG

@better-auth/kysely-adapter

Features

  • Added database.schemaName support for direct PostgreSQL connections. (#11203)

... (truncated)

Changelog

Sourced from better-auth's changelog.

1.7.5

Patch Changes

  • #11283 e56c45b Thanks @​bytaesu! - Log Cloudflare Turnstile error codes and binding mismatches on the server so CAPTCHA verification failures can be diagnosed.

  • #11209 8d37cc3 Thanks @​siam923! - Remove the unused optional better-sqlite3 peer dependency to prevent installation conflicts.

  • #11272 348fc26 Thanks @​bytaesu! - Use MySQL's reported byte lengths when validating indexes on existing string columns.

  • #11203 cb627eb Thanks @​dshukertjr! - Add a database.schemaName option for direct PostgreSQL connections. When set, the adapter and the CLI qualify every statement with that schema, so auth generate writes a schema-qualified migration that creates the schema before its tables instead of relying on the connection's search_path.

  • #11270 133f6a2 Thanks @​bytaesu! - Prevent PostgreSQL migrations from treating tables in other schemas or views in the active schema as Better Auth tables.

  • Updated dependencies [e18bc83, cb627eb, dae97ed]:

    • @​better-auth/drizzle-adapter@​1.7.5
    • @​better-auth/kysely-adapter@​1.7.5
    • @​better-auth/core@​1.7.5
    • @​better-auth/memory-adapter@​1.7.5
    • @​better-auth/mongo-adapter@​1.7.5
    • @​better-auth/prisma-adapter@​1.7.5
    • @​better-auth/telemetry@​1.7.5

1.7.4

Patch Changes

  • #11205 3f890eb Thanks @​bytaesu! - Support Vitest 5 in the testing utilities while retaining support for previously supported Vitest versions.

  • #11224 c1756a2 Thanks @​bytaesu! - Add experimental.instrumentation.enabled to disable Better Auth OpenTelemetry span creation per auth instance. Instrumentation remains enabled by default and independent of usage reporting.

  • #11217 9b9638e Thanks @​onmax! - Allow testUtils auth helpers to accept additional session fields through the session option, including required fields without defaults and per-session overrides of configured defaults.

  • Updated dependencies [3ff842a, b905bfe, c1756a2]:

    • @​better-auth/core@​1.7.4
    • @​better-auth/drizzle-adapter@​1.7.4
    • @​better-auth/kysely-adapter@​1.7.4
    • @​better-auth/memory-adapter@​1.7.4
    • @​better-auth/mongo-adapter@​1.7.4
    • @​better-auth/prisma-adapter@​1.7.4
    • @​better-auth/telemetry@​1.7.4
Commits
  • 5468e6b chore: release v1.7.5 (#11245)
  • e56c45b fix(captcha): log Turnstile verification failures (#11283)
  • cb627eb feat(postgres): add support for custom schema name in PostgreSQL connections ...
  • 348fc26 fix(db): use reported MySQL index byte bounds (#11272)
  • b93f73d refactor(db): model migration targets by dialect (#11271)
  • 133f6a2 fix(db): use Kysely metadata for PostgreSQL schema introspection (#11270)
  • 34ad3be refactor(cookies): centralize cookie cache version validation (#11254)
  • 8d37cc3 fix(deps): remove unused better-sqlite3 peer dependency (#11209)
  • 735008f chore: release v1.7.4 (#11216)
  • 80b1d64 chore(deps): bump next (#11226)
  • Additional commits viewable in compare view

Updates lucide-react from 1.43.0 to 1.46.0

Release notes

Sourced from lucide-react's releases.

Version 1.46.0

What's Changed

Full Changelog: lucide-icons/lucide@1.45.0...1.46.0

Version 1.45.0

What's Changed

New Contributors

Full Changelog: lucide-icons/lucide@1.44.0...1.45.0

Version 1.44.0

What's Changed

... (truncated)

Commits

Updates react from 19.2.8 to 19.3.0

Release notes

Sourced from react's releases.

19.3.0 (September 9, 2026)

Below is a list of all new features, APIs, and bug fixes.

Read the React 19.3 release post for more information.

New React Features

Bumps the production-dependencies group with 14 updates:

| Package | From | To |
| --- | --- | --- |
| [@ai-sdk/google](https://github.com/vercel/ai/tree/HEAD/packages/google) | `4.0.65` | `4.0.72` |
| [@ai-sdk/openai](https://github.com/vercel/ai/tree/HEAD/packages/openai) | `4.0.63` | `4.0.67` |
| [@ai-sdk/otel](https://github.com/vercel/ai/tree/HEAD/packages/otel) | `1.0.95` | `1.0.102` |
| [@arizeai/openinference-semantic-conventions](https://github.com/Arize-ai/openinference) | `2.9.0` | `2.11.0` |
| [@arizeai/openinference-vercel](https://github.com/Arize-ai/openinference) | `3.1.11` | `3.2.0` |
| [@better-auth/infra](https://github.com/better-auth/infrastructure/tree/HEAD/packages/infra) | `0.4.7` | `0.4.9` |
| [ai](https://github.com/vercel/ai/tree/HEAD/packages/ai) | `7.0.95` | `7.0.102` |
| [better-auth](https://github.com/better-auth/better-auth/tree/HEAD/packages/better-auth) | `1.7.3` | `1.7.5` |
| [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `1.43.0` | `1.46.0` |
| [react](https://github.com/react/react/tree/HEAD/packages/react) | `19.2.8` | `19.3.0` |
| [react-dom](https://github.com/react/react/tree/HEAD/packages/react-dom) | `19.2.8` | `19.3.0` |
| [tailwind-merge](https://github.com/dcastil/tailwind-merge/tree/HEAD/packages/tailwind-merge) | `3.6.0` | `3.7.0` |
| [vercel](https://github.com/vercel/vercel/tree/HEAD/packages/cli) | `59.14.0` | `59.19.0` |
| [zod](https://github.com/colinhacks/zod) | `4.5.4` | `4.6.5` |


Updates `@ai-sdk/google` from 4.0.65 to 4.0.72
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/google/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/google@4.0.72/packages/google)

Updates `@ai-sdk/openai` from 4.0.63 to 4.0.67
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/openai/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/openai@4.0.67/packages/openai)

Updates `@ai-sdk/otel` from 1.0.95 to 1.0.102
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/otel/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/otel@1.0.102/packages/otel)

Updates `@arizeai/openinference-semantic-conventions` from 2.9.0 to 2.11.0
- [Release notes](https://github.com/Arize-ai/openinference/releases)
- [Commits](https://github.com/Arize-ai/openinference/compare/@arizeai/openinference-semantic-conventions@2.9.0...@arizeai/openinference-semantic-conventions@2.11.0)

Updates `@arizeai/openinference-vercel` from 3.1.11 to 3.2.0
- [Release notes](https://github.com/Arize-ai/openinference/releases)
- [Commits](https://github.com/Arize-ai/openinference/compare/@arizeai/openinference-vercel@3.1.11...@arizeai/openinference-vercel@3.2.0)

Updates `@better-auth/infra` from 0.4.7 to 0.4.9
- [Commits](https://github.com/better-auth/infrastructure/commits/HEAD/packages/infra)

Updates `ai` from 7.0.95 to 7.0.102
- [Release notes](https://github.com/vercel/ai/releases)
- [Changelog](https://github.com/vercel/ai/blob/main/packages/ai/CHANGELOG.md)
- [Commits](https://github.com/vercel/ai/commits/ai@7.0.102/packages/ai)

Updates `better-auth` from 1.7.3 to 1.7.5
- [Release notes](https://github.com/better-auth/better-auth/releases)
- [Changelog](https://github.com/better-auth/better-auth/blob/main/packages/better-auth/CHANGELOG.md)
- [Commits](https://github.com/better-auth/better-auth/commits/v1.7.5/packages/better-auth)

Updates `lucide-react` from 1.43.0 to 1.46.0
- [Release notes](https://github.com/lucide-icons/lucide/releases)
- [Commits](https://github.com/lucide-icons/lucide/commits/1.46.0/packages/lucide-react)

Updates `react` from 19.2.8 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react)

Updates `react-dom` from 19.2.8 to 19.3.0
- [Release notes](https://github.com/react/react/releases)
- [Changelog](https://github.com/react/react/blob/main/CHANGELOG.md)
- [Commits](https://github.com/react/react/commits/v19.3.0/packages/react-dom)

Updates `tailwind-merge` from 3.6.0 to 3.7.0
- [Release notes](https://github.com/dcastil/tailwind-merge/releases)
- [Commits](https://github.com/dcastil/tailwind-merge/commits/tailwind-merge@3.7.0/packages/tailwind-merge)

Updates `vercel` from 59.14.0 to 59.19.0
- [Release notes](https://github.com/vercel/vercel/releases)
- [Changelog](https://github.com/vercel/vercel/blob/main/packages/cli/CHANGELOG.md)
- [Commits](https://github.com/vercel/vercel/commits/HEAD/packages/cli)

Updates `zod` from 4.5.4 to 4.6.5
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v4.5.4...v4.6.5)

---
updated-dependencies:
- dependency-name: "@ai-sdk/google"
  dependency-version: 4.0.72
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@ai-sdk/openai"
  dependency-version: 4.0.67
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@ai-sdk/otel"
  dependency-version: 1.0.102
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: "@arizeai/openinference-semantic-conventions"
  dependency-version: 2.11.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@arizeai/openinference-vercel"
  dependency-version: 3.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: "@better-auth/infra"
  dependency-version: 0.4.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: ai
  dependency-version: 7.0.102
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: better-auth
  dependency-version: 1.7.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: lucide-react
  dependency-version: 1.46.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: react
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: react-dom
  dependency-version: 19.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: tailwind-merge
  dependency-version: 3.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: vercel
  dependency-version: 59.19.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: zod
  dependency-version: 4.6.5
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 19, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 26, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 26, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/production-dependencies-6798ff44a8 branch September 26, 2026 15:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants