Skip to content

chore(deps): Bump the npm-minor-and-patch group with 2 updates - #27

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-and-patch-7232f66c31
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm-minor-and-patch-7232f66c31

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the npm-minor-and-patch group with 2 updates: @run402/sdk and jose.

Updates @run402/sdk from 4.8.0 to 4.11.1

Release notes

Sourced from @​run402/sdk's releases.

v4.11.1

Full Changelog: kychee-com/run402@v4.11.0...v4.11.1

v4.11.0

Full Changelog: kychee-com/run402@v4.10.2...v4.11.0

v4.10.2

External x402 buyer

  • Added r.pay.fetch() to the SDK for paying arbitrary x402-protected URLs, with a default $0.10 guardrail, exact receipt data, and structured failures.
  • Made same-instance retries safe by reusing the identical signed proof after ambiguous transport failures and recognizing already_settled responses.
  • Added run402 pay, the pay_url MCP tool, and the matching OpenClaw surface.
  • Documented the raw HTTP payment flow and added regression, CLI, MCP, SDK, sync, and documentation tests.

Full Changelog: kychee-com/run402@v4.10.1...v4.10.2

v4.10.1

Full Changelog: kychee-com/run402@v4.10.0...v4.10.1

v4.10.0

Full Changelog: kychee-com/run402@v4.9.0...v4.10.0

v4.9.0

Full Changelog: kychee-com/run402@v4.8.0...v4.9.0

Commits
  • 8e8c9e9 chore: bump version to v4.11.1
  • 19ef724 fix(sdk): add default export conditions so CJS-context manifest loading resol...
  • c5f0542 feat: add verifiable x402 commerce results
  • 922ae79 chore: bump version to v4.11.0
  • 3337b82 feat(pay): preserve caller-keyed tenant payment recovery
  • e3eec74 chore: bump version to v4.10.2
  • bb8c0ea feat: add x402 buyer client surface (#506)
  • 6f4a4fa chore: bump version to v4.10.1
  • 5880c25 chore: bump version to v4.10.0
  • 07529f9 Deploy-manifest verify.http[], did-you-mean suggestions, canonical asset enve...
  • Additional commits viewable in compare view

Updates jose from 6.2.3 to 6.2.4

Release notes

Sourced from jose's releases.

v6.2.4

Documentation

  • update README.md and SECURITY.md to reflect passed EOL dates (2a84032)

Refactor

  • normalize JWK export members from runtime quirks (386a3eb)
Changelog

Sourced from jose's changelog.

6.2.4 (2026-07-21)

Documentation

  • update README.md and SECURITY.md to reflect passed EOL dates (2a84032)

Refactor

  • normalize JWK export members from runtime quirks (386a3eb)
Commits
  • 3ced677 chore(release): 6.2.4
  • 9725456 chore: bump packages
  • 386a3eb refactor: normalize JWK export members from runtime quirks
  • f86dbef chore: bump packages
  • 990c670 test: update electron expectations
  • 0bbe2d0 chore: fix broken links for undici
  • 294c40c test: update electron expectations
  • a378068 chore(deps): bump the actions group with 2 updates
  • b299ce2 chore(deps-dev): bump undici
  • f261d84 chore(deps-dev): bump tar in the npm_and_yarn group across 1 directory
  • Additional commits viewable in compare view

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the npm-minor-and-patch group with 2 updates: [@run402/sdk](https://github.com/kychee-com/run402/tree/HEAD/sdk) and [jose](https://github.com/panva/jose).


Updates `@run402/sdk` from 4.8.0 to 4.11.1
- [Release notes](https://github.com/kychee-com/run402/releases)
- [Changelog](https://github.com/kychee-com/run402/blob/main/CHANGELOG.md)
- [Commits](https://github.com/kychee-com/run402/commits/v4.11.1/sdk)

Updates `jose` from 6.2.3 to 6.2.4
- [Release notes](https://github.com/panva/jose/releases)
- [Changelog](https://github.com/panva/jose/blob/main/CHANGELOG.md)
- [Commits](panva/jose@v6.2.3...v6.2.4)

---
updated-dependencies:
- dependency-name: "@run402/sdk"
  dependency-version: 4.11.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: npm-minor-and-patch
- dependency-name: jose
  dependency-version: 6.2.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: npm-minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Aug 1, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 1, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 1, 2026
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/npm-minor-and-patch-7232f66c31 branch September 1, 2026 03:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants