Bump plugin-bones to 92d84d7 (night-8 batch) - #705
Conversation
…X-ray far-face) 10 loop-verified batches: B14 receptacle coverage, B6 roof package, B9 wall bracing, B11 snow headers, B7 hip thrust, B10 wind uplift, B8 roof closures, render perf (material cache + move-preview patch path), B21e takeoff waste honesty, X-ray far-face cut. 1550 tests. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
There was a problem hiding this comment.
Cursor Bugbot has reviewed your changes using high effort and found 1 potential issue.
❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.
Reviewed by Cursor Bugbot for commit 5bd6005. Configure here.
| "@pascal-app/plugin-streetscape": ["@pascal-app/plugin-streetscape@github:sudhir9297/streetscape-pascal-plugin#1c04ec9", { "peerDependencies": { "@pascal-app/core": ">=0.9.1 <1", "@pascal-app/editor": ">=0.9.1 <1", "@pascal-app/viewer": ">=0.9.1 <1", "@react-three/fiber": "^9", "react": "^18 || ^19", "three": "^0.185", "zod": "^4", "zustand": "^5" } }, "sudhir9297-streetscape-pascal-plugin-1c04ec9"], | ||
|
|
||
| "@pascal-app/plugin-trees": ["@pascal-app/plugin-trees@github:pascalorg/plugin-trees#56d978c", { "dependencies": { "@dgreenheck/ez-tree": "^1.1.0" }, "peerDependencies": { "@pascal-app/core": ">=0.9.1 <1", "@pascal-app/editor": ">=0.9.1 <1", "@pascal-app/viewer": ">=0.9.1 <1", "@react-three/fiber": "^9", "react": "^18 || ^19", "three": "^0.185", "zod": "^4", "zustand": "^5" } }, "pascalorg-plugin-trees-56d978c", "sha512-16VzWot1oadvxCPqsRwMJbaP0a3u5FESFy7F7++pY5wAAFq9JTFwzHvKAsllrY5TZ5TJ7Y5vSqvbmQk8sy8HaA=="], | ||
| "@pascal-app/plugin-trees": ["@pascal-app/plugin-trees@github:pascalorg/plugin-trees#56d978c", { "dependencies": { "@dgreenheck/ez-tree": "^1.1.0" }, "peerDependencies": { "@pascal-app/core": ">=0.9.1 <1", "@pascal-app/editor": ">=0.9.1 <1", "@pascal-app/viewer": ">=0.9.1 <1", "@react-three/fiber": "^9", "react": "^18 || ^19", "three": "^0.185", "zod": "^4", "zustand": "^5" } }, "pascalorg-plugin-trees-56d978c"], |
There was a problem hiding this comment.
Lockfile drops GitHub integrity hashes
Medium Severity
This lockfile rewrite removes the sha512 integrity field for @pascal-app/plugin-bones and also strips it from unchanged GitHub deps @mint/pascal-plugin, @pascal-app/plugin-streetscape, and @pascal-app/plugin-trees. Bun 1.3.14 uses those hashes to verify GitHub tarball bytes on re-download, so CI/frozen-lockfile installs no longer pin package contents the way the prior lockfile did.
Additional Locations (1)
Reviewed by Cursor Bugbot for commit 5bd6005. Configure here.


Pins plugin-bones to master 92d84d7 — the night-8 batch, every change adversarially loop-verified (skeptic + blueprint examiner per batch):
Suite 1550 green, tsc clean, E5 baseline stable. Pre-ship 3D visual round: SHIP (7/7 checks, evidence retained).
Note
Medium Risk
Dependency-only bump, but plugin-bones owns building-code takeoffs and 3D rendering, so regressions can affect editor behavior without local source review.
Overview
Pins
@pascal-app/plugin-bonesfrom73c0812to92d84d7in the editor app andbun.lock.The new pin is the night-8 plugin batch: receptacle/GFCI coverage, roof/wall-bracing/snow/wind/hip-thrust packages, takeoff honesty, plus render perf and x-ray far-face fixes. Lockfile also drops integrity hashes on a few Git plugin entries (bones, mint, streetscape, trees).
Reviewed by Cursor Bugbot for commit 5bd6005. Bugbot is set up for automated code reviews on this repo. Configure here.