Skip to content

chore(deps): update dependency @mastra/mcp to ^0.10.6 #5886

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dane-ai-mastra[bot]
Copy link
Contributor

This PR contains the following updates:

Package Type Update Change
@​mastra/mcp dependencies patch ^0.10.5 -> ^0.10.6

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

Copy link

codesandbox bot commented Jul 13, 2025

Review or Edit in CodeSandbox

Open the branch in Web EditorVS CodeInsiders

Open Preview

Copy link

changeset-bot bot commented Jul 13, 2025

⚠️ No Changeset found

Latest commit: 4c92a62

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

Copy link

vercel bot commented Jul 13, 2025

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
assistant-ui ✅ Ready (Inspect) Visit Preview 💬 Add feedback Jul 13, 2025 11:17pm
mastra-docs ✅ Ready (Inspect) Visit Preview 💬 Add feedback Jul 13, 2025 11:17pm
openapi-spec-writer ✅ Ready (Inspect) Visit Preview 💬 Add feedback Jul 13, 2025 11:17pm

Copy link
Contributor

@greptile-apps greptile-apps bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Greptile Summary

This PR updates the @mastra/mcp dependency from version ^0.10.5 to ^0.10.6 in the gh-issue-triage tool. Based on the changelog evidence, this patch update includes important runtime context fixes for the Mastra server and client SDK, along with dependency updates like the zod version bump.

Confidence score: 5/5

  1. This is a very safe dependency update PR with clear version bumps and well-documented changes
  2. The confidence score is high because this is a patch version update with clear changelog entries and no breaking changes
  3. Files needing attention: scripts/gh-issue-triage/package.json to verify the version bump is correct

1 file reviewed, no comments
Edit PR Review Bot Settings | Greptile

Copy link

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addedsonner@​1.7.41001007991100
Addednext@​15.3.18296909870
Added@​ai-sdk/​anthropic@​1.2.101001008296100
Addednext-themes@​0.4.61001009884100
Addednuqs@​2.4.39910010094100
Updatedai@​4.3.16 ⏵ 4.3.999 +1100100100100

View full report

Copy link

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert (click for details)
Warn High
[email protected] has a License Policy Violation.

License: CC-BY-SA-4.0 (package/dist/compiled/glob/LICENSE)

From: examples/bird-checker-with-nextjs/package.jsonnpm/[email protected]

ℹ Read more on: This package | This alert | What is a license policy violation?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at [email protected].

Suggestion: Find a package that does not violate your license policy or adjust your policy to allow this package's license.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/[email protected]. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants