Conversation
Bumps the ruby-deps group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [nokogiri](https://github.com/sparklemotion/nokogiri) | `1.19.1` | `1.19.2` | | [pagy](https://github.com/ddnexus/pagy) | `43.3.0` | `43.4.1` | | [tzinfo-data](https://github.com/tzinfo/tzinfo-data) | `1.2025.3` | `1.2026.1` | | [commonmarker](https://github.com/gjtorikian/commonmarker) | `2.6.3` | `2.7.0` | | [rails-html-sanitizer](https://github.com/rails/rails-html-sanitizer) | `1.6.2` | `1.7.0` | | [haml_lint](https://github.com/sds/haml-lint) | `0.70.0` | `0.72.0` | | [web-console](https://github.com/rails/web-console) | `4.2.1` | `4.3.0` | | [faker](https://github.com/faker-ruby/faker) | `3.6.0` | `3.6.1` | | [rspec-rails](https://github.com/rspec/rspec-rails) | `8.0.3` | `8.0.4` | | [rubocop](https://github.com/rubocop/rubocop) | `1.84.2` | `1.85.1` | | [capybara-playwright-driver](https://github.com/YusukeIwaki/capybara-playwright-driver) | `0.5.8` | `0.5.9` | | [webmock](https://github.com/bblimke/webmock) | `3.26.1` | `3.26.2` | Updates `nokogiri` from 1.19.1 to 1.19.2 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.19.1...v1.19.2) Updates `pagy` from 43.3.0 to 43.4.1 - [Release notes](https://github.com/ddnexus/pagy/releases) - [Changelog](https://github.com/ddnexus/pagy/blob/master/CHANGELOG.md) - [Commits](ddnexus/pagy@43.3.0...43.4.1) Updates `tzinfo-data` from 1.2025.3 to 1.2026.1 - [Release notes](https://github.com/tzinfo/tzinfo-data/releases) - [Commits](tzinfo/tzinfo-data@v1.2025.3...v1.2026.1) Updates `commonmarker` from 2.6.3 to 2.7.0 - [Release notes](https://github.com/gjtorikian/commonmarker/releases) - [Changelog](https://github.com/gjtorikian/commonmarker/blob/main/CHANGELOG.md) - [Commits](gjtorikian/commonmarker@v2.6.3...v2.7.0) Updates `rails-html-sanitizer` from 1.6.2 to 1.7.0 - [Release notes](https://github.com/rails/rails-html-sanitizer/releases) - [Changelog](https://github.com/rails/rails-html-sanitizer/blob/main/CHANGELOG.md) - [Commits](rails/rails-html-sanitizer@v1.6.2...v1.7.0) Updates `haml_lint` from 0.70.0 to 0.72.0 - [Release notes](https://github.com/sds/haml-lint/releases) - [Changelog](https://github.com/sds/haml-lint/blob/main/CHANGELOG.md) - [Commits](sds/haml-lint@v0.70.0...v0.72.0) Updates `web-console` from 4.2.1 to 4.3.0 - [Release notes](https://github.com/rails/web-console/releases) - [Changelog](https://github.com/rails/web-console/blob/main/CHANGELOG.markdown) - [Commits](rails/web-console@v4.2.1...v4.3.0) Updates `faker` from 3.6.0 to 3.6.1 - [Release notes](https://github.com/faker-ruby/faker/releases) - [Changelog](https://github.com/faker-ruby/faker/blob/main/CHANGELOG.md) - [Commits](faker-ruby/faker@v3.6.0...v3.6.1) Updates `rspec-rails` from 8.0.3 to 8.0.4 - [Changelog](https://github.com/rspec/rspec-rails/blob/main/Changelog.md) - [Commits](rspec/rspec-rails@v8.0.3...v8.0.4) Updates `rubocop` from 1.84.2 to 1.85.1 - [Release notes](https://github.com/rubocop/rubocop/releases) - [Changelog](https://github.com/rubocop/rubocop/blob/master/CHANGELOG.md) - [Commits](rubocop/rubocop@v1.84.2...v1.85.1) Updates `capybara-playwright-driver` from 0.5.8 to 0.5.9 - [Commits](YusukeIwaki/capybara-playwright-driver@0.5.8...0.5.9) Updates `webmock` from 3.26.1 to 3.26.2 - [Release notes](https://github.com/bblimke/webmock/releases) - [Changelog](https://github.com/bblimke/webmock/blob/master/CHANGELOG.md) - [Commits](bblimke/webmock@v3.26.1...v3.26.2) --- updated-dependencies: - dependency-name: nokogiri dependency-version: 1.19.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ruby-deps - dependency-name: pagy dependency-version: 43.4.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: tzinfo-data dependency-version: 1.2026.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: commonmarker dependency-version: 2.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: rails-html-sanitizer dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: haml_lint dependency-version: 0.72.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: web-console dependency-version: 4.3.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: faker dependency-version: 3.6.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: ruby-deps - dependency-name: rspec-rails dependency-version: 8.0.4 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: ruby-deps - dependency-name: rubocop dependency-version: 1.85.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: ruby-deps - dependency-name: capybara-playwright-driver dependency-version: 0.5.9 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: ruby-deps - dependency-name: webmock dependency-version: 3.26.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: ruby-deps ... Signed-off-by: dependabot[bot] <support@github.com>
b86821f to
0b01f96
Compare
mroderick
approved these changes
Mar 20, 2026
Collaborator
mroderick
left a comment
There was a problem hiding this comment.
High confidence - all 12 dependency updates are backward-compatible minor/patch versions. 882 tests pass. No breaking changes affect the app's usage.
mroderick
reviewed
Mar 20, 2026
Collaborator
mroderick
left a comment
There was a problem hiding this comment.
Dependency Upgrade Review: ruby-deps group (12 updates)
Summary
All 12 dependency updates are backward-compatible minor/patch versions. 882 tests pass.
Package Details
| Package | From | To | Risk | Notes |
|---|---|---|---|---|
| nokogiri | 1.19.1 | 1.19.2 | Low | Patch - transitive Saxon-HE update |
| pagy | 43.3.0 | 43.4.1 | Low | Minor - deprecation normalization |
| tzinfo-data | 2025.3 | 2026.1 | Low | Timezone data update |
| commonmarker | 2.6.3 | 2.7.0 | Low | Used in dot_markdown helper for markdown rendering |
| rails-html-sanitizer | 1.6.2 | 1.7.0 | Low | New method, backward compatible |
| haml_lint | 0.70.0 | 0.72.0 | Low | Dev only |
| web-console | 4.2.1 | 4.3.0 | Low | Dev only |
| faker | 3.6.0 | 3.6.1 | Low | Dev only, security fix |
| rspec-rails | 8.0.3 | 8.0.4 | Low | Dev only |
| rubocop | 1.84.2 | 1.85.1 | Low | Dev only |
| capybara-playwright-driver | 0.5.8 | 0.5.9 | Low | Dev only |
| webmock | 3.26.1 | 3.26.2 | Low | Dev only |
Test Results
- 882 tests pass ✅
- No breaking changes affect the app's usage
Confidence: High
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the ruby-deps group with 12 updates in the / directory:
1.19.11.19.243.3.043.4.11.2025.31.2026.12.6.32.7.01.6.21.7.00.70.00.72.04.2.14.3.03.6.03.6.18.0.38.0.41.84.21.85.10.5.80.5.93.26.13.26.2Updates
nokogirifrom 1.19.1 to 1.19.2Release notes
Sourced from nokogiri's releases.
Changelog
Sourced from nokogiri's changelog.
Commits
6f5d025version bump to v1.19.26d4677fdep: upgrade Saxon-HE from 9.6.0-4 to 12.7 [v1.19.x backport] (#3614)acf9527dep: upgrade Saxon-HE from 9.6.0-4 to 12.7b42e620Skip compressed file SAX test on libxml2 >= 2.15Updates
pagyfrom 43.3.0 to 43.4.1Release notes
Sourced from pagy's releases.
... (truncated)
Changelog
Sourced from pagy's changelog.
Commits
ce0a64dMerge branch 'dev'143588dVersion 43.4.189e6b13Update gemseb6e2f0Improve more docs visual aids068cbc5💎 Normalize deprecationsb8caceeUpdate pagy-tailwind.css (close #887)8334ab8Improve options formatting in docsa6107a4Fixes and improves visual aids in docsb575393Improve visual aids in docs (icons, steps, panels, ...)e19b158Merge branch 'dev'Updates
tzinfo-datafrom 1.2025.3 to 1.2026.1Release notes
Sourced from tzinfo-data's releases.
Commits
5e9d667Update to tzdata version 2026a.3a03d35Rebuild modules for 2026 (adding an additional year of future data).73971d9Update copyright years.f73295cUpdate to Ruby 4.0.Updates
commonmarkerfrom 2.6.3 to 2.7.0Release notes
Sourced from commonmarker's releases.
Changelog
Sourced from commonmarker's changelog.
Commits
863a679Merge pull request #445 from gjtorikian/release/v2.7.09205c50Update CHANGELOG.md84b1f00Merge pull request #447 from gjtorikian/add-compact-html-render-option399a52eMerge pull request #446 from gjtorikian/add-insert-extensionceb9277Addcompact_htmlrender option to suppress newlines in HTML output22f957bAddinsertextension for rendering++text++as\<ins>text\</ins>e625b98[skip test] update changelog886dfb7Merge pull request #443 from fukayatsu/add-fenced-getterc9ac53fMerge pull request #444 from gjtorikian/dependabot/cargo/comrak-0.51.095cb510Bump comrak from 0.50.0 to 0.51.0Updates
rails-html-sanitizerfrom 1.6.2 to 1.7.0Release notes
Sourced from rails-html-sanitizer's releases.
Changelog
Sourced from rails-html-sanitizer's changelog.
Commits
a8a0413version bump to v1.7.0ea9e7a4Merge pull request #214 from rails/add-allowed-urif26dc35Add Rails::HTML::Sanitizer.allowed_uri? delegating to Loofahcc83f51Merge pull request #213 from rails/flavorjones/ruby-4-supportee54515dev: ruby 4 support2a8fe89Merge pull request #208 from rails/dependabot/bundler/rack-3.1.172b0ecc7build(deps-dev): bump rack from 3.1.16 to 3.1.17c7ab9f2Merge pull request #206 from rails/dependabot/bundler/rack-3.1.160283ca4build(deps-dev): bump rack from 3.1.14 to 3.1.16ba7a284Merge pull request #204 from rails/dependabot/bundler/rack-3.1.14Updates
haml_lintfrom 0.70.0 to 0.72.0Release notes
Sourced from haml_lint's releases.
Changelog
Sourced from haml_lint's changelog.
Commits
c7eec90Cut version 0.72.0 (#634)3de6799Update rubocop requirement from 1.81.7 to 1.85.0 (#633)117b72aFix SpaceInsideParens violations in wrapped tag attributes (#632)73f075eCut version 0.71.0 (#630)9ac6174Gracefully degrade if Coveralls is down (#631)Updates
web-consolefrom 4.2.1 to 4.3.0Release notes
Sourced from web-console's releases.
Changelog
Sourced from web-console's changelog.
Commits
90e3474Release 4.3.0bdbb391Merge pull request #344 from fatkodima/fix-filter-proxies950462cFix compatiblity with latest railsc1f9252Merge pull request #345 from fatkodima/fix-ci6bc7159Fix CI859bc60Merge pull request #342 from zunda/bind-on-ipv6c66460aAlways permit IPv4-mapped IPv6 loopback addressesf3d437cMerge pull request #338 from luiscobot/patch-15383121replace close icon with ×9a5c089Merge pull request #336 from sambostock/drop-active-modelUpdates
fakerfrom 3.6.0 to 3.6.1Release notes
Sourced from faker's releases.
Changelog
Sourced from faker's changelog.
Commits
200c04aBump faker to v3.6.1 (#3221)079e87dBump rubocop to v1.85.0 (#3220)ae24592Bump rubocop-minitest from 0.38.2 to 0.39.1 (#3216)9ef1ecaRemove duplicate markdown reference link definition in README (#3217)ecd2f14Bump rubocop to 1.84.2 (#3215)a3624a8Zeitwerk experiment changes and results [skip ci] (#3213)c734011[skip ci]Add-backtick (#3210)bbd3f24Document lazy load experiment results (#3205)1ca97a0Remove unnecessary whitespace in README.md and /lib/locales/README.md (#3209)622580dBump rdoc from 7.1.0 to 7.2.0 (#3204)Updates
rspec-railsfrom 8.0.3 to 8.0.4Changelog
Sourced from rspec-rails's changelog.
Commits
222fb55Drop compatibility check rails version to 8.0.0769a3c4v8.0.40549e59Merge pull request #2895 from rspec/add-rspec-4-ci-checkUpdates
rubocopfrom 1.84.2 to 1.85.1Release notes
Sourced from rubocop's releases.
... (truncated)
Changelog
Sourced from rubocop's changelog.
... (truncated)
Commits
fd07672Cut 1.85.15c41f90Update Changelog5e8e492Merge pull request #14975 from sferik/fix_1497390f3780FixStyle/ReduceToHashfalse positive when accumulator is read in key/value90c7959Merge pull request #14972 from lovro-bikic/relevant-options-digest-cache3c20e8dCache relevant options digeste305f79Merge pull request #14969 from lovro-bikic/autoload-formatter-constants3f0a304Autoload formatters; they're required only when actually usedeb973f4Merge pull request #14966 from koic/fix_false_positives_in_style_redundant_pa...3338a40[Fix #14964] Fix false positives inStyle/RedundantParenthesesUpdates
capybara-playwright-driverfrom 0.5.8 to 0.5.9Commits
b4e696b0.5.90d822cbMerge pull request #134 from YusukeIwaki/fix/fill-options-clear-supportb574d9dMake fill_options spec compatible with older Ruby2028e25Merge pull request #133 from YusukeIwaki/fix-ruby24-cib9bd595Support clear option in TextInput#set (fix #132)b80382ffix for Ruby 2.45571ba3Merge pull request #129 from MatheusRich/drop-file3602eaaMerge pull request #131 from MatheusRich/fix/close-handler-nullifies-wrong-page8ad17c3Merge pull request #130 from YusukeIwaki/codex/fix-issue-128-check-id-timeoutf36ddf5Refine Ruby naming in selectable handlerUpdates
webmockfrom 3.26.1 to 3.26.2Release notes
Sourced from webmock's releases.