Skip to content

Bump vite_ruby and dependencies#2664

Open
lfdebrux wants to merge 4 commits intomainfrom
ldeb-bump-vite_ruby
Open

Bump vite_ruby and dependencies#2664
lfdebrux wants to merge 4 commits intomainfrom
ldeb-bump-vite_ruby

Conversation

@lfdebrux
Copy link
Copy Markdown
Contributor

@lfdebrux lfdebrux commented Mar 26, 2026

What problem does this pull request solve?

This PR rolls a bunch of Dependabot PRs bumping packages for Vite Ruby into one, as they need to be bumped together.

  • Bumps vite_ruby from 3.9.3 to 3.10.0
  • Bumps vite_rails from 3.0.20 to 3.10.0
  • Bumps vite-plugin-ruby from 5.1.3 to 5.2.0

This PR also adds a Dependabot group to try and make it work better in future... I'm not hopeful though as Dependabot doesn't seem to have groups across package ecosystems (see https://docs.github.com/en/code-security/tutorials/secure-your-dependencies/optimizing-pr-creation-version-updates#grouping-related-dependencies-together), so it's only possible to have a group for vite_ruby and vite_rails, which are both Ruby gems, but they can't also be in a group with vite-plugin-ruby, which is an NPM package.

Things to consider when reviewing

  • Ensure that you consider the wider context.
  • Does it work when run on your machine?
  • Is it clear what the code is doing?
  • Do the commit messages explain why the changes were made?
  • Are there all the unit tests needed?
  • Do the end to end tests need updating before these changes will pass?
  • Has all relevant documentation been updated?

@lfdebrux lfdebrux added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code javascript Pull requests that update Javascript code labels Mar 26, 2026
@lfdebrux lfdebrux force-pushed the ldeb-bump-vite_ruby branch from 8d0fc9e to ebf4328 Compare March 27, 2026 08:36
dependabot bot and others added 4 commits March 27, 2026 13:28
Bumps [vite_ruby](https://github.com/ElMassimo/vite_ruby) from 3.9.3 to 3.10.0.
- [Changelog](https://github.com/ElMassimo/vite_ruby/blob/vite_ruby@3.10.0/vite_ruby/CHANGELOG.md)
- [Commits](https://github.com/ElMassimo/vite_ruby/compare/vite_ruby@3.9.3...vite_ruby@3.10.0)

---
updated-dependencies:
- dependency-name: vite_ruby
  dependency-version: 3.10.0
  dependency-type: indirect
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [vite_rails](https://github.com/ElMassimo/vite_ruby) from 3.0.20 to 3.10.0.
- [Changelog](https://github.com/ElMassimo/vite_ruby/blob/vite_rails@3.10.0/vite_rails/CHANGELOG.md)
- [Commits](https://github.com/ElMassimo/vite_ruby/compare/vite_rails@3.0.20...vite_rails@3.10.0)

---
updated-dependencies:
- dependency-name: vite_rails
  dependency-version: 3.10.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [vite-plugin-ruby](https://github.com/ElMassimo/vite_ruby) from 5.1.3 to 5.2.0.
- [Commits](https://github.com/ElMassimo/vite_ruby/compare/vite-plugin-ruby@5.1.3...vite-plugin-ruby@5.2.0)

---
updated-dependencies:
- dependency-name: vite-plugin-ruby
  dependency-version: 5.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
The `vite_ruby` and `vite_rails` gems depend on each other, and they
often have new versions released at the same time, so it would be
helpful to group their dependency bumps together.
@lfdebrux lfdebrux force-pushed the ldeb-bump-vite_ruby branch from ebf4328 to 3281906 Compare March 27, 2026 11:28
@github-actions
Copy link
Copy Markdown

🎉 A review copy of this PR has been deployed! You can reach it at: https://pr-2664.admin.review.forms.service.gov.uk/

It may take 5 minutes or so for the application to be fully deployed and working. If it still isn't ready
after 5 minutes, there may be something wrong with the ECS task. You will need to go to the integration AWS account
to debug, or otherwise ask an infrastructure person.

For the sign in details and more information, see the review apps wiki page.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant