Repository navigation
chore: cleanup deps - #486
Conversation
Reviewer's guide (collapsed on small PRs)Reviewer's GuideCleans up dependency ownership by removing an unused root package, moving front-end-only tooling into apps/fxc-front devDependencies, removing an unused app dependency, and synchronizing the pnpm lockfile. File-Level Changes
Tips and commandsInteracting with Sourcery
Customizing Your ExperienceAccess your dashboard to:
Getting Help
|
|
Navigate logical layers of code changes, visualize relationships, and explore their blast radius. No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Repository UI Review profile: CHILL Plan: Advanced Run ID: ⛔ Files ignored due to path filters (1)
📒 Files selected for processing (1)
Included review availability: This review used your included allowance. Your plan provides up to 2 included reviews per hour; 1 remain after this review. WalkthroughThe frontend package manifest moves selected tools to ChangesDependency declarations
Priority: ⬇️ Low Estimated code review effort: 1 (Trivial) | ~4 minutes Change: Other Merge Risk: ⚪ Minimal · up to The frontend tooling is now scoped to the frontend package, and the removed root declarations have no uncovered consumers. No actionable merge risk is evident. Security Architecture ReviewSecurity architecture risk: 🔵 Low · up to The changes do not show expanded runtime privileges or altered service-worker behavior. Build tooling remains declared by the frontend, and its deployment task depends on a build. Risk is low because external hosting installation settings could not be verified. Retained concerns Security review detailsSecurity Blast Radius
Trust Boundaries and Controls
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. A rabbit checks the manifest with care, Comment |
There was a problem hiding this comment.
Hey - I've found 1 issue
Fixed security issues:
Prompt for AI Agents
Please address the comments from this code review:
## Individual Comments
### Comment 1
<location path="apps/fxc-front/package.json" line_range="21" />
<code_context>
"@stencil/core": "^4.45.1",
"d3-array": "^3.2.4",
"geolib": "catalog:default",
- "jsonc-eslint-parser": "catalog:default",
"lit": "catalog:default",
"mapbox-vector-tile": "catalog:default",
</code_context>
<issue_to_address>
**issue (bug_risk):** The fxc-front ESLint configuration directly imports `jsonc-eslint-parser`, but the fxc-front package no longer declares it. An isolated install or package-level dependency deployment therefore fails to load `eslint.config.js` with a module-not-found error.
**Triggers:** When fxc-front is linted or installed outside the workspace root's hoisted dependency graph.
**Suggested fix:** Add `jsonc-eslint-parser` to fxc-front's devDependencies, or ensure the package is never expected to run with an isolated dependency graph.
</issue_to_address>Sourcery assessment
Approval pending. 1 finding to address first.
Blocking findings: apps/fxc-front/package.json:21
Deploying with
|
| Status | Name | Latest Commit | Preview URL | Updated (UTC) |
|---|---|---|---|---|
| ✅ Deployment successful! View logs |
flyxc-workers | 61ca0f3 | Commit Preview URL Branch Preview URL |
Oct 02 2026, 04:37 PM |
Summary by Sourcery
Clean up and consolidate project dependencies across the workspace.
Enhancements:
Build:
Summary by CodeRabbit