Repository navigation
Update dependency @tailor-platform/sdk to v2.26.0 - #128
Open
renovate[bot] wants to merge 1 commit into
Open
renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
renovate
Bot
force-pushed
the
renovate/tailor-platform-sdk-2.x
branch
2 times, most recently
from
October 5, 2026 05:57
6c16898 to
c0b7482
Compare
renovate
Bot
force-pushed
the
renovate/tailor-platform-sdk-2.x
branch
from
October 6, 2026 10:10
c0b7482 to
f146730
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
2.22.0→2.26.0Release Notes
tailor-platform/sdk (@tailor-platform/sdk)
v2.26.0Compare Source
Minor Changes
#2525
d21806eThanks @dqn! - These state-changing commands now print a JSON result on stdout under--jsoninstead of leaving it empty:authconnection delete,authconnection revoke,organization folder delete,secret create,secret update,secret delete,secret vault delete,workspace delete,workspace restore,workspace user remove,tailordb truncate,tailordb migration set,tailordb migration rebaseline,tailordb migration sync, andtailordb migration generate. Each result carries the samechangedboolean as the other commands: for example,tailordb migration setto the checkpoint and migration history ID already in place, andtailordb migration generatewith no migration to write, reportfalse. Under--json,tailordb migration generateandtailordb migration scriptno longer open the file they create in the editor set byVISUALorEDITOR, which would otherwise write to the same stdout. Output without--jsonis unchanged.#2470
090297dThanks @toiroakr! - Add atemporaloption tokyselyTypePlugin. When enabled,date/datetimefields and top-leveltimefields resolve toTemporal.PlainDate/Temporal.Instant/Temporal.PlainTime(instead ofDate/string) in generated Kysely types, migrationdb.tsfiles, andtailor function scripttypes, and the generatedgetDB()reads them back as those values. Nestedtimefields remain strings. The mode is fixed by the plugin setting;getDB()takes notemporaloption.Each migration records whether its
db.tswas generated with Temporal types, and deploy runs that migration's script in the same mode, so migrations generated beforetemporalwas enabled keep receivingDatevalues. Migration files are now written as format version 7, which older SDK versions refuse to read.mockTailordbWithPGliteandcreateKyselyPGlite(with{ temporal: true }) return Temporal values from PGlite to match, and accept Temporal values as query parameters.v2.25.0Compare Source
Minor Changes
#2449
e4a0301Thanks @toiroakr! -tailor openandtailor auth-connection opennow always open the new Tailor Platform Console UI, which has replaced the previous UI atconsole.tailor.tech.tailor openopens/workspaces/{workspaceId}/services/applications/{applicationName}(previously/workspaces/{workspaceId}/applications/{applicationName}/overview), andtailor auth-connection openopens/workspaces/{workspaceId}/services/auth-connections(previously/workspaces/{workspaceId}/settings/connections). TheTAILOR_CONSOLE_NEXTenvironment variable is no longer read: a leftoverTAILOR_CONSOLE_NEXT=1no longer redirects the console host toconsole-next., so it can be removed.#2468
3c87be0Thanks @toiroakr! - Add an onDeployed plugin hook with deployed application IDs and URLs, public OAuth client IDs, and publishing to static websites. Hooks run after successful deploys, including deploys without resource changes, and can return structured JSON outputs.#2468
7451944Thanks @toiroakr! - AddfrontendPluginfrom@tailor-platform/sdk-plugin-frontendto build and upload frontend assets duringtailor deploy. Frontend builds can use deployed URLs and public OAuth client IDs as environment variables, and deployment results include uploaded frontend details inoutputs.frontends.Add deployment hooks and shared context types to
@tailor-platform/sdk. Successfultailor deploy --jsonresults now includeworkspaceIdandapplicationswith deployed application, Static Website, and AI Gateway URLs, plus public OAuth client IDs, even when no deploy plugins are configured.#2505
3296f08Thanks @dqn! - More state-changing commands now print a JSON result on stdout under--json, so scripts can confirm what changed without parsing stderr:login,logout,remove,profile delete,user switch,user pat delete,secret vault create,authconnection authorize,workspace user invite,workspace user update,workspace ttl set,workspace ttl clear,crashreport send, andtailordb migration script. Each result carries achangedboolean:truewhen the command did work,falsewhen it did nothing, such aslogoutwhen nobody is logged in,user switchto the current user, orworkspace ttl clearon a workspace with no TTL. Output without--jsonis unchanged.#2497
efcca78Thanks @tailor-bobbin! - Include the machine useridintailor machineuser listoutput so machine users can be matched against the invoker id available in resolvers and executors.#2486
caa34b4Thanks @dqn! -tailor secret createandtailor secret updatenow read the secret value from standard input when--valueis omitted, keeping it out of shell history and process listings:printf '%s' "$VALUE" | tailor secret create --vault-name <vault> --name <name>. The piped value can be up to 128 KiB, and one trailing newline is removed from it. Without--value, a terminal or empty standard input fails withSECRET_VALUE_REQUIRED.#2485
d06f314Thanks @dqn! -tailor show(and the programmaticshow()) now also lists each deployed static website defined instaticWebsiteswith its URL and description, and each deployed OAuth2 client defined inauth'soauth2Clientswith its client ID, so a CI step can read both from onetailor show --jsoncall right aftertailor deploy. Client secrets are never included. Credentials that cannot list OAuth2 clients, such as the workspace viewer role, get a warning andoauth2Clients: null, which sets that case apart from an application with no deployed OAuth2 clients.Patch Changes
#2487
d160c86Thanks @dqn! - Declining a confirmation prompt now makes the command exit non-zero with a*_CANCELLEDerror code, astailor deployandtailor removealready did, instead of exiting 0 as if the operation had succeeded. This coversworkspace delete/restore/prune,workspace user remove,organization folder delete,secret create/update/delete,secret vault delete,authconnection delete/revoke,tailordb truncate, andtailordb migration generate/set/sync/rebaseline. For example,tailor workspace deletereportsWORKSPACE_DELETION_CANCELLEDwhen the entered name does not match, andtailor tailordb migration generatestill generates the other namespaces before reportingMIGRATION_GENERATE_CANCELLEDfor the ones whose breaking changes were declined. Confirmation prompts appear only in an interactive terminal, so runs with--yes, in CI, or with--jsonare unaffected.migrateGenerate()now rejects withMIGRATION_GENERATE_CANCELLEDwhen its prompt is declined, instead of resolving or exiting the process.#2484
7454455Thanks @dqn! -tailor initnow exits non-zero when project scaffolding fails, instead of exiting 0. It reportsINIT_FAILEDwhencreate @tailor-platform/sdkexits with a non-zero code or is terminated by a signal, andINIT_SPAWN_FAILEDwhen the package manager cannot be started.#2488
608b7ebThanks @dqn! - Argument errors now follow--jsonandTAILOR_JSON_OUTPUT. An unknown option or subcommand, or an option value that fails validation, was printed as plain text even when JSON output was requested, because it happened before the flag took effect. It is now reported as the usual JSON error envelope on stderr with the codeINVALID_ARGUMENTS, for example{"error":{"code":"INVALID_ARGUMENTS","message":"Unknown flags: bogus"}}.--verbosenow also applies to these errors, adding the stack trace to the envelope or to the plain-text output, as it does for other failures. Otherwise, output without JSON mode is unchanged.#2506
69b3234Thanks @dqn! - List commands now say when--limitcut their output short. When more items exist than--limitallows, the list is followed byMore results exist beyond --limit N. Raise --limit to see more.on stderr, so a caller can tell a complete list from a partial one; stdout, including--jsonoutput, is unchanged. This matters most forexecutor jobs,function logs, andworkflow executions, which list 50 items unless--limitsays otherwise.#2492
46590a4Thanks @renovate! - fix(deps): update oxc#2515
ef00996Thanks @renovate! - chore(deps): lock file maintenance#2517
3220bc9Thanks @renovate! - fix(deps): update dependency rolldown to v1.2.12#2483
ae6451eThanks @toiroakr! -tailor setup ci branch,tailor setup ci tag, andtailor setup ci previewaccept--dirmore than once. The generated workflow deploys every app to the same workspace in one multi-config run from the repository root, runs the generate check for each app directory (plus seed validation and the migration drift check on branch and tag workflows), and runs its jobs on changes under any of them.--nameis required when--diris repeated, and the rootpackage.jsonmust declare@tailor-platform/sdk. With--erd-preview, each TailorDB namespace is previewed from the app that owns it.tailor setup ci branchandtailor setup ci previewalso accept--paths(repeatable) to run the generated jobs on changes outside the app directories, such as a frontend or shared packages. A pattern supports*,**, and a leading!to exclude paths; other glob characters are rejected.Branch and preview workflows with an app directory other than the repository root no longer filter their
on:triggers bypaths. Branch workflows start on every pull request and push, preview workflows on every pull request, and a newtailor-changesjob skips the plan, deploy, and preview jobs when nothing under the app directories (or--paths) changed. Skipped jobs report success, so these checks can be required in branch protection. If thetailor-changesjob itself fails, those jobs fail instead of being skipped, so a required check cannot pass without them.setupremains a beta command, so this ships as an immediate change rather than going through a deprecation cycle.Branch workflows generated with
--erd-previewnow install the project dependencies before building the ERD preview, which the setup step does not do.The workflow template version is bumped, so
tailor setup checkreports every generated target as outdated; runtailor setup updateto regenerate them. Branch and preview workflows whose--diris not the repository root switch to thetailor-changesjob described above, and branch workflows generated with--erd-previewget the new ERD matrix and install step. Other workflows regenerate identically.tailor setup updatekeeps every app directory and--pathspattern of a multi-directory target.#2489
16175f6Thanks @toiroakr! - You can addenvironment:to a managed job thattailor setup cigenerates without one (tailor-tag-guard, and thetailor-erd-preview*jobs from--erd-preview), so a step you added there can read that GitHub Environment's secrets, such as a token for installing dependencies from a private registry.tailor setup checkno longer reports it as a hand edit, and re-runningtailor setup cikeeps it. Theenvironment:oftailor-plan,tailor-deploy, and the preview jobs still comes from--environment.v2.24.0Compare Source
Minor Changes
#2459
72e295bThanks @toiroakr! - When a resolver, executor, or workflow job fails to build withFORBIDDEN_RUNTIME_GLOBALbecause it references a Node-only global such asprocessorBuffer, the error now names where the reference is: the file in your own code, or the installed package (code undernode_modules). A reference from an installed package can be allowed with the newbuildOptions.allowedRuntimeGlobalsoption ofdefineConfig(), keyed by package name, with the globals to allow ortruefor all of them — for examplebuildOptions: { allowedRuntimeGlobals: { "@ai-sdk/gateway": ["Buffer"] } }— once you have confirmed that the package's code referencing it never runs for your use. The error's suggestion shows the entry to add.buildOptions.allowedRuntimeGlobalshas no effect on your own code.#2463
f708521Thanks @toiroakr! -defineConfig()acceptsbuildOptions, which groups the settings that control how resolvers, executors, workflow jobs, and other functions are bundled:inlineSourcemap,logLevel, andallowedRuntimeGlobals. The top-levelinlineSourcemapandlogLevelstill work but are deprecated and will be removed in v3;tailor upgrademoves them intobuildOptionswith thev3/define-config-build-optionscodemod. Setting the same option both at the top level and inbuildOptionsfails config validation instead of silently using one of them.Patch Changes
#2475
10ab737Thanks @toiroakr! - Generated deploy jobs now expose the deployed workspace as job outputs, so a job of your own can useneeds:to run tests or deploy extra assets against it:tailor setup ci preview: thetailor-preview-deployjob exposesworkspace-id,workspace-name, andapp-urlof the per-PR workspace.tailor setup ci branchandtailor setup ci tag: thetailor-deployjob exposesworkspace-idandapp-url.tailor setup checkreports the template as outdated; runtailor setup updateto regenerate every target.#2464
978c332Thanks @renovate! - fix(deps): update secretlint monorepo to v13.0.6#2465
d8222e4Thanks @renovate! - chore(deps): update dependency @types/node to v24.19.0#2458
e982853Thanks @toiroakr! - Deploying a resolver, executor, or workflow no longer fails withFORBIDDEN_RUNTIME_GLOBALfor a Node-only global such asprocessthat is only used after checking that it exists — for exampleif (typeof process !== "undefined") { ... process.env.FOO ... }, an early exit such asif (typeof process === "undefined") return;followed byprocess.env.FOO, ortypeof process < "u" && process.emitWarning(message). A global used without such a check is still reported — for example theBuffer.from(...)inside@ai-sdk/gateway, which the Vercel AI SDK (ai) depends on.#2457
be6ffb2Thanks @toiroakr! - Fixworkflow.start()and job.start()calls that built and deployed but threw "workflow.start() is rewritten at build time and unavailable in the bundle" at runtime. These calls are now rewritten when:tsconfig.jsoncompilerOptions.pathsalias (e.g.import workflow from "@/workflow/syncGLBalances")createWorkflow()(e.g.export default module.workflows.syncGLBalances.create(mainJob)); wrapping the helper result in anothercreateWorkflow({ ...helperResult, name: "..." })call is no longer neededimport * as wf from "./workflows/sync"; wf.default.start(...))A
.start()call on an import from a workflow file that still cannot be rewritten — such as a helper-created workflow exported under a named export — now fails the build instead of deploying code that throws at runtime. The runtime error for an unrewrittenworkflow.start()also names the workflow.v2.23.0Compare Source
Minor Changes
e2df6cfThanks @dqn! -tailor deploynow marks updates that show no configuration difference and are applied again only because the application's resources were last deployed with a different SDK version. The plan lists them with[forced by SDK version]and the summary counts them (12 to update (11 forced by SDK version)), so after an SDK upgrade you can tell them apart from real configuration changes. With--json, such changes carryforcedBySdkVersion: trueandsummary.forcedBySdkVersioncounts them.Patch Changes
#2442
4a974b1Thanks @dqn! - Fix thetailor deployplan leaving out workflow execution policies: their changes are now listed in the Workflow section, and unmanaged or conflicting execution policies and applications now appear in the plan's warnings and owner conflicts, including--jsonoutput.#2462
551179aThanks @k1LoW! - Function execution logs are now read from the platform's structured log entries instead of the deprecated flatlogsfield. Thelogsstring thatfunction run,function logs --json,workflow executions --logs,executor jobs --logs, TailorDB migrations, andexecuteScript()return joins the messages of those entries with newlines, andfunction logsno longer falls back to the flat string when an execution has no structured entries.#2448
317ba1eThanks @renovate! - fix(deps): update dependency rolldown to v1.2.11#2438
feb8b23Thanks @dqn! - On Windows, a suggested follow-up command whose arguments cmd.exe and PowerShell read differently (for example a profile nameddev$1, a config path containing%, or the webhook trigger's JSON body) is now shown as one command to copy into PowerShell and one to copy into cmd.exe, instead of anargv [...]array or a double-quoted line that PowerShell misreads. Thetailor profile updatesuggestions shown for a read-only profile or a denied machine-user override now quote the profile name instead of pasting it into the command unquoted. On every platform, these suggested follow-up commands are now set off in backticks.#2462
0dcbed6Thanks @k1LoW! - Workflow commands now recognize canceled workflow executions.workflow start --wait,workflow wait,workflow executions <id> --wait, andexecutor jobs --waitover a workflow stop at a canceled execution and fail withWORKFLOW_EXECUTION_CANCELEDinstead of polling until they time out, a TailorDB migration whose workflow is canceled fails instead of waiting indefinitely, the status is shown asCANCELEDrather thanUNSPECIFIED, andworkflow executions --status CANCELEDis accepted.Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.