Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all \u003cpre\u003e\u003ccode\u003e blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks"); } } catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); } })(); (function(){ try { var __m = "github.com"; var __re = new RegExp('^' + "github\\.com" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length \u003e 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content

Support Node.js 24 - #2110

Merged
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24
Oct 16, 2025
Merged

Support Node.js 24#2110
salmanmkc merged 57 commits into
mainfrom
salmanmkc/node24

Conversation

@salmanmkc

@salmanmkcsalmanmkc commented Jul 31, 2025

Copy link
Copy Markdown
Contributor

Update the project to support Node.js version 24, including adjustments to workflows and package dependencies.

Following this PR, there will be releases, and following those there will be bumps to versions, e.g. io-utils will be released at version 2.0.0 and then that can be updated to be used in actions/cache. Following that, the actions/cache will be able to consume the package and that can be released.

@salmanmkc
salmanmkc marked this pull request as ready for review August 13, 2025 11:24
CopilotAI review requested due to automatic review settings August 13, 2025 11:24
@salmanmkc
salmanmkc requested review from a team as code ownersAugust 13, 2025 11:24

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Updates the project to support Node.js version 24, addressing compatibility issues and modernizing the development environment. This includes package version updates, workflow adjustments, and specific compatibility fixes for Node.js 24 behavioral changes.

  • Update Node.js version requirement to 24.0.0 across all packages and workflows
  • Add custom readlink implementation to handle Windows directory symlink behavior changes in Node.js 24
  • Refactor HTTP client header handling methods for improved type safety and clarity

Reviewed Changes

Copilot reviewed 14 out of 18 changed files in this pull request and generated 2 comments.

Show a summary per file
FileDescription
packages/io/src/io-util.tsCustom readlink implementation for Windows compatibility
packages/http-client/src/index.tsRefactored header handling methods with improved type safety
packages/http-client/package.jsonUpdated Node.js engine requirement and @types/node version
packages/core/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/package.jsonUpdated Node.js engine requirement and @types/node version
packages/cache/tests/saveCache.test.tsAdded missing mock and removed duplicate assertion
packages/artifact/tests/upload-artifact.test.tsFixed Stats constructor usage for Node.js 24 compatibility
package.jsonUpdated root Node.js engine requirement and @types/node version
.github/workflows/unit-tests.ymlAdded Node.js 24.x to test matrix
.github/workflows/releases.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-windows-test.ymlUpdated workflow to use Node.js 24.x
.github/workflows/cache-tests.ymlUpdated workflow to use Node.js 24.x
.github/workflows/audit.ymlUpdated workflow to use Node.js 24.x
.github/workflows/artifact-tests.ymlUpdated workflow to use Node.js 24.x
Files not reviewed (3)
  • packages/cache/package-lock.json: Language not supported
  • packages/core/package-lock.json: Language not supported
  • packages/http-client/package-lock.json: Language not supported

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

Comment threadpackages/io/src/io-util.ts Outdated
return `${result}\\`
}
} catch (err) {
// If we can't access the target, just return the original result

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using lstat on the symlink target (result) will follow the symlink and stat the target, but result is already the resolved path. This should use lstat on the original fsPath to check if the symlink itself points to a directory.

Suggested change
// If we can't access the target, just return the original result
conststats=awaitfs.promises.lstat(fsPath)
if(stats.isDirectory()&&!result.endsWith('\\')){
return`${result}\\`
}
}catch(err){
// If we can't access the symlink, just return the original result

Copilot uses AI. Check for mistakes.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this suggestion related to a symlink chain? E.g. symlink -> symlink -> real

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yeah all the way through the chain to the target

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think I might be confused by the Copilot comment. Which one resolves the full chain, lstat or stat? We want to resolve the full chain, right?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

stat resolves the whole chain

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gotcha. Stat sounds like the right choice then? Although I guess good to test the scenario against node20 since that's the behavior we're trying to preserve, right?

@@ -273,7 +278,6 @@ test('save with server error should fail', async () => {
)
expect(saveCacheMock).toHaveBeenCalledTimes(1)
expect(getCompressionMock).toHaveBeenCalledTimes(1)

CopilotAIAug 13, 2025

Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The removed duplicate assertion expect(getCompressionMock).toHaveBeenCalledTimes(1) was correct to remove as it was redundant with line 280.

Copilot uses AI. Check for mistakes.
Comment threadpackages/cache/package.json Outdated
Comment on lines +6 to +8
"engines": {
"node": ">=24.0.0"
},

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will cause any package that depends on @actions/cache to also require Node 24, removing backward compatibility.

@salmanmkcsalmanmkcSep 4, 2025

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The plan is to have a major version bump here as well as in actions cache anyway, so any version of cache that already references the current or older versions won't be referencing this change, and any newer versions would be on the action that targets node24. What scenario do you envision needing a runner that doesn't have node 24? Self-hosted runners should all be updated and all hosted runners have node 24 already.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Oh I can think of a scenario, such that if you were to consume the package not from the cache action. Okay I'll remove it. Thanks for the comment!

@salmanmkc
salmanmkc requested a review from a team as a code ownerSeptember 4, 2025 13:16
Comment threadpackages/http-client/package.json Outdated
@danwkennedy

Copy link
Copy Markdown
Contributor

Since we're definitely breaking Node 18 and we don't support that version, can we just remove those tests so the CI stays green?

@danwkennedy

Copy link
Copy Markdown
Contributor

Might be worth looking up docs/comments that reference older node versions and update them as well. This sentence is pretty egregious and this example likely wouldn't work.

@salmanmkc

Copy link
Copy Markdown
ContributorAuthor

Sure will remove those tests

Comment threadpackage.json
"ts-jest": "^29.1.1",
"typescript": "^5.2.2"
},
"overrides": {

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm curious do you know why this is added?

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bunch of them were for audit changes, simply just doing npm audit fix didn't work, so needed to override, and then url-js and node-fetch are there to stop the punycode deprecation warnings

Comment threadpackages/http-client/src/index.ts

@ejahnGithubejahnGithub left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM for attest pkg!

Comment threadpackage.json
"brace-expansion": "^2.0.2",
"form-data": "^4.0.4",
"uri-js": "npm:uri-js-replace@^1.0.1",
"node-fetch": "^3.3.2"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

12 participants

@salmanmkc@danwkennedy@jsoref@threeal@ericsciple@ejahnGithub@Mondjoe@mouadradouane55-boop@johngitbuild-art@GhadimiR@Link-