fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content

fix(core, node): support loading Express options lazily - #20211

Merged
isaacs merged 1 commit into
developfrom
isaacs/express-late-init
Apr 13, 2026
Merged

fix(core, node): support loading Express options lazily#20211
isaacs merged 1 commit into
developfrom
isaacs/express-late-init

Conversation

@isaacs

Copy link
Copy Markdown
Member

Update the Express integration to accept the module export and a configuration function, rather than a configuration object. This is needed to support lazily calling Sentry.init after the module has been instrumented, without re-wrapping the methods to get the new config.

via: @mydea in #20188

Before submitting a pull request, please take a look at our
Contributing guidelines and verify:

  • If you've added code that should be tested, please add tests.
  • Ensure your code lints and the test suite passes (yarn lint) & (yarn test).
  • Link an issue if there is one related to your pull request. If no issue is linked, one will be auto-generated and linked.

Closes #JS-2117

@isaacs
isaacs requested a review from mydeaApril 10, 2026 15:35
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

Semver Impact of This PR

🟢 Patch (bug fixes)

📋 Changelog Preview

This is how your changes will appear in the changelog.
Entries from this PR are highlighted with a left border (blockquote style).


New Features ✨

Core

  • Automatically disable truncation when span streaming is enabled in LangGraph integration by andreiborza in #20231
  • Automatically disable truncation when span streaming is enabled in LangChain integration by andreiborza in #20230
  • Automatically disable truncation when span streaming is enabled in Google GenAI integration by andreiborza in #20229
  • Automatically disable truncation when span streaming is enabled in Anthropic AI integration by andreiborza in #20228
  • Automatically disable truncation when span streaming is enabled in Vercel AI integration by andreiborza in #20232
  • Automatically disable truncation when span streaming is enabled in OpenAI integration by andreiborza in #20227
  • Add enableTruncation option to Vercel AI integration by nicohrubec in #20195
  • Add enableTruncation option to Google GenAI integration by andreiborza in #20184
  • Add enableTruncation option to Anthropic AI integration by andreiborza in #20181
  • Add enableTruncation option to LangGraph integration by andreiborza in #20183
  • Add enableTruncation option to LangChain integration by andreiborza in #20182
  • Add enableTruncation option to OpenAI integration by andreiborza in #20167
  • Export a reusable function to add tracing headers by JPeer264 in #20076

Deps

  • Bump axios from 1.13.5 to 1.15.0 by dependabot in #20180
  • Bump hono from 4.12.7 to 4.12.12 by dependabot in #20118
  • Bump defu from 6.1.4 to 6.1.6 by dependabot in #20104

Other

  • (cloudflare) Propagate traceparent to RPC calls - via fetch by JPeer264 in #19991

Bug Fixes 🐛

Deno

  • Handle reader.closed rejection from releaseLock() in streaming by andreiborza in #20187
  • Avoid inferring invalid span op from Deno tracer by Lms24 in #20128

Other

  • (ci) Prevent command injection in ci-metadata workflow by fix-it-felix-sentry in #19899
  • (core, node) Support loading Express options lazily by isaacs in #20211
  • (e2e) Add op check to waitForTransaction in React Router e2e tests by copilot-swe-agent in #20193
  • (node-integration-tests) Fix flaky kafkajs test race condition by copilot-swe-agent in #20189

Internal Changes 🔧

Deps

  • Bump hono from 4.12.7 to 4.12.12 in /dev-packages/e2e-tests/test-applications/cloudflare-hono by dependabot in #20119
  • Bump axios from 1.13.5 to 1.15.0 in /dev-packages/e2e-tests/test-applications/nestjs-basic by dependabot in #20179

Other

  • (bugbot) Add rules to flag test-flake-provoking patterns by Lms24 in #20192
  • (ci) Remove codecov steps from jobs that produce no coverage/JUnit data by mydea in #20244
  • (deps-dev) Bump vite from 7.2.0 to 7.3.2 in /dev-packages/e2e-tests/test-applications/tanstackstart-react by dependabot in #20107
  • (react) Remove duplicated test mock by s1gr1d in #20200
  • (size-limit) Bump failing size limit scenario by Lms24 in #20186
  • Fix flaky ANR test by increasing blocking duration by JPeer264 in #20239
  • Add automatic flaky test detector by nicohrubec in #18684

🤖 This preview updates automatically when you update the PR.

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Autofix Details

Bugbot Autofix prepared a fix for the issue found in the latest run.

  • ✅ Fixed: Breaking public API change without deprecation notice
    • I restored backward compatibility by reintroducing the deprecated legacy patchExpressModule(options) overload and ExpressIntegrationOptions.express field with a deprecation warning, and added a regression test for the old call pattern.

Create PR

Or push these changes by commenting:

@cursor push eebe164287
Preview (eebe164287)
diff --git a/packages/core/src/integrations/express/index.ts b/packages/core/src/integrations/express/index.ts--- a/packages/core/src/integrations/express/index.ts+++ b/packages/core/src/integrations/express/index.ts@@ -60,6 +60,12 @@
const getExpressExport = (express: ExpressModuleExport): ExpressExport =>
hasDefaultProp(express) ? express.default : (express as ExpressExport);
+type LegacyPatchExpressModuleOptions = ExpressIntegrationOptions & {+ express: ExpressModuleExport;+};++let _didWarnLegacyPatchExpressModule = false;+
/**
* This is a portable instrumentatiton function that works in any environment
* where Express can be loaded, without depending on OpenTelemetry.
@@ -72,7 +78,46 @@
* Sentry.patchExpressModule(express, () => ({}));
* ```
*/
-export const patchExpressModule = (moduleExports: ExpressModuleExport, getOptions: () => ExpressIntegrationOptions) => {+export function patchExpressModule(+ moduleExports: ExpressModuleExport,+ getOptions: () => ExpressIntegrationOptions,+): ExpressExport;+/**+ * @deprecated Pass the Express module export as the first argument and options getter as the second argument.+ */+export function patchExpressModule(options: LegacyPatchExpressModuleOptions): ExpressExport;+export function patchExpressModule(+ moduleExportsOrOptions: ExpressModuleExport | LegacyPatchExpressModuleOptions,+ getOptions?: () => ExpressIntegrationOptions,+): ExpressExport {+ const isLegacyOptionsObject =+ !getOptions &&+ typeof moduleExportsOrOptions === 'object' &&+ moduleExportsOrOptions !== null &&+ 'express' in moduleExportsOrOptions;++ let moduleExports: ExpressModuleExport;+ let getExpressOptions: () => ExpressIntegrationOptions;++ if (isLegacyOptionsObject) {+ moduleExports = moduleExportsOrOptions.express;+ getExpressOptions = () => moduleExportsOrOptions;+ } else {+ moduleExports = moduleExportsOrOptions;+ if (!getOptions) {+ throw new TypeError('`patchExpressModule(moduleExports, getOptions)` requires a `getOptions` callback');+ }+ getExpressOptions = getOptions;+ }++ if (isLegacyOptionsObject && !_didWarnLegacyPatchExpressModule) {+ _didWarnLegacyPatchExpressModule = true;+ DEBUG_BUILD &&+ debug.warn(+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ );+ }+
// pass in the require() or import() result of express
const express = getExpressExport(moduleExports);
const routerProto: ExpressRouterv4 | ExpressRouterv5 | undefined = isExpressWithRouterPrototype(express)
@@ -94,7 +139,7 @@
function routeTrace(this: ExpressRouter, ...args: Parameters<typeof originalRouteMethod>[]) {
const route = originalRouteMethod.apply(this, args);
const layer = this.stack[this.stack.length - 1] as ExpressLayer;
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -114,7 +159,7 @@
if (!layer) {
return route;
}
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
return route;
},
);
@@ -142,7 +187,7 @@
if (router) {
const layer = router.stack[router.stack.length - 1];
if (layer) {
- patchLayer(getOptions, layer, getLayerPath(args));+ patchLayer(getExpressOptions, layer, getLayerPath(args));
}
}
return route;
@@ -153,7 +198,7 @@
}
return express;
-};+}
/**
* An Express-compatible error handler, used by setupExpressErrorHandler
diff --git a/packages/core/src/integrations/express/types.ts b/packages/core/src/integrations/express/types.ts--- a/packages/core/src/integrations/express/types.ts+++ b/packages/core/src/integrations/express/types.ts@@ -136,6 +136,10 @@
export type IgnoreMatcher = string | RegExp | ((name: string) => boolean);
export type ExpressIntegrationOptions = {
+ /**+ * @deprecated Pass the Express module export as the first argument to `patchExpressModule` instead.+ */+ express?: ExpressModuleExport;
/** Ignore specific based on their name */
ignoreLayers?: IgnoreMatcher[];
/** Ignore specific layers based on their type */
diff --git a/packages/core/test/lib/integrations/express/index.test.ts b/packages/core/test/lib/integrations/express/index.test.ts--- a/packages/core/test/lib/integrations/express/index.test.ts+++ b/packages/core/test/lib/integrations/express/index.test.ts@@ -52,15 +52,22 @@
DEBUG_BUILD: true,
}));
const debugErrors: [string, Error][] = [];
+const debugWarnings: string[] = [];
vi.mock('../../../../src/utils/debug-logger', () => ({
debug: {
error: (msg: string, er: Error) => {
debugErrors.push([msg, er]);
},
+ warn: (msg: string) => {+ debugWarnings.push(msg);+ },
},
}));
-beforeEach(() => (patchLayerCalls.length = 0));+beforeEach(() => {+ patchLayerCalls.length = 0;+ debugWarnings.length = 0;+});
const patchLayerCalls: [getOptions: () => ExpressIntegrationOptions, layer: ExpressLayer, layerPath?: string][] = [];
vi.mock('../../../../src/integrations/express/patch-layer', () => ({
@@ -129,6 +136,18 @@
}
describe('patchExpressModule', () => {
+ it('supports deprecated options signature', () => {+ const expressv4 = getExpress4();+ const options = { express: expressv4, ignoreLayers: [/foo/] };+ patchExpressModule(options);+ expressv4.Router.use('a');++ expect(patchLayerCalls[0]?.[0]()).toStrictEqual(options);+ expect(debugWarnings).toStrictEqual([+ '[Express] `patchExpressModule(options)` is deprecated. Use `patchExpressModule(moduleExports, getOptions)` instead.',+ ]);+ });+
it('throws trying to patch/unpatch the wrong thing', () => {
expect(() => {
patchExpressModule({} as unknown as ExpressModuleExport, () => ({}));

This Bugbot Autofix run was free. To enable autofix for future PRs, go to the Cursor dashboard.

Comment threadpackages/core/src/integrations/express/index.ts Outdated
@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

size-limit report 📦

PathSize% ChangeChange
@sentry/browser25.72 kB--
@sentry/browser - with treeshaking flags24.21 kB--
@sentry/browser (incl. Tracing)42.73 kB--
@sentry/browser (incl. Tracing, Profiling)47.35 kB--
@sentry/browser (incl. Tracing, Replay)81.54 kB--
@sentry/browser (incl. Tracing, Replay) - with treeshaking flags71.11 kB--
@sentry/browser (incl. Tracing, Replay with Canvas)86.25 kB--
@sentry/browser (incl. Tracing, Replay, Feedback)98.45 kB--
@sentry/browser (incl. Feedback)42.51 kB--
@sentry/browser (incl. sendFeedback)30.39 kB--
@sentry/browser (incl. FeedbackAsync)35.38 kB--
@sentry/browser (incl. Metrics)27.04 kB--
@sentry/browser (incl. Logs)27.18 kB--
@sentry/browser (incl. Metrics & Logs)27.86 kB--
@sentry/react27.48 kB--
@sentry/react (incl. Tracing)45.05 kB--
@sentry/vue30.56 kB--
@sentry/vue (incl. Tracing)44.59 kB--
@sentry/svelte25.74 kB--
CDN Bundle28.41 kB--
CDN Bundle (incl. Tracing)43.75 kB--
CDN Bundle (incl. Logs, Metrics)29.78 kB--
CDN Bundle (incl. Tracing, Logs, Metrics)44.83 kB--
CDN Bundle (incl. Replay, Logs, Metrics)68.59 kB--
CDN Bundle (incl. Tracing, Replay)80.64 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics)81.66 kB--
CDN Bundle (incl. Tracing, Replay, Feedback)86.17 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics)87.2 kB--
CDN Bundle - uncompressed82.99 kB--
CDN Bundle (incl. Tracing) - uncompressed129.77 kB--
CDN Bundle (incl. Logs, Metrics) - uncompressed87.14 kB--
CDN Bundle (incl. Tracing, Logs, Metrics) - uncompressed133.19 kB--
CDN Bundle (incl. Replay, Logs, Metrics) - uncompressed210.12 kB--
CDN Bundle (incl. Tracing, Replay) - uncompressed246.65 kB--
CDN Bundle (incl. Tracing, Replay, Logs, Metrics) - uncompressed250.05 kB--
CDN Bundle (incl. Tracing, Replay, Feedback) - uncompressed259.56 kB--
CDN Bundle (incl. Tracing, Replay, Feedback, Logs, Metrics) - uncompressed262.95 kB--
@sentry/nextjs (client)47.47 kB--
@sentry/sveltekit (client)43.2 kB--
@sentry/node-core57.86 kB+0.02%+7 B 🔺
@sentry/node175.07 kB+0.09%+152 B 🔺
@sentry/node - without tracing97.97 kB+0.03%+20 B 🔺
@sentry/aws-serverless115.22 kB+0.02%+20 B 🔺

View base workflow run

@github-actions

github-actionsBot commented Apr 10, 2026

Copy link
Copy Markdown
Contributor

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.

ScenarioRequests/s% of BaselinePrev. Requests/sChange %
GET Baseline8,856-8,882-0%
GET With Sentry1,63218%1,782-8%
GET With Sentry (error only)5,89767%5,873+0%
POST Baseline1,160-1,203-4%
POST With Sentry56148%597-6%
POST With Sentry (error only)1,00386%1,069-6%
MYSQL Baseline3,189-3,197-0%
MYSQL With Sentry38612%479-19%
MYSQL With Sentry (error only)2,64383%2,657-1%

View base workflow run

@isaacs

Copy link
Copy Markdown
MemberAuthor

Cursor makes a good point, it is technically breaking, even though it's an internal and undocumented method. I can add a bit to handle that.

Comment threadpackages/core/src/integrations/express/types.ts
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 7c8de61 to 0be7618CompareApril 10, 2026 17:43

@cursorcursorBot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cursor Bugbot has reviewed your changes and found 1 potential issue.

Fix All in Cursor

❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

} else {
getOptions = maybeGetOptions;
moduleExports = optionsOrExports as ExpressModuleExport;
}

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Public API function signature changed for exported function

Low Severity

Flagging per the review rules file: patchExpressModule is publicly exported from @sentry/core and its function signature changed from a single-argument form to a two-argument overloaded form. Additionally, the publicly exported ExpressIntegrationOptions type changed the express field from required to optional. While backward compatibility is maintained via a deprecated overload and runtime deprecation warning, consumers who stored options in a variable typed as ExpressIntegrationOptions and passed it to patchExpressModule will encounter a TypeScript error, since the deprecated overload requires ExpressIntegrationOptions & { express: ExpressModuleExport } which the now-optional express field no longer satisfies.

Additional Locations (1)
Fix in CursorFix in Web

Triggered by project rule: PR Review Guidelines for Cursor Bot

Reviewed by Cursor Bugbot for commit 0be7618. Configure here.

@mydeamydea left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nice, and good test added to actually cover this, thank you! 🙏

Update the Express integration to accept the module export and a
configuration function, rather than a configuration object. This is
needed to support lazily calling Sentry.init *after* the module has been
instrumented, without re-wrapping the methods to get the new config.
via: @mydea in #20188
@isaacs
isaacsforce-pushed the isaacs/express-late-init branch from 0be7618 to e1b260fCompareApril 13, 2026 12:45
@isaacs
isaacs enabled auto-merge (rebase) April 13, 2026 12:46
@isaacs
isaacs merged commit d60b826 into developApr 13, 2026
467 of 476 checks passed
@isaacs
isaacs deleted the isaacs/express-late-init branch April 13, 2026 14:25
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@isaacs@mydea