This release includes breaking changes for platform teams planning a safe upgrade.
Published 29d
Configuration Management
✓ No known CVEs patched
✓ No known CVEs patched in this version
Summary
AI summaryUpdates Code quality & tooling, Features & fixes, and Cleanup across a mixed release.
Full changelog
Maintenance release focused on dependency updates, tooling, and code quality, with a couple of small feature and fix improvements.
Code quality & tooling
- Raised static analysis to PHPStan / Larastan level 1 (RCO-996, #319): 29 issues fixed cleanly, 4 latent issues baselined.
- Added ESLint configuration and resolved all 174 lint errors (
npm run lintpasses cleanly). - Added Vitest with frontend unit tests (e.g.
useFormatters).
Dependencies
- Updated all Composer dependencies.
- Updated npm / package.json dependencies (#318).
- Replaced
vue3-highlightjswith a lightweight highlight directive (RCO-646).
Features & fixes
- Added a new notification type for configuration changes and updated notification descriptions (RCO-906).
- Improved template deletion logic with proper file cleanup (RCO-648).
Cleanup
- Removed orphaned
spatie/laravel-backupnotification translations (Pro-only package, not shipped in Core). - Removed the unused
resources/js/.archivedirectory.
Full Changelog: https://github.com/rconfig/rconfig/compare/8.2.3...8.2.4
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Earlier breaking changes
- vcore-8.2.8 Granting Admin role now requires the acting account to already hold Admin role.
- vcore-8.2.8 `role` field on user create/update validates against fixed set of allowed values.
Beta — feedback welcome: [email protected]