From 123dda6188e2ce703d1fc3959016d7f771d3859b Mon Sep 17 00:00:00 2001 From: RECTOR Date: Wed, 23 Sep 2026 10:10:24 +0700 Subject: [PATCH] fix(ci): declare yellowstone-grpc patch in package.json for frozen install MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Root cause of ERR_PNPM_LOCKFILE_CONFIG_MISMATCH on all lockfile-touching Dependabot PRs (#374/#358/#357): the patch is declared only in pnpm-workspace.yaml (a pnpm-10-only settings location). Dependabot's updater pnpm cannot read it, so its lockfile regen rewrites the patchedDependencies section to a hash-only inline entry; pnpm 10's frozen check then rejects the mismatch against the declared config. Keep-and-declare: move the explicit declaration to package.json pnpm.patchedDependencies — the classic location read by pnpm 9, pnpm 10, and Dependabot — and drop it from pnpm-workspace.yaml. Verified locally (pnpm 10.34.5, CI's major): - pnpm install --frozen-lockfile green; patch applied (dist/esm markers) - full regen 'pnpm install --no-frozen-lockfile' leaves pnpm-lock.yaml byte-identical to main - patch still required: it creates the dist/esm type:module/type:commonjs markers upstream 4.0.2 lacks (sip-protocol#1077, tsx named-import fix) --- package.json | 5 ++++- pnpm-workspace.yaml | 2 -- 2 files changed, 4 insertions(+), 3 deletions(-) diff --git a/package.json b/package.json index dd8dd30..6c1d209 100644 --- a/package.json +++ b/package.json @@ -90,6 +90,9 @@ "better-sqlite3", "bufferutil", "utf-8-validate" - ] + ], + "patchedDependencies": { + "@triton-one/yellowstone-grpc@4.0.2": "patches/@triton-one__yellowstone-grpc@4.0.2.patch" + } } } diff --git a/pnpm-workspace.yaml b/pnpm-workspace.yaml index b3c24b6..7635571 100644 --- a/pnpm-workspace.yaml +++ b/pnpm-workspace.yaml @@ -4,5 +4,3 @@ packages: - 'app' - 'examples/*' - '!sdks/**' -patchedDependencies: - '@triton-one/yellowstone-grpc@4.0.2': patches/@triton-one__yellowstone-grpc@4.0.2.patch