Skip to content

chore(deps): update chromedp/headless-shell docker tag to v156 - autoclosed - #706

Closed
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/chromedp-headless-shell-156.x
Closed

renovate[bot] wants to merge 1 commit into
mainfrom
renovate/chromedp-headless-shell-156.x

Conversation

@renovate

@renovate renovate Bot commented Oct 4, 2026 •

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Update Change
chromedp/headless-shell major 155.0.8059.26 → 156.0.8078.4

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from yxtay as a code owner October 4, 2026 05:28
@github-actions

github-actions Bot commented Oct 4, 2026 •

Copy link
Copy Markdown

✅MegaLinter analysis: Success

Descriptor Linter Files Fixed Errors Max errors Warnings Elapsed time
✅ BASH shfmt 11 0 0 0 0.02s
✅ JSON prettier 2 0 0 0 0.42s
✅ MARKDOWN markdownlint 5 0 0 0 0.51s
✅ MARKDOWN markdown-table-formatter 5 0 0 0 0.14s
✅ TERRAFORM terraform-fmt 7 0 0 0 0.39s
✅ YAML prettier 50 0 0 0 0.33s

Notices

⚠️ Your configuration references items that have been removed from MegaLinter and are ignored: REPOSITORY_KICS, TERRAFORM_TERRASCAN. See Removed linters to find their replacements.

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@10.1.0 --custom-flavor-setup --custom-flavor-linters BASH_SHFMT,JSON_PRETTIER,MARKDOWN_MARKDOWNLINT,MARKDOWN_MARKDOWN_TABLE_FORMATTER,TERRAFORM_TERRAFORM_FMT,YAML_PRETTIER

MegaLinter is provided by OX Security
Show us your support by starring ⭐ the repository

@github-actions

github-actions Bot commented Oct 4, 2026 •

Copy link
Copy Markdown

✅⚠️MegaLinter analysis: Success with warnings

Descriptor Linter Files Fixed Errors Max errors Warnings Elapsed time
✅ BASH shellcheck 11 0 0 0.14s
✅ BASH shfmt 11 0 0 0 0.02s
⚠️ COPYPASTE jscpd yes 1 no 0.61s
✅ JSON prettier 2 0 0 0 0.41s
✅ JSON v8r 2 0 0 1.78s
✅ REPOSITORY betterleaks yes no no 0.74s
✅ REPOSITORY git_diff yes no no 0.01s
⚠️ REPOSITORY osv-scanner yes no 1 0.73s
✅ REPOSITORY secretlint yes no no 0.96s
✅ REPOSITORY syft yes no no 1.81s
✅ REPOSITORY trivy yes no no 8.44s
✅ REPOSITORY trivy-sbom yes no no 0.12s
✅ REPOSITORY trufflehog yes no no 2.97s
✅ YAML prettier 50 0 0 0 0.32s
✅ YAML v8r 50 0 0 11.13s
✅ YAML yamllint 50 0 0 1.13s

Detailed Issues

⚠️ COPYPASTE / jscpd - 1 error
error: Duplicated code block (51 tokens), duplicated at [bin/oci-rm-stack-update.sh:12](0)
   ┌─ bin/oci-rm-stack-create.sh:32:1
   │  
32 │ ╭ OCI_RM_DIR=$(cd "$(dirname "${BASH_SOURCE[0]}")/.." && pwd)/oci-rm
33 │ │ WORK_DIR=$(mktemp -d "${TMPDIR:-/tmp}/oci-rm.XXXXXX")
34 │ │ STACK_ZIP="${WORK_DIR}/stack.zip"
35 │ │ 
   · │
39 │ │ 
40 │ │ echo "Creating stack ${STACK_NAME} in ${REGION}..."
   │ ╰────^
   │  
   ┌─ bin/oci-rm-stack-update.sh:12:1
   │  
12 │ ╭ OCI_RM_DIR=$(cd "$(dirname "${BASH_SOURCE[0]}")/.." && pwd)/oci-rm
13 │ │ WORK_DIR=$(mktemp -d "${TMPDIR:-/tmp}/oci-rm.XXXXXX")
14 │ │ STACK_ZIP="${WORK_DIR}/stack.zip"
15 │ │ 
   · │
19 │ │ 
20 │ │ echo "Updating stack ${STACK_ID}..."
   │ ╰────' Duplicated at bin/oci-rm-stack-update.sh:12

error: 1 errors emitted
⚠️ REPOSITORY / osv-scanner - 1 warning
Scanning dir .
Starting filesystem walk for root: /
End status: 47 dirs visited, 157 inodes visited, 0 Extract calls, 6.617412ms elapsed, 6.617643ms wall time
No package sources found, --help for usage information.


[REPOSITORY_OSV_SCANNER_ERROR_NO_PACKAGE_SOURCES] osv-scanner found no lockfiles, manifests, or SBOMs to scan in the repository.
This is a configuration/scope issue, not a vulnerability finding.
Resolutions:
  - Verify the repository actually contains a supported lockfile (package-lock.json, go.sum, Gemfile.lock, Pipfile.lock, etc.) at the scanned path.
  - If this is expected for some sub-projects, disable osv-scanner for the affected paths or mark it non-blocking via `DISABLE_ERRORS_LINTERS`.

Notices

⚠️ Your configuration references items that have been removed from MegaLinter and are ignored: REPOSITORY_KICS, TERRAFORM_TERRASCAN. See Removed linters to find their replacements.

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@10.1.0 --custom-flavor-setup --custom-flavor-linters BASH_SHELLCHECK,BASH_SHFMT,COPYPASTE_JSCPD,JSON_V8R,JSON_PRETTIER,REPOSITORY_GIT_DIFF,REPOSITORY_BETTERLEAKS,REPOSITORY_OSV_SCANNER,REPOSITORY_SECRETLINT,REPOSITORY_SYFT,REPOSITORY_TRIVY,REPOSITORY_TRIVY_SBOM,REPOSITORY_TRUFFLEHOG,YAML_PRETTIER,YAML_YAMLLINT,YAML_V8R

MegaLinter is provided by OX Security
Show us your support by starring ⭐ the repository

@github-actions

github-actions Bot commented Oct 4, 2026 •

Copy link
Copy Markdown

✅⚠️MegaLinter analysis: Success with warnings

Descriptor Linter Files Fixed Errors Max errors Warnings Elapsed time
✅ BASH bash-exec 11 0 0 0.03s
✅ BASH shellcheck 11 0 0 0.14s
✅ REPOSITORY betterleaks yes no no 1.06s
✅ REPOSITORY dustilock yes no no 0.01s
⚠️ REPOSITORY osv-scanner yes no 1 0.46s
✅ REPOSITORY secretlint yes no no 0.81s
✅ REPOSITORY syft yes no no 1.55s
✅ REPOSITORY trivy yes no no 8.91s
✅ REPOSITORY trivy-sbom yes no no 0.56s
✅ REPOSITORY trufflehog yes no no 2.88s
✅ TERRAFORM tflint yes no no 6.3s

Detailed Issues

⚠️ REPOSITORY / osv-scanner - 1 warning
Scanning dir .
Starting filesystem walk for root: /
End status: 47 dirs visited, 157 inodes visited, 0 Extract calls, 4.225841ms elapsed, 4.226091ms wall time
No package sources found, --help for usage information.


[REPOSITORY_OSV_SCANNER_ERROR_NO_PACKAGE_SOURCES] osv-scanner found no lockfiles, manifests, or SBOMs to scan in the repository.
This is a configuration/scope issue, not a vulnerability finding.
Resolutions:
  - Verify the repository actually contains a supported lockfile (package-lock.json, go.sum, Gemfile.lock, Pipfile.lock, etc.) at the scanned path.
  - If this is expected for some sub-projects, disable osv-scanner for the affected paths or mark it non-blocking via `DISABLE_ERRORS_LINTERS`.

Notices

⚠️ Your configuration references items that have been removed from MegaLinter and are ignored: REPOSITORY_KICS, TERRAFORM_TERRASCAN. See Removed linters to find their replacements.

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@10.1.0 --custom-flavor-setup --custom-flavor-linters BASH_EXEC,BASH_SHELLCHECK,REPOSITORY_DUSTILOCK,REPOSITORY_BETTERLEAKS,REPOSITORY_OSV_SCANNER,REPOSITORY_SECRETLINT,REPOSITORY_SYFT,REPOSITORY_TRIVY,REPOSITORY_TRIVY_SBOM,REPOSITORY_TRUFFLEHOG,TERRAFORM_TFLINT

MegaLinter is provided by OX Security
Show us your support by starring ⭐ the repository

@github-actions

github-actions Bot commented Oct 4, 2026 •

Copy link
Copy Markdown

✅⚠️MegaLinter analysis: Success with warnings

Descriptor Linter Files Fixed Errors Max errors Warnings Elapsed time
✅ ACTION actionlint 4 0 0 0.01s
⚠️ ACTION zizmor 4 0 0 1 0.51s
✅ BASH bash-exec 11 0 0 0.03s
✅ BASH shellcheck 11 0 0 0.2s
✅ BASH shfmt 11 0 0 0 0.02s
⚠️ COPYPASTE jscpd yes 1 no 0.63s
✅ EDITORCONFIG editorconfig-checker 110 0 0 0.14s
✅ JSON prettier 2 0 0 0 0.35s
✅ JSON v8r 2 0 0 2.05s
✅ MARKDOWN markdownlint 5 0 0 0 0.5s
✅ MARKDOWN markdown-table-formatter 5 0 0 0 0.25s
✅ REPOSITORY betterleaks yes no no 1.08s
✅ REPOSITORY git_diff yes no no 0.02s
⚠️ REPOSITORY osv-scanner yes no 1 0.67s
✅ REPOSITORY secretlint yes no no 0.98s
✅ REPOSITORY syft yes no no 1.63s
✅ REPOSITORY trivy yes no no 10.23s
✅ REPOSITORY trivy-sbom yes no no 0.08s
✅ REPOSITORY trufflehog yes no no 2.72s
⚠️ SPELL lychee 58 37 0 1.48s
✅ YAML prettier 50 0 0 0 0.22s
✅ YAML v8r 50 0 0 10.67s
✅ YAML yamllint 50 0 0 1.43s

Detailed Issues

⚠️ COPYPASTE / jscpd - 1 error
error: Duplicated code block (51 tokens), duplicated at [bin/oci-rm-stack-update.sh:12](0)
   ┌─ bin/oci-rm-stack-create.sh:32:1
   │  
32 │ ╭ OCI_RM_DIR=$(cd "$(dirname "${BASH_SOURCE[0]}")/.." && pwd)/oci-rm
33 │ │ WORK_DIR=$(mktemp -d "${TMPDIR:-/tmp}/oci-rm.XXXXXX")
34 │ │ STACK_ZIP="${WORK_DIR}/stack.zip"
35 │ │ 
   · │
39 │ │ 
40 │ │ echo "Creating stack ${STACK_NAME} in ${REGION}..."
   │ ╰────^
   │  
   ┌─ bin/oci-rm-stack-update.sh:12:1
   │  
12 │ ╭ OCI_RM_DIR=$(cd "$(dirname "${BASH_SOURCE[0]}")/.." && pwd)/oci-rm
13 │ │ WORK_DIR=$(mktemp -d "${TMPDIR:-/tmp}/oci-rm.XXXXXX")
14 │ │ STACK_ZIP="${WORK_DIR}/stack.zip"
15 │ │ 
   · │
19 │ │ 
20 │ │ echo "Updating stack ${STACK_ID}..."
   │ ╰────' Duplicated at bin/oci-rm-stack-update.sh:12

error: 1 errors emitted
⚠️ SPELL / lychee - 37 errors
📝 Summary
---------------------
🔍 Total...........66
🔗 Unique..........57
✅ Successful......22
⏳ Timeouts.........0
🔀 Redirected.......0
👻 Excluded.........0
❓ Unknown..........0
🚫 Errors..........37
⛔ Unsupported.....37

Errors in agent/bifrost/config.json
[404] https://api.commandcode.ai/provider (at 23:22) | Rejected status code: 404 Not Found

Errors in agent/compose.yaml
[ERROR] http://localhost:2375/_ping (at 91:32) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8080/healthz (at 240:32) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:9119/api/status (at 49:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:9377/health (at 151:33) | Connection refused - server may be down or port blocked
[ERROR] https://hermes/ (at 9:67) | Connection failed. Check network connectivity and firewall settings
[ERROR] https://searxng/ (at 227:45) | Connection failed. Check network connectivity and firewall settings

Errors in arcane/compose.yaml
[ERROR] http://localhost:3552/ (at 6:27) | Connection refused - server may be down or port blocked

Errors in homeassistant/compose.yaml
[ERROR] http://localhost:10000/health (at 148:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:6052/version (at 107:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8095/ (at 66:32) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8123/ (at 27:33) | Connection refused - server may be down or port blocked

Errors in immich/compose.yaml
[ERROR] http://localhost:8080/api/status (at 164:32) | Connection refused - server may be down or port blocked

Errors in infra/compose.yaml
[ERROR] http://localhost:2375/_ping (at 62:32) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:9002/healthz (at 99:36) | Connection refused - server may be down or port blocked

Errors in monitoring/compose.yaml
[ERROR] http://localhost:8090/ (at 73:44) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8090/ (at 94:27) | Connection refused - server may be down or port blocked

Errors in pangolin/compose.yaml
[ERROR] http://gerbil:3004/ (at 63:23) | Connection failed. Check network connectivity and firewall settings
[ERROR] http://localhost/ping (at 126:32) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:3001/api/v1/ (at 51:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:3004/healthz (at 87:32) | Connection refused - server may be down or port blocked
[ERROR] http://pangolin:3001/api/v1/ (at 65:24) | Connection failed. Check network connectivity and firewall settings

Errors in pangolin/traefik/dynamic/config.yml
[ERROR] http://pangolin:3000/ (at 80:18) | Connection failed. Check network connectivity and firewall settings
[ERROR] http://pangolin:3002/ (at 85:18) | Connection failed. Check network connectivity and firewall settings

Errors in pangolin/traefik/traefik.template.yml
[ERROR] http://pangolin:3001/api/v1/traefik-config (at 7:15) | Connection failed. Check network connectivity and firewall settings

Errors in proxy/compose.yaml
[ERROR] http://localhost/healthz (at 36:32) | Connection refused - server may be down or port blocked
[ERROR] https://tinyauth/ (at 50:24) | Connection failed. Check network connectivity and firewall settings

Errors in security/compose.yaml
[ERROR] http://localhost:8080/ (at 52:16) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8080/health (at 34:32) | Connection refused - server may be down or port blocked

Errors in torrent/compose.yaml
[ERROR] http://localhost:6868/ (at 219:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:7878/ping (at 139:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8191/health (at 15:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:8989/ping (at 181:33) | Connection refused - server may be down or port blocked
[ERROR] http://localhost:9696/ping (at 44:33) | Connection refused - server may be down or port blocked
[ERROR] https://profilarr/ (at 204:15) | Connection failed. Check network connectivity and firewall settings

Errors in usenet/compose.yaml
[ERROR] http://localhost:7000/health (at 21:32) | Connection refused - server may be down or port blocked
[ERROR] https://aiostreams/ (at 57:18) | Connection failed. Check network connectivity and firewall settings

Hint: You can configure accepted/rejected response codes with `-a` or `--accept`
⚠️ REPOSITORY / osv-scanner - 1 warning
Scanning dir .
Starting filesystem walk for root: /
End status: 47 dirs visited, 157 inodes visited, 0 Extract calls, 6.105657ms elapsed, 6.105867ms wall time
No package sources found, --help for usage information.


[REPOSITORY_OSV_SCANNER_ERROR_NO_PACKAGE_SOURCES] osv-scanner found no lockfiles, manifests, or SBOMs to scan in the repository.
This is a configuration/scope issue, not a vulnerability finding.
Resolutions:
  - Verify the repository actually contains a supported lockfile (package-lock.json, go.sum, Gemfile.lock, Pipfile.lock, etc.) at the scanned path.
  - If this is expected for some sub-projects, disable osv-scanner for the affected paths or mark it non-blocking via `DISABLE_ERRORS_LINTERS`.
⚠️ ACTION / zizmor - 1 warning
INFO zizmor: 🌈 zizmor v1.25.0
 INFO audit: zizmor: 🌈 completed .github/workflows/automerge.yml
 INFO audit: zizmor: 🌈 completed .github/workflows/megalinter.yml
 INFO audit: zizmor: 🌈 completed .github/workflows/ossf.yml
 INFO audit: zizmor: 🌈 completed .github/workflows/pr.yml
{
  "$schema": "https://docs.oasis-open.org/sarif/sarif/v2.1.0/os/schemas/sarif-schema-2.1.0.json",
  "runs": [
    {
      "invocations": [
        {
          "executionSuccessful": true
        }
      ],
      "results": [],
      "tool": {
        "driver": {
          "downloadUri": "https://github.com/zizmorcore/zizmor",
          "informationUri": "https://docs.zizmor.sh",
          "name": "zizmor",
          "rules": [],
          "semanticVersion": "1.25.0",
          "version": "1.25.0"
        }
      }
    }
  ],
  "version": "2.1.0"
No fixes available to apply.
}

Notices

⚠️ Your configuration references items that have been removed from MegaLinter and are ignored: REPOSITORY_KICS, TERRAFORM_TERRASCAN. See Removed linters to find their replacements.

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@10.1.0 --custom-flavor-setup --custom-flavor-linters ACTION_ACTIONLINT,ACTION_ZIZMOR,BASH_EXEC,BASH_SHELLCHECK,BASH_SHFMT,COPYPASTE_JSCPD,EDITORCONFIG_EDITORCONFIG_CHECKER,JSON_V8R,JSON_PRETTIER,MARKDOWN_MARKDOWNLINT,MARKDOWN_MARKDOWN_TABLE_FORMATTER,REPOSITORY_GIT_DIFF,REPOSITORY_BETTERLEAKS,REPOSITORY_OSV_SCANNER,REPOSITORY_SECRETLINT,REPOSITORY_SYFT,REPOSITORY_TRIVY,REPOSITORY_TRIVY_SBOM,REPOSITORY_TRUFFLEHOG,SPELL_LYCHEE,YAML_PRETTIER,YAML_YAMLLINT,YAML_V8R

MegaLinter is provided by OX Security
Show us your support by starring ⭐ the repository

@renovate
renovate Bot force-pushed the renovate/chromedp-headless-shell-156.x branch from e87f645 to aad2c10 Compare October 4, 2026 05:29
@renovate renovate Bot changed the title chore(deps): update chromedp/headless-shell docker tag to v156 chore(deps): update chromedp/headless-shell docker tag to v156 - autoclosed Oct 4, 2026
@renovate renovate Bot closed this Oct 4, 2026
@renovate
renovate Bot deleted the renovate/chromedp-headless-shell-156.x branch October 4, 2026 06:05
@yxtay

yxtay commented Oct 4, 2026

Copy link
Copy Markdown
Owner

Closed as superseded — analysis preserved for the record

Investigated as part of the 155 → 157 comparison (this stack uses
chromedp/headless-shell only via [[fastcrw]]'s chrome render rung). PR auto-closed
because Renovate jumped straight to the newest major; recording the findings so the next
156.x/158.x round doesn't re-derive them.

Verdict: 156.0.8078.4 is safe, and it is the middle option — beta channel, one
milestone of lead over stable.
If the goal is "newest CDP fixes without running a dev
build", this is the version to pin.

Channel position (2026-10-04)

155.0.8059.26  ==  :stable  ==  :latest
156.0.8078.4   ==  :beta                                  <- this PR
157.0.8081.0   ==  :dev

Chrome for Testing last-known-good: Stable 154.0.8037.92, Beta 156.0.8078.4,
Dev 157.0.8081.0. Digest verified against the registry:
sha256:7c1809255e25a77a464ed1c205c4ad0ce5d9f4f8c25e119afc11eaf7d41b3f1b.

CDP surface

Diffed third_party/blink/public/devtools_protocol/domains/*.pdl at the release tags on
chromium.googlesource.com. Across 155 → 157 there is exactly one command removal
(Storage.getRelatedWebsiteSets), zero domain removals, and one added domain
(FindInPage, experimental). Nothing removed is called by fastcrw, whose renderer
references only Page, Runtime, Target, Network, DOM, Emulation, Fetch,
Browser, Inspector, Accessibility. 156 sits on that same additive path.

Live functional A/B

Second fastcrw instance (crw:0.37.2, identical config.docker.toml, chrome tier
repointed at a candidate container — prod agent-chrome-1 untouched), 4 URLs × 3 reps

  • 6-way concurrent burst:
URL 155 156 157
example.com 200 · 976 md · 800×600 200 · 976 md · 800×600 200 · 976 md · 800×600
news.ycombinator.com 200 · 10939 md 200 · 10939 md 200 · 10939 md
wikipedia/Chromium 200 · ~662k md 200 · ~662k md 200 · ~662k md
httpbin.org/html 200 · 3597 md 200 · 3597 md 200 · 3597 md
burst ×6 6/6 ok 6/6 ok 6/6 ok
restarts 0 0 0

Markdown byte-length identical across all three; every screenshot a valid 800×600 PNG;
latency indistinguishable (wikipedia p50: 155 1.42s, 156 1.27s, 157 1.34s). No crashes, no
context leaks.

The 500 CDP connection closed on the first request after each container swap is a
harness artifact, not a browser defect — fastcrw caches the browser-level ws:// URL,
which embeds a per-process UUID, so swapping containers invalidates it and only the
internal retry succeeds. Each version got a discarded warmup request to compensate.

Caveat, same shape as #707 but smaller

Beta is also pre-release and also has no point releases, so the "frozen snapshot, no patch
to bump to" argument applies here too — just with less lead time. If a future Renovate
round lands on dev or canary, worth an explicit decision rather than letting the
major label absorb it. See #707 for the full write-up and a suggested
packageRules guard to pin this image to stable/beta.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant