Skip to content

[Snyk] Upgrade @anthropic-ai/sdk from 0.17.2 to 0.71.2#48

Open
UsmanBuk wants to merge 2 commits intomainfrom
snyk-upgrade-489245f740021666c4bb75e654925c7c
Open

[Snyk] Upgrade @anthropic-ai/sdk from 0.17.2 to 0.71.2#48
UsmanBuk wants to merge 2 commits intomainfrom
snyk-upgrade-489245f740021666c4bb75e654925c7c

Conversation

@UsmanBuk
Copy link
Owner

@UsmanBuk UsmanBuk commented Jan 24, 2026

User description

snyk-top-banner

Snyk has created this PR to upgrade @anthropic-ai/sdk from 0.17.2 to 0.71.2.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 83 versions ahead of your current version.

  • The recommended version was released 2 months ago.

Release notes
Package name: @anthropic-ai/sdk
  • 0.71.2 - 2025-12-06

    0.71.2 (2025-12-05)

    Full Changelog: sdk-v0.71.1...sdk-v0.71.2

    Bug Fixes

    • streams: ensure errors are catchable (#856) (a480eaf)
  • 0.71.1 - 2025-12-04

    0.71.1 (2025-12-04)

    Full Changelog: sdk-v0.71.0...sdk-v0.71.1

    Bug Fixes

    • parser: use correct naming for parsed text blocks (6472bcd)
    • structured outputs: ensure parsed is not enumerable (860175f), closes #857

    Chores

    • add deprecation warnings for accessing .parsed (ae7a637)
    • client: fix logger property type (e3e4d7c)
    • internal: upgrade eslint (5fbe661)
  • 0.71.0 - 2025-11-24

    0.71.0 (2025-11-24)

    Full Changelog: sdk-v0.70.1...sdk-v0.71.0

    Features

    • api: adds support for Claude Opus 4.5, Effort, Advance Tool Use Features, Autocompaction, and Computer Use v5 (f3a0dac)

    Chores

    • fix ci errors (8d96290)
    • include publishConfig in all package.json files (4c72960)
    • readme: fix example import (4e8983a)
  • 0.70.1 - 2025-11-20

    0.70.1 (2025-11-20)

    Full Changelog: sdk-v0.70.0...sdk-v0.70.1

    Bug Fixes

    • structured outputs: use correct beta header (626662c)
  • 0.70.0 - 2025-11-18

    0.70.0 (2025-11-18)

    Full Changelog: sdk-v0.69.0...sdk-v0.70.0

    Features

  • 0.69.0 - 2025-11-14

    0.69.0 (2025-11-14)

    Full Changelog: sdk-v0.68.0...sdk-v0.69.0

    Features

    • api: add support for structured outputs beta (e6562d7)
  • 0.68.0 - 2025-10-28
  • 0.67.1 - 2025-10-28
  • 0.67.0 - 2025-10-16
  • 0.66.0 - 2025-10-15
  • 0.65.0 - 2025-09-29
  • 0.64.0 - 2025-09-26
  • 0.63.1 - 2025-09-23
  • 0.63.0 - 2025-09-17
  • 0.62.0 - 2025-09-10
  • 0.61.0 - 2025-09-02
  • 0.60.0 - 2025-08-13
  • 0.59.0 - 2025-08-08
  • 0.58.0 - 2025-08-05
  • 0.57.0 - 2025-07-21
  • 0.56.0 - 2025-07-03
  • 0.55.1 - 2025-06-30
  • 0.55.0 - 2025-06-24
  • 0.54.0 - 2025-06-11
  • 0.53.0 - 2025-06-05
  • 0.52.0 - 2025-05-22
  • 0.51.0 - 2025-05-15
  • 0.50.4 - 2025-05-12
  • 0.50.3 - 2025-05-09
  • 0.50.2 - 2025-05-09
  • 0.50.1 - 2025-05-09
  • 0.41.0 - 2025-05-07
  • 0.40.1 - 2025-04-28
  • 0.40.0 - 2025-04-25
  • 0.39.0 - 2025-02-28
  • 0.38.0 - 2025-02-27
  • 0.37.0 - 2025-02-24
  • 0.36.3 - 2025-01-27
  • 0.36.2 - 2025-01-23
  • 0.35.0 - 2025-01-21
  • 0.34.0-alpha.0 - 2024-12-20
  • 0.33.1 - 2024-12-17
  • 0.33.0 - 2024-12-17
  • 0.32.1 - 2024-11-05
  • 0.32.0 - 2024-11-04
  • 0.31.0 - 2024-11-01
  • 0.30.1 - 2024-10-23
  • 0.30.0 - 2024-10-22
  • 0.29.2 - 2024-10-17
  • 0.29.1 - 2024-10-15
  • 0.29.0 - 2024-10-08
  • 0.28.0 - 2024-10-04
  • 0.27.3 - 2024-09-09
  • 0.27.2 - 2024-09-04
  • 0.27.1 - 2024-08-27
  • 0.27.0 - 2024-08-21
  • 0.26.1 - 2024-08-16

    0.26.1 (2025-11-24)

    Full Changelog: bedrock-sdk-v0.26.0...bedrock-sdk-v0.26.1

    Chores

    • include publishConfig in all package.json files (4c72960)
  • 0.26.0 - 2024-08-14
  • 0.25.2 - 2024-08-12
  • 0.25.1 - 2024-08-09
  • 0.25.0 - 2024-07-29
  • 0.24.3 - 2024-07-01
  • 0.24.2 - 2024-06-28
  • 0.24.1 - 2024-06-25
  • 0.24.0 - 2024-06-20
  • 0.23.0 - 2024-06-14
  • 0.22.0 - 2024-05-30
  • 0.21.1 - 2024-05-21
  • 0.21.0 - 2024-05-16
  • 0.20.9 - 2024-05-08
  • 0.20.8 - 2024-04-29
  • 0.20.7 - 2024-04-24
  • 0.20.6 - 2024-04-17
  • 0.20.5 - 2024-04-15
  • 0.20.4 - 2024-04-11
  • 0.20.3 - 2024-04-10
  • 0.20.2 - 2024-04-09
  • 0.20.1 - 2024-04-04
  • 0.20.0 - 2024-04-04
  • 0.19.2 - 2024-04-04
  • 0.19.1 - 2024-03-29
  • 0.19.0 - 2024-03-19
  • 0.18.0 - 2024-03-13
  • 0.17.2 - 2024-03-12
from @anthropic-ai/sdk GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:


CodeAnt-AI Description

Upgrade @anthropic-ai/sdk to v0.71.2

What Changed

  • Replaced @anthropic-ai/sdk v0.17.2 with v0.71.2 in package.json and package-lock.json, bringing the project to the newer SDK release
  • Lockfile updated to include new transitive dependencies required by the newer SDK version
  • Removed several older packages no longer pulled in by the SDK and added new runtime/peer packages that come with the SDK upgrade

Impact

✅ Fewer dependency vulnerabilities
✅ Access to Anthropic SDK fixes and newer features (v0.71.2)
✅ Updated dependency graph for more recent Node/package compatibility

💡 Usage Guide

Checking Your Pull Request

Every time you make a pull request, our system automatically looks through it. We check for security issues, mistakes in how you're setting up your infrastructure, and common code problems. We do this to make sure your changes are solid and won't cause any trouble later.

Talking to CodeAnt AI

Got a question or need a hand with something in your pull request? You can easily get in touch with CodeAnt AI right here. Just type the following in a comment on your pull request, and replace "Your question here" with whatever you want to ask:

@codeant-ai ask: Your question here

This lets you have a chat with CodeAnt AI about your pull request, making it easier to understand and improve your code.

Example

@codeant-ai ask: Can you suggest a safer alternative to storing this secret?

Preserve Org Learnings with CodeAnt

You can record team preferences so CodeAnt AI applies them in future reviews. Reply directly to the specific CodeAnt AI suggestion (in the same thread) and replace "Your feedback here" with your input:

@codeant-ai: Your feedback here

This helps CodeAnt AI learn and adapt to your team's coding style and standards.

Example

@codeant-ai: Do not flag unused imports.

Retrigger review

Ask CodeAnt AI to review the PR again, by typing:

@codeant-ai: review

Check Your Repository Health

To analyze the health of your code repository, visit our dashboard at https://app.codeant.ai. This tool helps you identify potential issues and areas for improvement in your codebase, ensuring your repository maintains high standards of code health.

Snyk has created this PR to upgrade @anthropic-ai/sdk from 0.17.2 to 0.71.2.

See this package in npm:
@anthropic-ai/sdk

See this project in Snyk:
https://app.snyk.io/org/usmanbuk/project/4116911f-6b48-47c7-9a68-a734a6ec1479?utm_source=github&utm_medium=referral&page=upgrade-pr
@codeant-ai
Copy link

codeant-ai bot commented Jan 24, 2026

CodeAnt AI is reviewing your PR.


Thanks for using CodeAnt! 🎉

We're free for open-source projects. if you're enjoying it, help us grow by sharing.

Share on X ·
Reddit ·
LinkedIn

@coderabbitai
Copy link

coderabbitai bot commented Jan 24, 2026

Important

Review skipped

Ignore keyword(s) in the title.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

  • 🔍 Trigger a full review
✨ Finishing touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Post copyable unit tests in a comment
  • Commit unit tests in branch snyk-upgrade-489245f740021666c4bb75e654925c7c

Comment @coderabbitai help to get the list of available commands and usage tips.

@codeant-ai
Copy link

codeant-ai bot commented Jan 24, 2026

Sequence Diagram

This PR updates the project's dependency on @anthropic-ai/sdk from 0.17.2 to 0.71.2 by modifying package.json and package-lock.json; the diagram shows the core change and the resulting install/build flow affected by the upgrade.

sequenceDiagram
    participant Snyk
    participant Repo
    participant CI
    participant Registry

    Snyk->>Repo: Create PR updating @anthropic-ai/sdk version in package.json & package-lock.json
    Repo-->>CI: Push PR / trigger CI
    CI->>Registry: npm install (fetch @anthropic-ai/sdk@0.71.2)
    Registry-->>CI: Return package tarball
    CI->>Repo: Run build/tests with upgraded dependency
Loading

Generated by CodeAnt AI

@codeant-ai codeant-ai bot added the size:M This PR changes 30-99 lines, ignoring generated files label Jan 24, 2026
@codeant-ai
Copy link

codeant-ai bot commented Jan 24, 2026

CodeAnt AI finished reviewing your PR.

Snyk has created this PR to upgrade @anthropic-ai/sdk from 0.17.2 to 0.71.2.

See this package in npm:
@anthropic-ai/sdk

See this project in Snyk:
https://app.snyk.io/org/usmanbuk/project/4116911f-6b48-47c7-9a68-a734a6ec1479?utm_source=github&utm_medium=referral&page=upgrade-pr
@codeant-ai
Copy link

codeant-ai bot commented Jan 31, 2026

CodeAnt AI is running Incremental review


Thanks for using CodeAnt! 🎉

We're free for open-source projects. if you're enjoying it, help us grow by sharing.

Share on X ·
Reddit ·
LinkedIn

@codeant-ai codeant-ai bot added size:M This PR changes 30-99 lines, ignoring generated files and removed size:M This PR changes 30-99 lines, ignoring generated files labels Jan 31, 2026
@codeant-ai
Copy link

codeant-ai bot commented Jan 31, 2026

CodeAnt AI Incremental review completed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size:M This PR changes 30-99 lines, ignoring generated files

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants