Dashboard › spotlight › Distillation
b6d01625-4f0a-427f-affe-e744ed4c69ac["fdf6fb25c274c784384010c2fb85845f","ac4f69a64fbbe9344c2b5471452c0bb3","1258e6a11de49b11ca289a36958db917","f50ae0c31defe65715c55c1b8b2104ee","6fa1a005039e3d27f1a84cc3a07e05e0","6cbbba6a81a1c6172c121a3e5de6aba8"]
Date: Jul 28, 2026
4.11.8 (current main, from commit 89131421 "release: 4.11.8") to 4.11.7 (released in commit d6c318cc). Likely rebase artifact since branches predate 4.11.8 release. Risk: Craft release workflow would re-publish 4.11.7 (duplicate), and consumers on 4.11.8 would miss security fixesvi.mock("@spotlight/ui/assets/download.svg", () => ({ ReactComponent: () => null })) is consistent with vite-plugin-svgr@5 namedExport: 'ReactComponent' configuration. Test is correct, not breaking/// <reference types="vite-plugin-svgr/client" /> — svgr is actively used in spotlight UI package, not just website. PR #1342 bumps vite-plugin-svgr from ^3.3.0 to 5.2.0target: "default", arch: ["x64", "arm64"], hardenedRuntime: true, gatekeeperAssess: false, asarUnpack: ["resources/**"], npmRebuild: false, extraMetadata: { main: "./dist-electron/main/index.js" }, appId: "io.sentry.spotlight", productName: "Spotlight", output: "dist-electron". CSC_LINK/CSC_KEY_PASSWORD env vars gate signing — when missing, target narrows to arm64-only with identity: nullxh, Sh, vh) — confirms shiki is active runtime dep used for code highlighting in spotlight UI bundle"svgo": ">=4.0.2" override acts only on vite's transitive svgo (vite uses svgo internally). Risk analysis: vite 5+ uses svgo v2 API internally; bumping to 4.x could affect vite's internal SVG optimization if API surface changed