$ the-wire · showcase
Legacy AsyncLocalStorage removed, FFI permission checks dropped
By RepoJournal · Filed · About Node.js · Composed from the cited sources · methodology
Node's async context machinery loses its async_hooks fallback, the FFI permission model gets one inconsistent gap closed, and the V8 serialization header stops being pinned in tests.
async_hooks: remove legacy AsyncLocalStorage implementation nodejs/node
The async_hooks-based AsyncLocalStorage fallback and the --no-async-context-frame flag are gone; AsyncContextFrame is now the sole implementation. This is a breaking change for anyone still passing --no-async-context-frame or relying on async_hooks to back AsyncLocalStorage.
ffi: remove permission checks from dlclose and dlsym nodejs/node
After process.permission.drop('ffi'), ffi.dlclose(lib) threw ERR_ACCESS_DENIED while the equivalent lib.close() succeeded, because only the ffi.* wrappers ran checkFFIPermission(). The checks are removed so dlclose and dlsym defer to the handle, whose permission is already validated when the DynamicLibrary is constructed.
test: do not hardcode V8 serialization header nodejs/node
V8's serialization header changes when V8 is updated, so the test no longer hardcodes it. The effect is that a V8 bump should now surface only in test/parallel/test-v8-serdes.js instead of breaking unrelated tests.
module: centralize builtin exposure policies nodejs/node
Builtin exposure rules were split between realm.js and per-option setup functions in pre_execution.js; they now live in one table that pre-execution applies after option initialization. The policy deliberately stays in the JavaScript loader rather than being derived from native option registration, since a single native option can expose multiple builtins.
test: mark worker init failure flaky on SmartOS nodejs/node
The worker init failure test on SmartOS is marked flaky, tracking a descriptor-dependent V8 entropy failure until the libuv update in #66282 removes the dependency on opening /dev/urandom. Elsewhere, doc-kit wired oxfmt import sorting, a sitemap URL fix, and api.deps.dev as an allowed endpoint in its workflow.
Action items