Skip to content

Bump eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml from af0f4177e79981b1e654041bf29e0d082facd5ae to ccf3dddc093d56fb3112f9df218930d0ef5737a8#1535

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/eclipse-dash/dash-licenses/dot-github/workflows/mavenLicenseCheck.yml-ccf3dddc093d56fb3112f9df218930d0ef5737a8
Open

Bump eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml from af0f4177e79981b1e654041bf29e0d082facd5ae to ccf3dddc093d56fb3112f9df218930d0ef5737a8#1535
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/eclipse-dash/dash-licenses/dot-github/workflows/mavenLicenseCheck.yml-ccf3dddc093d56fb3112f9df218930d0ef5737a8

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 22, 2026

Copy link
Copy Markdown
Contributor

Bumps eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml from af0f4177e79981b1e654041bf29e0d082facd5ae to ccf3dddc093d56fb3112f9df218930d0ef5737a8.

Changelog

Sourced from eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml's changelog.

ChangeLog

[1.1.0] - 2023-12-01

The biggest potential impact with this release should be that when the tool is used on a package-lock.json file, it may detect fewer entries as dependencies. Some additional work was done to refine how the tool identifies local dependencies, which are generally dependencies that are in the source repository (that is, local dependencies are most likely project code).

Changed

  • Refactored out a core module that does not shade dependencies #283
  • Update all dependencies to latest and greatest
  • Now uses jakarta.inject annotations #264
  • More resilient handling of Bad Gateway (502) errors
  • More resilient handling of rate limiting on when connecting to IPLab #260
  • Ignores all "local" dependencies when parsing a package-lock.json file #287

Added

  • Created a new module for creating a shaded artifact (the shaded artifact uses the same naming convention as before, so this should not break anybody) #283
  • Added a new repo property includes the URL of the Git repository as part of review requests #224
Commits
  • ccf3ddd Merge pull request #574 from eclipse-dash/dependabot/github_actions/actions/c...
  • b770f1b Merge pull request #573 from eclipse-dash/dependabot/github_actions/actions/s...
  • 002dd77 Merge pull request #570 from eclipse-dash/dependabot/maven/org.apache.maven.p...
  • 39813a4 Merge pull request #567 from eclipse-dash/dependabot/maven/org.apache.maven-m...
  • 3403e9c Merge pull request #569 from eclipse-dash/dependabot/maven/org.apache.maven-m...
  • ccda394 Merge pull request #568 from eclipse-dash/dependabot/maven/org.junit-junit-bo...
  • 0cfd5f5 Bump actions/checkout from 6.0.2 to 7.0.0
  • 263693a Bump actions/setup-java from 5.2.0 to 5.3.0
  • 696d0d6 Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6
  • 4132fa3 Bump org.apache.maven:maven-plugin-api from 3.9.15 to 3.9.16
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml](https://github.com/eclipse-dash/dash-licenses) from af0f4177e79981b1e654041bf29e0d082facd5ae to ccf3dddc093d56fb3112f9df218930d0ef5737a8.
- [Changelog](https://github.com/eclipse-dash/dash-licenses/blob/master/CHANGELOG.md)
- [Commits](eclipse-dash/dash-licenses@af0f417...ccf3ddd)

---
updated-dependencies:
- dependency-name: eclipse-dash/dash-licenses/.github/workflows/mavenLicenseCheck.yml
  dependency-version: ccf3dddc093d56fb3112f9df218930d0ef5737a8
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 22, 2026
@github-actions

Copy link
Copy Markdown

Test Results

     4 files  ±0       4 suites  ±0   2h 25m 0s ⏱️ + 6m 53s
 7 020 tests ±0   6 989 ✅ +1  31 💤 ±0  0 ❌ ±0 
23 684 runs  ±0  23 586 ✅ +1  98 💤 ±0  0 ❌ ±0 

Results for commit f468972. ± Comparison against base commit cbf1961.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants