Skip to content

build(deps): consolidate all pending Dependabot updates and group future ones - #25

Merged
AlexanderV merged 2 commits into
mainfrom
claude/compassionate-faraday-pbpnbh
Sep 25, 2026
Merged

AlexanderV merged 2 commits into
mainfrom
claude/compassionate-faraday-pbpnbh

Conversation

@AlexanderV

Copy link
Copy Markdown
Owner

What and why

Replaces the 14 separate Dependabot PRs with one change that has been checked as a whole, and reconfigures Dependabot so it no longer opens one PR per package.

  • NuGet: Microsoft.SourceLink.GitHub 10.0.401 (build-only), CsCheck 4.9.1, Microsoft.NET.Test.Sdk 18.10.1, xunit.runner.visualstudio 4.0.0, TngTech.ArchUnitNET.xUnit 0.13.4, BenchmarkDotNet 0.15.8.
  • JsonSchema.Net 8.0.5 instead of 9.4.0. 9.x ships under the Open Source Maintenance Fee EULA; 8.x is the last MIT line. PublishedCliSchema is adapted to the v8 API: JsonElement evaluation, and the schemas are built once because v8 registers schemas globally by $id.
  • Tool manifest: docfx 2.81.0, dotnet-stryker 5.0.0.
  • Actions (still SHA-pinned): checkout v7.0.1, setup-dotnet v6.0.0, upload-artifact v7.0.1, upload-pages-artifact v5.0.0, deploy-pages v5.0.1, attest-build-provenance v4.2.2.
  • Dependabot: runs monthly. Grouped PRs: minor/patch, major, security, and GitHub Actions. JsonSchema.Net >= 9 is ignored.

Supersedes #3, #4, #5, #6, #7, #8, #11, #17, #18, #19, #21, #22, #23, #24.

How it was verified

Run locally on .NET SDK 10.0.112:

  • dotnet format --verify-no-changes: clean.
  • dotnet build -c Release -warnaserror: 0 warnings, 0 errors.
  • CI test filter with coverage: 1382/1382 passed, 92.93% line coverage (threshold 80%).
  • dotnet docfx docs-site/docfx.json with 2.81.0: site builds.
  • Perf allocation gate (perf.yml steps) on BenchmarkDotNet 0.15.8: 8/8 within threshold.
  • Stryker 5.0.0: accepts the existing stryker-config.json and gets as far as the initial test run. A full mutation run was not done.

Checklist

  • dotnet format LogicalOptimizer.sln --verify-no-changes passes
  • dotnet build LogicalOptimizer.sln -c Release -warnaserror is clean
  • dotnet test --filter "Category!=Performance&Category!=Exhaustive" is green
  • Tests cover the new behaviour (and would fail without the change): n/a, dependency update. The existing schema suites exercise the adapted helper.
  • Documented examples updated together with their twin assertions in DocExamplesTests: n/a
  • CHANGELOG.md updated for user-visible changes

Public API

  • No public API change

🤖 Generated with Claude Code

https://claude.ai/code/session_015aAHNotbe7KMXnnyfZwMG9


Generated by Claude Code

…ure ones

Supersedes the individual Dependabot PRs with one validated change:

- NuGet: Microsoft.SourceLink.GitHub 10.0.401, CsCheck 4.9.1,
  Microsoft.NET.Test.Sdk 18.10.1, xunit.runner.visualstudio 4.0.0,
  TngTech.ArchUnitNET.xUnit 0.13.4, BenchmarkDotNet 0.15.8,
  JsonSchema.Net 8.0.5 (last MIT line; 9.x is under the OSMF EULA).
- Tools: docfx 2.81.0, dotnet-stryker 5.0.0.
- Actions (SHA-pinned): checkout v7.0.1, setup-dotnet v6.0.0,
  upload-artifact v7.0.1, upload-pages-artifact v5.0.0,
  deploy-pages v5.0.1, attest-build-provenance v4.2.2.

JsonSchema.Net 8 evaluates JsonElement and registers schemas globally by
$id, so the published CLI schemas are now built once and JsonNode
instances are bridged through a small Evaluate extension.

Dependabot now runs monthly with grouped PRs (minor/patch, major,
security, actions) and ignores JsonSchema.Net >= 9.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_015aAHNotbe7KMXnnyfZwMG9
Bump <Version> to 4.0.1 and date the CHANGELOG section so the release
workflow's changelog gate accepts the v4.0.1 tag.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_015aAHNotbe7KMXnnyfZwMG9
@AlexanderV
AlexanderV merged commit 7985f14 into main Sep 25, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants