Skip to content

Bump the dotnet-dependencies group with 5 updates - #236

Merged
Chris-Wolfgang merged 6 commits into
mainfrom
dependabot/nuget/dotnet-dependencies-84da44af94
Aug 8, 2026
Merged

Bump the dotnet-dependencies group with 5 updates#236
Chris-Wolfgang merged 6 commits into
mainfrom
dependabot/nuget/dotnet-dependencies-84da44af94

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 6, 2026

Copy link
Copy Markdown
Contributor

Updated Meziantou.Analyzer from 3.0.125 to 3.0.139.

Release notes

Sourced from Meziantou.Analyzer's releases.

3.0.139

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.139

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.138...3.0.139

3.0.138

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.138

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.137...3.0.138

3.0.137

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.137

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.136...3.0.137

3.0.136

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.136

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.135...3.0.136

3.0.135

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.135

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.134...3.0.135

3.0.134

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.134

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.133...3.0.134

3.0.133

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.133

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.132...3.0.133

3.0.132

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.132

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.130...3.0.132

3.0.131

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.131

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.129...3.0.131

3.0.130

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.130

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.129...3.0.130

3.0.129

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.129

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.128...3.0.129

3.0.128

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.128

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.127...3.0.128

3.0.127

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.127

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.126...3.0.127

3.0.126

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.126

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.125...3.0.126

Commits viewable in compare view.

Updated SonarAnalyzer.CSharp from 10.29.0.143774 to 10.31.0.145097.

Release notes

Sourced from SonarAnalyzer.CSharp's releases.

10.31.0.145097

Release notes - .NET Analyzers - 10.31

Feature

NET-3865 Implement S8733: Potential Cartesian Explosion
NET-3875 Implement rule S8718: Client-evaluated default values should use database functions
NET-4087 Use shared secret exclusion patterns in hardcoded secrets rules
NET-4211 Update RSPEC before 10.31 release

False Positive

NET-1922 S1144 FP: When registering a service with Microsoft.Extensions.DependencyInjecion framework
NET-3928 Fix S3267 FP: Should not raise on EntityFramework IQueryables
NET-4205 Fix S1244 FP: should not raise on NaN check via x.Equals(double.NaN)

10.30.0.144632

Release notes - .NET Analyzers - 10.30

Feature

NET-1536 Implement rule S8970: Null-forgiving operators should not be used when nullable warnings are disabled
NET-3436 Implement rule S8949: Use the overload that accepts a CancellationToken
NET-3810 Fix: Protobuf Importer logs debug on excluded files
NET-3877 Implement rule S8747: Migrations should not narrow column types without converting existing data
NET-4091 Implement rule S8969: Null-forgiving operators should not be redundant
NET-4120 Update RSPEC before 10.30 release

False Positive

NET-1541 Fix S3459 FP: support classes marked with [AutoConstructor] attribute
NET-1583 Fix S6967 FP: Raises when model has no validation attributes
NET-1840 Fix S3903 FP: top-level statements and partial Program in separate file
NET-4059 Improve precision of S8949 (CancellationTokenShouldBeUsed) - umbrella
NET-4191 Fix S3169 FP: Should not raise in Azure Cosmos

False Negative

NET-3819 Fix S1244 FN: Should report on Double.Equals

Bug

NET-4107 Fix S4026 Race Condition

Commits viewable in compare view.

Updated Wolfgang.Etl.Abstractions from 0.16.1 to 0.21.0.

Release notes

Sourced from Wolfgang.Etl.Abstractions's releases.

0.21.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.20.0...v0.21.0

0.20.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.19.0...v0.20.0

0.19.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.18.1...v0.19.0

0.18.1

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.18.0...v0.18.1

0.18.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.17.0...v0.18.0

0.17.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Abstractions@v0.16.1...v0.17.0

Commits viewable in compare view.

Updated Wolfgang.Etl.TestKit from 0.10.0 to 0.14.0.

Release notes

Sourced from Wolfgang.Etl.TestKit's releases.

0.14.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.13.0...v0.14.0

0.13.0

0.12.0

0.11.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.10.1...v0.11.0

0.10.1

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.10.0...v0.10.1

Commits viewable in compare view.

Updated Wolfgang.Etl.TestKit.Xunit from 0.10.0 to 0.14.0.

Release notes

Sourced from Wolfgang.Etl.TestKit.Xunit's releases.

0.14.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.13.0...v0.14.0

0.13.0

0.12.0

0.11.0

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.10.1...v0.11.0

0.10.1

What's Changed

Full Changelog: Chris-Wolfgang/ETL-Test-Kit@v0.10.0...v0.10.1

Commits viewable in compare view.

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps Meziantou.Analyzer from 3.0.125 to 3.0.139
Bumps SonarAnalyzer.CSharp from 10.29.0.143774 to 10.31.0.145097
Bumps Wolfgang.Etl.Abstractions from 0.16.1 to 0.21.0
Bumps Wolfgang.Etl.TestKit from 0.10.0 to 0.14.0
Bumps Wolfgang.Etl.TestKit.Xunit from 0.10.0 to 0.14.0

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.139
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.31.0.145097
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.Abstractions
  dependency-version: 0.21.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit.Xunit
  dependency-version: 0.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Aug 6, 2026
@dependabot
dependabot Bot requested a review from Chris-Wolfgang as a code owner August 6, 2026 03:38
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Aug 6, 2026
@github-actions

github-actions Bot commented Aug 8, 2026

Copy link
Copy Markdown
Contributor

PR benchmark delta

Benchmark Base mean HEAD mean Δ mean Base alloc HEAD alloc Δ alloc
ExtractAsync(ItemCount: 10) 42.10 µs 42.28 µs +0.4% 67.04 KB 67.05 KB +0.0%
ExtractAsync(ItemCount: 100) 428.46 µs 414.65 µs -3.2% 667.59 KB 667.60 KB +0.0%
ExtractAsync(ItemCount: 1000) 4.25 ms 4.19 ms -1.4% 6679.31 KB 6679.32 KB +0.0%
LoadAsync(ItemCount: 10) 18.47 µs 18.35 µs -0.6% 82.91 KB 82.92 KB +0.0%
LoadAsync(ItemCount: 100) 177.08 µs 185.00 µs +4.5% 827.21 KB 827.22 KB +0.0%
LoadAsync(ItemCount: 1000) 1.77 ms 1.79 ms +1.2% 8273.30 KB 8273.31 KB +0.0%
ExtractAsync(ItemCount: 10) 25.35 µs 25.02 µs -1.3% 111.78 KB 111.79 KB +0.0%
ExtractAsync(ItemCount: 100) 195.71 µs 195.23 µs -0.2% 204.27 KB 204.28 KB +0.0%
ExtractAsync(ItemCount: 1000) 1.93 ms 1.86 ms -3.4% 1128.89 KB 1128.90 KB +0.0%
LoadAsync(ItemCount: 10) 12.66 µs 12.54 µs -0.9% 74.79 KB 74.80 KB +0.0%
LoadAsync(ItemCount: 100) 102.02 µs 101.61 µs -0.4% 181.29 KB 181.30 KB +0.0%
LoadAsync(ItemCount: 1000) 1.22 ms 1.20 ms -1.8% 1093.50 KB 1093.51 KB +0.0%
LoadNoIndentAsync(ItemCount: 10) 11.21 µs 11.25 µs +0.4% 74.88 KB 74.88 KB +0.0%
LoadNoIndentAsync(ItemCount: 100) 84.85 µs 82.53 µs -2.7% 149.35 KB 149.36 KB +0.0%
LoadNoIndentAsync(ItemCount: 1000) 1.03 ms 1.01 ms -1.7% 1093.59 KB 1093.60 KB +0.0%

Job: Short (fast, ~5% variance). Filter: * (all benchmarks). Gate mode: informational (no pass/fail threshold).

@Chris-Wolfgang

Copy link
Copy Markdown
Owner

@dependabot rebase

@dependabot @github

dependabot Bot commented on behalf of github Aug 8, 2026

Copy link
Copy Markdown
Contributor Author

Looks like this PR has been edited by someone other than Dependabot. That means Dependabot can't rebase it - sorry!

If you're happy for Dependabot to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

Chris-Wolfgang and others added 2 commits August 8, 2026 11:43
…et-dependencies-84da44af94

# Conflicts:
#	src/Wolfgang.Etl.Xml/Wolfgang.Etl.Xml.csproj
#	tests/Wolfgang.Etl.Xml.Tests.Unit/Wolfgang.Etl.Xml.Tests.Unit.csproj
The TestKit 0.13→0.14 contract base stopped exercising the typed-ILogger<T>
constructors, the custom-XmlWriterSettings serialize branch, the invalid-NCName
root throw, and the deserialize-to-null skip — dropping XmlMultiStreamExtractor
(89%), XmlMultiStreamLoader (85%), and XmlSingleStreamLoader (86%) under the 90%
per-class gate. Add XmlCoverageTests covering those paths → all back over 90%
(net10 local: 95.1 / 95.1 / 96.2%). 280 tests pass.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates .NET dependencies and restores coverage lost after the TestKit upgrade.

Changes:

  • Upgrades analyzers, ETL abstractions, and TestKit packages.
  • Adds XML constructor and edge-case coverage tests.
  • Aligns example and test projects on TestKit 0.14.0.

Reviewed changes

Copilot reviewed 5 out of 5 changed files in this pull request and generated 1 comment.

Show a summary per file
File Description
Directory.Build.props Updates Meziantou and Sonar analyzers.
src/Wolfgang.Etl.Xml/Wolfgang.Etl.Xml.csproj Updates ETL abstractions.
tests/Wolfgang.Etl.Xml.Tests.Unit/Wolfgang.Etl.Xml.Tests.Unit.csproj Updates TestKit packages.
examples/Wolfgang.Etl.Xml.Examples/Wolfgang.Etl.Xml.Examples.csproj Updates the example’s TestKit dependency.
tests/Wolfgang.Etl.Xml.Tests.Unit/XmlCoverageTests.cs Adds coverage for constructors and XML edge cases.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

Comment thread tests/Wolfgang.Etl.Xml.Tests.Unit/XmlCoverageTests.cs Outdated
The multi-stream writerSettings coverage test only checked counts, so it
would still pass if the ctor discarded the settings. Switch to
OmitXmlDeclaration=true and assert the <?xml?> prolog is absent — an
observable effect that proves the settings were applied.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
@Chris-Wolfgang
Chris-Wolfgang merged commit 734417b into main Aug 8, 2026
21 checks passed
@Chris-Wolfgang
Chris-Wolfgang deleted the dependabot/nuget/dotnet-dependencies-84da44af94 branch August 8, 2026 16:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants