Skip to content

Bump the dotnet-dependencies group with 7 updates - #289

Merged
Chris-Wolfgang merged 1 commit into
mainfrom
dependabot/nuget/dotnet-dependencies-5d6844a2dc
Sep 16, 2026
Merged

Chris-Wolfgang merged 1 commit into
mainfrom
dependabot/nuget/dotnet-dependencies-5d6844a2dc

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 10, 2026

Copy link
Copy Markdown
Contributor

Updated Meziantou.Analyzer from 3.0.201 to 3.0.234.

Release notes

Sourced from Meziantou.Analyzer's releases.

3.0.234

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.234

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.233...3.0.234

3.0.233

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.233

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.232...3.0.233

3.0.232

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.232

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.231...3.0.232

3.0.231

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.231

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.230...3.0.231

3.0.230

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.230

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.229...3.0.230

3.0.229

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.229

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.228...3.0.229

3.0.228

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.228

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.227...3.0.228

3.0.227

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.227

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.226...3.0.227

3.0.226

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.226

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.225...3.0.226

3.0.225

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.225

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.224...3.0.225

3.0.224

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.224

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.223...3.0.224

3.0.223

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.223

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.222...3.0.223

3.0.222

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.222

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.221...3.0.222

3.0.221

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.221

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.220...3.0.221

3.0.220

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.220

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.219...3.0.220

3.0.219

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.219

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.218...3.0.219

3.0.218

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.218

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.217...3.0.218

3.0.217

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.217

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.216...3.0.217

3.0.216

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.216

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.215...3.0.216

3.0.215

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.215

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.214...3.0.215

3.0.214

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.214

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.213...3.0.214

3.0.213

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.213

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.212...3.0.213

3.0.212

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.212

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.211...3.0.212

3.0.211

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.211

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.210...3.0.211

3.0.210

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.210

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.209...3.0.210

3.0.209

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.209

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.208...3.0.209

3.0.208

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.208

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.207...3.0.208

3.0.207

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.207

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.206...3.0.207

3.0.206

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.206

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.205...3.0.206

3.0.205

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.205

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.204...3.0.205

3.0.204

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.204

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.203...3.0.204

3.0.203

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.203

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.202...3.0.203

3.0.202

NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.202

What's Changed

Full Changelog: meziantou/Meziantou.Analyzer@3.0.201...3.0.202

Commits viewable in compare view.

Updated Microsoft.Bcl.AsyncInterfaces from 10.0.11 to 10.0.12.

Release notes

Sourced from Microsoft.Bcl.AsyncInterfaces's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.Extensions.Logging.Abstractions from 10.0.11 to 10.0.12.

Release notes

Sourced from Microsoft.Extensions.Logging.Abstractions's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.Extensions.Logging.Console from 10.0.11 to 10.0.12.

Release notes

Sourced from Microsoft.Extensions.Logging.Console's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.SourceLink.GitHub from 10.0.400 to 10.0.401.

Release notes

Sourced from Microsoft.SourceLink.GitHub's releases.

10.0.401

Release

What's Changed

... (truncated)

Commits viewable in compare view.

Updated SonarAnalyzer.CSharp from 10.33.0.1635 to 10.34.0.3385.

Release notes

Sourced from SonarAnalyzer.CSharp's releases.

10.34.0.3385

Release notes - .NET Analyzers - 10.34

Feature

NET-4133 Implement rule S9023: "Include" calls discarded by query reshaping should be fixed

False Positive

NET-3281 Fix S1192 FP: should not raise on DBContext model configuration
NET-4317 Fix S2325 FP: Do not raise on ConfigureServices in classes decorated with [LambdaStartup]
NET-4419 Fix S2737 FP: Do not report known temporary-context rethrow boundaries
NET-4421 Fix S6607 FP: Indexed LINQ Where after OrderBy
NET-4463 Fix S8747 FP: Do not raise when a defaultValue backfills existing NULLs before narrowing to non-nullable
NET-4506 Fix S6967 FP: Recognize manual DataAnnotations validation
NET-4507 Fix S8969 FP: Don't raise in Razor files

False Negative

NET-1883 Files added as symbolic links are not analyzed
NET-4249 Fix S9022 FN: Include before a terminal aggregate/scalar operator not detected as dead code
NET-4379 Fix S2259 FN: void compound assignment operators not flagged as dereference
NET-4383 Fix S9022 FN: Include on a navigation re-projected directly by a later Select/SelectMany is not detected as redundant
NET-4443 Fix S2068 FN: Scope the value passed to the secret-exclusion classifier to the candidate secret
NET-4496 Fix S8949 FN: self-recursion suppression also hides calls already recursive before the suggested fix
NET-4500 Fix S9022 FN: ThenInclude consumed only through a nested Select's rebound element parameter is not detected as redundant

Bug

NET-4483 Fix S3459 FP: Public writable properties in private nested types

Maintenance

NET-4472 Remove S1264 from the C# Sonar way profile
NET-4474 Remove S2692 from the C# Sonar way profile
NET-4480 Remove S3249 from the C# Sonar way profile
NET-4481 Remove S6670 from the C# Sonar way profile
NET-4482 Remove S3885 from the C# Sonar way profile

Commits viewable in compare view.

Updated System.Diagnostics.DiagnosticSource from 10.0.11 to 10.0.12.

Release notes

Sourced from System.Diagnostics.DiagnosticSource's releases.

No release notes found for this version range.

Commits viewable in compare view.

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps Meziantou.Analyzer from 3.0.201 to 3.0.234
Bumps Microsoft.Bcl.AsyncInterfaces from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Abstractions from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Console from 10.0.11 to 10.0.12
Bumps Microsoft.SourceLink.GitHub from 10.0.400 to 10.0.401
Bumps SonarAnalyzer.CSharp from 10.33.0.1635 to 10.34.0.3385
Bumps System.Diagnostics.DiagnosticSource from 10.0.11 to 10.0.12

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.234
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Abstractions
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Console
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.401
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.34.0.3385
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: System.Diagnostics.DiagnosticSource
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Sep 10, 2026
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Sep 10, 2026
@github-actions

Copy link
Copy Markdown
Contributor

PR benchmark delta

Benchmark Base mean HEAD mean Δ mean Base alloc HEAD alloc Δ alloc
ExtractAsync(ItemCount: 10) 34.31 µs 32.72 µs -4.6% 67.84 KB 67.84 KB +0.0%
ExtractAsync(ItemCount: 100) 350.45 µs 347.06 µs -1.0% 674.71 KB 674.71 KB +0.0%
ExtractAsync(ItemCount: 1000) 3.57 ms 3.53 ms -1.1% 6749.71 KB 6749.71 KB +0.0%
LoadAsync(ItemCount: 10) 16.62 µs 16.47 µs -0.9% 82.99 KB 82.99 KB +0.0%
LoadAsync(ItemCount: 100) 155.34 µs 162.18 µs +4.4% 827.29 KB 827.29 KB +0.0%
LoadAsync(ItemCount: 1000) 1.56 ms 1.47 ms -5.9% 8273.38 KB 8273.38 KB +0.0%
ExtractAsync(ItemCount: 10) 20.01 µs 21.11 µs +5.5% 111.82 KB 111.82 KB +0.0%
ExtractAsync(ItemCount: 100) 160.80 µs 160.73 µs -0.0% 204.32 KB 204.32 KB +0.0%
ExtractAsync(ItemCount: 1000) 1.58 ms 1.52 ms -3.6% 1128.93 KB 1128.93 KB +0.0%
LoadAsync(ItemCount: 10) 9.75 µs 9.08 µs -6.9% 74.94 KB 74.94 KB +0.0%
LoadAsync(ItemCount: 100) 78.20 µs 75.11 µs -3.9% 181.44 KB 181.44 KB +0.0%
LoadAsync(ItemCount: 1000) 926.03 µs 912.30 µs -1.5% 1093.65 KB 1093.65 KB +0.0%
LoadNoIndentAsync(ItemCount: 10) 8.90 µs 8.40 µs -5.6% 75.02 KB 75.02 KB +0.0%
LoadNoIndentAsync(ItemCount: 100) 64.21 µs 61.17 µs -4.7% 149.50 KB 149.50 KB +0.0%
LoadNoIndentAsync(ItemCount: 1000) 818.64 µs 795.31 µs -2.8% 1093.74 KB 1093.74 KB +0.0%

Job: Short (fast, ~5% variance). Filter: * (all benchmarks). Gate mode: informational (no pass/fail threshold).

@Chris-Wolfgang
Chris-Wolfgang merged commit 213eb13 into main Sep 16, 2026
22 checks passed
@Chris-Wolfgang
Chris-Wolfgang deleted the dependabot/nuget/dotnet-dependencies-5d6844a2dc branch September 16, 2026 12:53
Chris-Wolfgang added a commit that referenced this pull request Sep 16, 2026
… 0.9.0 release (#300)

* chore(deps): bump the github-actions group across 1 directory with 4 updates

Bumps the github-actions group with 4 updates in the / directory: [github/codeql-action/init](https://github.com/github/codeql-action), [github/codeql-action/analyze](https://github.com/github/codeql-action), [github/codeql-action/upload-sarif](https://github.com/github/codeql-action) and [softprops/action-gh-release](https://github.com/softprops/action-gh-release).


Updates `github/codeql-action/init` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `github/codeql-action/analyze` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `github/codeql-action/upload-sarif` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `softprops/action-gh-release` from 3.0.2 to 3.0.3
- [Release notes](https://github.com/softprops/action-gh-release/releases)
- [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md)
- [Commits](softprops/action-gh-release@3d0d988...efb3536)

---
updated-dependencies:
- dependency-name: github/codeql-action/init
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: github/codeql-action/analyze
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: github/codeql-action/upload-sarif
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: softprops/action-gh-release
  dependency-version: 3.0.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump the dotnet-dependencies group with 7 updates

Bumps Meziantou.Analyzer from 3.0.172 to 3.0.201
Bumps Roslynator.Analyzers from 4.16.1 to 5.0.0
Bumps SonarAnalyzer.CSharp from 10.32.0.713 to 10.33.0.1635
Bumps Wolfgang.Etl.Abstractions from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.ErrorPolicies from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.TestKit from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.TestKit.Xunit from 0.23.2 to 0.23.4

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.201
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Roslynator.Analyzers
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.33.0.1635
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.Abstractions
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.ErrorPolicies
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.ErrorPolicies
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit.Xunit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump the dotnet-dependencies group with 7 updates

Bumps Meziantou.Analyzer from 3.0.201 to 3.0.234
Bumps Microsoft.Bcl.AsyncInterfaces from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Abstractions from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Console from 10.0.11 to 10.0.12
Bumps Microsoft.SourceLink.GitHub from 10.0.400 to 10.0.401
Bumps SonarAnalyzer.CSharp from 10.33.0.1635 to 10.34.0.3385
Bumps System.Diagnostics.DiagnosticSource from 10.0.11 to 10.0.12

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.234
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Abstractions
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Console
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.401
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.34.0.3385
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: System.Diagnostics.DiagnosticSource
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
Chris-Wolfgang added a commit that referenced this pull request Sep 17, 2026
…ractions 0.24 base records; 15 superseded constructors hidden; IsDryRun setters deprecated (#302)

* feat: make logger optional on the multi-stream ctors, defaulting to NullLogger

Completes the constructor convergence begun on the single-stream types: every
extractor and loader in this package now takes the logger last and optional,
matching the fleet-wide convention already followed by Etl-DbClient.

Six required-logger constructors become optional:
  XmlMultiStreamExtractor<T>(IEnumerable<Stream>, ILogger<T>? = null)
  XmlMultiStreamExtractor<T>(IEnumerable<Stream>, XmlReaderSettings, ILogger<T>? = null)
  XmlMultiStreamLoader<T>(Func<TRecord, Stream>, ILogger<T>? = null)
  XmlMultiStreamLoader<T>(Func<TRecord, Stream>, XmlWriterSettings, ILogger<T>? = null)
  XmlMultiStreamLoader<T>(Func<TRecord, IBufferWriter<byte>>, ILogger<T>? = null)
  XmlMultiStreamLoader<T>(Func<TRecord, IBufferWriter<byte>>, XmlWriterSettings, ILogger<T>? = null)

null (or omitted) now resolves to NullLogger.Instance instead of throwing
ArgumentNullException. A useful side effect: reader/writer settings can now be
supplied WITHOUT also supplying a logger, which previously was not possible.

Not a breaking change: each parameter list is unchanged, so the emitted
signatures are identical. Release build with TreatWarningsAsErrors is clean and
PackageValidation passes, so the 6 PublicAPI.Shipped.txt entries were corrected
in place rather than recorded as an add/remove pair.

No overload became ambiguous: the shorter overloads still win resolution
because all of their parameters have a corresponding argument, while the longer
forms now require default substitution.

Tests: the three tests asserting a null logger throws now assert the NullLogger
contract. 330 unit + 9 doc-example tests pass in Release with
TreatWarningsAsErrors.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>

* chore: put the logger last on the internal test-injection ctors

Applies Rule 6 of the fleet constructor standard: the logger is the final
parameter on EVERY constructor, internal ones included.

  multi-stream:  (…, settings, ILogger? logger, IProgressTimer timer)
              -> (…, settings, IProgressTimer timer, ILogger? logger = null)

  single-stream: (…, settings, ILogger? logger, IProgressTimer timer, Options? options = null)
              -> (…, settings, Options? options, IProgressTimer timer, ILogger? logger = null)

The single-stream overloads needed the fuller reorder because `options` was
trailing; it moves ahead of the timer so the logger can be last, matching the
canonical Rule 6 shape (inputs, options, timer, logger).

Internal-only: no public API change, no PublicAPI entry, no consumer impact and
nothing to deprecate. Test call sites updated, including supplying the now
non-defaulted `options` argument on the single-stream internal constructors.

330 unit + 9 doc-example tests pass in Release with TreatWarningsAsErrors.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>

* refactor: put the timer before options on the single-stream internal ctors

Revises the order this PR originally used, following call-site evidence rather
than the existing majority.

  (…, settings, Options? options, IProgressTimer timer, ILogger? logger = null)
    -> (…, settings, IProgressTimer timer, Options? options = null, ILogger? logger = null)

The first version made `options` a required positional parameter so that the
logger could stay last. That forced `options: null` at 14 call sites to satisfy
a parameter none of them actually set - all 14 are now gone.

Ordering is driven by how these constructors are called across the fleet
(149 internal call sites):

  IProgressTimer   149/149 pass one -> required, and the reason the overload exists
  ILogger           34/149 pass a real logger -> optional
  options            0/14  pass non-null -> optional

Timer first is also what makes the trailing parameters optional at all: an
optional parameter cannot precede a required one (CS1737).

The multi-stream internal constructors already matched this shape and are
unchanged.

Test call sites that passed a logger positionally now name it, since the fourth
positional slot is `options`.

330 unit + 9 doc-example tests pass in Release with TreatWarningsAsErrors.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>

* feat(options): options records for all four stages, inheriting the Abstractions 0.24 base records (ADR-0009, part 1) — draft until 0.24.0 publishes (#297)

* feat(options): options records for all four stages inheriting the Abstractions 0.24 base records (ADR-0009, part 1)

XmlSingleStreamExtractorOptions and XmlSingleStreamLoaderOptions become
sealed records (they were classes) inheriting ExtractorOptions /
LoaderOptions, and gain ReaderSettings / WriterSettings plus, on the
loader, IsDryRun. New XmlMultiStreamExtractorOptions and
XmlMultiStreamLoaderOptions carry the same for the multi-stream stages. The
reader/writer settings travel on the record the way Json carries
SerializerOptions - nested as the XmlReaderSettings / XmlWriterSettings
instance, not flattened.

The single-stream stages' private core constructors chain base(options)
and take the settings from the record when none were passed positionally;
the multi-stream stages gain (source, options, logger = null) record
constructors (streams; streamFactory; bufferWriterFactory) that chain
base(options). options is optional: every existing call keeps binding
where it binds today (a compile-time guard test covers the positional-null
shapes). The settings-taking and single-argument constructors are unchanged
here; hiding them is part 2.

ISupportDryRun dropped from both loaders (Abstractions 0.24 removes it);
the two dry-run contract tests use the now non-generic TestKit base.
Abstractions / ErrorPolicies / TestKit / TestKit.Xunit 0.23.2 -> 0.24.0 -
not published yet; built against the local feed, PR stays draft.

PublicAPI: 47 added entries (the converted records' synthesized members
included; derived-record <Clone>$ lines left out as unmatchable); ten
pre-existing unrecorded XmlReport members re-surfaced and tracked in #296.
ApiCompat: CP0008 x10 for ISupportDryRun; the class->record conversion
reported no break. Tests: XmlOptionsRecordTests (9 cases). CHANGELOG
Added / Changed / Removed.

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>

* chore(deps): the examples project references the 0.24.0 family too (missed in 861d29b)

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>

---------

Co-authored-by: Claude Fable 5.1 <noreply@anthropic.com>

* feat(options): hide the fifteen superseded ctors; deprecate the IsDryRun setters; README + migration guide (ADR-0009, part 2) (#298)

Fifteen constructors get [EditorBrowsable(Never)] and a remarks block and
are retained permanently: the single-argument ones from #253 / #281 and
every overload that took XmlReaderSettings / XmlWriterSettings or a logger
positionally, all superseded by (source, options, logger) with the
settings on the record. Not [Obsolete]: positional calls bind to them by
exact match, so a warning could only be silenced by rewriting the call,
and removal is a MissingMethodException for un-rebuilt callers. The
(source, logger = null) and (source, options, logger = null) overloads
stay visible.

The two IsDryRun setters are [Obsolete] on the accessor (reads stay
clean); the constructor assignments sit under a CS0618 pragma as the
supported replacement; the four test initializers configure IsDryRun
through the records.

README: the "Constructor overloads" section describes the record shape
with an example and the four records' members. docs/migrations/
v0.8-to-v0.9.md is the first real migration guide in this repo. CHANGELOG
Changed / Deprecated. No PublicAPI text change.

Not done: the internal timer-injection constructors still take the
settings positionally (14 test call sites, one of which asserts the null
guard); converting them to the record is a follow-up if wanted.

Co-authored-by: Claude Fable 5.1 <noreply@anthropic.com>

* chore: merge main into vNext (Dependabot #287/#288/#289) ahead of the 0.9.0 release (#300)

* chore(deps): bump the github-actions group across 1 directory with 4 updates

Bumps the github-actions group with 4 updates in the / directory: [github/codeql-action/init](https://github.com/github/codeql-action), [github/codeql-action/analyze](https://github.com/github/codeql-action), [github/codeql-action/upload-sarif](https://github.com/github/codeql-action) and [softprops/action-gh-release](https://github.com/softprops/action-gh-release).


Updates `github/codeql-action/init` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `github/codeql-action/analyze` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `github/codeql-action/upload-sarif` from 4.37.7 to 4.37.9
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@ff2f1c6...cdf488f)

Updates `softprops/action-gh-release` from 3.0.2 to 3.0.3
- [Release notes](https://github.com/softprops/action-gh-release/releases)
- [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md)
- [Commits](softprops/action-gh-release@3d0d988...efb3536)

---
updated-dependencies:
- dependency-name: github/codeql-action/init
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: github/codeql-action/analyze
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: github/codeql-action/upload-sarif
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
- dependency-name: softprops/action-gh-release
  dependency-version: 3.0.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump the dotnet-dependencies group with 7 updates

Bumps Meziantou.Analyzer from 3.0.172 to 3.0.201
Bumps Roslynator.Analyzers from 4.16.1 to 5.0.0
Bumps SonarAnalyzer.CSharp from 10.32.0.713 to 10.33.0.1635
Bumps Wolfgang.Etl.Abstractions from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.ErrorPolicies from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.TestKit from 0.23.2 to 0.23.4
Bumps Wolfgang.Etl.TestKit.Xunit from 0.23.2 to 0.23.4

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.201
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Roslynator.Analyzers
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.33.0.1635
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.Abstractions
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.ErrorPolicies
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.ErrorPolicies
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Wolfgang.Etl.TestKit.Xunit
  dependency-version: 0.23.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>

* Bump the dotnet-dependencies group with 7 updates

Bumps Meziantou.Analyzer from 3.0.201 to 3.0.234
Bumps Microsoft.Bcl.AsyncInterfaces from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Abstractions from 10.0.11 to 10.0.12
Bumps Microsoft.Extensions.Logging.Console from 10.0.11 to 10.0.12
Bumps Microsoft.SourceLink.GitHub from 10.0.400 to 10.0.401
Bumps SonarAnalyzer.CSharp from 10.33.0.1635 to 10.34.0.3385
Bumps System.Diagnostics.DiagnosticSource from 10.0.11 to 10.0.12

---
updated-dependencies:
- dependency-name: Meziantou.Analyzer
  dependency-version: 3.0.234
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Bcl.AsyncInterfaces
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Abstractions
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Extensions.Logging.Console
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.401
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.34.0.3385
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: System.Diagnostics.DiagnosticSource
  dependency-version: 10.0.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Claude Opus 5 <noreply@anthropic.com>

* release: v0.9.0

options records for all four stages inherit the Abstractions 0.24 base records; 15 superseded constructors hidden; IsDryRun setters deprecated MINOR bump from v0.8.1.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>

* fix: RequiresUnreferencedCode on the three multi-stream record constructors; observable ReaderSettings/WriterSettings tests (review on #302)

The record constructors added in #297 on XmlMultiStreamExtractor
(streams, options, logger) and XmlMultiStreamLoader (streamFactory /
bufferWriterFactory, options, logger) reach XmlSerializer like every
other public constructor but lacked the trim/AOT annotation, so a
trimming caller got no IL2026 at those entry points.

XmlOptionsRecordTests gains four facts that observe the nested settings
through behaviour rather than assignment: a one-character
MaxCharactersInDocument on the record's ReaderSettings fails the read on
both extractors, and OmitXmlDeclaration on the record's WriterSettings
is visible in both loaders' output.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: Claude Opus 4.8 <noreply@anthropic.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant