Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Androidx Updates #1197

Closed
HonzaR opened this issue Sep 1, 2023 · 0 comments · Fixed by #1198
Closed

Androidx Updates #1197

HonzaR opened this issue Sep 1, 2023 · 0 comments · Fixed by #1198
Labels
dependencies Pull requests that update a dependency file

Comments

@HonzaR
Copy link
Contributor

HonzaR commented Sep 1, 2023

For a Gradle dependency:

  1. Update the dependency version in the root gradle.properties
  2. Update the dependency locks
    1. For Gradle plugins: ./gradlew dependencies --write-locks
    2. For Gradle dependencies: ./gradlew resolveAll --write-locks
  3. Verify no unexpected entries appear in the lockfiles. A supply chain attack could occur during this stage. The lockfile narrows the supply chain attack window to this very moment (as opposed to every time a build occurs)
  4. Are there any new APIs or possible migrations for this dependency?
@HonzaR HonzaR added the dependencies Pull requests that update a dependency file label Sep 1, 2023
HonzaR added a commit that referenced this issue Sep 1, 2023
@HonzaR HonzaR mentioned this issue Sep 1, 2023
13 tasks
HonzaR added a commit that referenced this issue Sep 1, 2023
* [#1197] Androidx Updates

- Closes #1197
- Closes #839

* Changelog
HonzaR added a commit that referenced this issue Sep 1, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant