Skip to content

gbtec-ag/dependabot-version-property-issue

Repository files navigation

We disabled Dependabot to reduce the noise in our environment.

If necessary to enable it again rename the config file in folder .dependabot to config.yml!

commit history and behavior

initial commit containing a pom with 5 dependencies (#6db4b36)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 4 PRs created.

define 'guava' version as property (#42e55cb)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 4 PRs still open.

rename 'spring-boot' version property to 'project.dependency.spring-boot.version' (#797dcef)

  • 5 dependencies available in pom (1 dependency is managed).
  • 4 dependencies were checked.
  • 1 dependency ('spring-boot-dependencies') is not checked anymore.
  • 3 PRs still open.
  • 1 PR closed.
  • Got two emails.
    • One email contained 'Looks like org.springframework.boot:spring-boot-dependencies is no longer a dependency, so this is no longer needed.'
    • One email contained 'Closed #1.'

rename 'spring-boot' version property back to 'spring-boot.version' (#542df3f)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 1 dependency ('spring-boot-dependencies') is checked again but Dependabot believes that a PR is already available (obviously the closed one).

check a second time after renaming 'spring-boot' version property back to 'spring-boot.version' (#54904f2)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 1 dependency ('spring-boot-dependencies') is checked again but Dependabot believes that a PR is already available (obviously the closed one).

rename 'spring-boot' version property back to 'spring.version' (#97c47f9)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 1 dependency ('spring-boot-dependencies') is checked again but Dependabot believes that a PR is already available (obviously the closed one).

rename 'guava' version property to 'a.b.c.d.version' (#10a1383)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 1 dependency ('spring-boot-dependencies') is checked again but Dependabot believes that a PR is already available (obviously the closed one).

rename 'guava' version property to 'project.a.b.c.d.version' (#244b29a)

  • 5 dependencies available in pom (1 dependency is managed).
  • 4 dependencies were checked.
  • 1 dependency ('guava') is not checked anymore.
  • 2 PRs still open.
  • 2 PR closed.
  • Got two emails.
    • One email contained 'Looks like com.google.guava:guava is no longer a dependency, so this is no longer needed.'
    • One email contained 'Closed #2.'

rename 'guava' version property back to 'guava.version' (#545d69c)

  • 5 dependencies available in pom (1 dependency is managed).
  • 5 dependencies were checked.
  • 1 dependency ('guava') is checked again but Dependabot believes that a PR is already available (obviously the closed one).