Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 3, 2025

Bumps the dependencies group with 2 updates in the / directory: com.google.errorprone:error_prone_core and com.uber.nullaway:nullaway.

Updates com.google.errorprone:error_prone_core from 2.42.0 to 2.43.0

Release notes

Sourced from com.google.errorprone:error_prone_core's releases.

Error Prone 2.43.0

The minimum support JDK version to run Error Prone is now JDK 21 (google/error-prone#4867).

Changes:

  • -XepPatchChecks now skips disabled checks (#4943)
  • AndroidJdkLibsChecker has been removed, the recommended replacement for Android code is Android Lint's NewApi check

New checks:

Closed issues: #4943, #5102, #5107, #5121, #5158, #5217, #5239

Full changelog: google/error-prone@v2.42.0...v2.43.0

Commits
  • abec9b6 Release Error Prone 2.43.0
  • a97374a Upgrade Java version from 17 to 21 in release workflow
  • 5882a43 Update release.yml
  • 851e0b0 Remove obsolete uses of reflection from Error Prone
  • 344e3dc Remove an obsolete use of reflection
  • 5f46e62 Fix a typo (wrong quotation mark).
  • de7d191 Update IncorrectMainMethod documentation in light of JEP512.
  • 09c78e0 Remove an obsolete TODO
  • 17c271e Turn down AndroidJdkLibsChecker
  • 0ae79f5 Add tests for subtypes of Immutable and ThreadSafe classes
  • Additional commits viewable in compare view

Updates com.uber.nullaway:nullaway from 0.12.10 to 0.12.11

Release notes

Sourced from com.uber.nullaway:nullaway's releases.

NullAway 0.12.11

Version 0.12.11

In this release, NullAway checks the requirement that JSpecify mode is only run on a compatible javac version / configuration, and fails if it detects an incompatibility. See https://github.com/uber/NullAway/wiki/JSpecify-Support#supported-jdk-versions for details.

  • Use inference for generic call passed as receiver to instance method (#1293)
  • Accept any annotation with simple name Contract, and change reporting of invalid contract annotations (#1295)
  • Properly model AtomicReference.get() in JSpecify mode (#1298)
  • Improve handling and error messages when using this inside an anonymous class (#1305)
  • Generate astubx from JSON output of jdk-javac-plugin by @​haewiful (#1243)
  • Improve inference for generic method with void-returning lambda argument by @​dhruv-agr (#1312)
  • Use refined types from dataflow analysis in generic method inference (#1309)
  • Fail if NullAway is run in JSpecify mode with an incompatible javac version / configuration (#1317)
  • Jdk javac plugin: don't serialize info for classes / methods without annotations by @​haewiful (#1316)
  • Maintenance
    • [Cleanup] Refactor away unnecessary Predicate by @​lazaroclapp (#1297)
    • Update to Error Prone 2.42.0 (#1299)
    • Update to Gradle 9.1.0 (#1302)
    • Test on JDK 25 (#1301)
    • Compile with JDK 25 (#1303)
    • Add CodeRabbit config (#1306)
    • Update Gradle command used for integration tests (#1311)
    • Disable CodeRabbit review status comments (#1313)
    • Gradle fixes for jar-infer-lib (#1314)
    • Enable building NullAway on JDK 25 (#1315)
Changelog

Sourced from com.uber.nullaway:nullaway's changelog.

Version 0.12.11

In this release, NullAway checks the requirement that JSpecify mode is only run on a compatible javac version / configuration, and fails if it detects an incompatibility. See https://github.com/uber/NullAway/wiki/JSpecify-Support#supported-jdk-versions for details.

  • Use inference for generic call passed as receiver to instance method (#1293)
  • Accept any annotation with simple name Contract, and change reporting of invalid contract annotations (#1295)
  • Properly model AtomicReference.get() in JSpecify mode (#1298)
  • Improve handling and error messages when using this inside an anonymous class (#1305)
  • Generate astubx from JSON output of jdk-javac-plugin by @​haewiful (#1243)
  • Improve inference for generic method with void-returning lambda argument by @​dhruv-agr (#1312)
  • Use refined types from dataflow analysis in generic method inference (#1309)
  • Fail if NullAway is run in JSpecify mode with an incompatible javac version / configuration (#1317)
  • Jdk javac plugin: don't serialize info for classes / methods without annotations by @​haewiful (#1316)
  • Maintenance
    • [Cleanup] Refactor away unnecessary Predicate by @​lazaroclapp (#1297)
    • Update to Error Prone 2.42.0 (#1299)
    • Update to Gradle 9.1.0 (#1302)
    • Test on JDK 25 (#1301)
    • Compile with JDK 25 (#1303)
    • Add CodeRabbit config (#1306)
    • Update Gradle command used for integration tests (#1311)
    • Disable CodeRabbit review status comments (#1313)
    • Gradle fixes for jar-infer-lib (#1314)
    • Enable building NullAway on JDK 25 (#1315)
Commits
  • f22da56 Prepare for release 0.12.11.
  • 06a7690 Add changelog for 0.12.11 (#1321)
  • f2e6c58 Jdk javac plugin: don't serialize info for classes / methods without annotati...
  • bb14d56 Fail if NullAway is run in JSpecify mode with an incompatible javac version /...
  • 9907586 Use refined types from dataflow analysis in generic method inference (#1309)
  • c6d2ba3 Enable building NullAway on JDK 25 (#1315)
  • 0a2e2b0 Improve inference for generic method with void-returning lambda argument (#1312)
  • d8f298d Gradle fixes for jar-infer-lib (#1314)
  • defbda5 Disable CodeRabbit review status comments (#1313)
  • b4b272b Generate astubx from JSON output of jdk-javac-plugin (#1243)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the dependencies group with 2 updates in the / directory: [com.google.errorprone:error_prone_core](https://github.com/google/error-prone) and [com.uber.nullaway:nullaway](https://github.com/uber/NullAway).


Updates `com.google.errorprone:error_prone_core` from 2.42.0 to 2.43.0
- [Release notes](https://github.com/google/error-prone/releases)
- [Commits](google/error-prone@v2.42.0...v2.43.0)

Updates `com.uber.nullaway:nullaway` from 0.12.10 to 0.12.11
- [Release notes](https://github.com/uber/NullAway/releases)
- [Changelog](https://github.com/uber/NullAway/blob/master/CHANGELOG.md)
- [Commits](uber/NullAway@v0.12.10...v0.12.11)

---
updated-dependencies:
- dependency-name: com.google.errorprone:error_prone_core
  dependency-version: 2.43.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dependencies
- dependency-name: com.uber.nullaway:nullaway
  dependency-version: 0.12.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Nov 3, 2025
@github-actions github-actions bot enabled auto-merge November 3, 2025 08:15
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 10, 2025

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Nov 10, 2025
auto-merge was automatically disabled November 10, 2025 08:10

Pull request was closed

@dependabot dependabot bot deleted the dependabot/maven/main/dependencies-07ad9ac79c branch November 10, 2025 08:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant