Update all patch and minor versions - #3086
Conversation
|
One or more custom setup steps configured for this repository failed during this Copilot code review run: Setup steps run before each review. If the review above is missing context, or no review was posted at all, the failing step above may be the cause. See the workflow run for failure details, fix your setup steps configuration, and re-request a review. Note You can configure setup steps for Copilot code review separately from Copilot cloud agent with a |
There was a problem hiding this comment.
Pull request overview
Updates a set of build, tooling, and library dependencies to newer patch/minor releases across the OpenTelemetry Java Contrib repo, keeping the build system and supporting tools current.
Changes:
- Bump Gradle wrapper to 9.7.1 and refresh associated wrapper checksum.
- Update several Gradle/Maven dependencies and plugins (Wire, Micrometer, Protobuf BOM, NullAway, Google auth, zstd-jni, CEL).
- Refresh repo tooling versions/config (mise tools, Renovate flint preset, GitHub Copilot CLI script dependencies).
Reviewed changes
Copilot reviewed 12 out of 13 changed files in this pull request and generated no comments.
Show a summary per file
| File | Description |
|---|---|
| opamp-client/build.gradle.kts | Bumps Wire Gradle plugin version. |
| disk-buffering/build.gradle.kts | Bumps Wire Gradle plugin version. |
| micrometer-meter-provider/build.gradle.kts | Updates Micrometer test/integration dependencies to 1.17.1. |
| gcp-auth-extension/build.gradle.kts | Updates Google auth library dependency. |
| dependencyManagement/build.gradle.kts | Updates Protobuf BOM and NullAway versions in dependency management. |
| compressors/compressor-zstd/build.gradle.kts | Updates zstd-jni dependency. |
| cel-sampler/build.gradle.kts | Updates CEL dependency. |
| buildSrc/build.gradle.kts | Updates Error Prone and NullAway Gradle plugin dependencies used by build logic. |
| gradle/wrapper/gradle-wrapper.properties | Updates Gradle distribution URL and SHA256 checksum. |
| mise.toml | Updates pinned versions for flint and rumdl tools. |
| .github/renovate.json5 | Updates flint preset reference used by Renovate. |
| .github/scripts/copilot-cli/package.json | Bumps @github/copilot dependency version. |
| .github/scripts/copilot-cli/package-lock.json | Updates lockfile to match new @github/copilot version and platform packages. |
Files not reviewed (1)
- .github/scripts/copilot-cli/package-lock.json: Generated file
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Edited/Blocked NotificationRenovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR. You can manually request rebase by checking the rebase/retry box above. |
This PR contains the following updates:
1.0.65→1.0.811.0.820.22.10→0.22.119.7.0→9.7.1v0.22.10→v0.22.110.2.55→0.2.620.13.8→0.14.11.49.0→1.51.01.17.0→1.17.11.17.0→1.17.14.35.1→4.36.13.1.0→3.2.05.1.0→5.1.11.5.7-15→1.5.7-166.4.5→6.4.70.13.1→0.14.0Release Notes
github/copilot-cli (@github/copilot)
v1.0.81Compare Source
/plugin,/mcp, or/skills. SetPLUGINS_DASHBOARD=falseto opt out of it and thecopilot pluginscommand.traceparent(plustracestatewhen the span has vendor state); command hooks also get env vars.--device-code, and machines without the broker library keep the existing browser flow.copilot appto open the GitHub Copilot app in the current directoryhook.start/hook.end) from hooks inside a subagent are now recorded on that subagent's session and re-emitted on its parent, instead of being dropped on an internal session.permissions.disableBypassPermissionsModecarries an unrecognized value; it is now logged and enforced asdisable.(pending)at the bottom of the transcript after it has been answered(MCP: server)label one character per line down the timeline — the label and the error now share the row, with the longer side truncating$and pressing Enter opens the interactive shell again, instead of clearing the prompt and doing nothingxis now the delete key everywhere: /sandbox config, /settings, /mcp, the sessions dialog and the diff comments summary move offd/restartor a new session — no/plugin updatePLUGINS_DASHBOARDopt-out and the legacy skills picker it kept alive./skills, bare/mcp, and/mcp show(with no server name) always open the dashboard;/mcp configstill opens the dedicated MCP wizard./plugins; its resources moved to/plugin,/mcpand/skills, with/subagentsand/instructionsfor agents and instructions./pluginsdashboard that this release removes.v1.0.80Compare Source
v1.0.79Compare Source
sandbox.gitAuth/sandbox.ghAuthtosandbox.auth.git/sandbox.auth.gh. There is no migration: the old keys are ignored in settings files, and SDK requests that still send them are rejected as invalid rather than ignoredworktreeBaseRefsetting that controls whether/worktree,/worktree new, and--worktreestart from HEAD or the remote default branch. All three now default to HEAD; previously--worktreestarted from the remote default branch.--planwith--mode autopilotto plan first and then implement without waiting for approval/appcommand now opens the current session in the GitHub Copilot desktop app instead of landing on Home with the wrong folder (requires GitHub Copilot app 1.1.3 or later)listen EPERM/themenow only shows its deprecation notice for a valid color mode, so a mistyped mode no longer suggests an invalid command or hides the notice from your next valid/theme./worktree newto start a new session in a new worktreeallowDevToolCachesis renamedallowDevToolAccess, since it grants dev-tool config and registries too, not just caches. The old key is no longer read and is ignored silently, so an existingfalseopt-out reverts to the default (on). Rename it in settings.json and in any managed/MDM policy.v1.0.78Compare Source
/settings showToolDurations.sessionEndhook the same way-pdoes: the hook fires once per completed agent turn withreasoncomplete(orerrorif the turn failed), instead of once at shutdown withuser_exit. As with-p, a piped run that exits before completing a turn fires nosessionEndhookx again to close(orx again to exit CLIon the last session) instead ofx close, so a second press is clearly what closesallowDevToolCaches(on by default): grants sandboxed builds access to toolchain caches, registries, and installs so builds work without extra setup. Set false to opt out.v1.0.77Compare Source
copilot loginon local interactive terminals (device code remains the default on remote/headless terminals). Use--web-flow/--device-codeto force a mode, or pick one in the interactive/logincommandv1.0.76Compare Source
task_completetool stays available and the mode matches the session you leftsidebar.hoverFocus), the active session card is accented by default (opt out withsidebar.accentActiveSession), and the closed-stateopen sidebarhint always renders in the neutral hint colorweb_fetchnow follows HTTP redirects instead of failing, asking permission for the redirect target when it is on a different origin and showing where the redirect came from/experimental on)./sandboxdialog surfaces the org-configured managed values with locked fields and managed filesystem paths so admins can confirm what is enforced.userPromptSubmittedhook returning a non-string value formodifiedPrompt,modifiedTransformedPrompt, or a handledresponseContentno longer corrupts the session; the value is ignored, a type-only warning naming the field is logged, an empty-string replacement is rejected instead of blanking the model-facing content, a hook that setshandledwithout a usableresponseContentis now diagnosed instead of silently falling through to the model, and anulladditionalContextis treated as absent instead of being injected as the literal textnull; hook output is also bounded at 10 MiB per invocation, so an HTTP or command hook returning an unbounded response can no longer exhaust memory or leave an oversized session behindmousesetting mid-session now takes effect immediately, from both/settings mouse on|offand the/settingsdialog, instead of being saved but ignored until the CLI restarted/worktreeswitches into a new worktreev1.0.75Compare Source
v1.0.74Compare Source
?while the /search bar is open enters it as text instead of opening quick help/mcp addand/mcp editwizard now preserves=characters in environment variable values (such as base64 padding), so secrets and tokens are stored correctly.$interactive shell shortcut now opens a shell even while the agent is working/model plan(or/model --plan) to pick a model used while in plan mode; pass a model id,offto clear, or no id to open the picker. Reverts to the session model when you leave plan mode.v1.0.73Compare Source
v1.0.72Compare Source
agentStophook that always blocks no longer loops indefinitely: the CLI now ends the turn after 8 consecutive blocks, andagentStophooks receive astop_hook_activeflag so they can detect a forced continuation and self-limitupdate/uninstallverbs to/plugins, letenable/disable/removetarget plugins, MCP servers, or skills via--plugin/--mcp/--skillflags or a positional kind, and support installing skills with/plugins install --skill/settings shellShortcut on; off by default)-p --stream offand detail screens): sub-bullets are no longer glued onto the parent item's line or flattened, and are indented under their parentcopilot skill listnow strips terminal control characters from skill names and descriptions, so a crafted skill can no longer inject ANSI escape sequences into the listing output.copilot plugins install --skill <file, URL, or directory>(add--scope projectto a file or URL install to install into the repository)#FF0000) as color swatches, and add a renderHexColors setting (on by default) to toggle hex-color swatchescopilot plugins remove --skill/terminal-setupnow refuses to modify a VS Code keybindings.json that contains a JSON syntax error (instead of rewriting it and reporting success), matching its documented invalid-JSON handling.v1.0.71Compare Source
copilot -p --autopilotno longer hangs when a background shell or agent outlives the turn; it now honors the COPILOT_TASK_WAIT_TIMEOUT_SECONDS timeout the same way plain-pdoes.copilot skill listand its JSON outputplugins marketplacesubcommands to list, add, and remove plugin marketplacescopilot mcpandcopilot skillprint help and exit 0, matchingcopilot plugin. Consistent withplugin, the implicithelp <subcommand>form is not supported for these groups; usecopilot mcp <subcommand> --help(orcopilot skill <subcommand> --help) instead.copilot updateand/updateto acceptstableas a channel--shareor--share-gistexport failssubagents.maxDepth(up to 128).v1.0.70Compare Source
shafield in plugin source configurationcopilot logincommand/mcp list(e.g.connected (sandboxed))v1.0.69Compare Source
copilot initfrom hanging in non-interactive modestayInAutopilotsetting (default false) that keeps the CLI in autopilot mode after an autopilot task completesskill listConfiguration
📅 Schedule: (UTC)
* 0-7 * * 2)🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.