Skip to content

ci: Bump Microsoft.SourceLink.GitHub from 10.0.201 to 10.0.203 - #59

Closed
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/nuget/Abblix.DependencyInjection/multi-ec4a16de4b
Closed

ci: Bump Microsoft.SourceLink.GitHub from 10.0.201 to 10.0.203#59
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/nuget/Abblix.DependencyInjection/multi-ec4a16de4b

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Apr 22, 2026

Copy link
Copy Markdown

Updated Microsoft.SourceLink.GitHub from 10.0.201 to 10.0.203.

Release notes

Sourced from Microsoft.SourceLink.GitHub's releases.

10.0.203

You can build .NET 10.0 from the repository by cloning the release tag v10.0.203 and following the build instructions in the main README.md.

Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.

Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023

10.0.202

You can build .NET 10.0 from the repository by cloning the release tag v10.0.202 and following the build instructions in the main README.md.

Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.

Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023

Commits viewable in compare view.

@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Apr 22, 2026
kirill-abblix
kirill-abblix previously approved these changes Apr 22, 2026

@kirill-abblix kirill-abblix left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Dependabot version update. CI green.

@kirill-abblix

Copy link
Copy Markdown
Member

@dependabot rebase

@dependabot
dependabot Bot force-pushed the dependabot/nuget/Abblix.DependencyInjection/multi-ec4a16de4b branch from bed5ddb to 121887f Compare April 22, 2026 07:04
---
updated-dependencies:
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.203
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.203
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: Microsoft.SourceLink.GitHub
  dependency-version: 10.0.203
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/nuget/Abblix.DependencyInjection/multi-ec4a16de4b branch from 121887f to 08ab500 Compare April 22, 2026 07:08
@sonarqubecloud

Copy link
Copy Markdown

@dependabot @github

dependabot Bot commented on behalf of github Apr 22, 2026

Copy link
Copy Markdown
Author

Looks like these dependencies are no longer updatable, so this is no longer needed.

@dependabot dependabot Bot closed this Apr 22, 2026
@dependabot
dependabot Bot deleted the dependabot/nuget/Abblix.DependencyInjection/multi-ec4a16de4b branch April 22, 2026 07:12
kirill-abblix added a commit that referenced this pull request Apr 22, 2026
The direct 10.0.5 reference caused an NU1605 package-downgrade error
once the main library's transitive graph advanced to 10.0.7. The package
is now pulled in transitively via the project reference chain.

Surfaced by the new PR test gate on #59; Dependabot's NuGet updater
does not re-resolve transitive demands across sibling projects when
bumping a group, so this drift went undetected through the microsoft-
extensions group merge.
@kirill-abblix

Copy link
Copy Markdown
Member

@dependabot rebase

@dependabot @github

dependabot Bot commented on behalf of github Apr 22, 2026

Copy link
Copy Markdown
Author

Looks like this PR is closed. If the branch still exists, you can re-open the PR and then use @dependabot rebase or @dependabot recreate. If the branch was deleted, Dependabot will create a new PR on the next scheduled run, or you can trigger an update from the Dependency graph page.

kirill-abblix added a commit that referenced this pull request Apr 25, 2026
The direct 10.0.5 reference caused an NU1605 package-downgrade error
once the main library's transitive graph advanced to 10.0.7. The package
is now pulled in transitively via the project reference chain.

Surfaced by the new PR test gate on #59; Dependabot's NuGet updater
does not re-resolve transitive demands across sibling projects when
bumping a group, so this drift went undetected through the microsoft-
extensions group merge.
kirill-abblix added a commit that referenced this pull request Jul 4, 2026
The direct 10.0.5 reference caused an NU1605 package-downgrade error
once the main library's transitive graph advanced to 10.0.7. The package
is now pulled in transitively via the project reference chain.

Surfaced by the new PR test gate on #59; Dependabot's NuGet updater
does not re-resolve transitive demands across sibling projects when
bumping a group, so this drift went undetected through the microsoft-
extensions group merge.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant