talk-android
talk-android copied to clipboard
Bump hwsecurity-fido from 2.4.5 to 4.4.0
Bumps hwsecurity-fido from 2.4.5 to 4.4.0.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
@dschuermann 2.4.x to 4.4.0 would be quite the version bump, is there anything in particular we would need to focus on when updating the version (basically 2 mayor versions)
@AndyScherzinger Update should be easy. But it makes sense to also add FIDO2 WebAuthn support: https://github.com/nextcloud/talk-android/pull/1206
see https://github.com/nextcloud/android/pull/8933 for blocking details, rather look for 4.1.0
Lint
| Type | master | PR |
| Warnings | 130 | 130 |
| Errors | 2 | 2 |
SpotBugs (new)
| Warning Type | Number |
|---|---|
| Bad practice Warnings | 9 |
| Correctness Warnings | 37 |
| Experimental Warnings | 2 |
| Internationalization Warnings | 9 |
| Malicious code vulnerability Warnings | 24 |
| Performance Warnings | 24 |
| Security Warnings | 2 |
| Dodgy code Warnings | 72 |
| Total | 179 |
SpotBugs (master)
| Warning Type | Number |
|---|---|
| Bad practice Warnings | 9 |
| Correctness Warnings | 37 |
| Experimental Warnings | 2 |
| Internationalization Warnings | 9 |
| Malicious code vulnerability Warnings | 24 |
| Performance Warnings | 24 |
| Security Warnings | 2 |
| Dodgy code Warnings | 72 |
| Total | 179 |
@dependabot rebase
https://github.com/nextcloud/android/issues/8585
We should either fix it with 4.4.0 or re-test it 4.1.0
@dependabot rebase
@dependabot rebase
@dependabot rebase
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.
If you change your mind, just re-open this PR and I'll resolve any conflicts on it.