Update dependency org.ossreviewtoolkit:analyzer to v87#170
Merged
Conversation
sschuberth
approved these changes
May 14, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
86.0.0→87.0.0Release Notes
oss-review-toolkit/ort (org.ossreviewtoolkit:analyzer)
v87.0.0Compare Source
What's Changed
🛠 Breaking Changes
83fcd73chore(aosd)!: Remove support for format version 2.0🐞 Bug Fixes
8c9b84dconan: Also stash the cache database for reproducible results9cf165fconan: Based on documentation, defaultvisibletotrue7ef5264conan: Include dependencies marked withvisible=False94b9c55conan: Support overridden Conan homes044707ddocker: Align the Swift download with Ubuntu Noble LTSfb2abcespdx: Include subprojects when building the linkage type map🎉 New Features
c1c8280cli-helper: Increase the fault tolerance for merging scanner runsd965a78cyclonedx: Include the effective license as an SPDX expression8082233docker: Add theprovenantscannera3b36dascanoss: Expose and implement tuning parameters for snippet detection822ee12test-utils: EnhancematchJsonSchema()to load remote resources✅ Tests
fe6fa2baosd: Update schema and example to latest versions30e8bd0asciidoc: Undo unwanted changes to expected resultsa79fc92conan: Update expected resultsa446b04cyclonedx: Factor outmatchCycloneDxXmlSchema()3cd636fcyclonedx: Factor out the redundantschemavariable1c64eb0cyclonedx: UsematchJsonSchema()to validate JSON reports66587b6cyclonedx: Use a more speaking name forschema75c13f5node: Pin NPM versions for reproducible resultsaca1f5anpm: Update expected results23bafe4reporter: Inline a couple of variablesa8f8742reporters: Use named arguments for a vulnerability reference📖 Documentation
ed8f685conan: Document existing package traits🔧 Chores
dbc23e2cli-helper: Improve a variable name83ec2e9conan: Add remaining non-experimental boolean package traits1a88814conan: Be more clear what is stored in the storage path617d4f1conan: Inline the lazyconanStoragePathvariable12a61a1conan: Let handlers get the package storage path directly38ee990conan: Use thestashFilesaliasdd256afcyclonedx: Reduce the visibility of a variable30a951acyclonedx: RemoveDEFAULT_SCHEMA_VERSION8394714cyclonedx: Remove two unneeded default parameter values7bcf5abcyclonedx: Rework / align test names a bit086a358docker: Name build targets consistently24bc070docker: Remove the intermediateFROM scratchtargets352da35docker: Update the Askalono GitHub URL4ba7e42node: Rewrite lockfiles with NPM 11.6.24a2517espdx: MovenullOrBlankToSpdxNone()toutils/spdxa104b6eUse the canonical URL to the ORT Slack workspace🚀 Dependency Updates
e77dcc5docker: Update nuget-inspector to version 0.10.0de31f78docker: Upgrade Rust to version 1.94.0cf4c244docker: Upgrade Swift to version 6.3.15b3b35edocker: Upgrade the base image to Ubuntu Noble LTS0e48fbdUpdate the dependency-analysis-gradle-plugin to version 3.11.09c8f5feupdate aws-java-sdk-v2 monorepo to v2.44.5dd51454update com.networknt:json-schema-validator to v35cc4c33update dev.panuszewski.typesafe-conventions to v0.11.0a9b03d9update flox/install-flox-action action to v2.4.16d73b88update gradle to v9.5.1f12097fupdate io.github.hfhbd.kfx to v0.2.9ce059b5update ksp monorepo to v2.3.86c41864update react monorepo to v19.2.6🚜 Refactorings
8093332conan: More compact filtering of dependenciescf26e77cyclonedx: Make JSON schema testing independent of CycloneDX💡 Other Changes
250970cstyle(docker): Indentif/elsebranches for readabilityConfiguration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.