Skip to content

deps: Update dependency Microsoft.OpenApi to v3 - #462

Merged
ANcpLua merged 2 commits into
mainfrom
renovate/major-openapi
Jul 1, 2026
Merged

deps: Update dependency Microsoft.OpenApi to v3#462
ANcpLua merged 2 commits into
mainfrom
renovate/major-openapi

Conversation

@renovate

@renovate renovate Bot commented Jul 1, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
Microsoft.OpenApi 2.9.03.7.0 age confidence

Release Notes

Microsoft/OpenAPI.NET (Microsoft.OpenApi)

v3.7.0

Features
  • add contains/minContains/maxContains members (78475e3)
  • add contains/minContains/maxContains members (1a974f8)
  • library: add missing json schema properties (9b1aed6)
  • library: add missing json schema properties (82f84e0)
Bug Fixes
  • library: always copy unevaluated properties (4907d1c)
  • library: avoid false circular refs for external schema re-exports (b635242)
  • library: avoid false circular refs for external schema re-exports (7a443c2)
  • library: remove unshipped schema extension fallback (cf54bb3)
  • library: use version-specific schema keyword callbacks (6e22ec6)
  • library: use x-jsonschema schema extensions (eb1891a)

v3.6.0

Features
  • reader: remove ParseNode infrastructure (9b4f45b)

v3.5.5

Bug Fixes
  • reader: preserve Null flag when nullable appears before type in V3.0/V3.1/V3.2 deserializers (2b9d7f4)

v3.5.4

Bug Fixes
  • library: handle circular schema references (b3cd42b)
  • library: handle circular schema references (91a989f)

v3.5.3

Bug Fixes
  • null reference exception for boolean component schemas (f97f91a)
  • null reference exception for boolean component schemas (fe0b50a)
  • schema: support boolean schemas in deserializer for OpenAPI 3.1/3.2 (05b44be)
Performance Improvements
  • schema: optimize boolean schema deserialization (7316e3f)

v3.5.2

Bug Fixes
  • hidi: update Microsoft.OpenApi.OData to 3.2.1 (b0a68fb)
  • hidi: update Microsoft.OpenApi.OData to 3.2.1 (8c22ab2), closes #​2811

v3.5.1

Bug Fixes
  • security scheme references serialization (a5acb89)

v3.5.0

Features
  • library: add Extensions support for schema references in v3.1/v3.2; add SerializeAsV32 with loop detection (9b422bf)
Bug Fixes
  • a bug where path parameter validation would fail if they contained forbidden JSON pointer characters (ef55b2c)
  • a bug where path parameter validation would fail if they contained forbidden JSON pointer characters (4b3164a)
  • double encoding of json pointer for invalid reference rule (b246cd0)
  • encoding of special characters for JSON paths (4c757e1)
  • library: do not emit unevaluatedProperties for non-object schemas (852fb4c)
  • library: do not emit unevaluatedProperties for non-object schemas (19538aa)
  • library: enforce spec-compliant $ref serialization; add Extensions support for schema references in v3.1/v3.2 (9bf61de)
  • potential double encoding of paths (471a61a)

v3.4.0

Features
  • library: preserve PatternProperties as x-jsonschema-patternProperties extension for OpenAPI v2/v3.0 serialization (d969fdc)
  • library: Preserve PatternProperties via x-jsonschema-patternProperties extension for OpenAPI v2/v3.0 (16ab5e4)
  • securityscheme: add oauth2MetadataUrl support (OpenAPI 3.2) (4509488)
Bug Fixes
  • implement unevaluatedProperties as schema per JSON Schema 2020-12 (#​2728) (7c13fb3)
  • library: serialize additionalProperties schema in OpenAPI V2 (f3165fa)
  • library: serialize additionalProperties schema in OpenAPI V2 documents (3d07756)
  • optimize parsing V3.1 documents by reducing GetLocation method allocation on hot path(#​2748) (f690681)

v3.3.1

Features
Bug Fixes
  • broken binary compatibility due to interface changes in previous version (d96bba7)

v3.3.0

Features
  • models: add shared Content interface (9e13b25)
  • models: add shared Content interface (#​2695) (9e13b25)
  • models: support mutualTLS security scheme (a4efdfe)

v3.2.0

Features
  • hidi validate command now logs warnings (76a3c0f)
  • hidi validate command now logs warnings (62e7d56)
Bug Fixes
  • discriminator property validation fails any/allOf cases when it shouldn't (fb6cecc)
  • discriminator property validation fails any/allOf cases when it shouldn't (a8fb81c)

v3.1.3

Bug Fixes
  • Support custom tag ordering (008576c)
  • Support custom tag ordering (7610d07)

v3.1.2

Bug Fixes
  • correct error pointer when extension parser throws OpenApiException (43c75a9)
  • wrap extension parser calls in try-catch to ensure correct error pointers (50b44aa)

v3.1.1

Bug Fixes
  • schema: always serialize additionalProperties: false (6651c36)
  • schema: always serialize additionalProperties: false (e36fc95)

v3.0.3

  • load JSON documents that are preceded by multiple whitespace (6461bac)
  • non-seekable json streams would fail to load as a document (2436d73)
  • reading streams in an asp.net context would cause async exceptions (f9e5248)

v3.0.2

Bug Fixes
  • additional properties serialization should not emit a schema in v2 (946cba9)
  • additional properties serialization should not emit booleans in v3.1+ (946cba9)

v3.0.1

Bug Fixes
  • empty strings should be quoted in yaml (8d215f9)
  • empty strings should be quoted in yaml (0ca10db)

v3.0.0

⚠ BREAKING CHANGES
  • adds support for OpenAPI 3.2.0

Note: Please refer to the upgrade guide for a detailed description of the breaking changes.

Note: ASP.net users should remain on version 1.X for ASP.net < 10, and version 2.X for ASP.net 10, this new major version will be implemented in a future version of ASP.net, more information

Features
  • adds support for OpenAPI 3.2.0 (765a8dd)

Configuration

📅 Schedule: (in timezone UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added dependencies Pull requests that update a dependency file major labels Jul 1, 2026
@chatgpt-codex-connector

Copy link
Copy Markdown

Codex usage limits have been reached for code reviews. Please check with the admins of this repo to increase the limits by adding credits.
Credits must be used to enable repository wide code reviews.

@ANcpLua
ANcpLua merged commit ff53757 into main Jul 1, 2026
3 of 4 checks passed
@ANcpLua
ANcpLua deleted the renovate/major-openapi branch July 1, 2026 18:11
ANcpLua added a commit that referenced this pull request Jul 1, 2026
…n ingest (CODE RED #4) (#464)

OTLP ingest mapped only span identity/timing/status-code/attributes — span Events (including
OTel exception events: exception.type/message/stacktrace), Links, and Status.Message were
silently dropped, so the span-detail API always returned empty Events/Links and no status message.

Full ingest -> storage -> API pipeline (the Qyl.Api.Contracts Span DTO already models these — no
contract change):
- OtlpConverter.CreateSpanRecordFromProto captures span.Events, span.Links, span.Status.Message.
- SpanIngestionRecord + SpanEventIngest/SpanLinkIngest carry them.
- IngestionStorageMapper serializes events/links to JSON via SpanChildStorage (source-gen JSON,
  AOT-safe StorageJsonSerializerContext) and stores status_message.
- spans row gains status_message + events_json + links_json columns (and the upsert).
- Mappers rehydrates SpanEvent[]/SpanLink[] and SpanStatus.Message from storage instead of [].

Also reverts Renovate #462's Microsoft.OpenApi v3 bump back to 2.9.0: v3 makes IOpenApiMediaType.Example
read-only, which the SDK's Microsoft.AspNetCore.OpenApi source generator still assigns (CS0200), breaking
the whole repo build. 2.9.0 also clears NU1903.

Verified: collector Release builds 0/0.

Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
github-actions Bot pushed a commit that referenced this pull request Jul 4, 2026
…onfig (#479)

Both majors were evaluated and declined on evidence:
- Microsoft.OpenApi 3.x: CS0200 in Microsoft.AspNetCore.OpenApi's generated
  XML-comment support (Example is read-only in v3) — reproduced today on
  latest 10.0.9; the pin in Directory.Packages.props stands (#462, #465).
- js-yaml 5.x: the dep exists only as an overrides security floor; all
  consumers declare ^4.x and npm audit is clean — a forced major buys
  nothing and risks the generate:ts/shadcn toolchain (#425).

Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file major

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant