Repository navigation
chore(deps): bump kotlin from 2.4.10 to 2.4.20 in /apps/android - #48
Closed
dependabot[bot] wants to merge 1 commit into
Closed
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps `kotlin` from 2.4.10 to 2.4.20. Updates `org.jetbrains.kotlin:kotlin-gradle-plugin` from 2.4.10 to 2.4.20 - [Release notes](https://github.com/JetBrains/kotlin/releases) - [Changelog](https://github.com/JetBrains/kotlin/blob/master/ChangeLog.md) - [Commits](JetBrains/kotlin@v2.4.10...v2.4.20) Updates `org.jetbrains.kotlin.plugin.compose` from 2.4.10 to 2.4.20 - [Release notes](https://github.com/JetBrains/kotlin/releases) - [Changelog](https://github.com/JetBrains/kotlin/blob/master/ChangeLog.md) - [Commits](JetBrains/kotlin@v2.4.10...v2.4.20) --- updated-dependencies: - dependency-name: org.jetbrains.kotlin:kotlin-gradle-plugin dependency-version: 2.4.20 dependency-type: direct:production update-type: version-update:semver-patch - dependency-name: org.jetbrains.kotlin.plugin.compose dependency-version: 2.4.20 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
CountableNewt
pushed a commit
that referenced
this pull request
Sep 25, 2026
## Problem and change The September dependency PRs cannot merge because npm-based Dependabot updates omit `bun.lock`, the artifact scan depends on filesystem ordering, and new Automerge/Swift setup versions require compatibility fixes. This candidate combines all 18 valid updates, regenerates the Bun graph, and preserves the working Rust 1.98 toolchain. - Web: Next 16.3.4, React 19.3.0, Starlight 0.42 with Astro >=7.2.10, Vitest 5, ESLint Next 16.3.4, Bun types 1.4.1, and React Testing Library 16.3.3. - Rust: Automerge 0.12 in both lockfiles, Iroh 1.2, UUID 1.26.1, and Tower HTTP 0.7.1. Replace the deprecated string accessor with its equivalent current API. - Native/CI: AGP 9.4.1, Kotlin 2.4.20, Compose BOM 2026.09.00, Swift HTTP Types 1.8, Java setup v6, and Swift setup v3 with official signing keys imported before signature verification. - Reliability: deterministic artifact diagnostics with an order-independence regression test, explicit Node 24 for Vitest, Rust optional-feature Clippy/tests, and native Bun Dependabot support. ## Verification The new artifact-order regression fails against the original implementation and passes with the fix. Frozen Bun installation, the repository policy test suite, and full `bun run verify` pass from a clean snapshot with the exact Development CI environment. This covers generated contracts, Railway validation, license/secret policies, 100% domain line/function coverage, static/privacy tests, typecheck, lint, all web builds, tests, and release-artifact origin checks. All 30 required CI checks passed on `3357275267ed1bfb06d17ebc60fa6681091b1949`: https://github.com/Stygian-Tech/atelier/actions/runs/36196572070. This includes optional-feature Rust Clippy/tests, coverage gates, Swift services, Android, Apple builds, every container, database isolation tests, and Development/Production web artifact checks. No check bypasses or reduced coverage gates. React type packages are aligned to 19.3 across the web workspace to avoid incompatible duplicate type identities. An initial local Astro build failure was traced to unrelated ancestor-directory dependencies; the clean snapshot passes without an application workaround. ## Scope and closeout Tracks ATE-21: https://linear.app/stygian-tech/issue/ATE-21/review-and-merge-september-dependabot-updates-into-dev Consolidates #30, #31, #32, #35, #36, #37, #38, #41, #42, #43, #44, #46, #47, #48, #49, #50, and #51. Those PRs will be closed only after this candidate passes protected merge and their exact changes are verified in dev. #33 requests unavailable Rust 1.120.0 and will be closed with its rustup 404 evidence, retaining 1.98. Targets dev only. No main promotion, Production provisioning, DNS changes, store uploads, or database migrations. Rollback is a normal revert of the merged dependency change. Vitest, Iroh, and Swift setup major/runtime transitions are covered by the expanded CI suite.
Contributor
|
Completed in #45, merged to dev as 6f2b695. Verified this PR head (e9a674f) still matches the reviewed patch and every added dependency line is present in merged dev. All 30 required checks passed on the equivalent candidate tree (run 36196572070), with full local verification. Closing this superseded PR; tracked in ATE-21. |
Contributor
Author
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. You can also ignore all major, minor, or patch releases for a dependency by adding an If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
dependabot
Bot
deleted the
dependabot/gradle/apps/android/dev/kotlin-2.4.20
branch
September 25, 2026 22:37
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps
kotlinfrom 2.4.10 to 2.4.20.Updates
org.jetbrains.kotlin:kotlin-gradle-pluginfrom 2.4.10 to 2.4.20Release notes
Sourced from org.jetbrains.kotlin:kotlin-gradle-plugin's releases.
... (truncated)
Changelog
Sourced from org.jetbrains.kotlin:kotlin-gradle-plugin's changelog.
... (truncated)
Commits
890ac1dAdd Changelog for 2.4.20-RC38860aed🍒 [FIR] Fix suspend conversion when expected type is nullable (#7769)ab5bcd9Edit ChangeLog for 2.4.20-RC29464edcAdd ChangeLog for 2.4.20-RC20261e43Cherry-pick "FixasBodyAndResultVarcall in `visitInlinedLambdaInComposable...0763513[box-tests] Workaround for klib compatibility tests (#7626)045aec6[Wasm] Append scripts from webpack.config.d in the end of the file (#7615)cd7173b🍒 [2.4.20] [K/JS] Keep associated obj annotation only if getInstance survives...d36a2ffCastsOptimizationPass: break aliases cycles (#7578)8664983[CLI] Restore custom IC search scope creationUpdates
org.jetbrains.kotlin.plugin.composefrom 2.4.10 to 2.4.20Release notes
Sourced from org.jetbrains.kotlin.plugin.compose's releases.
... (truncated)
Changelog
Sourced from org.jetbrains.kotlin.plugin.compose's changelog.
... (truncated)
Commits
890ac1dAdd Changelog for 2.4.20-RC38860aed🍒 [FIR] Fix suspend conversion when expected type is nullable (#7769)ab5bcd9Edit ChangeLog for 2.4.20-RC29464edcAdd ChangeLog for 2.4.20-RC20261e43Cherry-pick "FixasBodyAndResultVarcall in `visitInlinedLambdaInComposable...0763513[box-tests] Workaround for klib compatibility tests (#7626)045aec6[Wasm] Append scripts from webpack.config.d in the end of the file (#7615)cd7173b🍒 [2.4.20] [K/JS] Keep associated obj annotation only if getInstance survives...d36a2ffCastsOptimizationPass: break aliases cycles (#7578)8664983[CLI] Restore custom IC search scope creationDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)