Skip to content

ci: bump gradle/actions/setup-gradle from 4.3.1 to 6.3.0 - #9

Closed
dependabot[bot] wants to merge 6 commits into
mainfrom
dependabot/github_actions/gradle/actions/setup-gradle-6.3.0
Closed

ci: bump gradle/actions/setup-gradle from 4.3.1 to 6.3.0#9
dependabot[bot] wants to merge 6 commits into
mainfrom
dependabot/github_actions/gradle/actions/setup-gradle-6.3.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 8, 2026

Copy link
Copy Markdown

Bumps gradle/actions/setup-gradle from 4.3.1 to 6.3.0.

Release notes

Sourced from gradle/actions/setup-gradle's releases.

v6.3.0

Highlights

Enhanced Caching: Windows fixes and a cache-protocol bump

This release updates gradle-actions-caching to v1.0.0 (up from v0.7.0), which fixes two significant caching defects, both most visible on Windows:

  • Cache entries failed to store at all on Windows.. Every entry failed with Path Validation Error: Path(s) specified in the action for caching do(es) not exist, even though the Gradle User Home was fully intact. Nothing was stored, so every downstream job ran against an empty Gradle User Home. The cause was a nested, unpatched copy of @actions/glob combined with a silently swallowed require() in the bundle, which left Windows path separators unnormalized.

  • Cache cleanup deleted instrumented jars that were in use. A bug in key hashing for paths shorter than 64 characters made cleanup judge freshly created caches/jars-9 entries as unused and remove them, so the instrumented-jars entry was never saved and every job re-instrumented its classpaths.

    Also included: cache entry names are now consistent between the save and restore reports — restore previously fell back to showing the raw glob pattern (e.g. /home/runner/.gradle/caches/modules-*/files-*/*/*/*/*/) instead of dependencies.

[!IMPORTANT] Existing cache entries are invalidated by this release. The cache protocol version was bumped to v2, so the first run after upgrading will be a cache miss and will repopulate the cache. No configuration changes are required.

Basic caching warns instead of failing silently

The basic (open-source) caching provider now emits a warning and reports (Entry not saved: save failed) in the Job Summary when a cache save fails, rather than reporting success (#1028).

Dependency submission works with Isolated Projects

dependency-submission now disables Isolated Projects via a promoted property, so dependency graph generation works on builds that enable it (#1025). Thanks to @​reinsch82 for the contribution.

Updated defaults

  • Injected Develocity Gradle plugin: 4.4.2 → 4.5.0
  • 36 new known-good wrapper checksums added for wrapper-validation

What's Changed

... (truncated)

Commits
  • 9c97196 Bump the github-actions group across 2 directories with 9 updates (#1024)
  • 760e4a4 Bump the npm-dependencies group across 1 directory with 2 updates (#1037)
  • 73e4c42 Update gradle-actions-caching library to v1.0.0 (#1029)
  • a9d1438 Add dependabot ignore rules for TypeScript 7.x and @​types/node 25.x/26.x
  • 68f3700 [bot] Update dist directory
  • 5971332 Bump Gradle Wrapper to 9.6.1, wrapper checksums, and Develocity plugin to 4.5...
  • b5bc804 [bot] Update dist directory
  • dcbab4e Bump npm-dependencies group with TypeScript 6.0.3, @​types/node 24.x, and secu...
  • ca8d957 Move non-smoke restore-gradle-home tests back to the integ-test suite (#1032)
  • 4318659 [bot] Update dist directory
  • Additional commits viewable in compare view

aspix2k added 4 commits August 8, 2026 09:10
Runs unit tests only for modules whose files changed, and checks that
modules consuming a changed public API still compile.

The module graph comes from the IDE project model, so the plugin works
with Kotlin and Groovy builds, any dependency DSL, and both single
projects and composite builds.

Includes a toolbar button with a live count, per-module navigation,
detekt/lint/coverage actions that appear only when those Gradle tasks
exist, an optional MCP toolset, and UI in 12 languages.
The IDE to compile against now comes from local.properties, a Gradle
property or an environment variable, and falls back to downloading the
Android Studio version pinned in gradle.properties. Without this the
build only worked on one machine and CI could not run at all.

Release notes now come from the changelog, and the marketplace publish
step reads its token from job-level env so its condition can see it.
Gradle 9.6.1, Kotlin 2.4.10, kover 0.9.9, changelog 2.5.0, and the four
pinned actions move to the versions dependabot reported.
gradlew.bat needs CRLF, everything else LF, so a checkout on Windows
does not rewrite the wrapper script.
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 8, 2026
aspix2k and others added 2 commits August 8, 2026 10:00
The verifier downloaded every recommended IDE, which filled the runner
disk and killed the job with no log. It now checks the oldest supported
build, the current IDEA and the pinned Android Studio.

Run status and stop move from ExecutionManager.getRunningDescriptors,
which is marked internal, to RunContentManager.
Bumps [gradle/actions/setup-gradle](https://github.com/gradle/actions) from 4.3.1 to 6.3.0.
- [Release notes](https://github.com/gradle/actions/releases)
- [Commits](gradle/actions@06832c7...9c97196)

---
updated-dependencies:
- dependency-name: gradle/actions/setup-gradle
  dependency-version: 6.3.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/gradle/actions/setup-gradle-6.3.0 branch from 7fcb5b2 to a191874 Compare August 8, 2026 07:03
@aspix2k aspix2k closed this Aug 8, 2026
@dependabot @github

dependabot Bot commented on behalf of github Aug 8, 2026

Copy link
Copy Markdown
Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot
dependabot Bot deleted the dependabot/github_actions/gradle/actions/setup-gradle-6.3.0 branch August 8, 2026 07:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant