Skip to content

Use sonatype guide dependency audit#8365

Merged
jack-berg merged 2 commits intoopen-telemetry:mainfrom
trask:use-sonatype-guide-dependency-audit
May 4, 2026
Merged

Use sonatype guide dependency audit#8365
jack-berg merged 2 commits intoopen-telemetry:mainfrom
trask:use-sonatype-guide-dependency-audit

Conversation

@trask
Copy link
Copy Markdown
Member

@trask trask commented May 4, 2026

- `GPG_PRIVATE_KEY` - stored in OpenTelemetry-Java 1Password
- `SONATYPE_OSS_INDEX_USER` - owned by [@jack-berg](https://github.com/jack-berg)
- `SONATYPE_OSS_INDEX_PASSWORD` - owned by [@jack-berg](https://github.com/jack-berg)
- `SONATYPE_GUIDE_PAT` - owned by [@jack-berg](https://github.com/jack-berg)
Copy link
Copy Markdown
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@jack-berg you'll need to create this

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Will do thanks

@trask trask marked this pull request as ready for review May 4, 2026 17:06
@trask trask requested a review from a team as a code owner May 4, 2026 17:06
@codecov
Copy link
Copy Markdown

codecov Bot commented May 4, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 90.83%. Comparing base (1b207c6) to head (c82f996).

Additional details and impacted files
@@            Coverage Diff            @@
##               main    #8365   +/-   ##
=========================================
  Coverage     90.82%   90.83%           
- Complexity     7927     7928    +1     
=========================================
  Files           895      895           
  Lines         23872    23872           
  Branches       2378     2378           
=========================================
+ Hits          21681    21683    +2     
  Misses         1446     1446           
+ Partials        745      743    -2     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@jack-berg jack-berg merged commit b1b563b into open-telemetry:main May 4, 2026
29 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants