Dependency Dashboard
- Dominant language
- Java
- Stars
- 0
- Forks
- 0
- Avg merge
- 1d 2h
- Merged PRs (30d)
- 29
Description
This issue lists Renovate updates and detected dependencies. Read the [Dependency Dashboard](https://docs.renovatebot.com/key-concepts/dashboard/) docs to learn more.
[View this repository on the Mend.io Web Portal](https://developer.mend.io/github/bcgov/nr-csp).
## Rate-Limited
The following updates are currently rate-limited. To force their creation now, click on a checkbox below.
- [ ] fix(deps): update dependency org.springdoc:springdoc-openapi-starter-webmvc-ui to v3.1.1
- [ ] chore(deps): update dependency @playwright/test to v1.63.0
- [ ] chore(deps): update vitest monorepo to v5 (`@vitest/browser`, `@vitest/browser-playwright`, `@vitest/coverage-v8`, `vitest`)
- [ ] 🔐 **Create all rate-limited PRs at once** 🔐
## PR Edited (Blocked)
The following updates have been manually edited so Renovate will no longer make changes. To discard all commits and start over, click on a checkbox below.
- [ ] [fix(deps): update dependency com.github.librepdf:openpdf to v3](../pull/118)
- [ ] [fix(deps): update dependency org.testcontainers:testcontainers-bom to v2](../pull/123)
## Pending Status Checks
The following updates await pending status checks. To force their creation now, click on a checkbox below.
- [ ] [chore(deps): update eclipse-temurin docker tag to v25](../pull/127)
## Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
- [ ] [chore(deps): update dependency bcgov/renovate-config to v2026.9.9](../pull/143)
- [ ] [chore(deps): lock file maintenance](../pull/136)
- [ ] **Click on this checkbox to rebase all open PRs at once**
## Detected Dependencies
docker-compose (2)
docker-compose.override.yml
docker-compose.yml
dockerfile (2)
backend/Dockerfile (3)
- `maven 3.9-eclipse-temurin-21-alpine`
- `eclipse-temurin 21-jre-jammy` → [Updates: `25-jre-jammy`]
- `eclipse-temurin 21-jre-jammy` → [Updates: `25-jre-jammy`]frontend/Dockerfile (3)
- `node 24-alpine`
- `node 24-alpine`
- `caddy 2-alpine`
github-actions (8)
.github/workflows/analysis.yml (9)
- `actions/checkout v7`
- `actions/setup-java v6`
- `bcgov/action-test-and-analyse v2.0.0@8f699e3fd3fadd9a6adf6f4b1f2638ef7ecfefb9`
- `actions/checkout v7`
- `actions/cache v6`
- `aquasecurity/trivy-action v0.36.0@ed142fd0673e97e23eac54620cfb913e5ce36c25`
- `github/codeql-action v4`
- `ubuntu 24.04`
- `ubuntu 24.04`.github/workflows/merge.yml (6)
- `bcgov/action-get-pr v0.3.1@28b0adf8e4d40720d41f9c87356ce24b0a4bd6af`
- `actions/checkout v7`
- `bcgov/action-sysdig-monitor 0.0.3@6806bcb6b427359881848a62508402f5c1bb0dc9`
- `shrink/actions-docker-registry-tag v5@e6aaef25c595b6e0edd18bf4c7dbfea3abd43299`
- `ubuntu 24.04`
- `ubuntu 24.04`.github/workflows/pr-close.yml (1)
- `bcgov/quickstart-openshift-helpers v1.2.1@a11ad3d1b9288fb40757c4314a62eb86ff227931`
.github/workflows/pr-open.yml (2)
- `bcgov/action-builder-ghcr v4.4.1@cb2629351c87dd1c2130073e4ebb7233a9653a63`
- `ubuntu 24.04`.github/workflows/pr-validate.yml (1)
- `bcgov/quickstart-openshift-helpers v1.2.1@a11ad3d1b9288fb40757c4314a62eb86ff227931`
.github/workflows/reusable-deploy.yml (4)
- `bcgov/action-deployer-openshift v4.2.1@27a85b7b157bfc9c3c9bf0aca53bcd288d4d2506`
- `bcgov/action-deployer-openshift v4.2.1@27a85b7b157bfc9c3c9bf0aca53bcd288d4d2506`
- `ubuntu 24.04`
- `ubuntu 24.04`.github/workflows/reusable-tests.yml (13)
- `actions/checkout v7`
- `actions/setup-java v6`
- `actions/checkout v7`
- `actions/setup-node v7`
- `actions/cache v6`
- `actions/checkout v7`
- `actions/setup-node v7`
- `actions/upload-artifact v7`
- `ubuntu 24.04`
- `ubuntu 24.04`
- `node 24`
- `ubuntu 24.04`
- `node 24`.github/workflows/scheduled.yml (5)
- `actions/stale v11`
- `bcgov/action-oc-runner v1.7.0@111868d1fc50db0a40417ba321d865ef5c931bbd`
- `bcgov/quickstart-openshift-helpers v1.2.1@a11ad3d1b9288fb40757c4314a62eb86ff227931`
- `zaproxy/action-full-scan v0.13.0@3c58388149901b9a03b7718852c5ba889646c27c`
- `ubuntu 24.04`
maven (1)
backend/pom.xml (21)
- `org.springframework.boot:spring-boot-starter-parent 4.1.1`
- `org.testcontainers:testcontainers-bom 1.21.4` → [Updates: `2.0.5`]
- `org.springdoc:springdoc-openapi-starter-webmvc-ui 3.1.0` → [Updates: `3.1.1`]
- `com.oracle.database.jdbc:ojdbc11 23.26.3.0.0`
- `io.jsonwebtoken:jjwt-api 0.13.0`
- `io.jsonwebtoken:jjwt-impl 0.13.0`
- `io.jsonwebtoken:jjwt-jackson 0.13.0`
- `com.auth0:jwks-rsa 0.24.1`
- `org.mapstruct:mapstruct 1.6.3`
- `jakarta.xml.bind:jakarta.xml.bind-api 4.0.5`
- `org.glassfish.jaxb:jaxb-runtime 4.0.9`
- `net.sf.jasperreports:jasperreports 7.0.8`
- `net.sf.jasperreports:jasperreports-pdf 7.0.8`
- `net.sf.jasperreports:jasperreports-jdt 7.0.8`
- `com.github.librepdf:openpdf 1.4.2` → [Updates: `3.0.5`]
- `com.ibm.icu:icu4j 78.3`
- `org.dom4j:dom4j 2.2.0`
- `org.jvnet.jaxb:jaxb-maven-plugin 4.0.16`
- `org.mapstruct:mapstruct-processor 1.6.3`
- `org.sonarsource.scanner.maven:sonar-maven-plugin 5.7.0.6970` → [Updates: `5.8.0.7211`]
- `org.jacoco:jacoco-maven-plugin 0.8.15`
npm (2)
common/tests/integration/package.json
frontend/package.json (44)
- `@carbon/icons-react ^11.64.0`
- `@carbon/pictograms-react ^11.83.0`
- `@carbon/react ^1.104.1`
- `@tanstack/react-query ^5.84.1`
- `aws-amplify ^6.16.2`
- `axios ^1.13.5`
- `react ^19.1.0`
- `react-dom ^19.1.0`
- `react-router ^8.3.0`
- `@eslint/js ^9.30.1`
- `@playwright/test 1.62.1` → [Updates: `1.63.0`]
- `@tanstack/eslint-plugin-query ^5.84.2`
- `@tanstack/react-query-devtools ^5.84.2`
- `@testing-library/dom ^10.4.0`
- `@testing-library/jest-dom ^7.0.0`
- `@testing-library/react ^16.3.0`
- `@testing-library/user-event ^14.6.1`
- `@types/react ^19.1.0`
- `@types/react-dom ^19.1.0`
- `@vitejs/plugin-react ^6.0.0`
- `@vitest/browser ^4.1.10` → [Updates: `^5.0.0`]
- `@vitest/browser-playwright ^4.1.10` → [Updates: `^5.0.0`]
- `@vitest/coverage-v8 ^4.1.10` → [Updates: `^5.0.0`]
- `cross-env ^10.0.0`
- `eslint ^9.30.1`
- `eslint-config-prettier ^10.1.5`
- `eslint-import-resolver-typescript ^4.0.0`
- `eslint-plugin-import ^2.31.0`
- `eslint-plugin-prettier ^5.4.1`
- `eslint-plugin-react-hooks ^7.0.0`
- `eslint-plugin-react-refresh ^0.5.0`
- `happy-dom ^20.0.0`
- `playwright ^1.54.2`
- `prettier ^3.6.2`
- `sass ^1.90.0`
- `typescript ~6.0.0`
- `typescript-eslint ^8.56.0`
- `vite ^8.0.0`
- `vite-plugin-pwa ^1.2.0`
- `vite-tsconfig-paths ^6.0.0`
- `vitest ^4.1.10` → [Updates: `^5.0.0`]
- `vitest-browser-react ^2.0.0`
- `node >=24.0.0`
- `npm >=10.0.0`
regex (1)
renovate.json (1)
- `bcgov/renovate-config 2026.8.18` → [Updates: `2026.9.9`]
renovate-config (1)
renovate.json (1)
- `bcgov/renovate-config 2026.8.18` → [Updates: `2026.9.9`]
---
- [ ] Check this box to trigger a request for Renovate to run again on this repository
Contributor guide
Research direction
Start with the Renovate dashboard, the linked pull requests, and the dependency locations it lists: backend/pom.xml, frontend/package.json, Dockerfiles, GitHub workflow files, and renovate.json. Review the existing PRs and their status checks first; completion would require the selected dependency updates to be applied and the repository checks to pass.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- docker, github-actions, java, playwright, react, spring-boot, typescript
- Domain
- build-system, ci-cd, devops, tooling
- Issue type
- Refactor
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100