NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
pub.dev · #762 most downloaded on pub.dev
Checks for missing, under-promoted, over-promoted, and unused dependencies.
Last release 23 days ago
15 Sep 2026
Release timing varies
gaps range from 3 weeks to 7 months
Most releases are documented
notes for 30 of 35 stable releases
Nothing withdrawn
no release was ever pulled
9 years old
36 releases · first in 2017
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This minor release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This minor release includes the following changes:
#181 Bump the major group across 1 directory with 2 updates
#187 Parse files with the language version the package declares
#198 Fix failing tests and version solving in test fixtures
#199 Prepare changelog for 5.1.0 release
#200 RM-425690 Release dependency_validator 5.1.0
Notes created on Tuesday, September 15 05:53 PM UTC
One column per quarter.
Breaking Change: Treat hook/ as a public-facing directory when validating dependencies. Dependencies imported in hook scripts run at build/link time (dart build, flutter build) and must be regular dependencies, not dev_dependencies.
This is enabled by default, and will break the execution of dependency_validator if it occurs within the codebase.
Resolution is to either move the dependency to dependencies, or ignore/exclude it.
Ignore nested packages when validating surrounding packages (#173).
Parse files with the language version the package declares instead of the newest one the analyzer knows about, which may be unreleased and reject valid code
Allow up to analyzer 14
Fix warning when analyzer is depended on but not used so that it is still
emitted when analyzer is in the ignore list.
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#180 Bump analyzer from 12.1.0 to 13.0.0 in the major group
#185 RM-389033 Release dependency_validator 5.0.6
Notes created on Wednesday, August 26 02:37 PM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#177 Bump analyzer from 10.2.0 to 12.0.0 in the major group
#178 RM-379823 Release dependency_validator 5.0.5
Notes created on Monday, March 23 06:40 PM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#170 Bump the gha group with 4 updates
#174 Bump the major group across 1 directory with 3 updates
#175 RM-361227 Release dependency_validator 5.0.4
Notes created on Monday, February 09 11:22 PM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#151 FEDX-2777: Fixed formatting
#152 FEDX-2723: correctly ignore unused deps
#154 Bump Workiva/gha-dart-oss from 0.1.7 to 0.1.9 in the gha group
#157 Bump analyzer from 7.7.1 to 8.1.1 in the major group
#162 Reformat with correct dependencies
#164 Bump Workiva/gha-dart-oss from 0.1.12 to 0.1.13 in the gha group
#166 RM-307870 Release dependency_validator 5.0.3
Notes created on Friday, October 17 06:04 PM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#146 Updated changelog to fix release
#147 RM-307841 Release dependency_validator 5.0.2
Notes created on Friday, January 10 05:45 PM UTC
Nothing published for this version
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#131 Workiva Analysis Options v2
#133 Bump Workiva/gha-dart-oss from 0.1.6 to 0.1.7 in the gha group
#135 raise_min_dart_sdk_2_19
#136 RM-285950 Release dependency_validator 4.1.2
Notes created on Saturday, December 07 12:20 AM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This patch release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This patch release includes the following changes:
#124 FEA-3927: Updated changelog for v4.1.0
#126 fedx_codeowners_file
#127 FEDX-1587: implemented gha-dart-oss
#128 FEDX-1589: Include file path on parse error
#129 RM-263537 Release dependency_validator 4.1.1
#130 Bump Workiva/gha-dart-oss from 0.1.5 to 0.1.6 in the gha group
Notes created on Tuesday, September 24 04:07 PM UTC
Build: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This minor release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This minor release includes the following changes:
#114 v4 Changelog update
#115 FEA-3685: Reverted non-dev bin import usage errors
#116 Revert "FEA-3685: Reverted non-dev bin import usage errors"
#117 Update analyzer constraint
#120 Fixed broken GHA and updated installation instructions
#121 Add dependabot.yml
#122 GHA: Bump actions/checkout from 2 to 4 in the gha-dependencies group
#123 RM-256973 Release dependency_validator 4.1.0
Notes created on Monday, June 03 05:25 PM UTC
v6.0.0+. This supports dependency_validator running on dart 3 betterBuild: (waiting for build to complete) Skynet Results: (waiting for Skynet results) Pipeline: (waiting for pipeline to start) This major release inclu
Build: (waiting for build to complete)
Skynet Results: (waiting for Skynet results)
Pipeline: (waiting for pipeline to start)
This major release includes the following changes:
Notes created on Monday, April 29 03:51 PM UTC
Nothing published for this version
Raise dependency minimums to ensure all dependencies are null-safe.
Feature: Added option allow_pins for disabling/enabling checks for pins. Pins not allowed by default.
allow_pins for disabling/enabling checks for pins. Pins not allowed by default.Return non-zero exit code from executable when incorrect args are used
Deprecate static configuration in pubspec.yaml (because pub publish warns about unrecognized keys) and instead read it from a dart_dependency_validato…
pubspec.yaml (because pub publish warns
about unrecognized keys) and instead read it from a
dart_dependency_validator.yaml file when possible.Breaking: removed the public package:dependency_validator/dependency_validator.dart entrypoint. It was only intended for this package to provide an ex
package:dependency_validator/dependency_validator.dart
entrypoint. It was only intended for this package to provide an executable and
the Dart APIs don't need to be public.Nothing published for this version
Nothing published for this version
- Fix a path issue on Windows.
Breaking Change: Excluded paths and ignored packages must now be configured statically in your project's pubspec.yaml instead of via command-line argu…
Breaking Change: Excluded paths and ignored packages must now be
configured statically in your project's pubspec.yaml instead of via
command-line arguments. See the README for more information.
Detect packages with one or more executables and consider them to be used. In other words, you no longer need to ignore packages that are only used for their executable(s).
Detect packages that provide one or more builders that are configured to be auto-applied by the dart build system and consider them to be used. In other words, you no longer need to ignore packages that are only used for their builder(s).
Nothing published for this version
Scan .less files for Dart package imports.
.less files for Dart package imports.Detect package usage in analysis_options.yaml files.
analysis_options.yaml files.Add dart_dev to common binaries list so that it is automatically ignored.
dart_dev to common binaries list so that it is automatically ignored.Improvement: Add coverage and build_vm_compilers to the list of commonly used binary packages that are ignored by default. [#50][#50]
Improvement: Ignore commonly used binary packages by default. This can be disabled via --no-ignore-common-binaries. Run pub run dependency_validator -
--no-ignore-common-binaries.
Run pub run dependency_validator -h to see which packages will be ignored by
this flag. #47Bug Fix: Ignoring a package via --ignore or -i will now also work as expected for the "over-promoted" failure. [#44][#44]
--ignore or -i will now also work as
expected for the "over-promoted" failure. #44Nothing published for this version
Bug Fix: Ignoring a package via --ignore or -i will now also work as expected for the "pinned dependency" failure. [#39][#39]
--ignore or -i will now also
work as expected for the "pinned dependency" failure. #39[#35]: https://github.com/Workiva/dependency_validator/pull/35
Initial Dart 2/DDC compatibility changes. [#23][#23]
Bug Fix: Fix detection of packages whose names contain numbers. [#17][#17]
Feature: Added flags to control the types of validations that this tool enforces. They all default to true, but can be opted out of like so:
Feature: Added flags to control the types of validations that this tool enforces. They all default to true, but can be opted out of like so:
--no-fatal-missing
--no-fatal-under-promoted
--no-fatal-over-promoted
--no-fatal-unused
Feature: Added --exclude-dir to allow excluding an entire directory from
the dependency validator checks. #15
Bug Fix: Packages ignored via the --ignore option will no longer be reported at all (previously they were only being ignored in the "unused" list). [#
- Initial version!
Your coding agent can read these notes before it upgrades. Set up the MCP server →