Skip to content

build!: migrate clasweb/clas12maven dependencies to code.jlab.org - #1461

Draft
c-dilks wants to merge 26 commits into
developmentfrom
jclara-6.1
Draft

c-dilks wants to merge 26 commits into
developmentfrom
jclara-6.1

Conversation

@c-dilks

@c-dilks c-dilks commented Sep 28, 2026 •

Copy link
Copy Markdown
Member

The primary goal here is to move us off of clasweb's Maven repo, in favor of code.jlab.org package registries; reasons:

  • mitigate routine clasweb access denial by cloudflare
  • add provenance to our binary dependencies
  • allow for maintenance of these dependencies

It only addresses those on clas12maven; those on jhep/maven are out of this PR's scope.

Most of the changes in these dependencies are for deploying them to their package registries; here are their release notes:

Additional changes:

  • change org.freehep:jminuit:1.0 from clasweb to org.freehep:freehep-jminuit:1.0.2 from Maven central
    • used by RICH
    • possibly consumed transitively by calcode and mon12
    • groot already consumes org.freehep:freehep-jminuit:1.0.2
    • org.freehep:freehep-jminuit:1.0 seems to be inaccessible
  • removed org.jlab.coda:jtools
    • coatjava only uses org.jlab.clas12.tools.MimeType and org.jlab.clas12.tools.property.JPropertyList
    • updated one of the Clas12Types classes, the only real consumer, following the other Clas12Types class
  • removed shaded dependencies (i.e., in coat-libs) that are unlikely used downstream:
    • org.freehep:jminuit - calcode may be consuming this transitively, but that's easy to fix
    • org.jama:jamapack
    • org.jlab.plugins:jMath
    • de.erichseifert:vectorgraphics2d
    • net.objecthunter:exp4j
  • now all dependency version numbers are defined in the top-level POM's dependencyManagement node

@c-dilks

c-dilks commented Sep 28, 2026

Copy link
Copy Markdown
Member Author

sorta conflicts with #1449, but I wanted to test this independently of that PR

@c-dilks c-dilks changed the title build(deps): bump org.jlab.coda:jclara to 6.1 build(deps): bump jclara to 6.2 and xmsg to 2.5 Sep 28, 2026
@c-dilks
c-dilks marked this pull request as draft September 28, 2026 20:57
@c-dilks
c-dilks marked this pull request as ready for review September 29, 2026 12:36
@c-dilks c-dilks added maven dependencies Pull requests that update a dependency file and removed maven labels Sep 29, 2026
@c-dilks c-dilks changed the title build(deps): bump jclara to 6.2 and xmsg to 2.5 build(deps): bump jclara, xmsg, ccdbrcdb Sep 29, 2026
@c-dilks c-dilks added maven and removed dependencies Pull requests that update a dependency file labels Sep 29, 2026
@c-dilks c-dilks changed the title build(deps): bump jclara, xmsg, ccdbrcdb build: reduce dependence on clasweb's maven repo Sep 29, 2026
@c-dilks
c-dilks marked this pull request as draft September 29, 2026 21:28
@c-dilks c-dilks changed the title build: reduce dependence on clasweb's maven repo build: mitigate cloudflare access denials by reducing dependence on clasweb's maven repo Sep 29, 2026
Comment thread pom.xml
<artifactId>jevio</artifactId>
<classifier>jar-with-dependencies</classifier>
<version>6.2-SNAPSHOT</version>
<version>6.2.1</version>

Copy link
Copy Markdown
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

we need to verify this new version of jevio is consistent with the version we've been using... it's our data format

Comment thread pom.xml Outdated
@c-dilks c-dilks changed the title build: mitigate cloudflare access denials by reducing dependence on clasweb's maven repo build: migrate clasweb/clas12maven dependencies to code.jlab.org Oct 2, 2026
@c-dilks c-dilks changed the title build: migrate clasweb/clas12maven dependencies to code.jlab.org build!: migrate clasweb/clas12maven dependencies to code.jlab.org Oct 3, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant