Skip to content

fix(deps): update dependencies (minor) - #88

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-updates
Open

renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-updates

Conversation

@renovate

@renovate renovate Bot commented Sep 14, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
ocm v0.49.0v0.50.0 age confidence minor
ocm.software/ocm v0.49.0v0.50.0 age confidence require minor
opendefensecloud/dev-kit v2.1.0v2.2.0 age confidence minor

Release Notes

open-component-model/ocm (ocm)

v0.50.0

Compare Source

What's Changed
🐛 Bug Fixes
⬆️ Dependencies
🧰 Maintenance

Full Changelog: open-component-model/ocm@v0.49...v0.50.0

opendefensecloud/dev-kit (opendefensecloud/dev-kit)

v2.2.0

Compare Source

Changes


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "before 5am on Monday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the ok-to-image PR is allowed to run container build label Sep 14, 2026
@renovate

renovate Bot commented Sep 14, 2026

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 36 additional dependencies were updated

Due to Go's usage of Minimal Version Selection (MVS), these packages have been updated to the minimum version available, so will still abide by minimumReleaseAge=3 days

Details:

Package Change
github.com/aws/aws-sdk-go-v2 v1.43.4 -> v1.43.6
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.16 -> v1.7.18
github.com/aws/aws-sdk-go-v2/config v1.32.35 -> v1.32.37
github.com/aws/aws-sdk-go-v2/credentials v1.19.34 -> v1.19.36
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.35 -> v1.18.37
github.com/aws/aws-sdk-go-v2/feature/s3/transfermanager v0.3.10 -> v0.3.14
github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.35 -> v1.4.37
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.35 -> v2.7.37
github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.36 -> v1.4.38
github.com/aws/aws-sdk-go-v2/service/ecr v1.60.4 -> v1.60.6
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.15 -> v1.13.17
github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.28 -> v1.9.30
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.35 -> v1.13.37
github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.36 -> v1.19.38
github.com/aws/aws-sdk-go-v2/service/s3 v1.106.5 -> v1.107.2
github.com/aws/aws-sdk-go-v2/service/signin v1.5.4 -> v1.5.6
github.com/aws/aws-sdk-go-v2/service/sso v1.33.4 -> v1.33.6
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.38.4 -> v1.38.6
github.com/aws/aws-sdk-go-v2/service/sts v1.45.4 -> v1.45.6
github.com/aws/smithy-go v1.27.6 -> v1.27.8
github.com/containerd/containerd/v2 v2.3.3 -> v2.3.4
github.com/felixge/httpsnoop v1.0.4 -> v1.1.0
github.com/go-openapi/swag/conv v0.28.0 -> v0.29.0
github.com/go-openapi/swag/typeutils v0.28.0 -> v0.29.0
github.com/moby/sys/sequential v0.6.0 -> v0.7.0
github.com/sigstore/cosign/v3 v3.1.1 -> v3.1.3
github.com/sigstore/fulcio v1.8.7 -> v1.8.8
github.com/sirupsen/logrus v1.9.4 -> v1.10.1
go.podman.io/image/v5 v5.41.0 -> v5.41.1
golang.org/x/crypto v0.54.0 -> v0.55.0
golang.org/x/mod v0.37.0 -> v0.38.0
golang.org/x/net v0.57.0 -> v0.58.0
golang.org/x/text v0.40.0 -> v0.41.0
golang.org/x/tools v0.47.0 -> v0.48.0
google.golang.org/api v0.284.0 -> v0.286.0
helm.sh/helm/v4 v4.2.3 -> v4.2.4

@coderabbitai

coderabbitai Bot commented Sep 14, 2026

Copy link
Copy Markdown
Contributor

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Advanced

Run ID: c1f40da4-41f1-48f2-bb8c-fe8ecc4b4d47

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@coveralls

Copy link
Copy Markdown

Coverage Report for CI Build 34806811792

Coverage remained the same at 40.683%

Details

  • Coverage remained the same as the base build.
  • Patch coverage: No coverable lines changed in this PR.
  • No coverage regressions found.

Uncovered Changes

No uncovered changes found.

Coverage Regressions

No coverage regressions found.


Coverage Stats

Coverage Status
Relevant Lines: 322
Covered Lines: 131
Line Coverage: 40.68%
Coverage Strength: 0.41 hits per line

💛 - Coveralls

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ok-to-image PR is allowed to run container build

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants