forked from kumahq/kuma
-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[pull] master from kumahq:master #49
Merged
Merged
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps [github.com/miekg/dns](https://github.com/miekg/dns) from 1.1.62 to 1.1.63. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/miekg/dns&package-manager=go_modules&previous-version=1.1.62&new-version=1.1.63)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…12676) Bumps google.golang.org/protobuf from 1.36.3 to 1.36.4. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=google.golang.org/protobuf&package-manager=go_modules&previous-version=1.36.3&new-version=1.36.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
… 4.18.2 (#12675) Bumps [github.com/golang-migrate/migrate/v4](https://github.com/golang-migrate/migrate) from 4.18.1 to 4.18.2. <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/golang-migrate/migrate/commit/d477553dcd9ae33e2698c09f186e988767d71b79"><code>d477553</code></a> Merge pull request <a href="https://redirect.github.com/golang-migrate/migrate/issues/1195">#1195</a> from golang-migrate/dependabot/go_modules/github.com...</li> <li><a href="https://github.com/golang-migrate/migrate/commit/e145cded4a5df0f5a8c4fb3aef34aa66f15ad2b9"><code>e145cde</code></a> Bump github.com/golang-jwt/jwt/v4 from 4.4.2 to 4.5.1</li> <li><a href="https://github.com/golang-migrate/migrate/commit/7651c8a37ed0b473ce5d686830956a455a20a290"><code>7651c8a</code></a> linter fixes</li> <li><a href="https://github.com/golang-migrate/migrate/commit/e5a152b9f6499b0534300967f914856119931ed6"><code>e5a152b</code></a> Drop support for Azure SQL Edge</li> <li><a href="https://github.com/golang-migrate/migrate/commit/12c619ee47b713bf4855f3dd6ea6e9a68b719a07"><code>12c619e</code></a> Fix CI (<a href="https://redirect.github.com/golang-migrate/migrate/issues/1222">#1222</a>)</li> <li><a href="https://github.com/golang-migrate/migrate/commit/bc06922b4de8631b553f99600e564b161e79e798"><code>bc06922</code></a> Update dktest from v0.4.3 to v0.4.4</li> <li><a href="https://github.com/golang-migrate/migrate/commit/c378583d782e026f472dff657bfd088bf2510038"><code>c378583</code></a> Merge pull request <a href="https://redirect.github.com/golang-migrate/migrate/issues/1162">#1162</a> from rselbach/rselbach/no-sensitive-info</li> <li><a href="https://github.com/golang-migrate/migrate/commit/e22d0128ccf15813fa40e3720010e5e6710ee3bb"><code>e22d012</code></a> Don't output sensitive information on error</li> <li>See full diff in <a href="https://github.com/golang-migrate/migrate/compare/v4.18.1...v4.18.2">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/golang-migrate/migrate/v4&package-manager=go_modules&previous-version=4.18.1&new-version=4.18.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.28.1 to 3.28.5. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/github/codeql-action/releases">github/codeql-action's releases</a>.</em></p> <blockquote> <h2>v3.28.5</h2> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <h2>3.28.5 - 24 Jan 2025</h2> <ul> <li>Update default CodeQL bundle version to 2.20.3. <a href="https://redirect.github.com/github/codeql-action/pull/2717">#2717</a></li> </ul> <p>See the full <a href="https://github.com/github/codeql-action/blob/v3.28.5/CHANGELOG.md">CHANGELOG.md</a> for more information.</p> <h2>v3.28.4</h2> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <h2>3.28.4 - 23 Jan 2025</h2> <p>No user facing changes.</p> <p>See the full <a href="https://github.com/github/codeql-action/blob/v3.28.4/CHANGELOG.md">CHANGELOG.md</a> for more information.</p> <h2>v3.28.3</h2> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <h2>3.28.3 - 22 Jan 2025</h2> <ul> <li>Update default CodeQL bundle version to 2.20.2. <a href="https://redirect.github.com/github/codeql-action/pull/2707">#2707</a></li> <li>Fix an issue downloading the CodeQL Bundle from a GitHub Enterprise Server instance which occurred when the CodeQL Bundle had been synced to the instance using the <a href="https://github.com/github/codeql-action-sync-tool">CodeQL Action sync tool</a> and the Actions runner did not have Zstandard installed. <a href="https://redirect.github.com/github/codeql-action/pull/2710">#2710</a></li> <li>Uploading debug artifacts for CodeQL analysis is temporarily disabled. <a href="https://redirect.github.com/github/codeql-action/pull/2712">#2712</a></li> </ul> <p>See the full <a href="https://github.com/github/codeql-action/blob/v3.28.3/CHANGELOG.md">CHANGELOG.md</a> for more information.</p> <h2>v3.28.2</h2> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <h2>3.28.2 - 21 Jan 2025</h2> <p>No user facing changes.</p> <p>See the full <a href="https://github.com/github/codeql-action/blob/v3.28.2/CHANGELOG.md">CHANGELOG.md</a> for more information.</p> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/github/codeql-action/blob/main/CHANGELOG.md">github/codeql-action's changelog</a>.</em></p> <blockquote> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <h2>[UNRELEASED]</h2> <p>No user facing changes.</p> <h2>3.28.5 - 24 Jan 2025</h2> <ul> <li>Update default CodeQL bundle version to 2.20.3. <a href="https://redirect.github.com/github/codeql-action/pull/2717">#2717</a></li> </ul> <h2>3.28.4 - 23 Jan 2025</h2> <p>No user facing changes.</p> <h2>3.28.3 - 22 Jan 2025</h2> <ul> <li>Update default CodeQL bundle version to 2.20.2. <a href="https://redirect.github.com/github/codeql-action/pull/2707">#2707</a></li> <li>Fix an issue downloading the CodeQL Bundle from a GitHub Enterprise Server instance which occurred when the CodeQL Bundle had been synced to the instance using the <a href="https://github.com/github/codeql-action-sync-tool">CodeQL Action sync tool</a> and the Actions runner did not have Zstandard installed. <a href="https://redirect.github.com/github/codeql-action/pull/2710">#2710</a></li> <li>Uploading debug artifacts for CodeQL analysis is temporarily disabled. <a href="https://redirect.github.com/github/codeql-action/pull/2712">#2712</a></li> </ul> <h2>3.28.2 - 21 Jan 2025</h2> <p>No user facing changes.</p> <h2>3.28.1 - 10 Jan 2025</h2> <ul> <li>CodeQL Action v2 is now deprecated, and is no longer updated or supported. For better performance, improved security, and new features, upgrade to v3. For more information, see <a href="https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/">this changelog post</a>. <a href="https://redirect.github.com/github/codeql-action/pull/2677">#2677</a></li> <li>Update default CodeQL bundle version to 2.20.1. <a href="https://redirect.github.com/github/codeql-action/pull/2678">#2678</a></li> </ul> <h2>3.28.0 - 20 Dec 2024</h2> <ul> <li>Bump the minimum CodeQL bundle version to 2.15.5. <a href="https://redirect.github.com/github/codeql-action/pull/2655">#2655</a></li> <li>Don't fail in the unusual case that a file is on the search path. <a href="https://redirect.github.com/github/codeql-action/pull/2660">#2660</a>.</li> </ul> <h2>3.27.9 - 12 Dec 2024</h2> <p>No user facing changes.</p> <h2>3.27.8 - 12 Dec 2024</h2> <ul> <li>Fixed an issue where streaming the download and extraction of the CodeQL bundle did not respect proxy settings. <a href="https://redirect.github.com/github/codeql-action/pull/2624">#2624</a></li> </ul> <h2>3.27.7 - 10 Dec 2024</h2> <ul> <li>We are rolling out a change in December 2024 that will extract the CodeQL bundle directly to the toolcache to improve performance. <a href="https://redirect.github.com/github/codeql-action/pull/2631">#2631</a></li> <li>Update default CodeQL bundle version to 2.20.0. <a href="https://redirect.github.com/github/codeql-action/pull/2636">#2636</a></li> </ul> <h2>3.27.6 - 03 Dec 2024</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/github/codeql-action/commit/f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4"><code>f6091c0</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2721">#2721</a> from github/update-v3.28.5-01f001931</li> <li><a href="https://github.com/github/codeql-action/commit/064af10f0de41995b41632364b4bfb00a34df047"><code>064af10</code></a> Update changelog for v3.28.5</li> <li><a href="https://github.com/github/codeql-action/commit/01f0019310ce544d1cf748667a69f8fd6e26e48a"><code>01f0019</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2717">#2717</a> from github/update-bundle/codeql-bundle-v2.20.3</li> <li><a href="https://github.com/github/codeql-action/commit/573ad887cd5b527e9baef02653bd455e1ff5181c"><code>573ad88</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2718">#2718</a> from github/kaeluka/4779-1</li> <li><a href="https://github.com/github/codeql-action/commit/d7f39764f685cbe3764f763469a0d72383d7b9c8"><code>d7f3976</code></a> permissions block in query-filters.yml</li> <li><a href="https://github.com/github/codeql-action/commit/428975ce2cf327a0e919004c63e734eddd0e6255"><code>428975c</code></a> Add changelog note</li> <li><a href="https://github.com/github/codeql-action/commit/208091da0a1069394981cdf5e7a91a8ee3f10709"><code>208091d</code></a> Update default bundle to codeql-bundle-v2.20.3</li> <li><a href="https://github.com/github/codeql-action/commit/7e3036b9cd87fc26dd06747b7aa4b96c27aaef3a"><code>7e3036b</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2716">#2716</a> from github/mergeback/v3.28.4-to-main-ee117c90</li> <li><a href="https://github.com/github/codeql-action/commit/e32a0d62d44ac06377953bfaf3ffd43618be076a"><code>e32a0d6</code></a> Update checked-in dependencies</li> <li><a href="https://github.com/github/codeql-action/commit/67c21e4084d5e020fbc969b839d42911b87fb8b5"><code>67c21e4</code></a> Update changelog and version after v3.28.4</li> <li>Additional commits viewable in <a href="https://github.com/github/codeql-action/compare/b6a472f63d85b9c78a3ac5e89422239fc15e9b3c...f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github/codeql-action&package-manager=github_actions&previous-version=3.28.1&new-version=3.28.5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…1 in the k8s-libs group (#12673) Bumps the k8s-libs group with 1 update: [sigs.k8s.io/controller-runtime](https://github.com/kubernetes-sigs/controller-runtime). Updates `sigs.k8s.io/controller-runtime` from 0.20.0 to 0.20.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/kubernetes-sigs/controller-runtime/releases">sigs.k8s.io/controller-runtime's releases</a>.</em></p> <blockquote> <h2>v0.20.1</h2> <h2>What's Changed</h2> <ul> <li>🐛 Check to see if custom source implements fmt.Stringer when logging by <a href="https://github.com/k8s-infra-cherrypick-robot"><code>@k8s-infra-cherrypick-robot</code></a> in <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/pull/3077">kubernetes-sigs/controller-runtime#3077</a></li> <li>🐛 cache: clone maps to prevent data race when concurrently creating caches using the same options by <a href="https://github.com/k8s-infra-cherrypick-robot"><code>@k8s-infra-cherrypick-robot</code></a> in <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/pull/3079">kubernetes-sigs/controller-runtime#3079</a></li> <li>🐛 support WaitForSync in custom TypedSyncingSource by <a href="https://github.com/k8s-infra-cherrypick-robot"><code>@k8s-infra-cherrypick-robot</code></a> in <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/pull/3086">kubernetes-sigs/controller-runtime#3086</a></li> <li>🌱 Add debug logging for the state of the priority queue by <a href="https://github.com/k8s-infra-cherrypick-robot"><code>@k8s-infra-cherrypick-robot</code></a> in <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/pull/3088">kubernetes-sigs/controller-runtime#3088</a></li> <li>:bug: Priorityqueue: Yet another queue_depth metric fix by <a href="https://github.com/k8s-infra-cherrypick-robot"><code>@k8s-infra-cherrypick-robot</code></a> in <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/pull/3089">kubernetes-sigs/controller-runtime#3089</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/kubernetes-sigs/controller-runtime/compare/v0.20.0...v0.20.1">https://github.com/kubernetes-sigs/controller-runtime/compare/v0.20.0...v0.20.1</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/626b2f36e1b6ef8daa1bec519a282f49618f0d71"><code>626b2f3</code></a> Merge pull request <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/issues/3089">#3089</a> from k8s-infra-cherrypick-robot/cherry-pick-3085-to-...</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/64cb665687dd27d3fd28deedcc2b0208b091a165"><code>64cb665</code></a> bug: Priorityqueue: Yet another queue_depth metric fix</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/791b6c9562ffe310675bc77d38f3c953dac4fb13"><code>791b6c9</code></a> Merge pull request <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/issues/3088">#3088</a> from k8s-infra-cherrypick-robot/cherry-pick-3075-to-...</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/99a40440f19a4ff4f25ff04091efbfcc32d6cf81"><code>99a4044</code></a> 🌱 Add debug logging for the state of the priority queue</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/f33705e3b12ac58bf5264111149a50f47477b499"><code>f33705e</code></a> [release-0.20] 🐛fix(controller): support WaitForSync in custom TypedSyncingSo...</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/571c31a896ed5673ab3d5d72b6928db68e17b98b"><code>571c31a</code></a> Merge pull request <a href="https://redirect.github.com/kubernetes-sigs/controller-runtime/issues/3079">#3079</a> from k8s-infra-cherrypick-robot/cherry-pick-3078-to-...</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/8d66e89a3373d54f052c4d4b99655101c76f0b32"><code>8d66e89</code></a> cache: clone maps to prevent data race when concurrently creating caches usin...</li> <li><a href="https://github.com/kubernetes-sigs/controller-runtime/commit/aa3f3426e4902c7808d76c1b38ec4e95f2959073"><code>aa3f342</code></a> [release-0.20] 🐛 Check to see if custom source implements fmt.Stringer when l...</li> <li>See full diff in <a href="https://github.com/kubernetes-sigs/controller-runtime/compare/v0.20.0...v0.20.1">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=sigs.k8s.io/controller-runtime&package-manager=go_modules&previous-version=0.20.0&new-version=0.20.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore <dependency name> major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore <dependency name> minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore <dependency name>` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore <dependency name>` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore <dependency name> <ignore condition>` will remove the ignore condition of the specified dependency and ignore conditions </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…ff2f7cbe (#12681) Bumps kumahq/kuma-gui to version [master@117a127498ad3a0f63feb077e84eb68cff2f7cbe](https://github.com/kumahq/kuma-gui/tree/117a127498ad3a0f63feb077e84eb68cff2f7cbe) > Changelog: chore(deps): use latest kumahq/kuma-gui Signed-off-by: GitHub <[email protected]> Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
…0 to 1.2.1 (#12674) Bumps [github.com/envoyproxy/protoc-gen-validate](https://github.com/envoyproxy/protoc-gen-validate) from 1.1.0 to 1.2.1. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/envoyproxy/protoc-gen-validate/releases">github.com/envoyproxy/protoc-gen-validate's releases</a>.</em></p> <blockquote> <h2>v1.2.1</h2> <h2>What's Changed</h2> <ul> <li>Fix Python3.9 build by <a href="https://github.com/stefanvanburen"><code>@stefanvanburen</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1232">bufbuild/protoc-gen-validate#1232</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/bufbuild/protoc-gen-validate/compare/v1.2.0...v1.2.1">https://github.com/bufbuild/protoc-gen-validate/compare/v1.2.0...v1.2.1</a></p> <h2>v1.2.0</h2> <h2>What's Changed</h2> <ul> <li>Bump golang.org/x/net from 0.26.0 to 0.27.0 in the go group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1144">bufbuild/protoc-gen-validate#1144</a></li> <li>Bump golang.org/x/net from 0.27.0 to 0.28.0 in the go group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1148">bufbuild/protoc-gen-validate#1148</a></li> <li>CI: fix the failure of goreleaser by <a href="https://github.com/suzuki-shunsuke"><code>@suzuki-shunsuke</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1146">bufbuild/protoc-gen-validate#1146</a></li> <li>Bump golang.org/x/net from 0.27.0 to 0.28.0 in /tests in the go-tests group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1150">bufbuild/protoc-gen-validate#1150</a></li> <li>Add a manually triggered Maven deploy workflow by <a href="https://github.com/pkwarren"><code>@pkwarren</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1154">bufbuild/protoc-gen-validate#1154</a></li> <li>Fix Maven release build by <a href="https://github.com/pkwarren"><code>@pkwarren</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1156">bufbuild/protoc-gen-validate#1156</a></li> <li>Bump golang.org/x/net from 0.28.0 to 0.30.0 in the go group across 1 directory by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1171">bufbuild/protoc-gen-validate#1171</a></li> <li>Bump the go-tests group across 1 directory with 2 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1172">bufbuild/protoc-gen-validate#1172</a></li> <li>Bump the java group across 1 directory with 17 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1183">bufbuild/protoc-gen-validate#1183</a></li> <li>Update bazel and deps by <a href="https://github.com/keith"><code>@keith</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1111">bufbuild/protoc-gen-validate#1111</a></li> <li>Bump the go-tests group across 1 directory with 2 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1185">bufbuild/protoc-gen-validate#1185</a></li> <li>Bump the python group in /python with 2 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1190">bufbuild/protoc-gen-validate#1190</a></li> <li>Bump protobuf from 5.29.0 to 5.29.1 in /python in the python group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1193">bufbuild/protoc-gen-validate#1193</a></li> <li>Bump golang.org/x/net from 0.31.0 to 0.32.0 in /tests in the go-tests group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1195">bufbuild/protoc-gen-validate#1195</a></li> <li>Require astunparse for older python versions by <a href="https://github.com/matejsp"><code>@matejsp</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1198">bufbuild/protoc-gen-validate#1198</a></li> <li>Return a provider from a rule instead of a struct by <a href="https://github.com/mering"><code>@mering</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1200">bufbuild/protoc-gen-validate#1200</a></li> <li>Update Buf logo in README by <a href="https://github.com/smallsamantha"><code>@smallsamantha</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1203">bufbuild/protoc-gen-validate#1203</a></li> <li>Bump the go-tests group across 1 directory with 2 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1212">bufbuild/protoc-gen-validate#1212</a></li> <li>Update go deps by <a href="https://github.com/rodaine"><code>@rodaine</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1215">bufbuild/protoc-gen-validate#1215</a></li> <li>Prealloc msgs in multierr.Error by <a href="https://github.com/apocelipes"><code>@apocelipes</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1209">bufbuild/protoc-gen-validate#1209</a></li> <li>Update Maven dependencies by <a href="https://github.com/pkwarren"><code>@pkwarren</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1218">bufbuild/protoc-gen-validate#1218</a></li> <li>Bump com.google.guava:guava from 33.3.1-android to 33.4.0-android in /java in the java group across 1 directory by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1219">bufbuild/protoc-gen-validate#1219</a></li> <li>Bump the go group with 2 updates by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1223">bufbuild/protoc-gen-validate#1223</a></li> <li>Drop Python 3.8 support by <a href="https://github.com/stefanvanburen"><code>@stefanvanburen</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1225">bufbuild/protoc-gen-validate#1225</a></li> <li>Migrate to cc_proto_library from com_google_protobuf by <a href="https://github.com/kgreenek"><code>@kgreenek</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1226">bufbuild/protoc-gen-validate#1226</a></li> <li>Bump google.golang.org/protobuf from 1.36.2 to 1.36.3 in the go group by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1229">bufbuild/protoc-gen-validate#1229</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/matejsp"><code>@matejsp</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1198">bufbuild/protoc-gen-validate#1198</a></li> <li><a href="https://github.com/mering"><code>@mering</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1200">bufbuild/protoc-gen-validate#1200</a></li> <li><a href="https://github.com/smallsamantha"><code>@smallsamantha</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1203">bufbuild/protoc-gen-validate#1203</a></li> <li><a href="https://github.com/apocelipes"><code>@apocelipes</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1209">bufbuild/protoc-gen-validate#1209</a></li> <li><a href="https://github.com/stefanvanburen"><code>@stefanvanburen</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1225">bufbuild/protoc-gen-validate#1225</a></li> <li><a href="https://github.com/kgreenek"><code>@kgreenek</code></a> made their first contribution in <a href="https://redirect.github.com/bufbuild/protoc-gen-validate/pull/1226">bufbuild/protoc-gen-validate#1226</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/bufbuild/protoc-gen-validate/compare/v1.1.0...v1.2.0">https://github.com/bufbuild/protoc-gen-validate/compare/v1.1.0...v1.2.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/7b06248484ceeaa947e93ca2747eccf336a88ecc"><code>7b06248</code></a> Fix Python3.9 build (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1232">#1232</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/0350b039d4a6b1d8beea42e055fff9027de04669"><code>0350b03</code></a> Bump google.golang.org/protobuf from 1.36.2 to 1.36.3 in the go group (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1229">#1229</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/19960f4f77497baa34c64068e03888b779394243"><code>19960f4</code></a> Migrate to cc_proto_library from com_google_protobuf (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1226">#1226</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/74f67b94e9141c550e0f2df948ba95804fb0a9d6"><code>74f67b9</code></a> Drop Python 3.8 support (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1225">#1225</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/24313a12006314be6bfb989ffa468bf8deef49cb"><code>24313a1</code></a> Bump the go group with 2 updates (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1223">#1223</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/c77a09accb27ad2ee172907e8fa48dab064f4a25"><code>c77a09a</code></a> Bump com.google.guava:guava from 33.3.1-android to 33.4.0-android in /java in...</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/ddbe9d792510b9aa4c28cbb5731f14c0334202b6"><code>ddbe9d7</code></a> Update Maven dependencies (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1218">#1218</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/c220710fc5a66140e40b7d36d4952548253883a1"><code>c220710</code></a> Prealloc msgs in multierr.Error (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1209">#1209</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/d1191c81d0b1adc055c53d461322b71f39891b8a"><code>d1191c8</code></a> Update go deps (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1215">#1215</a>)</li> <li><a href="https://github.com/bufbuild/protoc-gen-validate/commit/bbd2e1f4421343f57d75a136299c9394b13416a9"><code>bbd2e1f</code></a> Bump the go-tests group across 1 directory with 2 updates (<a href="https://redirect.github.com/envoyproxy/protoc-gen-validate/issues/1212">#1212</a>)</li> <li>Additional commits viewable in <a href="https://github.com/envoyproxy/protoc-gen-validate/compare/v1.1.0...v1.2.1">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/envoyproxy/protoc-gen-validate&package-manager=go_modules&previous-version=1.1.0&new-version=1.2.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> --------- Signed-off-by: dependabot[bot] <[email protected]> Signed-off-by: Bart Smykla <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Bart Smykla <[email protected]>
Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go) from 1.69.4 to 1.70.0. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/grpc/grpc-go/releases">google.golang.org/grpc's releases</a>.</em></p> <blockquote> <h2>Release 1.70.0</h2> <h1>Behavior Changes</h1> <ul> <li>client: reject service configs containing an invalid retryPolicy in accordance with gRFCs <a href="https://github.com/grpc/proposal/blob/master/A21-service-config-error-handling.md">A21</a> and <a href="https://github.com/grpc/proposal/blob/master/A6-client-retries.md">A6</a>. (<a href="https://redirect.github.com/grpc/grpc-go/issues/7905">#7905</a>) <ul> <li>Note that this is a potential breaking change for some users using an invalid configuration, but continuing to allow this behavior would violate our cross-language compatibility requirements.</li> </ul> </li> </ul> <h1>New Features</h1> <ul> <li>xdsclient: fallback to a secondary management server (if specified in the bootstrap configuration) when the primary is down is enabled by default. Can be disabled by setting the environment variable <code>GRPC_EXPERIMENTAL_XDS_FALLBACK</code> to <code>false</code>. (<a href="https://redirect.github.com/grpc/grpc-go/issues/7949">#7949</a>)</li> <li>experimental/credentials: experimental transport credentials are added which don't enforce ALPN. (<a href="https://redirect.github.com/grpc/grpc-go/issues/7980">#7980</a>) <ul> <li>These credentials will be removed in an upcoming grpc-go release. Users must not rely on these credentials directly. Instead, they should either vendor a specific version of gRPC or copy the relevant credentials into their own codebase if absolutely necessary.</li> </ul> </li> </ul> <h1>Bug Fixes</h1> <ul> <li>xds: fix a possible deadlock that happens when both the client application and the xDS management server (responsible for configuring the client) are using the xds:/// scheme in their target URIs. (<a href="https://redirect.github.com/grpc/grpc-go/issues/8011">#8011</a>)</li> </ul> <h1>Performance</h1> <ul> <li>server: for unary requests, free raw request message data as soon as parsing is finished instead of waiting until the method handler returns. (<a href="https://redirect.github.com/grpc/grpc-go/issues/7998">#7998</a>) <ul> <li>Special Thanks: <a href="https://github.com/lqs"><code>@lqs</code></a></li> </ul> </li> </ul> <h1>Documentation</h1> <ul> <li>examples/features/gracefulstop: add example to demonstrate server graceful stop. (<a href="https://redirect.github.com/grpc/grpc-go/issues/7865">#7865</a>)</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/grpc/grpc-go/commit/98a0092952dd4d8443229c3a335ec592d9c40c9b"><code>98a0092</code></a> Change version to 1.70.0 (<a href="https://redirect.github.com/grpc/grpc-go/issues/7984">#7984</a>)</li> <li><a href="https://github.com/grpc/grpc-go/commit/bf380dec5e059ea6e7d07cec015dd0c913831a6a"><code>bf380de</code></a> Cherrypick <a href="https://redirect.github.com/grpc/grpc-go/issues/7998">#7998</a>, <a href="https://redirect.github.com/grpc/grpc-go/issues/8011">#8011</a>, <a href="https://redirect.github.com/grpc/grpc-go/issues/8010">#8010</a> into 1.70.x (<a href="https://redirect.github.com/grpc/grpc-go/issues/8028">#8028</a>)</li> <li><a href="https://github.com/grpc/grpc-go/commit/54b3eb97dbf7400efb5750f26084c2d3b2eff120"><code>54b3eb9</code></a> experimental/credentials: Add credentials that don't enforce ALPN (<a href="https://redirect.github.com/grpc/grpc-go/issues/7980">#7980</a>) (<a href="https://redirect.github.com/grpc/grpc-go/issues/8">#8</a>...</li> <li><a href="https://github.com/grpc/grpc-go/commit/62b9185a6296155e47efd39d60298d8de0a6ed1d"><code>62b9185</code></a> clustetresolver: Copy endpoints.Addresses slice from DNS updates to avoid dat...</li> <li><a href="https://github.com/grpc/grpc-go/commit/724f450f77a09bade8174e5052625977069aaf81"><code>724f450</code></a> examples/features/csm_observability: use helloworld client and server instead...</li> <li><a href="https://github.com/grpc/grpc-go/commit/e8d5feb181766059429259ce3345ddb1f667ded5"><code>e8d5feb</code></a> rbac: add method name to :path in headers (<a href="https://redirect.github.com/grpc/grpc-go/issues/7965">#7965</a>)</li> <li><a href="https://github.com/grpc/grpc-go/commit/e912015fd3f4aabdff6d6cf835e321c19a204afb"><code>e912015</code></a> cleanup: Fix usages of non-constant format strings (<a href="https://redirect.github.com/grpc/grpc-go/issues/7959">#7959</a>)</li> <li><a href="https://github.com/grpc/grpc-go/commit/681334a46115da3a5f9086c47e3d501a19362256"><code>681334a</code></a> cleanup: replace dial with newclient (<a href="https://redirect.github.com/grpc/grpc-go/issues/7943">#7943</a>)</li> <li><a href="https://github.com/grpc/grpc-go/commit/063d352de07403a582ef33f8f5f8149e3b57c47e"><code>063d352</code></a> internal/resolver: introduce a new resolver to handle target URI and proxy ad...</li> <li><a href="https://github.com/grpc/grpc-go/commit/10c7e13311f48bf5237738f4f19b53f62b1146cd"><code>10c7e13</code></a> outlierdetection: Support health listener for ejection updates (<a href="https://redirect.github.com/grpc/grpc-go/issues/7908">#7908</a>)</li> <li>Additional commits viewable in <a href="https://github.com/grpc/grpc-go/compare/v1.69.4...v1.70.0">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=google.golang.org/grpc&package-manager=go_modules&previous-version=1.69.4&new-version=1.70.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
See Commits and Changes for more details.
Created by pull[bot] (v2.0.0-alpha.1)
Can you help keep this open source service alive? 💖 Please sponsor : )