This repository was archived by the owner on Nov 27, 2025. It is now read-only.
Bump the go-dependencies group across 1 directory with 11 updates#402
Open
dependabot[bot] wants to merge 1 commit intomainfrom
Open
Bump the go-dependencies group across 1 directory with 11 updates#402dependabot[bot] wants to merge 1 commit intomainfrom
dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Bumps the go-dependencies group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/briandowns/spinner](https://github.com/briandowns/spinner) | `1.23.0` | `1.23.1` | | [github.com/charmbracelet/lipgloss](https://github.com/charmbracelet/lipgloss) | `0.10.0` | `0.12.1` | | [github.com/spf13/cobra](https://github.com/spf13/cobra) | `1.8.0` | `1.8.1` | | [github.com/spf13/viper](https://github.com/spf13/viper) | `1.18.2` | `1.19.0` | | [go.opentelemetry.io/proto/otlp](https://github.com/open-telemetry/opentelemetry-proto-go) | `1.2.0` | `1.3.1` | | [go.pinniped.dev](https://github.com/vmware-tanzu/pinniped) | `0.29.0` | `0.32.0` | | [github.com/fatih/color](https://github.com/fatih/color) | `1.16.0` | `1.17.0` | | [github.com/itchyny/gojq](https://github.com/itchyny/gojq) | `0.12.15` | `0.12.16` | Updates `github.com/briandowns/spinner` from 1.23.0 to 1.23.1 - [Release notes](https://github.com/briandowns/spinner/releases) - [Commits](briandowns/spinner@v1.23.0...v1.23.1) Updates `github.com/charmbracelet/lipgloss` from 0.10.0 to 0.12.1 - [Release notes](https://github.com/charmbracelet/lipgloss/releases) - [Changelog](https://github.com/charmbracelet/lipgloss/blob/master/.goreleaser.yml) - [Commits](charmbracelet/lipgloss@v0.10.0...v0.12.1) Updates `github.com/spf13/cobra` from 1.8.0 to 1.8.1 - [Release notes](https://github.com/spf13/cobra/releases) - [Commits](spf13/cobra@v1.8.0...v1.8.1) Updates `github.com/spf13/viper` from 1.18.2 to 1.19.0 - [Release notes](https://github.com/spf13/viper/releases) - [Commits](spf13/viper@v1.18.2...v1.19.0) Updates `go.opentelemetry.io/proto/otlp` from 1.2.0 to 1.3.1 - [Release notes](https://github.com/open-telemetry/opentelemetry-proto-go/releases) - [Commits](open-telemetry/opentelemetry-proto-go@v1.2.0...v1.3.1) Updates `go.pinniped.dev` from 0.29.0 to 0.32.0 - [Release notes](https://github.com/vmware-tanzu/pinniped/releases) - [Commits](vmware/pinniped@v0.29.0...v0.32.0) Updates `golang.org/x/oauth2` from 0.19.0 to 0.21.0 - [Commits](golang/oauth2@v0.19.0...v0.21.0) Updates `golang.org/x/term` from 0.19.0 to 0.21.0 - [Commits](golang/term@v0.19.0...v0.21.0) Updates `github.com/fatih/color` from 1.16.0 to 1.17.0 - [Release notes](https://github.com/fatih/color/releases) - [Commits](fatih/color@v1.16.0...v1.17.0) Updates `github.com/itchyny/gojq` from 0.12.15 to 0.12.16 - [Release notes](https://github.com/itchyny/gojq/releases) - [Changelog](https://github.com/itchyny/gojq/blob/main/CHANGELOG.md) - [Commits](itchyny/gojq@v0.12.15...v0.12.16) Updates `google.golang.org/protobuf` from 1.34.0 to 1.34.1 --- updated-dependencies: - dependency-name: github.com/briandowns/spinner dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-dependencies - dependency-name: github.com/charmbracelet/lipgloss dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: github.com/spf13/cobra dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-dependencies - dependency-name: github.com/spf13/viper dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: go.opentelemetry.io/proto/otlp dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: go.pinniped.dev dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: golang.org/x/oauth2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: golang.org/x/term dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: github.com/fatih/color dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-dependencies - dependency-name: github.com/itchyny/gojq dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-dependencies - dependency-name: google.golang.org/protobuf dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the go-dependencies group with 8 updates in the / directory:
1.23.01.23.10.10.00.12.11.8.01.8.11.18.21.19.01.2.01.3.10.29.00.32.01.16.01.17.00.12.150.12.16Updates
github.com/briandowns/spinnerfrom 1.23.0 to 1.23.1Release notes
Sourced from github.com/briandowns/spinner's releases.
Commits
8f269ddConsolidate the dependencies for the IsTerminal() API (#156)12e6c29fix: CVE-2022-29526 (#152)Updates
github.com/charmbracelet/lipglossfrom 0.10.0 to 0.12.1Release notes
Sourced from github.com/charmbracelet/lipgloss's releases.
... (truncated)
Commits
670898dchore: retract v0.11.11b3672bchore: upgrade x/ansi to v0.1.46348d59docs: list documentation (#331)2a67670Drop Tree (#330)9564423feat(ci): use goreleaser for releases (#301)e6edbacchore: bump x/ansi to v0.1.35a82e41chore: update CODEOWNERS33b3263fix: Deprecate UnsetBorderTopBackgroundColor in favor of UnsetBorderTopBackgr...bbd02abchore(ci): also build examples (#310)7838b4efeat: deprecate Style.ColorWhitespaceUpdates
github.com/spf13/cobrafrom 1.8.0 to 1.8.1Release notes
Sourced from github.com/spf13/cobra's releases.
... (truncated)
Commits
e94f6d0Address golangci-lint deprecation warnings, enable some more linters (#2152)8003b74Remove fully inactivated linters (#2148)5c2c1d6Consistent annotation names (#2140)5a1aceabuild(deps): bump github.com/cpuguy83/go-md2man/v2 from 2.0.3 to 2.0.4 (#2127)0fc86c2docs: update user guide (#2128)6b5f577More linting (#2099)bd914e5fix: remove deprecated io/ioutils package (#2120)1f80fa2chore: remove repetitive words (#2122)c69ae4cci: test golang 1.22 (#2113)a30cee5build(deps): bump actions/cache from 3 to 4 (#2102)Updates
github.com/spf13/viperfrom 1.18.2 to 1.19.0Release notes
Sourced from github.com/spf13/viper's releases.
... (truncated)
Commits
b9733f0build(deps): bump actions/checkout from 4.1.4 to 4.1.66ecc5c8build(deps): bump cachix/install-nix-action from 26 to 27248c6fdbuild(deps): bump github/codeql-action from 3.25.4 to 3.25.7abea773Update references to bketelsen/cryptf17acb4build(deps): bump golangci/golangci-lint-action from 4.0.0 to 6.0.18e285a5build(deps): bump github/codeql-action from 3.25.2 to 3.25.44017620build(deps): bump actions/setup-go from 5.0.0 to 5.0.1b67e814build(deps): bump github.com/pelletier/go-toml/v2 from 2.2.1 to 2.2.24a182c7build(deps): bump actions/dependency-review-action from 4.2.5 to 4.3.245a0e12build(deps): bump mheap/github-action-required-labelsUpdates
go.opentelemetry.io/proto/otlpfrom 1.2.0 to 1.3.1Release notes
Sourced from go.opentelemetry.io/proto/otlp's releases.
Commits
a300ccaRelease v1.3.1 (#170)fef4f4cExplain stability guarantees for experimental packages (#177)4ef95d5Bump github.com/grpc-ecosystem/grpc-gateway/v2 in /otlp (#175)7586915Bump google.golang.org/grpc from 1.63.2 to 1.64.0 in /otlp (#174)7dff8c9Bump golang.org/x/net from 0.21.0 to 0.23.0 in /otlp (#173)f1398eaBump google.golang.org/protobuf from 1.34.0 to 1.34.1 in /otlp (#172)549cd09Bump google.golang.org/protobuf from 1.34.0 to 1.34.1 in /slim/otlp (#171)cfa3298Add Versioning Policy to README (#167)af7b8fbBump google.golang.org/grpc from 1.63.0 to 1.63.2 in /otlp (#165)4055d99Bump google.golang.org/protobuf from 1.33.0 to 1.34.0 in /slim/otlp (#169)Updates
go.pinniped.devfrom 0.29.0 to 0.32.0Release notes
Sourced from go.pinniped.dev's releases.
... (truncated)
Commits
84308f3Merge pull request #1992 from vmware-tanzu/update_flaky_test88bcdbarewrite flaky category testb50d138Merge pull request #1991 from vmware-tanzu/update_codegen_kube_versionsb345727bump codegen kube versionsfc6de7eMerge pull request #1990 from vmware-tanzu/pinny/bump-deps6b87bc3Bump dependencies238df12Merge pull request #1952 from vmware-tanzu/jtc/issue-1605-limit-tls-ciphers-f...f7f32f2some mild refactoring of ptls common.go (mostly renames)1f8ac0fAlso probe aggregated API ports in new ciphers test75ff3effix lintUpdates
golang.org/x/oauth2from 0.19.0 to 0.21.0Commits
5fd4241google: update compute token refresh84cb9f7oauth2: fix typo in comment4b7f0bdgo.mod: update cloud.google.com/go/compute/metadata dependencye11eea8microsoft: added DeviceAuthURL to AzureADEndpointUpdates
golang.org/x/termfrom 0.19.0 to 0.21.0Commits
5f0bb72go.mod: update golang.org/x dependencies46c790fgo.mod: update golang.org/x dependenciesUpdates
github.com/fatih/colorfrom 1.16.0 to 1.17.0Release notes
Sourced from github.com/fatih/color's releases.
Commits
b6598b1Merge pull request #228 from klauspost/fix-println-issue-21800b1811Fix multi-parameter println spacing04994a8Merge pull request #224 from fatih/dependabot/go_modules/golang.org/x/sys-0.18.07526cadMerge branch 'main' into dependabot/go_modules/golang.org/x/sys-0.18.08d058caMerge pull request #222 from fatih/ci-updates2ac809fBump golang.org/x/sys from 0.17.0 to 0.18.051a7bbfci: update Go and Staticcheck versions799c49cMerge pull request #217 from fatih/dependabot/github_actions/actions/setup-go-5f8e0ec9Merge branch 'main' into dependabot/github_actions/actions/setup-go-5298abd8Merge pull request #221 from fatih/dependabot/go_modules/golang.org/x/sys-0.17.0Updates
github.com/itchyny/gojqfrom 0.12.15 to 0.12.16Release notes
Sourced from github.com/itchyny/gojq's releases.
Changelog
Sourced from github.com/itchyny/gojq's changelog.
Commits
0607aa5bump up version to 0.12.160709341update CHANGELOG.md for v0.12.161324e6eupdate dependencies01355e9improve parser to allow binary operators as object valuesa41a5f8fix debug/1 function to be available only when debug/0 is definedf694c1bfix a benchmark test BenchmarkCompilef2559f6remove private compare function0cd3a66improve compiler to abort with error if query is missing422cc9drefactor stringify function declarations of query1130c4erefactor program body, rename rules, remove empty actions in parserUpdates
google.golang.org/protobuffrom 1.34.0 to 1.34.1Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions