Skip to content

chore(deps): update flanksource go dependencies - #34

Open
flanksource-ci-runner[bot] wants to merge 1 commit into
mainfrom
renovate-flanksource/flanksource-go-dependencies
Open

chore(deps): update flanksource go dependencies#34
flanksource-ci-runner[bot] wants to merge 1 commit into
mainfrom
renovate-flanksource/flanksource-go-dependencies

Conversation

@flanksource-ci-runner

@flanksource-ci-runner flanksource-ci-runner Bot commented Jul 23, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
github.com/flanksource/clicky/aichat require digest e9ff84ad264e03
github.com/flanksource/commons-db require patch v0.1.28v0.1.29
github.com/flanksource/is-healthy indirect patch v1.0.90v1.0.91

Release Notes

flanksource/commons-db (github.com/flanksource/commons-db)

v0.1.29

Compare Source

What's Changed

Full Changelog: flanksource/commons-db@v0.1.28...v0.1.29

flanksource/is-healthy (github.com/flanksource/is-healthy)

v1.0.91

Compare Source


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@socket-security

socket-security Bot commented Jul 23, 2026

Copy link
Copy Markdown

@flanksource-ci-runner flanksource-ci-runner Bot changed the title chore(deps): update flanksource go dependencies to v1.21.45 chore(deps): update flanksource go dependencies to v1.21.47 Jul 26, 2026
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch 2 times, most recently from ecc7628 to bf69cb9 Compare July 27, 2026 05:44
@flanksource-ci-runner flanksource-ci-runner Bot changed the title chore(deps): update flanksource go dependencies to v1.21.47 chore(deps): update flanksource go dependencies Jul 27, 2026
@flanksource-ci-runner flanksource-ci-runner Bot changed the title chore(deps): update flanksource go dependencies chore(deps): update module github.com/flanksource/commons-db to v0.1.22 Jul 27, 2026
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch from bf69cb9 to 8650072 Compare July 27, 2026 09:40
@flanksource-ci-runner flanksource-ci-runner Bot changed the title chore(deps): update module github.com/flanksource/commons-db to v0.1.22 chore(deps): update flanksource go dependencies Jul 27, 2026
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch 11 times, most recently from 4a5563f to 827064b Compare August 2, 2026 12:43
@github-actions

github-actions Bot commented Aug 2, 2026

Copy link
Copy Markdown

Gavel summary

Source Pass Fail Skip Duration

Totals: 0 passed · 0 failed · 0 skipped · -

View full results

@github-actions

github-actions Bot commented Aug 2, 2026

Copy link
Copy Markdown

Gavel crashed before producing results

Exit code: 1
Error: gavel exited 1 before writing results

Last lines of gavel.log

go: downloading github.com/apparentlymart/go-textseg/v15 v15.0.0 go: downloading github.com/mitchellh/go-wordwrap v1.0.1 go: downloading github.com/mattn/go-colorable v0.1.14 go: downloading github...

Full gavel.log, JSON stub, and HTML stub are in the workflow artifact.

View full results

@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch 8 times, most recently from 0de0fce to 7d253fe Compare August 10, 2026 10:57
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch from 7d253fe to d303b33 Compare August 10, 2026 14:03
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch 3 times, most recently from d9ffb76 to 27b86f5 Compare August 11, 2026 10:41
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch 8 times, most recently from d457b0d to 796bec5 Compare August 24, 2026 07:48
@flanksource-ci-runner
flanksource-ci-runner Bot force-pushed the renovate-flanksource/flanksource-go-dependencies branch from 796bec5 to c6997e9 Compare August 26, 2026 07:44
@flanksource-ci-runner

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 34 additional dependencies were updated

Details:

Package Change
github.com/agext/levenshtein v1.2.1 -> v1.2.3
github.com/exaring/otelpgx v0.9.3 -> v0.11.1
github.com/go-openapi/inflect v0.19.0 -> v0.21.5
github.com/hashicorp/hcl/v2 v2.13.0 -> v2.24.0
github.com/mitchellh/go-wordwrap v0.0.0-20150314170334-ad45545899c7 -> v1.0.1
github.com/zclconf/go-cty v1.14.4 -> v1.18.1
github.com/zclconf/go-cty-yaml v1.1.0 -> v1.2.0
cloud.google.com/go/iam v1.5.3 -> v1.7.0
cloud.google.com/go/longrunning v0.8.0 -> v0.9.0
cloud.google.com/go/storage v1.59.2 -> v1.62.3
github.com/Azure/azure-sdk-for-go/sdk/azcore v1.21.1 -> v1.22.0
github.com/AzureAD/microsoft-authentication-library-for-go v1.6.0 -> v1.7.2
github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric v0.54.0 -> v0.55.0
github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping v0.54.0 -> v0.55.0
github.com/ProtonMail/go-crypto v1.1.6 -> v1.3.0
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.8 -> v1.7.13
github.com/aws/aws-sdk-go-v2/service/eks v1.74.2 -> v1.84.6
github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.13 -> v1.9.18
github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.21 -> v1.19.25
github.com/aws/aws-sdk-go-v2/service/kms v1.41.2 -> v1.50.3
github.com/aws/aws-sdk-go-v2/service/s3 v1.97.3 -> v1.102.2
github.com/eko/gocache/store/go_cache/v4 v4.2.4 -> v4.2.5
github.com/geoffgarside/ber v1.1.0 -> v1.2.0
github.com/go-git/go-git/v5 v5.19.1 -> v5.19.2
github.com/go-openapi/jsonpointer v0.22.4 -> v0.22.5
github.com/go-openapi/swag/jsonname v0.25.4 -> v0.25.5
github.com/kevinburke/ssh_config v1.2.0 -> v1.4.0
github.com/klauspost/compress v1.18.3 -> v1.18.7
github.com/lib/pq v1.10.9 -> v1.12.3
github.com/pierrec/lz4/v4 v4.1.25 -> v4.1.26
github.com/pkg/sftp v1.13.6 -> v1.13.10
github.com/skeema/knownhosts v1.3.1 -> v1.3.2
gocloud.dev v0.43.0 -> v0.46.0
gorm.io/gorm v1.31.1 -> v1.31.2

@socket-security

Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: golang modernc.org/libc is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: ?golang/github.com/flanksource/clicky@v1.21.57golang/github.com/flanksource/commons-db@v0.1.29golang/modernc.org/libc@v1.72.3

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore golang/modernc.org/libc@v1.72.3. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: golang modernc.org/libc is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: ?golang/github.com/flanksource/clicky@v1.21.57golang/github.com/flanksource/commons-db@v0.1.29golang/modernc.org/libc@v1.72.3

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore golang/modernc.org/libc@v1.72.3. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants