Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the tools group across 1 directory with 5 updates #883

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 16, 2024

Bumps the tools group with 4 updates in the /tools directory: github.com/go-task/task/v3, github.com/golangci/golangci-lint, github.com/quasilyte/go-consistent and golang.org/x/vuln.

Updates github.com/go-task/task/v3 from 3.36.0 to 3.37.2

Release notes

Sourced from github.com/go-task/task/v3's releases.

v3.37.2

  • Fixed a bug where an empty Taskfile would cause a panic (#1648 by @​pd93).
  • Fixed a bug where includes Taskfile variable were not being merged correctly (#1643, #1649 by @​pd93).

v3.37.1

v3.37.0

Changelog

Sourced from github.com/go-task/task/v3's changelog.

v3.37.2 - 2024-05-12

  • Fixed a bug where an empty Taskfile would cause a panic (#1648 by @​pd93).
  • Fixed a bug where includes Taskfile variable were not being merged correctly (#1643, #1649 by @​pd93).

v3.37.1 - 2024-05-09

v3.37.0 - 2024-05-08

Commits

Updates github.com/golangci/golangci-lint from 1.57.2 to 1.58.1

Release notes

Sourced from github.com/golangci/golangci-lint's releases.

v1.58.1

golangci-lint is a free and open-source project built by volunteers.

If you value it, consider supporting us, the maintainers and linter authors.

We appreciate it! ❤️

For key updates, see the changelog.

Changelog

  • dc281531 build(deps): bump github.com/4meepo/tagalign from 1.3.3 to 1.3.4 (#4705)
  • 9116634a build(deps): bump github.com/ghostiam/protogetter from 0.3.5 to 0.3.6 (#4707)
  • d64e1de7 build(deps): bump golang.org/x/tools from 0.20.0 to 0.21.0 (#4706)
  • ee97dbf7 build(deps): bump golangci/golangci-lint-action from 5.1.0 to 5.3.0 (#4701)
  • 4532eb98 fix: gochecknoinits shadow name (#4698)
  • 6767d7c2 fix: remove GitHub Action problem matchers (#4700)

v1.58.0

golangci-lint is a free and open-source project built by volunteers.

If you value it, consider supporting us, the maintainers and linter authors.

We appreciate it! ❤️

For key updates, see the changelog.

  • 7e2229aa Add pre-commit hook to run config verify (#4602)
  • b2df2f48 Add new linter canonicalheader (#4672)
  • 95fc378f build(deps): bump github.com/Antonboom/errname from 0.1.12 to 0.1.13 (#4669)
  • 4c3cc53f build(deps): bump github.com/Antonboom/nilnil from 0.1.7 to 0.1.8 (#4668)
  • 2004f31e build(deps): bump github.com/butuzov/mirror from 1.1.0 to 1.2.0 (#4610)
  • 4e56cba3 build(deps): bump github.com/ckaznocha/intrange from 0.1.1 to 0.1.2 (#4601)
  • ed205573 build(deps): bump github.com/daixiang0/gci from 0.12.3 to 0.13.3 (#4522)
  • dc512093 build(deps): bump github.com/daixiang0/gci from 0.13.3 to 0.13.4 (#4611)
  • 8fb9856e build(deps): bump github.com/firefart/nonamedreturns from 1.0.4 to 1.0.5 (#4666)
  • 8f59629b build(deps): bump github.com/go-critic/go-critic from 0.11.2 to 0.11.3 (#4619)
  • 92cb3118 build(deps): bump github.com/golangci/misspell from 0.4.1 to 0.5.1 (#4665)
  • 3f374122 build(deps): bump github.com/golangci/revgrep from 0.5.2 to 0.5.3 (#4633)
  • 1611bca2 build(deps): bump github.com/jjti/go-spancheck from 0.5.3 to 0.6.0 (#4670)
  • e9536898 build(deps): bump github.com/jjti/go-spancheck from 0.6.0 to 0.6.1 (#4679)
  • 3f63db13 build(deps): bump github.com/karamaru-alpha/copyloopvar from 1.0.10 to 1.1.0 (#4632)
  • e4dae2a2 build(deps): bump github.com/lasiar/canonicalheader from 1.0.5 to 1.0.6 (#4682)
  • 28f7c396 build(deps): bump github.com/leonklingele/grouper from 1.1.1 to 1.1.2 (#4613)
  • 8e8ad836 build(deps): bump github.com/pelletier/go-toml/v2 from 2.2.0 to 2.2.1 (#4643)
  • 813af3ef build(deps): bump github.com/pelletier/go-toml/v2 from 2.2.1 to 2.2.2 (#4688)
  • 24bcca2e build(deps): bump github.com/polyfloyd/go-errorlint from 1.4.8 to 1.5.1 (#4690)
  • e12d0708 build(deps): bump github.com/ryancurrah/gomodguard from 1.3.1 to 1.3.2 (#4614)

... (truncated)

Changelog

Sourced from github.com/golangci/golangci-lint's changelog.

v1.58.1

  1. Updated linters
    • tagalign: from 1.3.3 to 1.3.4
    • protogetter: from 0.3.5 to 0.3.6
    • gochecknoinits: fix analyzer name
  2. Fixes
    • Restores previous gihub-actions output format (removes GitHub Action problem matchers)

v1.58.0

  1. New linters
  2. Updated linters
    • copyloopvar: from 1.0.10 to 1.1.0 (ignore-alias is replaced by check-alias with the opposite behavior)
    • decorder: from 0.4.1 to 0.4.2
    • errname: from 0.1.12 to 0.1.13
    • errorlint: from 1.4.8 to 1.5.1 (new options allowed-errors and allowed-errors-wildcard)
    • execinquery: deprecate linter ⚠️
    • gci: from 0.12.3 to 0.13.4 (new section localModule)
    • gocritic: from 0.11.2 to 0.11.3
    • spancheck: from 0.5.3 to 0.6.1
    • goerr113 is replaced by err113 ⚠️
    • gomnd is replaced by mnd ⚠️
    • gomodguard: from 1.3.1 to 1.3.2
    • grouper: from 1.1.1 to 1.1.2
    • intrange: from 0.1.1 to 0.1.2
    • mirror: from 1.1.0 to 1.2.0
    • misspell: from 0.4.1 to 0.5.1
    • musttag: from 0.9.0 to 0.12.1
    • nilnil: from 0.1.7 to 0.1.8
    • nonamedreturns: from 1.0.4 to 1.0.5
    • promlinter: from 0.2.0 to 0.3.0
    • sloglint: from 0.5.0 to 0.6.0
    • unparam: bump to HEAD (063aff900ca150b80930c8de76f11d7e6488222f)
    • whitespace: from 0.1.0 to 0.1.1
  3. Enhancements
    • Speed up "fast" linters when only "fast" linters are run: between 40% and 80% faster at first run (i.e. without cache)
  4. Fixes
    • Use version with module plugins
    • Skip go.mod report inside autogenerated processor
    • Keep only typecheck issues when needed
    • Don't hide typecheck errors inside diff processor
  5. Misc.

... (truncated)

Commits
  • dc28153 build(deps): bump github.com/4meepo/tagalign from 1.3.3 to 1.3.4 (#4705)
  • 9116634 build(deps): bump github.com/ghostiam/protogetter from 0.3.5 to 0.3.6 (#4707)
  • d64e1de build(deps): bump golang.org/x/tools from 0.20.0 to 0.21.0 (#4706)
  • 6767d7c fix: remove GitHub Action problem matchers (#4700)
  • ee97dbf build(deps): bump golangci/golangci-lint-action from 5.1.0 to 5.3.0 (#4701)
  • 9209e3e build(deps): bump golang.org/x/oauth2 from 0.19.0 to 0.20.0 in /scripts/gen_g...
  • 4532eb9 fix: gochecknoinits shadow name (#4698)
  • 4bf574a chore: keep v1.57 JSON schema
  • 30c05e9 docs: update documentation (#4694)
  • 620a72c docs: update documentation assets (#4692)
  • Additional commits viewable in compare view

Updates github.com/quasilyte/go-consistent from 0.6.0 to 0.6.1

Release notes

Sourced from github.com/quasilyte/go-consistent's releases.

v0.6.1

What's Changed

New Contributors

Full Changelog: quasilyte/go-consistent@v0.6.0...v0.6.1

Commits

Updates golang.org/x/tools from 0.20.0 to 0.21.0

Commits
  • cc29c91 go.mod: update golang.org/x dependencies
  • 397fef9 gopls/internal/protocol: add links to LSP spec
  • e2a352c internal/refactor/inline: extensible API
  • c16c816 go/analysis/passes/stdversion: test *.go < go.mod version
  • 629a7be go/analysis/analysistest: stricter errors and GOWORK setting
  • 4db1697 go/packages/packagestest: fold modules_111.go into modules.go
  • ccdef3c gopls/internal/golang: fix nil panic in InlayHint
  • 74c9cfe go/analysis: add Pass.ReadFile
  • 5ef4fc9 gopls/internal/golang/completion: fix the isEmptyInterface predicate
  • 77f691b internal/gcimporter: use Alias.Rhs, not unsafe hack
  • Additional commits viewable in compare view

Updates golang.org/x/vuln from 1.0.5-0.20240405165317-7bf0c05f1467 to 1.1.0

Release notes

Sourced from golang.org/x/vuln's releases.

v1.1.0

This release brings minor improvements to govulncheck inner workings and a few bug fixes (#66139, #65590).

Integration

Govulncheck JSON now also contains scan mode as part of the Config message.

Further, the Position in trace frames now contains only paths relative to their enclosing module. This could potentially break some existing clients, hence the bump of the minor version.

Note that this change is made to allow for easier preservation of privacy by the clients as now the file positions do not contain information about the local machine. This is also a portable solution. Clients can reconstruct full paths for their local machine by joining the Position relative paths with paths of the enclosing modules on the local machine.

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the tools group with 4 updates in the /tools directory: [github.com/go-task/task/v3](https://github.com/go-task/task), [github.com/golangci/golangci-lint](https://github.com/golangci/golangci-lint), [github.com/quasilyte/go-consistent](https://github.com/quasilyte/go-consistent) and [golang.org/x/vuln](https://github.com/golang/vuln).


Updates `github.com/go-task/task/v3` from 3.36.0 to 3.37.2
- [Release notes](https://github.com/go-task/task/releases)
- [Changelog](https://github.com/go-task/task/blob/main/CHANGELOG.md)
- [Commits](go-task/task@v3.36.0...v3.37.2)

Updates `github.com/golangci/golangci-lint` from 1.57.2 to 1.58.1
- [Release notes](https://github.com/golangci/golangci-lint/releases)
- [Changelog](https://github.com/golangci/golangci-lint/blob/master/CHANGELOG.md)
- [Commits](golangci/golangci-lint@v1.57.2...v1.58.1)

Updates `github.com/quasilyte/go-consistent` from 0.6.0 to 0.6.1
- [Release notes](https://github.com/quasilyte/go-consistent/releases)
- [Commits](quasilyte/go-consistent@v0.6.0...v0.6.1)

Updates `golang.org/x/tools` from 0.20.0 to 0.21.0
- [Release notes](https://github.com/golang/tools/releases)
- [Commits](golang/tools@v0.20.0...v0.21.0)

Updates `golang.org/x/vuln` from 1.0.5-0.20240405165317-7bf0c05f1467 to 1.1.0
- [Release notes](https://github.com/golang/vuln/releases)
- [Commits](https://github.com/golang/vuln/commits/v1.1.0)

---
updated-dependencies:
- dependency-name: github.com/go-task/task/v3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tools
- dependency-name: github.com/golangci/golangci-lint
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tools
- dependency-name: github.com/quasilyte/go-consistent
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: tools
- dependency-name: golang.org/x/tools
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tools
- dependency-name: golang.org/x/vuln
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tools
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot requested a review from a team as a code owner May 16, 2024 01:45
@dependabot dependabot bot requested review from AlekSi and b1ron May 16, 2024 01:45
@dependabot dependabot bot added deps PRs that update dependencies not ready Issues that are not ready to be worked on; PRs that should skip CI labels May 16, 2024
Copy link
Contributor Author

dependabot bot commented on behalf of github May 23, 2024

Superseded by #888.

@dependabot dependabot bot closed this May 23, 2024
@dependabot dependabot bot deleted the dependabot/go_modules/tools/tools-bc2b7c740b branch May 23, 2024 01:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
deps PRs that update dependencies not ready Issues that are not ready to be worked on; PRs that should skip CI
Projects
Status: In progress
Development

Successfully merging this pull request may close these issues.

None yet

1 participant