Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 2, 2025

Bumps github.com/zeromicro/go-zero from 1.5.4 to 1.9.1.

Release notes

Sourced from github.com/zeromicro/go-zero's releases.

goctl/v1.9.1

Highlights

  • Code generation ergonomics:
    • Add code generation headers to safe-to-edit files for clearer ownership and customization boundaries.
    • Fix array type generation issues to ensure accurate code output.
  • API developer experience:
    • Add complete test scaffolding for API projects via the --test flag.
  • Swagger/OpenAPI correctness:
    • Correct $ref placement in array definitions when useDefinitions is enabled.
  • Stability and optimizations:
    • Fix SSE handler blocking.
    • Optimize slice lookups and Unquote utility function performance.

Detailed Changes

Code Generation

  • Add code generation headers in safe-to-edit files to clarify which files are intended for user modifications while keeping generated segments intact.
    PR: feat: add code generation headers in safe to edit files by @​kevwan (@​5136)
  • Fix array type generation error to produce correct types in generated code.
    PR: fix array type generation error by @​kesonan (@​5142)

API/CLI

  • Add complete test scaffolding support for API projects using the --test flag, enabling quicker setup of testable services.
    PR: Add complete test scaffolding support with --test flag for API projects by @​Copilot (@​5176)

Swagger/OpenAPI

  • Fix $ref placement in array definitions when useDefinitions is enabled to align with the OpenAPI/Swagger schema expectations.
    PR: fix(goctl/swagger): correct $ref placement in array definitions when useDefinitions is enabled by @​Copilot (@​5199)

Stability

  • Fix SSE handler blocking behavior that could stall event delivery under certain conditions.
    PR: fix: SSE handler blocking by @​wuqinqiang (@​5181)

Performance and Utilities

  • Optimize slice find routines and the Unquote function for better runtime efficiency.
    PR: update: optimize slice find and Unquote func by @​me-cs (@​5108)

Upgrade Notes

  • Swagger regeneration: If you rely on useDefinitions, regenerate your Swagger/OpenAPI specs to pick up the corrected $ref placement.
  • Codegen headers: Newly generated safe-to-edit files will include headers clarifying edit expectations; no action required, but helpful for code review and maintenance.

Acknowledgements

Full Changelog

v1.9.1

Highlights

  • Logging enhancements:

... (truncated)

Commits
  • ce6d0e3 fix(goctl/swagger): correct $ref placement in array definitions when useDefin...
  • fa85c84 chore: code refactoring (#5204)
  • 4408841 feat(handler): add sseSlowThreshold (#5196)
  • 271f105 Add complete test scaffolding support with --test flag for API projects (#5176)
  • cf55a88 fix(rest): change SSE SetWriteDeadline error log to debug level (#5162)
  • c1c786b chore(deps): bump github.com/redis/go-redis/v9 from 9.14.0 to 9.15.0 (#5193)
  • 988fb9d fix: SSE handler blocking (#5181)
  • d212c81 Add GitHub Copilot instructions for go-zero project (#5178)
  • bc43df2 optimize: mapreduce panic stacktrace (#5168)
  • 351b8cb chore(deps): bump github.com/redis/go-redis/v9 from 9.13.0 to 9.14.0 (#5169)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Greptile Overview

Updated On: 2025-10-02 23:06:19 UTC

Summary

This PR updates the `github.com/zeromicro/go-zero` framework dependency from version 1.5.4 to 1.9.1 in the zerolog logging example project. This is a significant version jump that spans multiple minor and patch releases, bringing substantial improvements to the go-zero framework.

The changes are contained within the logx/zerolog example directory, which demonstrates how to integrate the zerolog logging library with the go-zero framework. This example is part of the broader zero-examples repository that showcases various go-zero integrations and use cases.

Key updates include:

  • Go version requirement: Updated from Go 1.18 to Go 1.21, ensuring compatibility with newer language features
  • Core framework: github.com/zeromicro/go-zero updated from v1.5.4 to v1.9.1
  • Transitive dependencies: Multiple indirect dependencies updated, including significant updates to OpenTelemetry libraries (v1.14.0 → v1.24.0), color libraries, and system packages

The v1.9.1 release brings improvements in code generation ergonomics, API developer experience, Swagger/OpenAPI correctness, stability fixes for SSE handlers, and performance optimizations. This update ensures the zerolog example remains current with the latest framework capabilities and demonstrates best practices for users learning about structured logging with go-zero.

This is an automated dependency update initiated by Dependabot as part of routine maintenance to keep the examples repository current and secure.

Important Files Changed

Changed Files
Filename Score Overview
logx/zerolog/go.mod 4/5 Updates go-zero framework from v1.5.4 to v1.9.1, Go version from 1.18 to 1.21, and multiple indirect dependencies
logx/zerolog/go.sum 4/5 Updates checksums for all dependency changes including major OpenTelemetry library updates

Confidence score: 4/5

  • This PR is safe to merge with minimal risk as it's a routine dependency update in an example project
  • Score reflects the substantial version jump across multiple releases, though changes appear to be enhancements rather than breaking changes
  • Pay attention to the Go version requirement change from 1.18 to 1.21 which may affect users of this example

Bumps [github.com/zeromicro/go-zero](https://github.com/zeromicro/go-zero) from 1.5.4 to 1.9.1.
- [Release notes](https://github.com/zeromicro/go-zero/releases)
- [Commits](zeromicro/go-zero@v1.5.4...v1.9.1)

---
updated-dependencies:
- dependency-name: github.com/zeromicro/go-zero
  dependency-version: 1.9.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels Oct 2, 2025
Copy link

@greptile-apps greptile-apps bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

2 files reviewed, no comments

Edit Code Review Agent Settings | Greptile

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file go Pull requests that update go code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants