forked from dependabot/dependabot-core
    
        
        - 
                Notifications
    You must be signed in to change notification settings 
- Fork 1
Bump the prod-dependencies group across 1 directory with 22 updates #23
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
          
     Merged
      
        
      
            thegoodeth
  merged 1 commit into
  main
from
dependabot/bundler/updater/prod-dependencies-001190ea0a
  
      
      
   
  Jul 30, 2025 
      
    
                
     Merged
            
            Bump the prod-dependencies group across 1 directory with 22 updates #23
                    thegoodeth
  merged 1 commit into
  main
from
dependabot/bundler/updater/prod-dependencies-001190ea0a
  
      
      
   
  Jul 30, 2025 
              
            Conversation
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
    Bumps the prod-dependencies group with 20 updates in the /updater directory: | Package | From | To | | --- | --- | --- | | [http](https://github.com/httprb/http) | `5.1.1` | `5.3.1` | | [opentelemetry-exporter-otlp-metrics](https://github.com/open-telemetry/opentelemetry-ruby) | `0.4.0` | `0.5.0` | | [opentelemetry-instrumentation-faraday](https://github.com/open-telemetry/opentelemetry-ruby-contrib) | `0.26.0` | `0.27.0` | | [opentelemetry-instrumentation-http](https://github.com/open-telemetry/opentelemetry-ruby-contrib) | `0.24.0` | `0.25.1` | | [opentelemetry-metrics-sdk](https://github.com/open-telemetry/opentelemetry-ruby) | `0.6.0` | `0.7.3` | | [sentry-opentelemetry](https://github.com/getsentry/sentry-ruby) | `5.23.0` | `5.26.0` | | [zeitwerk](https://github.com/fxn/zeitwerk) | `2.7.1` | `2.7.3` | | [aws-sdk-codecommit](https://github.com/aws/aws-sdk-ruby) | `1.63.0` | `1.87.0` | | [aws-sdk-ecr](https://github.com/aws/aws-sdk-ruby) | `1.68.0` | `1.106.0` | | [excon](https://github.com/excon/excon) | `1.2.5` | `1.2.8` | | [faraday](https://github.com/lostisland/faraday) | `2.7.11` | `2.13.4` | | [faraday-retry](https://github.com/lostisland/faraday-retry) | `2.2.0` | `2.3.2` | | [ostruct](https://github.com/ruby/ostruct) | `0.6.1` | `0.6.3` | | [parser](https://github.com/whitequark/parser) | `3.3.7.1` | `3.3.9.0` | | [psych](https://github.com/ruby/psych) | `5.1.2` | `5.2.6` | | [sorbet-runtime](https://github.com/sorbet/sorbet) | `0.5.11952` | `0.5.12358` | | [stackprof](https://github.com/tmm1/stackprof) | `0.2.25` | `0.2.27` | | [parallel](https://github.com/grosser/parallel) | `1.26.3` | `1.27.0` | | [parseconfig](https://github.com/datafolklabs/ruby-parseconfig) | `1.0.8` | `1.1.2` | | [rubyzip](https://github.com/rubyzip/rubyzip) | `2.3.2` | `2.4.1` | Updates `http` from 5.1.1 to 5.3.1 - [Changelog](https://github.com/httprb/http/blob/main/CHANGELOG.md) - [Commits](httprb/http@v5.1.1...v5.3.1) Updates `opentelemetry-exporter-otlp-metrics` from 0.4.0 to 0.5.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-ruby/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-ruby/blob/main/exporter/otlp-metrics/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-ruby@opentelemetry-exporter-otlp-metrics/v0.4.0...opentelemetry-exporter-otlp-metrics/v0.5.0) Updates `opentelemetry-instrumentation-faraday` from 0.26.0 to 0.27.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-ruby-contrib/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-ruby-contrib/blob/main/instrumentation/faraday/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-ruby-contrib@opentelemetry-instrumentation-faraday/v0.26.0...opentelemetry-instrumentation-faraday/v0.27.0) Updates `opentelemetry-instrumentation-http` from 0.24.0 to 0.25.1 - [Release notes](https://github.com/open-telemetry/opentelemetry-ruby-contrib/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-ruby-contrib/blob/main/instrumentation/http/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-ruby-contrib@opentelemetry-instrumentation-http/v0.24.0...opentelemetry-instrumentation-http/v0.25.1) Updates `opentelemetry-metrics-sdk` from 0.6.0 to 0.7.3 - [Release notes](https://github.com/open-telemetry/opentelemetry-ruby/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-ruby/blob/main/metrics_sdk/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-ruby@opentelemetry-metrics-sdk/v0.6.0...opentelemetry-metrics-sdk/v0.7.3) Updates `sentry-opentelemetry` from 5.23.0 to 5.26.0 - [Release notes](https://github.com/getsentry/sentry-ruby/releases) - [Changelog](https://github.com/getsentry/sentry-ruby/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-ruby@5.23.0...5.26.0) Updates `sentry-ruby` from 5.23.0 to 5.26.0 - [Release notes](https://github.com/getsentry/sentry-ruby/releases) - [Changelog](https://github.com/getsentry/sentry-ruby/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-ruby@5.23.0...5.26.0) Updates `zeitwerk` from 2.7.1 to 2.7.3 - [Changelog](https://github.com/fxn/zeitwerk/blob/main/CHANGELOG.md) - [Commits](fxn/zeitwerk@v2.7.1...v2.7.3) Updates `aws-sdk-codecommit` from 1.63.0 to 1.87.0 - [Release notes](https://github.com/aws/aws-sdk-ruby/releases) - [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-codecommit/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-ruby/commits) Updates `aws-sdk-ecr` from 1.68.0 to 1.106.0 - [Release notes](https://github.com/aws/aws-sdk-ruby/releases) - [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-ecr/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-ruby/commits) Updates `excon` from 1.2.5 to 1.2.8 - [Changelog](https://github.com/excon/excon/blob/master/changelog.txt) - [Commits](excon/excon@v1.2.5...v1.2.8) Updates `faraday` from 2.7.11 to 2.13.4 - [Release notes](https://github.com/lostisland/faraday/releases) - [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday@v2.7.11...v2.13.4) Updates `faraday-retry` from 2.2.0 to 2.3.2 - [Release notes](https://github.com/lostisland/faraday-retry/releases) - [Changelog](https://github.com/lostisland/faraday-retry/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday-retry@v2.2.0...v2.3.2) Updates `json` from 2.9.1 to 2.11.3 - [Release notes](https://github.com/ruby/json/releases) - [Changelog](https://github.com/ruby/json/blob/master/CHANGES.md) - [Commits](ruby/json@v2.9.1...v2.11.3) Updates `ostruct` from 0.6.1 to 0.6.3 - [Release notes](https://github.com/ruby/ostruct/releases) - [Commits](ruby/ostruct@v0.6.1...v0.6.3) Updates `parser` from 3.3.7.1 to 3.3.9.0 - [Changelog](https://github.com/whitequark/parser/blob/master/CHANGELOG.md) - [Commits](whitequark/parser@v3.3.7.1...v3.3.9.0) Updates `psych` from 5.1.2 to 5.2.6 - [Release notes](https://github.com/ruby/psych/releases) - [Commits](ruby/psych@v5.1.2...v5.2.6) Updates `sorbet-runtime` from 0.5.11952 to 0.5.12358 - [Release notes](https://github.com/sorbet/sorbet/releases) - [Commits](https://github.com/sorbet/sorbet/commits) Updates `stackprof` from 0.2.25 to 0.2.27 - [Changelog](https://github.com/tmm1/stackprof/blob/master/CHANGELOG.md) - [Commits](tmm1/stackprof@v0.2.25...v0.2.27) Updates `parallel` from 1.26.3 to 1.27.0 - [Commits](grosser/parallel@v1.26.3...v1.27.0) Updates `parseconfig` from 1.0.8 to 1.1.2 - [Changelog](https://github.com/datafolklabs/ruby-parseconfig/blob/master/Changelog) - [Commits](https://github.com/datafolklabs/ruby-parseconfig/commits) Updates `rubyzip` from 2.3.2 to 2.4.1 - [Release notes](https://github.com/rubyzip/rubyzip/releases) - [Changelog](https://github.com/rubyzip/rubyzip/blob/master/Changelog.md) - [Commits](rubyzip/rubyzip@v2.3.2...v2.4.1) --- updated-dependencies: - dependency-name: http dependency-version: 5.3.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: opentelemetry-exporter-otlp-metrics dependency-version: 0.5.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: opentelemetry-instrumentation-faraday dependency-version: 0.27.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: opentelemetry-instrumentation-http dependency-version: 0.25.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: opentelemetry-metrics-sdk dependency-version: 0.7.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: sentry-opentelemetry dependency-version: 5.26.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: sentry-ruby dependency-version: 5.26.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: zeitwerk dependency-version: 2.7.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: aws-sdk-codecommit dependency-version: 1.87.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: aws-sdk-ecr dependency-version: 1.106.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: excon dependency-version: 1.2.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: faraday dependency-version: 2.13.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: faraday-retry dependency-version: 2.3.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: json dependency-version: 2.11.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: ostruct dependency-version: 0.6.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: parser dependency-version: 3.3.9.0 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: psych dependency-version: 5.2.6 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: sorbet-runtime dependency-version: 0.5.12358 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: stackprof dependency-version: 0.2.27 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: prod-dependencies - dependency-name: parallel dependency-version: 1.27.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: parseconfig dependency-version: 1.1.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies - dependency-name: rubyzip dependency-version: 2.4.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-dependencies ... Signed-off-by: dependabot[bot] <[email protected]>
  
    Sign up for free
    to join this conversation on GitHub.
    Already have an account?
    Sign in to comment
  
      Labels
  Add this suggestion to a batch that can be applied as a single commit.
  This suggestion is invalid because no changes were made to the code.
  Suggestions cannot be applied while the pull request is closed.
  Suggestions cannot be applied while viewing a subset of changes.
  Only one suggestion per line can be applied in a batch.
  Add this suggestion to a batch that can be applied as a single commit.
  Applying suggestions on deleted lines is not supported.
  You must change the existing code in this line in order to create a valid suggestion.
  Outdated suggestions cannot be applied.
  This suggestion has been applied or marked resolved.
  Suggestions cannot be applied from pending reviews.
  Suggestions cannot be applied on multi-line comments.
  Suggestions cannot be applied while the pull request is queued to merge.
  Suggestion cannot be applied right now. Please check back later.
  
    
  
    
Bumps the prod-dependencies group with 20 updates in the /updater directory:
5.1.15.3.10.4.00.5.00.26.00.27.00.24.00.25.10.6.00.7.35.23.05.26.02.7.12.7.31.63.01.87.01.68.01.106.01.2.51.2.82.7.112.13.42.2.02.3.20.6.10.6.33.3.7.13.3.9.05.1.25.2.60.5.119520.5.123580.2.250.2.271.26.31.27.01.0.81.1.22.3.22.4.1Updates
httpfrom 5.1.1 to 5.3.1Commits
36a8d72Release v5.3.12900e33Release v5.3.0cd32721backport: Use nativellhttpgem on MRI (#800)31baa31backport: feat: add raise_error feature (#792)f258288backport: Cache header normalization to reduce object allocation (#789)7da3135backport: Add .retriable feature to Http - Rebased (#775)1c16341backport: Add more granularity toConnectionErrorthrough more specific err...790a1d2backport: Drop depenency on base64 (#778)bb754c7Release v5.2.0de1e319ci: Cleanup and update workflowUpdates
opentelemetry-exporter-otlp-metricsfrom 0.4.0 to 0.5.0Release notes
Sourced from opentelemetry-exporter-otlp-metrics's releases.
Changelog
Sourced from opentelemetry-exporter-otlp-metrics's changelog.
Commits
3fdabbcrelease: Release opentelemetry-exporter-otlp-metrics 0.5.0 (was 0.4.1) (#1853)9c80c40feat: add exponential histogram in otlp metrics exporter (#1851)86e443achore: add Rubocop additional linter (#1836)b2cac91release: Release opentelemetry-exporter-otlp-metrics 0.4.1 (was 0.4.0) (#1835)e590548fix: update out-of-date google-protobuf-any (#1816)Updates
opentelemetry-instrumentation-faradayfrom 0.26.0 to 0.27.0Release notes
Sourced from opentelemetry-instrumentation-faraday's releases.
Changelog
Sourced from opentelemetry-instrumentation-faraday's changelog.
Commits
ca00ab0release: Release 4 gems (#1554)2c11325feat: suppress internal spans with Faraday instrumentation (#1506)645d1cachore: bump DavidAnson/markdownlint-cli2-action from 19 to 20 (#1539)dc076e7chore: update rubocop requirement from ~> 1.73.2 to ~> 1.75.1 (#1461)06a295bchore: bump rubocop and rubocop-performance gem versions (#1445)5cf6114chore: Enable Gemfile Dev Deps (#1426)a9592d7chore: update rubocop to 1.72.2 (#1429)7c04e40refactor: Define a single ruby required version (#1388)32e8fcbtest: Relax Webmock Constraints (#1387)1fc6949ci: Add Ruby 3.4 build (#1347)Updates
opentelemetry-instrumentation-httpfrom 0.24.0 to 0.25.1Release notes
Sourced from opentelemetry-instrumentation-http's releases.
Changelog
Sourced from opentelemetry-instrumentation-http's changelog.
Commits
28c61berelease: Release opentelemetry-instrumentation-http 0.25.1 (was 0.25.0) (#1579)3a237a5fix: update span name when semconv stability is enabled (#1570)3981a52chore: update rubocop requirement from ~> 1.75.1 to ~> 1.76.2 (#1558)62e4b1crelease: Release 2 gems (#1566)7837db8feat: http semconv opt in files (#1547)645d1cachore: bump DavidAnson/markdownlint-cli2-action from 19 to 20 (#1539)dc076e7chore: update rubocop requirement from ~> 1.73.2 to ~> 1.75.1 (#1461)06a295bchore: bump rubocop and rubocop-performance gem versions (#1445)5cf6114chore: Enable Gemfile Dev Deps (#1426)a9592d7chore: update rubocop to 1.72.2 (#1429)Updates
opentelemetry-metrics-sdkfrom 0.6.0 to 0.7.3Release notes
Sourced from opentelemetry-metrics-sdk's releases.
Changelog
Sourced from opentelemetry-metrics-sdk's changelog.
Commits
d205746release: Release opentelemetry-metrics-sdk 0.7.3 (was 0.7.2) (#1863)7098818fix: Stop exporting metrics with empty data points (#1859)0ec5eb1release: Release opentelemetry-metrics-sdk 0.7.2 (was 0.7.1) (#1861)0bba478fix: enfore the aggregation_temporality as sym for exponential_histogram (#1858)c345007chore: ConfiguratorPatch updates (#1845)4621c02release: Release opentelemetry-metrics-sdk 0.7.1 (was 0.7.0) (#1849)bd01ee9fix: Recover periodic metric readers after forking (#1823)ace2c9frelease: Release opentelemetry-metrics-sdk 0.7.0 (was 0.6.1) (#1843)4069031feat: add basic exponential histogram (#1736)86e443achore: add Rubocop additional linter (#1836)Updates
sentry-opentelemetryfrom 5.23.0 to 5.26.0Release notes
Sourced from sentry-opentelemetry's releases.
... (truncated)
Changelog
Sourced from sentry-opentelemetry's changelog.
... (truncated)
Commits
218fda2release: 5.26.0975c2b1release: 5.25.0cad4b3frelease: 5.24.063b5162Replace logger with sdk_logger (#2621)Updates
sentry-rubyfrom 5.23.0 to 5.26.0Changelog
Sourced from sentry-ruby's changelog.
... (truncated)
Commits
218fda2release: 5.26.01e377d6Tests for Rails.logger when :logger patch is enabled (#2659)eeaeb2aLogger support (#2657)32ca39eSkip creating LogEventBuffer if logging is not enabled (#2652)975c2b1release: 5.25.06b41b9cAdd user attributes to logs (#2647)e126f72Optimize LogEvent to reduce memory consumption (#2643)35c5214[devcontainer] switch to /workspace/sentry (#2645)55ccf6bdocs: add warning about unmaintained example and sample code (#2646)213558f[sentry-ruby] fix and improve spec suite setup (#2640)Updates
zeitwerkfrom 2.7.1 to 2.7.3Changelog
Sourced from zeitwerk's changelog.
Commits
77c971cReady for 2.7.397cd2a3cpath_expected_at: pass correct dir to the inflector67b1396User Symbol#name here72b9aabRefactor thread-safety test52d90ddSimplify Zeitwerk::Cref#path68eb4aeParameterize Zeitwerk::Cref::Mapefaa214New signature convention for exceptions4cf0ddfRevises duck-typing signatures2120324Use #: for RBS annotationsa1d4f54Updates some signature annotationsUpdates
aws-sdk-codecommitfrom 1.63.0 to 1.87.0Changelog
Sourced from aws-sdk-codecommit's changelog.
... (truncated)
Commits
Updates
aws-sdk-ecrfrom 1.68.0 to 1.106.0Changelog
Sourced from aws-sdk-ecr's changelog.
... (truncated)
Commits
Updates
exconfrom 1.2.5 to 1.2.8Changelog
Sourced from excon's changelog.
Commits
d630f81v1.2.8958afb7update bundled certsceaa131use connect instead of request and google.com instead of foo.com, hopefully a...0bf23e3just connect, instead of request when testing dns timeout (hopefully helps wi...4b5d652v1.2.7532e533unfreeze middlewares2f5654bunfreeze connection/request keysc11818funfreeze defaults (#885)8970bb2v1.2.6cbfac10add updated cert bundleUpdates
faradayfrom 2.7.11 to 2.13.4Release notes
Sourced from faraday's releases.
... (truncated)
Commits
d099fafVersion bump to 2.13.4cf32578Improve error handling logic and add missing test coverage (#1633)e76e60dVersion bump to 2.13.3674fc15Fix type assumption inFaraday::Error(#1630)da86ebaVersion bump to 2.13.2ad8fe1eInclude HTTP method and URL in Faraday::Error messages for improved exception...1ddd281CONTRIBUTING: update socials links to Mastodon9763698Add migrating from rest-client docs section. (#1625)64e8a2bLint rack_builder.rb: avoid naming a method (#1626)bbaa093Only load what is required fromcgi(#1623)Updates
faraday-retryfrom 2.2.0 to 2.3.2Release notes
Sourced from faraday-retry's releases.
Changelog
Sourced from faraday-retry's changelog.
Commits
9950680v2.3.204bd4baCI: Ensure Ruby 2.7 can run rubocop1a51fe0Unignore .ruby-version and add 3.4.4 into it4be76d9CI: Let Publish access bundled gems, and use latest Ruby theree956a6dPrepare Trusted Publisherf91e49aCI: use conventional name for ci.yml10ec1daVersion bump to 2.3.12865414Move documentation comment to the right place75d3efbScope retryable module under faraday modulef021508v2.3.0Updates
jsonfrom 2.9.1 to 2.11.3Release notes
Sourced from json's releases.
... (truncated)
Changelog
Sourced from json's changelog.
... (truncated)
Commits
3e025f7Release 2.11.3d316f93Merge pull request #791 from byroot/fix-pretty-generate2ffa4eaStop caching the generator state pointerc985e8cRelease 2.11.2c8ae2c5Merge pull request #789 from byroot/deprecated-pretty-prototype123121bBring back JSON::PRETTY_STATE_PROTOTYPE with a deprecation84443e8Release 2.11.1