Skip to content

fix(deps): update all non-major dependencies - #157

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-patch
Open

fix(deps): update all non-major dependencies#157
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-minor-patch

Conversation

@renovate

@renovate renovate Bot commented Aug 19, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
github.com/onsi/gomega v1.42.1v1.43.0 age confidence require minor
github.com/stretchr/testify v1.12.0v1.12.1 age confidence require patch
go 1.26.61.27.1 age confidence uses-with minor
golang (source) 1.261.27 age confidence stage minor
golangci/golangci-lint v2.12.2v2.13.2 age confidence uses-with minor
k8s.io/api v0.36.3v0.37.0 age confidence require minor
k8s.io/apimachinery v0.36.3v0.37.0 age confidence require minor
k8s.io/client-go v0.36.3v0.37.0 age confidence require minor
sigs.k8s.io/controller-runtime v0.24.1v0.25.0 age confidence require minor

Release Notes

onsi/gomega (github.com/onsi/gomega)

v1.43.0

Compare Source

1.43.0

Features

Add gomock adaptor extension for using Gomega matchers with gomock

stretchr/testify (github.com/stretchr/testify)

v1.12.1

Compare Source

This is the first release which has the minimum dependencies practical in testify v1. The last remaining dependencies are github.com/stretchr/objx which itself has no dependencies, and go.yaml.in/yaml/v3. Removing objx would require v2, it cannot be vendored. Removing YAML would require vendoring the yaml library, which would do more harm than good. It's better to become aware of vulnerabilities in the official yaml package than to attempt to maintain our own.

What's Changed
New Contributors

Full Changelog: stretchr/testify@v1.12.0...v1.12.1

What's Changed
New Contributors

Full Changelog: stretchr/testify@v1.12.0...v1.12.1

actions/go-versions (go)

v1.27.1: 1.27.1

Compare Source

Go 1.27.1

v1.27.0: 1.27.0

Compare Source

Go 1.27.0

v1.26.8: 1.26.8

Compare Source

Go 1.26.8

v1.26.7: 1.26.7

Compare Source

Go 1.26.7

golangci/golangci-lint (golangci/golangci-lint)

v2.13.2

Compare Source

Released on 2026-08-28

  1. Bug fixes
    • Decrease cache entropy
  2. Linters bug fixes
    • iface: from 1.5.0 to 1.5.1
    • staticcheck: from 0.8.0 to 0.8.1
    • unparam: from 3f964bc to 2fa3d84
    • canonicalheader: from v1.1.2 to a temporary fork

v2.13.1

Compare Source

Released on 2026-08-20

  1. Linters bug fixes
    • ginkgolinter: from 0.23.1 to 0.24.0
    • gofmt: from d62b90e to e84e050
    • staticcheck: from 0.8.0-rc.1 to 0.8.0
    • wsl_v5: from 5.8.0 to 5.9.0

v2.13.0

Compare Source

Released on 2026-08-19

  1. Enhancements
    • 🎉 go1.27 support
  2. Bug fixes
    • fix: cache package facts
  3. Linters new features or changes
    • dupword: from 0.1.7 to 0.1.8 (new option skip-raw-strings)
    • errcheck: from 1.10.0 to 1.20.0
    • exhaustruct_v5: from 4.0.0 to 5.0.2 (new configuration)
    • exhaustruct: deprecated and replaced by exhaustruct_v5
    • fatcontext: from 0.9.0 to 0.10.0 (new options: check-loops, check-function-literals)
    • goconst: from 1.10.0 to 1.11.0 (new options: ignore-map-keys, exclude-types)
    • gofumpt: from 0.9.2 to 0.11.0 (new options: extra.group-params, extra.clothe-returns, extra.balance-calls)
    • gomoddirectives: from 0.8.0 to 0.9.0 (new option: replace-allow-all)
    • gosec: from 2.26.1 to 2.27.1
    • govet-modernize: from 0.44.0 to 0.49.0 (fmtappendf is removed. New analyzers atomictypes, embedlit, errorsastype, importcomment, reflecttypeassert, slicesclip, and slicesbackward. waitgroup is renamed waitgroupgo)
    • iface: from 1.4.3 to 1.5.0 (new analyzer: unusedmethod)
    • noinlineerr: from 1.0.5 to 1.0.6
    • nonamedreturns: from 1.0.6 to 1.0.8 (new option: allow-unused-named-returns)
    • recvcheck: from 0.2.0 to 0.3.0 (new default exclusions)
    • unparam: from 5beb8c8 to 3f964bc
  4. Linters bug fixes
    • clickhouse-go-linter: from 1.2.0 to 1.2.1
    • errname: from 1.1.1 to 1.1.2
    • exhaustruct: from 5.0.2 to 5.0.3
    • funcorder: add missing Function field
    • ginkgolinter: from 0.23.0 to 0.23.1
    • gocheckcompilerdirectives: from 1.3.0 to 1.4.0
    • gocritic: from 0.14.3 to 0.14.4
    • gomoddirectives: add missing IgnoreForbidden field
    • iface: from 1.4.2 to 1.4.3
    • mirror: from 1.3.0 to 1.3.3
    • nilnil: from 1.1.1 to 1.1.2
    • protogetter: from 0.3.20 to 0.3.21
kubernetes/api (k8s.io/api)

v0.37.0

Compare Source

v0.36.4

Compare Source

kubernetes/apimachinery (k8s.io/apimachinery)

v0.37.0

Compare Source

v0.36.4

Compare Source

kubernetes/client-go (k8s.io/client-go)

v0.37.0

Compare Source

v0.36.4

Compare Source

kubernetes-sigs/controller-runtime (sigs.k8s.io/controller-runtime)

v0.25.0

Compare Source

Highlights

This version of controller-runtime introduces a new experimental ReadYourWritesConsistency feature,
which ensures that all writes are reflected in subsequent reads from the default cache-backed client.
Stale client reads are arguably the biggest source of friction and sometimes bugs for controller
authors, providing this functionality at the library level eliminates that class of problems entirely.

Try it out by setting Client.EnableReadYourWritesConsistency: new(true) in your manager
and leave any feedback you may have on the tracking issue.

⚠️ Breaking Changes

✨ New Features

  • Client: Add a read-your-own-writes client (#​3472)
  • Fakeclient: Add WithGlobalResourceVersionCounter (#​3581)
  • Fakeclient: Add scale subresource support for Apply (#​3569)
  • Metrics: Allow opt-in for client-go REST client metrics (#​3510)
  • Metrics: Allow overriding client-go REST client metrics latency histogram buckets (#​3573)
  • Source: Add TypedInformer source (#​3520)
  • Webhooks: Allow to disable the webhook server by setting the port to -1 (#​3481)

🐛 Bug Fixes

  • Cache: Fix goroutine leaks in cache Start() methods (#​3565)
  • Client: Fix regression in Apply typed error handling (#​3515)
  • Controller: Unlock when Controller.Start() returns with error (#​3545)
  • Envtest: Fix envtest process stop on Windows (#​3519)
  • Fakeclient: Allow updating managedFields through Update (#​3585)
  • Fakeclient: Fix AddIndex panic when wrapped with an interceptor (#​3583)
  • Fakeclient: Fix PartialObjectMeta handling (#​3571)
  • Fakeclient: Support scale subresource get/update for unstructured objects (#​3546)
  • Fakeclient: Update object on subresource apply (#​3570)
  • PriorityQueue: Fix PriorityQueue deadlock on shutdown (#​3540)
  • Testing/Process: Fix process Stop timeout error handling (#​3523)

🌱 Others

  • LeaderElection: Pass Managers Logger to Leader Elector via Context (#​3576)

🌱 CI & linters

  • Add copyright header validation & fix findings (#​3544)
  • Bump to golangci-lint v2.12.1 (#​3514)
  • Bump to golangci-lint v2.12.2 (#​3532)
  • Bump to golangci-lint v2.13.1 (#​3580)
  • Declare contents: read permissions for pr-verify action (#​3517)
  • Revert "Migrate away from custom GitHub action approval workflow" (#​3528)

📖 Additionally, there have been 7 contributions to our documentation and book. (#​3513, #​3521, #​3531, #​3551, #​3562, #​3563, #​3566)

Dependencies

Added
  • github.com/go-openapi/swag/cmdutils: v0.27.1
  • github.com/go-openapi/swag/conv: v0.27.1
  • github.com/go-openapi/swag/fileutils: v0.27.1
  • github.com/go-openapi/swag/jsonutils/fixtures_test: v0.27.1
  • github.com/go-openapi/swag/jsonutils: v0.27.1
  • github.com/go-openapi/swag/loading: v0.27.1
  • github.com/go-openapi/swag/mangling: v0.27.1
  • github.com/go-openapi/swag/netutils: v0.27.1
  • github.com/go-openapi/swag/pools: v0.27.1
  • github.com/go-openapi/swag/stringutils: v0.27.1
  • github.com/go-openapi/swag/typeutils: v0.27.1
  • github.com/go-openapi/swag/yamlutils: v0.27.1
  • github.com/go-openapi/testify/enable/yaml/v2: v2.6.0
  • github.com/go-openapi/testify/v2: v2.6.0
Changed
  • github.com/Azure/go-ansiterm: 306776e → faa5f7b
  • github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp: v1.30.0 → v1.32.0
  • github.com/antlr4-go/antlr/v4: v4.13.0 → v4.13.1
  • github.com/cncf/xds/go: ee656c7 → dba9d58
  • github.com/envoyproxy/go-control-plane/envoy: v1.36.0 → v1.37.0
  • github.com/envoyproxy/protoc-gen-validate: v1.3.0 → v1.3.3
  • github.com/fxamacker/cbor/v2: v2.9.0 → v2.9.1
  • github.com/go-jose/go-jose/v4: v4.1.3 → v4.1.4
  • github.com/go-openapi/jsonpointer: v0.21.0 → v1.0.0
  • github.com/go-openapi/jsonreference: v0.20.2 → v1.0.0
  • github.com/go-openapi/swag: v0.23.0 → v0.27.1
  • github.com/golang-jwt/jwt/v5: v5.3.0 → v5.3.1
  • github.com/google/cel-go: v0.26.0 → v0.29.2
  • github.com/grpc-ecosystem/grpc-gateway/v2: v2.27.7 → v2.29.0
  • github.com/klauspost/compress: v1.18.0 → v1.19.0
  • github.com/moby/term: v0.5.0 → v0.5.2
  • github.com/prometheus/client_golang: v1.23.2 → v1.24.0
  • github.com/prometheus/common: v0.67.5 → v0.70.0
  • github.com/prometheus/procfs: v0.19.2 → v0.21.1
  • github.com/sirupsen/logrus: v1.9.3 → v1.9.4
  • github.com/spf13/pflag: v1.0.9 → v1.0.10
  • github.com/stretchr/objx: v0.5.2 → v0.5.3
  • go.etcd.io/bbolt: v1.4.3 → v1.5.0
  • go.etcd.io/etcd/api/v3: v3.6.8 → v3.7.0
  • go.etcd.io/etcd/client/pkg/v3: v3.6.8 → v3.7.0
  • go.etcd.io/etcd/client/v3: v3.6.8 → v3.7.0
  • go.etcd.io/etcd/pkg/v3: v3.6.8 → v3.7.0
  • go.etcd.io/etcd/server/v3: v3.6.8 → v3.7.0
  • go.etcd.io/raft/v3: v3.6.0 → v3.7.0
  • go.opentelemetry.io/contrib/detectors/gcp: v1.39.0 → v1.43.0
  • go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc: v0.65.0 → v0.68.0
  • go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp: v0.65.0 → v0.69.0
  • go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc: v1.40.0 → v1.44.0
  • go.opentelemetry.io/otel/exporters/otlp/otlptrace: v1.40.0 → v1.44.0
  • go.opentelemetry.io/otel/metric: v1.41.0 → v1.44.0
  • go.opentelemetry.io/otel/sdk/metric: v1.40.0 → v1.44.0
  • go.opentelemetry.io/otel/sdk: v1.40.0 → v1.44.0
  • go.opentelemetry.io/otel/trace: v1.41.0 → v1.44.0
  • go.opentelemetry.io/otel: v1.41.0 → v1.44.0
  • go.opentelemetry.io/proto/otlp: v1.9.0 → v1.10.0
  • go.yaml.in/yaml/v2: v2.4.3 → v2.4.4
  • golang.org/x/crypto: v0.47.0 → v0.54.0
  • golang.org/x/exp: 944ab1f746e56f
  • golang.org/x/mod: v0.32.0 → v0.37.0
  • golang.org/x/net: v0.49.0 → v0.57.0
  • golang.org/x/oauth2: v0.34.0 → v0.36.0
  • golang.org/x/sync: v0.19.0 → v0.22.0
  • golang.org/x/sys: v0.40.0 → v0.47.0
  • golang.org/x/telemetry: bd525da59b4966
  • golang.org/x/term: v0.39.0 → v0.45.0
  • golang.org/x/text: v0.33.0 → v0.40.0
  • golang.org/x/time: v0.14.0 → v0.15.0
  • golang.org/x/tools: v0.41.0 → v0.47.0
  • gonum.org/v1/gonum: v0.16.0 → v0.17.0
  • google.golang.org/genproto/googleapis/api: 8636f873dc84a4
  • google.golang.org/genproto/googleapis/rpc: 8636f873dc84a4
  • google.golang.org/grpc: v1.79.3 → v1.82.1
  • k8s.io/api: v0.36.0 → v0.37.0
  • k8s.io/apiextensions-apiserver: v0.36.0 → v0.37.0
  • k8s.io/apimachinery: v0.36.0 → v0.37.0
  • k8s.io/apiserver: v0.36.0 → v0.37.0
  • k8s.io/client-go: v0.36.0 → v0.37.0
  • k8s.io/code-generator: v0.36.0 → v0.37.0
  • k8s.io/component-base: v0.36.0 → v0.37.0
  • k8s.io/gengo/v2: ec3ebc525e2208
  • k8s.io/kms: v0.36.0 → v0.37.0
  • k8s.io/kube-openapi: 43fb72cd427ff9
  • k8s.io/streaming: v0.36.0 → v0.37.0
  • k8s.io/utils: b8788abbe93311
  • sigs.k8s.io/apiserver-network-proxy/konnectivity-client: v0.34.0 → v0.36.0
  • sigs.k8s.io/structured-merge-diff/v6: v6.3.2 → v6.4.2
Removed
  • github.com/creack/pty: v1.1.9
  • github.com/gogo/protobuf: v1.3.2
  • github.com/josharian/intern: v1.0.0
  • github.com/kr/pty: v1.1.1
  • github.com/mailru/easyjson: v0.7.7
  • github.com/matttproud/golang_protobuf_extensions: v1.0.1
  • github.com/stoewer/go-strcase: v1.3.0

Thanks to all our contributors! 😊


Configuration

📅 Schedule: (in timezone America/New_York)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from a team as a code owner August 19, 2026 21:51
@renovate

renovate Bot commented Aug 19, 2026

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 19 additional dependencies were updated

Details:

Package Change
k8s.io/utils v0.0.0-20260507154919-ff6756f316d2 -> v0.0.0-20260626114624-be93311217bd
github.com/go-openapi/jsonpointer v0.23.1 -> v1.0.0
github.com/go-openapi/jsonreference v0.21.6 -> v1.0.0
github.com/go-openapi/swag v0.25.5 -> v0.27.1
github.com/go-openapi/swag/cmdutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/conv v0.25.5 -> v0.27.1
github.com/go-openapi/swag/fileutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/jsonutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/loading v0.25.5 -> v0.27.1
github.com/go-openapi/swag/mangling v0.25.5 -> v0.27.1
github.com/go-openapi/swag/netutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/stringutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/typeutils v0.25.5 -> v0.27.1
github.com/go-openapi/swag/yamlutils v0.25.5 -> v0.27.1
go.yaml.in/yaml/v3 v3.0.4 -> v3.0.5
golang.org/x/time v0.14.0 -> v0.15.0
k8s.io/apiextensions-apiserver v0.36.0 -> v0.37.0
k8s.io/kube-openapi v0.0.0-20260520065146-aa012df4f4af -> v0.0.0-20260721132016-d427ff9ee9ad
sigs.k8s.io/structured-merge-diff/v6 v6.3.3 -> v6.4.2

@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 6 times, most recently from 881e29d to 5f08f62 Compare August 26, 2026 22:51
@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch 8 times, most recently from 4016cad to 9e54330 Compare September 2, 2026 18:35
@renovate
renovate Bot force-pushed the renovate/all-minor-patch branch from 9e54330 to 373cf6a Compare September 3, 2026 21:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants