Skip to content

Potential Changes - #6170

Open
Infotechcompany wants to merge 18 commits into
nektos:masterfrom
Infotechcompany:master
Open

Potential Changes#6170
Infotechcompany wants to merge 18 commits into
nektos:masterfrom
Infotechcompany:master

Conversation

@Infotechcompany

Copy link
Copy Markdown

Hello, I have some modifications that you may want to review! Thank you

Infotechcompany and others added 17 commits March 31, 2026 00:27
Bumps the go_modules group with 3 updates in the / directory: [github.com/go-git/go-git/v5](https://github.com/go-git/go-git), [go.opentelemetry.io/otel](https://github.com/open-telemetry/opentelemetry-go) and [go.opentelemetry.io/otel/sdk](https://github.com/open-telemetry/opentelemetry-go).


Updates `github.com/go-git/go-git/v5` from 5.16.5 to 5.18.0
- [Release notes](https://github.com/go-git/go-git/releases)
- [Changelog](https://github.com/go-git/go-git/blob/main/HISTORY.md)
- [Commits](go-git/go-git@v5.16.5...v5.18.0)

Updates `go.opentelemetry.io/otel` from 1.40.0 to 1.41.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-go@v1.40.0...v1.41.0)

Updates `go.opentelemetry.io/otel/sdk` from 1.40.0 to 1.43.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-go@v1.40.0...v1.43.0)

---
updated-dependencies:
- dependency-name: github.com/go-git/go-git/v5
  dependency-version: 5.18.0
  dependency-type: direct:production
  dependency-group: go_modules
- dependency-name: go.opentelemetry.io/otel
  dependency-version: 1.41.0
  dependency-type: indirect
  dependency-group: go_modules
- dependency-name: go.opentelemetry.io/otel/sdk
  dependency-version: 1.43.0
  dependency-type: indirect
  dependency-group: go_modules
...

Signed-off-by: dependabot[bot] <support@github.com>
Upgrade go-git and related dependencies to patched compatible releases, remove the unrelated AGENTS.md change, migrate the go-archive compression constant, and add pinned exact-head dependency CI.
Safely replace existing copy destinations, cover the read-only pack-file regression, make the fork-owner fixture portable, and ensure dependency CI explicitly tests the PR head.
Preserve long confined symlink chains, make Windows read-only backup cleanup portable, exercise replacement through HostEnvironment on Windows, and use a fingerprint-verified pinned Codecov uploader.
Grant id-token only to the Linux coverage job and keep verified, fail-closed Codecov uploads without a repository secret.
…urity-clean

build(deps): secure Go dependency refresh and copy compatibility

@Infotechcompany Infotechcompany left a comment

Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Great

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant