Skip to content

chore(deps): update go dependencies#648

Open
renovate-sh-app[bot] wants to merge 1 commit into
mainfrom
renovate/go-dependencies
Open

chore(deps): update go dependencies#648
renovate-sh-app[bot] wants to merge 1 commit into
mainfrom
renovate/go-dependencies

Conversation

@renovate-sh-app

@renovate-sh-app renovate-sh-app Bot commented Jul 21, 2026

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Type Update Change Pending
cloud.google.com/go/auth indirect minor v0.19.0v0.22.0
deps.dev/api/v3 indirect patch v3.0.0-20260422013440-90c27f84dd6fv3.0.0-20260708003622-ba1304923509
deps.dev/api/v3alpha indirect digest 90c27f8ba13049
deps.dev/util/maven indirect digest b92437dba13049
deps.dev/util/pypi indirect digest 90c27f8ba13049
deps.dev/util/resolve indirect digest 90c27f8ba13049
deps.dev/util/semver indirect digest cf1e78dba13049
github.com/Masterminds/semver/v3 require minor v3.4.0v3.5.0
github.com/ProtonMail/go-crypto indirect minor v1.3.0v1.4.1
github.com/anchore/go-lzo indirect patch v0.1.0v0.1.1
github.com/anchore/go-struct-converter indirect minor v0.1.0v0.2.1
github.com/anthropics/anthropic-sdk-go require minor v1.26.0v1.58.0 v1.60.0 (+2)
github.com/bazelbuild/buildtools indirect digest 05d2ebe04cf7de
github.com/bmatcuk/doublestar/v4 require minor v4.9.2v4.10.0
github.com/cloudflare/circl indirect patch v1.6.3v1.6.4
github.com/compose-spec/compose-go/v2 indirect minor v2.10.2v2.13.0
github.com/containerd/typeurl/v2 indirect minor v2.2.3v2.3.0
github.com/cyphar/filepath-securejoin indirect minor v0.6.1v0.7.0
github.com/diskfs/go-diskfs indirect minor v1.7.0v1.9.4
github.com/docker/cli indirect minor v29.4.3+incompatiblev29.6.2+incompatible
github.com/docker/docker-credential-helpers indirect patch v0.9.5v0.9.8
github.com/elliotwutingfeng/asciiset indirect digest cfde208af198af
github.com/fatih/color require minor v1.18.0v1.19.0
github.com/felixge/httpsnoop indirect minor v1.0.4v1.1.0
github.com/go-logr/logr indirect patch v1.4.3v1.4.4
github.com/google/go-containerregistry indirect minor v0.20.7v0.21.7
github.com/google/osv-scalibr indirect digest 164402dcc93e53
github.com/googleapis/enterprise-certificate-proxy indirect patch v0.3.14v0.3.19
github.com/googleapis/gax-go/v2 indirect minor v2.21.0v2.23.0
github.com/gopherjs/gopherjs indirect minor v1.17.2v1.21.0
github.com/hashicorp/go-version require minor v1.8.0v1.9.0
github.com/jedib0t/go-pretty/v6 indirect minor v6.7.10v6.8.3
github.com/kevinburke/ssh_config indirect minor v1.2.0v1.6.0
github.com/klauspost/compress indirect minor v1.18.6v1.19.1
github.com/klauspost/cpuid/v2 indirect minor v2.3.0v2.4.0
github.com/magefile/mage require minor v1.15.0v1.17.2
github.com/mattn/go-colorable indirect patch v0.1.14v0.1.15
github.com/mattn/go-isatty indirect patch v0.0.22v0.0.23 v0.0.24
github.com/mattn/go-runewidth indirect patch v0.0.23v0.0.24 v0.0.27 (+2)
github.com/mattn/go-shellwords require patch v1.0.13v1.0.14
github.com/moby/buildkit indirect minor v0.30.0v0.31.2
github.com/montanaflynn/stats indirect minor v0.7.1v0.12.2
github.com/ossf/osv-schema/bindings/go require digest 83285ced4a00c3
github.com/pierrec/lz4/v4 indirect patch v4.1.26v4.1.27
github.com/planetscale/vtprotobuf indirect digest 0393e588ae5a48
github.com/saferwall/pe indirect patch v1.6.4v1.6.5
github.com/segmentio/asm indirect minor v1.1.3v1.2.1
github.com/shogo82148/go-shuffle indirect minor v1.0.1v1.1.1
github.com/skeema/knownhosts indirect patch v1.3.1v1.3.2
github.com/tink-crypto/tink-go/v2 indirect minor v2.6.0v2.7.0
github.com/tklauser/go-sysconf indirect minor v0.3.16v0.4.0
github.com/tklauser/numcpus indirect minor v0.11.0v0.12.0
github.com/ulikunitz/xz indirect patch v0.5.15v0.5.16
go.etcd.io/bbolt indirect minor v1.4.3v1.5.0
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp indirect minor v0.68.0v0.69.0
go.opentelemetry.io/otel indirect minor v1.43.0v1.44.0
go.opentelemetry.io/otel/metric indirect minor v1.43.0v1.44.0
go.opentelemetry.io/otel/trace indirect minor v1.43.0v1.44.0
go.yaml.in/yaml/v4 indirect patch v4.0.0-rc.4v4.0.0-rc.6
golang.org/x/crypto require minor v0.53.0v0.54.0
golang.org/x/exp indirect digest 74f9aab764159d
golang.org/x/mod require minor v0.37.0v0.38.0
golang.org/x/net indirect minor v0.56.0v0.57.0
golang.org/x/sync indirect minor v0.21.0v0.22.0
golang.org/x/sys indirect minor v0.46.0v0.47.0
golang.org/x/telemetry indirect digest 59b4966bdb8988
golang.org/x/text indirect minor v0.39.0v0.40.0
golang.org/x/tools indirect minor v0.47.0v0.48.0
golang.org/x/vuln indirect minor v1.3.0v1.6.0
google.golang.org/api indirect minor v0.272.0v0.289.0 v0.290.0
google.golang.org/genai require minor v1.48.0v1.64.0 v1.65.0
gopkg.in/ini.v1 indirect patch v1.67.2v1.67.3
modernc.org/libc indirect minor v1.72.3v1.74.3
modernc.org/sqlite indirect minor v1.50.1v1.54.0

Release Notes

googleapis/google-cloud-go (cloud.google.com/go/auth)

v0.22.0

Compare Source

  • bigtable:

    • cbt: Support cells per column limit for row read.
    • bttest: Correctly handle empty RowSet.
    • Fix ReadModifyWrite operation in emulator.
    • Fix API path in GetCluster.
  • bigquery:

    • BEHAVIOR CHANGE: Retry on 503 status code.
    • Add dataset.DeleteWithContents.
    • Add SchemaUpdateOptions for query jobs.
    • Add Timeline to QueryStatistics.
    • Add more stats to ExplainQueryStage.
    • Support Parquet data format.
  • datastore:

    • Support omitempty for times.
  • dlp:

    • BREAKING CHANGE: Remove v1beta1 client. Please migrate to the v2 client,
      which is now out of beta.
    • Add v2 client.
  • firestore:

    • BEHAVIOR CHANGE: Treat set({}, MergeAll) as valid.
  • iam:

    • Support JWT signing via SignJwt callopt.
  • profiler:

    • BEHAVIOR CHANGE: PollForSerialOutput returns an error when context.Done.
    • BEHAVIOR CHANGE: Increase the initial backoff to 1 minute.
    • Avoid returning empty serial port output.
  • pubsub:

    • BEHAVIOR CHANGE: Don't backoff during next retryable error once stream is healthy.
    • BEHAVIOR CHANGE: Don't backoff on EOF.
    • pstest: Support Acknowledge and ModifyAckDeadline RPCs.
  • redis:

    • Add v1 beta Redis client.
  • spanner:

    • Support SessionLabels.
  • speech:

    • Add api v1 beta1 client.
  • storage:

    • BEHAVIOR CHANGE: Retry reads when retryable error occurs.
    • Fix delete of object in requester-pays bucket.
    • Support KMS integration.

v0.21.0

Compare Source

  • bigquery:

    • Add OpenCensus tracing.
  • firestore:

    • BREAKING CHANGE: If a document does not exist, return a DocumentSnapshot
      whose Exists method returns false. DocumentRef.Get and Transaction.Get
      return the non-nil DocumentSnapshot in addition to a NotFound error.
      DocumentRef.GetAll and Transaction.GetAll return a non-nil
      DocumentSnapshot instead of nil.
    • Add DocumentIterator.Stop. Call Stop whenever you are done with a
      DocumentIterator.
    • Added Query.Snapshots and DocumentRef.Snapshots, which provide realtime
      notification of updates. See https://cloud.google.com/firestore/docs/query-data/listen.
    • Canceling an RPC now always returns a grpc.Status with codes.Canceled.
  • spanner:

    • Add CommitTimestamp, which supports inserting the commit timestamp of a
      transaction into a column.

v0.20.0

Compare Source

  • bigquery: Support SchemaUpdateOptions for load jobs.

  • bigtable:

    • Add SampleRowKeys.
    • cbt: Support union, intersection GCPolicy.
    • Retry admin RPCS.
    • Add trace spans to retries.
  • datastore: Add OpenCensus tracing.

  • firestore:

    • Fix queries involving Null and NaN.
    • Allow Timestamp protobuffers for time values.
  • logging: Add a WriteTimeout option.

  • spanner: Support Batch API.

  • storage: Add OpenCensus tracing.

Masterminds/semver (github.com/Masterminds/semver/v3)

v3.5.0

Compare Source

What's Changed

New Contributors

Full Changelog: Masterminds/semver@v3.4.0...v3.5.0

ProtonMail/go-crypto (github.com/ProtonMail/go-crypto)

v1.4.1

Compare Source

What's Changed
  • Properly handle ECC keys with invalid points in #​304

Full Changelog: ProtonMail/go-crypto@v1.4.0...v1.4.1

v1.4.0

Compare Source

What's Changed
  • Ignore leading and trailing whitespaces in the armor body in #​288
  • Update key_generation.go, rename variables to avoid shadowing in #​290
  • Add InsecureGenerateNonCriticalKeyFlags option to generate non-critical key flags signature subpackets in #​291
  • Add InsecureGenerateNonCriticalSignatureCreationTime option to generate non-critical signature creation time subpackets in #​292
  • Bump dependencies and min go version to 1.23 in #​294
  • ECDHv4: Error on low-order x25519 public key curve points in #​299
  • Cleartext: Only allow valid hashes in header in #​298

Full Changelog: ProtonMail/go-crypto@v1.3.0...v1.4.0

anchore/go-lzo (github.com/anchore/go-lzo)

v0.1.1

Compare Source

Additional Changes

(Full Changelog)

anchore/go-struct-converter (github.com/anchore/go-struct-converter)

v0.2.1

Compare Source

What's Changed

Additional Changes

(Full Changelog)

anthropics/anthropic-sdk-go (github.com/anthropics/anthropic-sdk-go)

v1.58.0

Compare Source

Full Changelog: v1.58.0...v1.58.1

Bug Fixes
  • client: copy all citation fields in ToParam conversions (#​191) (26ac1f9)
  • vertex: default to the cloud-platform scope in WithGoogleAuth (#​190) (7931e70)
Chores
  • api: add support for new refusal category (f77159c)
  • docs: small updates (576dc36)
  • docs: small updates (f618082)
  • internal: codegen related update (03fee5d)

v1.57.0

Compare Source

Full Changelog: v1.57.0...v1.58.0

Features
  • api: add support for MCP Tunnels (3465b89)

v1.56.0

Compare Source

Full Changelog: v1.55.1...v1.56.0

Features
  • api: add agent-memory-2026-07-22 beta header (5bcfda4)

v1.55.1

Compare Source

Full Changelog: v1.55.1...v1.56.0

Features
  • api: add agent-memory-2026-07-22 beta header (5bcfda4)

v1.55.0

Compare Source

Full Changelog: v1.55.0...v1.55.1

Chores
  • api: remove some nonfunctional types from the SDKs (9bd3d09)

v1.54.0

Compare Source

Full Changelog: v1.54.0...v1.55.0

Features
  • api: add support for Managed Agents event delta streaming, agent overrides, reverse pagination, vault credential injection scoping, and agent and deployment webhook events (021ef45)

v1.53.0

Compare Source

Full Changelog: v1.53.0...v1.54.0

Features
  • api: add support for claude-sonnet-5 (232cfe6)
Bug Fixes
  • agenttoolset: allow absolute paths that resolve inside workdir (#​93) (3735258)

v1.52.0

Compare Source

Full Changelog: v1.52.0...v1.53.0

Features
Chores
  • api: accept user profile ID's when counting tokens (d31ba27)
  • docs: updates to descriptions and example values (cb00f34)

v1.51.1

Compare Source

Full Changelog: v1.51.1...v1.52.0

Features
  • client: add support for system.message streaming events (7bb296d)
Chores
  • api: add support for new refusal category (46f8625)
  • api: add support for sending User Profile ID in request headers (5cab486)

v1.51.0

Compare Source

Full Changelog: v1.51.0...v1.51.1

Bug Fixes
  • helpers: single source for x-stainless-helper, append semantics, and tag the fallback middleware (#​88) (ebbdb7d)

v1.50.2

Compare Source

Full Changelog: v1.50.2...v1.51.0

Features
  • api: add support for new code_execution_20260120 tool (f54a4a8)

v1.50.1

Compare Source

Full Changelog: v1.50.1...v1.50.2

Chores
  • api: remove retired models from API and SDKs (11f5c82)

v1.50.0

Compare Source

Full Changelog: v1.50.0...v1.50.1

Bug Fixes
  • api: add frontier_llm refusal category (9ebbaf7)

v1.49.0

Compare Source

Full Changelog: v1.49.0...v1.50.0

Features
  • api: add support for Managed Agents deployments and environment variable credentials (f72e1d8)

v1.48.0

Compare Source

Full Changelog: v1.48.0...v1.49.0

Features
  • api: add support for claude-mythos-5 and claude-fable-5, with support for server-side fallbacks on refusal (782f223)
  • client: adds client-side fallbacks middleware for API providers that do not support server-side fallbacks (782f223)
Bug Fixes

v1.47.0

Compare Source

Full Changelog: v1.47.0...v1.48.0

Features
  • api: small updates to Managed Agents types (3ebeea5)

v1.46.0

Compare Source

Full Changelog: v1.45.0...v1.46.0

Features
  • api: Add support for claude-opus-4-8, mid-conversation system blocks, and usage.output_tokens_details (4cd860b)
  • support custom file size caps (#​876) (99634e8)
Chores
  • examples: rename managed-agents private-sandbox-worker to self-hosted-sandbox-worker (#​873) (07d3e46)
Documentation
  • replace literal newlines (cbb7ea5)

v1.45.0

Compare Source

Full Changelog: v1.44.1...v1.45.0

Features
  • api: Add support for thinking-token-count beta for estimated tokens in thinking block deltas when streaming (dedeb6d)

v1.44.1

Compare Source

Full Changelog: v1.44.1...v1.45.0

Features
  • api: Add support for thinking-token-count beta for estimated tokens in thinking block deltas when streaming (dedeb6d)

v1.44.0

Compare Source

Full Changelog: v1.44.0...v1.44.1

Bug Fixes
  • runner: skip tool calls SessionToolRunner does not own (93afc65)

v1.43.0

Compare Source

Full Changelog: v1.43.0...v1.44.0

Features
  • client: Add support for self-hosted sandboxes in CMA with sandbox helpers (34354c4)

v1.42.0

Compare Source

Full Changelog: v1.42.0...v1.43.0

Features
  • api: Add BetaManagedAgentsSearchResultBlock types (498fafc)
  • api: Add support for cache diagnostics beta (eac032f)
  • client: add compatibility aliases for old type names (38e1f89)
  • client: add compatibility aliases for old type names (a98b0fb)
  • client: optimize json encoder for internal types (f379c42)
Bug Fixes
  • structured outputs: allowlist enum, const, pattern, allOf in transformSchema (#​823) (d368786)
Chores

v1.41.0

Compare Source

Full Changelog: v1.41.0...v1.42.0

Features
  • aws: Add AWS client for Claude Platform on AWS (596baf4)
Bug Fixes
  • examples: update examples dependencies (e832b79)
  • go: avoid panic when http.DefaultTransport is wrapped (6b75bef)
Chores
  • client: update dependency checksums (64c1d95)
  • go mod tidy (#​816) (09b5f9c)
  • internal: codegen related update (6e83495)
  • internal: codegen related update (34d1379)
  • internal: codegen related update (c068475)
  • redact api-key headers in debug logs (46a074f)
  • redact api-key headers in debug logs (1fe2ebb)

v1.40.0

Compare Source

Full Changelog: v1.40.0...v1.41.0

Features
  • api: add support for Managed Agents multiagents and outcomes, webhooks, vault validation (33762b0)
  • mcp: add mcp tool helpers (#​752) (4edf9f5)
Bug Fixes
  • api: Adjust webhook configuration (8b2f194)

v1.39.0

Compare Source

Full Changelog: v1.39.0...v1.40.0

Features
  • client: allow targeting a workspace for OIDC federation token exchange (6bf66ac)

v1.38.0

Compare Source

Full Changelog: v1.38.0...v1.39.0

Features
  • api: improve Managed Agents APIs (eadf509)
  • client: add Workload Identity Federation, interactive OAuth, and auth profiles (0f0cc01)
  • go: add default http client with timeout (b81c287)
  • support setting headers via env (641015d)
Bug Fixes
Chores
  • avoid embedding reflect.Type for dead code elimination (11168b4)

v1.37.0

Compare Source

Full Changelog: v1.37.0...v1.38.0

Features
  • add Type() method to API errors for error kind identification (#​676) (0db1712)
  • api: CMA Memory public beta (180e00c)
  • structured outputs via Schema any with auto-parse (#​759) (46073d8)
Bug Fixes
  • api: fix errors in api spec (e47c178)
  • api: restore missing features (0fc6fac)
Chores
  • internal: more robust bootstrap script (5bde204)
  • tests: bump steady to v0.22.1 (4578c15)

v1.36.0

Compare Source

Full Changelog: v1.36.0...v1.37.0

Features
  • api: add claude-opus-4-7, token budgets and user_profiles (6e758a9)

v1.35.1

Compare Source

Full Changelog: v1.35.1...v1.36.0

Features
  • api: mark Sonnet and Opus 4 as deprecated (fc49d21)
  • bedrock: use auth header for mantle client (#​734) (629eec1)

v1.35.0

Compare Source

Full Changelog: v1.35.0...v1.35.1

Bug Fixes
  • streaming: add missing events (227b83e)

v1.34.0

Compare Source

Full Changelog: v1.34.0...v1.35.0

Features
Bug Fixes
Documentation

v1.33.0

Compare Source

Full Changelog: v1.33.0...v1.34.0

Features
  • api: Add beta advisor tool (3a6ddba)

v1.32.0

Compare Source

Full Changelog: v1.32.0...v1.33.0

Features
  • api: add support for Claude Managed Agents (722b2ac)

v1.31.0

Compare Source

Full Changelog: v1.31.0...v1.32.0

Features

v1.30.0

Compare Source

Full Changelog: v1.30.0...v1.31.0

Features
  • api: Add support for claude-mythos-preview (7144a65)

v1.29.0

Compare Source

Full Changelog: v1.29.0...v1.30.0

Features
  • vertex: add support for US multi-region endpoint (6f40457)

v1.28.0

Compare Source

Full Changelog: v1.28.0...v1.29.0

Features
  • api: add structured stop_details to message responses (1053799)
Chores
  • internal: client updates (531283d)

v1.27.1

Compare Source

Full Changelog: v1.27.1...v1.28.0

Features
  • internal: support comma format in multipart form encoding (97ed8a1)
Bug Fixes
  • bump buger/jsonparser to v1.1.2 (GO-2026-4514) (#​665) (96565eb)
  • prevent duplicate ? in query params (0afa75c)
  • types: generate shared enum types that are not referenced by other schemas (5dc86f2)
Chores
  • ci: run builds on CI even if only spec metadata changed (010a16f)
  • ci: skip lint on metadata-only changes (8cc7cec)
  • ci: support opting out of skipping builds on metadata-only commits (adc7184)
  • client: fix multipart serialisation of Default() fields (3fc3613)
  • internal: bump go toolchain to go1.25.8 to address std lib vulnerabilities (e3feecb)
  • internal: support default value struct tag (fc68556)
  • internal: update gitignore (e2a5dd1)
  • remove unnecessary error check for url parsing (6d42216)
  • tests: bump steady to v0.19.4 (3ca1569)
  • tests: bump steady to v0.19.5 (7364e49)
  • tests: bump steady to v0.19.6 (28ebd01)
  • tests: bump steady to v0.19.7 (77fc869)
  • tests: bump steady to v0.20.1 (e52beb5)
  • tests: bump steady to v0.20.2 (3a20191)
  • update docs for api:"required" (aa0a03a)

v1.27.0

Compare Source

Full Changelog: v1.27.0...v1.27.1

Chores
  • internal: regenerate SDK with no functional changes (c963fd0)
  • internal: tweak CI branches (95e3410)
bmatcuk/doublestar (github.com/bmatcuk/doublestar/v4)

v4.10.0: Added WithNoHidden option

Compare Source

Added support for a WithNoHidden option to ignore hidden files in patterns that might unintentionally match them. For example, a .config directory would not be matched by * or recursed into by **, but would be matched by .* or recursed by .config/**.

Thanks to @​lukasngl for the initial PR and idea!

What's Changed

New Contributors

Full Changelog: bmatcuk/doublestar@v4.9.2...v4.10.0

cloudflare/circl (github.com/cloudflare/circl)

v1.6.4: CIRCL v1.6.4

Compare Source

What's Changed

Note

PR body was truncated to here.


Configuration

📅 Schedule: (in timezone Europe/Berlin)

  • Branch creation
    • Between 08:00 AM and 04:59 PM, Monday through Thursday (* 8-16 * * 1-4)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

Need help?

You can ask for more help in the following Slack channel: #proj-renovate-self-hosted. In that channel you can also find ADR and FAQ docs in the Resources section.

@renovate-sh-app
renovate-sh-app Bot requested a review from a team as a code owner July 21, 2026 11:03
@renovate-sh-app
renovate-sh-app Bot requested a review from toddtreece July 21, 2026 11:03
@renovate-sh-app renovate-sh-app Bot added the dependencies Pull requests that update a dependency file label Jul 21, 2026
@renovate-sh-app
renovate-sh-app Bot requested review from andresmgot and xnyo July 21, 2026 11:03
@renovate-sh-app

renovate-sh-app Bot commented Jul 21, 2026

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 2 additional dependencies were updated

Details:

Package Change
google.golang.org/genproto/googleapis/api v0.0.0-20260511170946-3700d4141b60 -> v0.0.0-20260630182238-925bb5da69e7
google.golang.org/genproto/googleapis/rpc v0.0.0-20260511170946-3700d4141b60 -> v0.0.0-20260706201446-f0a921348800

@grafana-catalog-project-bot grafana-catalog-project-bot Bot moved this from 📬 Triage to 🔬 In review in Grafana Catalog Team Jul 21, 2026
@renovate-sh-app
renovate-sh-app Bot force-pushed the renovate/go-dependencies branch 13 times, most recently from 2547a0c to 6351858 Compare July 23, 2026 23:05
@renovate-sh-app
renovate-sh-app Bot force-pushed the renovate/go-dependencies branch from 6351858 to 44b4085 Compare July 24, 2026 02:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

Status: 🔬 In review

Development

Successfully merging this pull request may close these issues.

0 participants