Skip to content

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Aug 20, 2025

This PR contains the following updates:

Package Type Update Change
actions/checkout action patch v5.0.0v5.0.1
actions/setup-go action minor v5.5.0v5.6.0
aquasecurity/trivy-action action minor 0.32.00.33.1
codecov/codecov-action action minor v5.4.3v5.5.2
grafana (source) minor 9.3.29.4.5
kube-prometheus-stack (source) minor 76.4.076.5.1
loki (source) minor 6.36.16.49.0
mimir-distributed (source) minor 5.7.05.8.0
pyroscope (source) minor 1.14.11.17.0
securego/gosec action patch v2.22.8v2.22.11
sigstore/cosign-installer action minor v3.9.2v3.10.1
tempo-distributed (source) minor 1.46.41.60.0

Release Notes

actions/checkout (actions/checkout)

v5.0.1

Compare Source

What's Changed

Full Changelog: actions/checkout@v5...v5.0.1

actions/setup-go (actions/setup-go)

v5.6.0

Compare Source

What's Changed

Full Changelog: actions/setup-go@v5...v5.6.0

aquasecurity/trivy-action (aquasecurity/trivy-action)

v0.33.1

Compare Source

What's Changed

Full Changelog: aquasecurity/trivy-action@0.33.0...0.33.1

v0.33.0

Compare Source

What's Changed

New Contributors

Full Changelog: aquasecurity/trivy-action@0.32.0...0.33.0

codecov/codecov-action (codecov/codecov-action)

v5.5.2

Compare Source

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.1..v5.5.2

v5.5.1

Compare Source

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.0..v5.5.1

v5.5.0

Compare Source

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.4.3..v5.5.0

grafana/helm-charts (grafana)

v9.4.5

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

New Contributors

Full Changelog: grafana/helm-charts@tempo-distributed-1.47.2...grafana-9.4.5

v9.4.4

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

Full Changelog: grafana/helm-charts@rollout-operator-0.33.0...grafana-9.4.4

v9.4.3

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

Full Changelog: grafana/helm-charts@tempo-distributed-1.47.1...grafana-9.4.3

v9.4.2

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

New Contributors

Full Changelog: grafana/helm-charts@grafana-9.4.1...grafana-9.4.2

v9.4.1

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

Full Changelog: grafana/helm-charts@grafana-9.4.0...grafana-9.4.1

v9.4.0

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

  • [grafana] Set GOMEMLIMIT environment variable based on container resources by @​jnoordsij in #​3138

New Contributors

Full Changelog: grafana/helm-charts@grafana-mcp-0.1.2...grafana-9.4.0

v9.3.6

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

New Contributors

Full Changelog: grafana/helm-charts@alloy-operator-0.3.9...grafana-9.3.6

v9.3.5

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

  • [grafana] add support for envValueFrom in sidecar.alerts both initContainer and watch container by @​peter-kyu in #​3739

New Contributors

Full Changelog: grafana/helm-charts@grafana-9.3.4...grafana-9.3.5

v9.3.4

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

Full Changelog: grafana/helm-charts@grafana-9.3.3...grafana-9.3.4

v9.3.3

Compare Source

The leading tool for querying and visualizing time series and metrics.

What's Changed

New Contributors

Full Changelog: grafana/helm-charts@helm-loki-6.37.0...grafana-9.3.3

prometheus-community/helm-charts (kube-prometheus-stack)

v76.5.1

Compare Source

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards, and Prometheus rules combined with documentation and scripts to provide easy to operate end-to-end Kubernetes cluster monitoring with Prometheus using the Prometheus Operator.

What's Changed

  • [kube-prometheus-stack] Update kube-prometheus-stack dependency non-major updates by @​renovate[bot] in #​6080

Full Changelog: prometheus-community/helm-charts@prometheus-ipmi-exporter-0.6.3...kube-prometheus-stack-76.5.1

v76.5.0

Compare Source

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards, and Prometheus rules combined with documentation and scripts to provide easy to operate end-to-end Kubernetes cluster monitoring with Prometheus using the Prometheus Operator.

What's Changed

Full Changelog: prometheus-community/helm-charts@prometheus-27.32.0...kube-prometheus-stack-76.5.0

v76.4.1

Compare Source

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards, and Prometheus rules combined with documentation and scripts to provide easy to operate end-to-end Kubernetes cluster monitoring with Prometheus using the Prometheus Operator.

What's Changed

  • [kube-prometheus-stack] Update kube-prometheus-stack dependency non-major updates by @​renovate[bot] in #​6070

Full Changelog: prometheus-community/helm-charts@alertmanager-1.25.0...kube-prometheus-stack-76.4.1

securego/gosec (securego/gosec)

v2.22.11

Compare Source

Changelog

v2.22.10

Compare Source

Changelog

  • 6be2b51 Update go to version 1.25.3 and 1.24.9 in CI (#​1404)
  • fddb942 chore(deps): update all dependencies (#​1402)
  • f676031 Update go to version 1.25.2 and 2.24.8 in CI (#​1401)
  • 35f7ec2 chore(deps): update all dependencies (#​1399)
  • 01029f0 check nil slices, partially check bounds (#​1396)
  • 34db3de Remove unused target from the makefile
  • f5a3b7a Use the ginkgo command install by the dependencies
  • 761fcbc Keep the go module at 1.24 version for compatibility reasons
  • 2238079 Remove manual test deps
  • bb08aa3 fix: text must be supplied when markdown is used
  • 23597d2 fix: improve error message of CheckAnalyzers
  • 8d7e9d5 fix: log panic on SSA
  • 0d8255e chore(deps): update all dependencies
  • f9c52aa Update gosec to version v.22.9 in the github action

v2.22.9

Compare Source

Changelog
  • 15d5c61 Update cosign to v2.6.0 and go in the CI to latest version
  • 7b8713e fix(autofix): unnecessary conversion
  • 64ebfc0 feat(autofix): update gemini sdk and add anthropic claude
  • 506407e feat(G304): add os.Root remediation hint (Autofix) when Go >= 1.24
  • 3ead143 chore(deps): update all dependencies
  • e81fba3 refactor(G304): remove unused trackJoin helper; no functional change
  • ab078db style: gofmt rules/readfile.go
  • e6218c8 test(g304): add samples for var perm and var flag with cleaned path\n\n- Ensure G304 does not fire when only non-path args (flag/perm) are variables\n- Both samples use filepath.Clean on the path arg\n- Rules suite remains green (42 passed)
  • 79f835d rules(G304): analyze only path arg; ignore flag/perm vars; track Clean and safe Join; fix nil-context panic\n\n- Limit G304 checks to first arg (path) for os.Open/OpenFile/ReadFile, avoiding false positives when flag/perm are variables\n- Track filepath.Clean so cleaned identifiers are treated as safe\n- Consider safe joins: filepath.Join(const|resolvedBase, Clean(var)|cleanedIdent)\n- Record Join(...) assigned to identifiers and allow if later cleaned\n- Fix panic by passing non-nil context in trackJoinAssignStmt\n- All rules tests: 42 passed
  • 40ac530 rules(G202): detect SQL concat in ValueSpec declarations; add test sample\n\n- Handle var query string = 'SELECT ...' + user style declarations\n- Reuse existing binary expr detection on ValueSpec.Values\n- Add postgres sample mirroring issue #​1309 report\n- Rules tests: 42 passed
  • 4be6b11 chore(deps): update all dependencies
  • 5af1117 chore(deps): update all dependencies
  • 287b46c chore(deps): update all dependencies
  • cee0aea Update gosec version to v2.22.8 in the Github action
sigstore/cosign-installer (sigstore/cosign-installer)

v3.10.1

Compare Source

What's Changed?

Note: cosign-installer v3.x cannot be used to install Cosign v3.x. You must upgrade to cosign-installer v4 in order to use Cosign v3.

Note: This is planned to be the final release of Cosign v2, though we will cut new releases for any critical security or bug fixes. We recommend transitioning to Cosign v3.

  • Bump default Cosign to v2.6.1 (#​203)

v3.10.0

Compare Source

What's Changed

  • Bump default Cosign to v2.6.0 in #​200

Full Changelog: sigstore/cosign-installer@v3.9.2...v3.10.0


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@codecov
Copy link

codecov bot commented Aug 20, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
see 12 files with indirect coverage changes

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 8 times, most recently from 9216e32 to 5e0134d Compare August 27, 2025 23:32
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 2 times, most recently from 814d4a5 to 0405d2e Compare September 7, 2025 00:10
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 4 times, most recently from 962fe8c to 09f53cf Compare September 13, 2025 05:04
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 3 times, most recently from 2011fb0 to 8ef36a1 Compare September 22, 2025 09:43
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 2 times, most recently from 27e74ee to 98c79da Compare September 25, 2025 20:26
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 2 times, most recently from a915848 to cc50bc0 Compare October 8, 2025 15:11
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 4 times, most recently from 7f85a33 to 1caf899 Compare October 16, 2025 17:59
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 4 times, most recently from 3f9c099 to 72dcc80 Compare October 26, 2025 12:39
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 8 times, most recently from 27c234b to 7f649ce Compare November 3, 2025 10:01
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 7 times, most recently from ef53a77 to f856510 Compare November 11, 2025 01:31
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 4 times, most recently from 85b21d3 to 0c510cd Compare November 18, 2025 12:47
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch from 0c510cd to c99b1be Compare December 1, 2025 14:56
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 6 times, most recently from 4bae36f to 81262cf Compare December 16, 2025 03:05
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch 2 times, most recently from 84b1748 to 7b5d022 Compare December 23, 2025 09:59
@renovate renovate bot force-pushed the renovate/all-ci-dependencies branch from 7b5d022 to 48c123b Compare December 23, 2025 20:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant