Skip to content

🌱 Bump the dependencies group in /hack/tools with 3 updates #4691

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 13, 2023

Bumps the dependencies group in /hack/tools with 3 updates: github.com/itchyny/gojq, github.com/mikefarah/yq/v4 and sigs.k8s.io/controller-tools.

Updates github.com/itchyny/gojq from 0.12.13 to 0.12.14

Release notes

Sourced from github.com/itchyny/gojq's releases.

Release v0.12.14

  • implement abs, pick, and debug/1 functions
  • implement --raw-output0 option, and remove --nul-output (-0) option
  • fix string multiplication by zero to emit an empty string
  • fix zero divided by zero to emit an error, not nan
  • fix modulo operator to emit nan if either side is nan
  • fix implode function to emit replacement characters on invalid code points
  • fix stderr function to output strings in raw format
  • fix error function to throw an error even for null
  • fix walk function on multiple outputs arguments
  • fix --from-file option to work with --args and --jsonargs options
  • fix the default module search path ../lib relative to the executable
  • improve query parser to support comment continuation with backslash
  • improve modulemeta function to include defined function names in the module
  • improve search path of import and include directives to support $ORIGIN expansion
  • remove deprecated leaf_paths function
Changelog

Sourced from github.com/itchyny/gojq's changelog.

v0.12.14 (2023-12-01)

  • implement abs, pick, and debug/1 functions
  • implement --raw-output0 option, and remove --nul-output (-0) option
  • fix string multiplication by zero to emit an empty string
  • fix zero divided by zero to emit an error, not nan
  • fix modulo operator to emit nan if either side is nan
  • fix implode function to emit replacement characters on invalid code points
  • fix stderr function to output strings in raw format
  • fix error function to throw an error even for null
  • fix walk function on multiple outputs arguments
  • fix --from-file option to work with --args and --jsonargs options
  • fix the default module search path ../lib relative to the executable
  • improve query parser to support comment continuation with backslash
  • improve modulemeta function to include defined function names in the module
  • improve search path of import and include directives to support $ORIGIN expansion
  • remove deprecated leaf_paths function
Commits
  • 3841526 bump up version to 0.12.14
  • 68233df update CHANGELOG.md for v0.12.14
  • ce4acbb update jq differences to drop a note on scan/2
  • 31597aa update dependencies
  • 149f55c update jq differences for jq 1.7 release
  • 4066b7a refactor halt error implementation
  • 47f5df9 fix error function to throw an error even for null
  • 0bbee22 disable fail fast in CI workflow matrix
  • ff520e5 improve indentation of action workflows
  • 326fde3 update astgen-go and drop redundant type of composite literals of builtins
  • Additional commits viewable in compare view

Updates github.com/mikefarah/yq/v4 from 4.40.2 to 4.40.5

Release notes

Sourced from github.com/mikefarah/yq/v4's releases.

v4.40.5

  • Fixing seg fault on bad XML #1888
  • Fixed handling of --- #1890, #1896
  • Bumped dependencies

v4.40.4 - Fixed bug with creating maps with values based off keys

  • Fixed bug with creating maps with values based off keys #1886, #1889
  • Bumped dependencies

v4.40.3 - Fixes JSON empty array bug

  • Fixed JSON output issue with empty arrays #1880
Changelog

Sourced from github.com/mikefarah/yq/v4's changelog.

4.40.5:

  • Fixing seg fault on bad XML #1888
  • Fixed handling of --- #1890, #1896
  • Bumped dependencies

4.40.4:

  • Fixed bug with creating maps with values based off keys #1886, #1889
  • Bumped dependencies

4.40.3:

  • Fixed JSON output issue with empty arrays #1880
Commits

Updates sigs.k8s.io/controller-tools from 0.12.1 to 0.13.0

Release notes

Sourced from sigs.k8s.io/controller-tools's releases.

v0.13.0

What's Changed

Dependency bumps

New Contributors

Full Changelog: kubernetes-sigs/controller-tools@v0.12.0...v0.13.0

Commits
  • d89d6ae Merge pull request #832 from sbueringer/pr-bump-k-1.28
  • 02a4e5c Bump to k/k v0.28.0
  • 498444b Merge pull request #841 from kubernetes-sigs/dependabot/go_modules/golang.org...
  • e747d1b 🌱 Bump golang.org/x/tools from 0.11.1 to 0.12.0
  • d18ba5c Merge pull request #810 from shyamradhakrishnan/shyamradhakrishnan-fix-809
  • 0089762 Merge pull request #840 from kubernetes-sigs/dependabot/go_modules/golang.org...
  • 17720f8 🌱 Bump golang.org/x/tools from 0.11.0 to 0.11.1
  • c94980b Merge pull request #838 from kubernetes-sigs/dependabot/go_modules/github.com...
  • 7d12792 🌱 Bump github.com/onsi/gomega from 1.27.9 to 1.27.10
  • 1d54c6c Merge pull request #836 from kubernetes-sigs/dependabot/go_modules/github.com...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the dependencies group in /hack/tools with 3 updates: [github.com/itchyny/gojq](https://github.com/itchyny/gojq), [github.com/mikefarah/yq/v4](https://github.com/mikefarah/yq) and [sigs.k8s.io/controller-tools](https://github.com/kubernetes-sigs/controller-tools).


Updates `github.com/itchyny/gojq` from 0.12.13 to 0.12.14
- [Release notes](https://github.com/itchyny/gojq/releases)
- [Changelog](https://github.com/itchyny/gojq/blob/main/CHANGELOG.md)
- [Commits](itchyny/gojq@v0.12.13...v0.12.14)

Updates `github.com/mikefarah/yq/v4` from 4.40.2 to 4.40.5
- [Release notes](https://github.com/mikefarah/yq/releases)
- [Changelog](https://github.com/mikefarah/yq/blob/master/release_notes.txt)
- [Commits](mikefarah/yq@v4.40.2...v4.40.5)

Updates `sigs.k8s.io/controller-tools` from 0.12.1 to 0.13.0
- [Release notes](https://github.com/kubernetes-sigs/controller-tools/releases)
- [Changelog](https://github.com/kubernetes-sigs/controller-tools/blob/master/RELEASE.md)
- [Commits](kubernetes-sigs/controller-tools@v0.12.1...v0.13.0)

---
updated-dependencies:
- dependency-name: github.com/itchyny/gojq
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dependencies
- dependency-name: github.com/mikefarah/yq/v4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dependencies
- dependency-name: sigs.k8s.io/controller-tools
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the kind/cleanup Categorizes issue or PR as related to cleaning up code, process, or technical debt. label Dec 13, 2023
@k8s-ci-robot
Copy link
Contributor

Adding the "do-not-merge/release-note-label-needed" label because no release-note block was detected, please follow our release note process to remove it.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@k8s-ci-robot k8s-ci-robot added the do-not-merge/release-note-label-needed Indicates that a PR should not merge because it's missing one of the release note labels. label Dec 13, 2023
@k8s-ci-robot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
Once this PR has been reviewed and has the lgtm label, please assign sbueringer for approval. For more information see the Kubernetes Code Review Process.

The full list of commands accepted by this bot can be found here.

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@k8s-ci-robot k8s-ci-robot added cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. needs-priority labels Dec 13, 2023
@k8s-ci-robot k8s-ci-robot added needs-ok-to-test Indicates a PR that requires an org member to verify it is safe to test. size/L Denotes a PR that changes 100-499 lines, ignoring generated files. labels Dec 13, 2023
@k8s-ci-robot
Copy link
Contributor

Hi @dependabot[bot]. Thanks for your PR.

I'm waiting for a kubernetes-sigs member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work. Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@richardcase
Copy link
Member

Controller tools shouldn't be updated

/hold

@k8s-ci-robot k8s-ci-robot added the do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. label Dec 13, 2023
Copy link
Contributor Author

dependabot bot commented on behalf of github Dec 13, 2023

Looks like these dependencies are no longer being updated by Dependabot, so this is no longer needed.

@dependabot dependabot bot closed this Dec 13, 2023
@dependabot dependabot bot deleted the dependabot/go_modules/hack/tools/dependencies-57aaf5ffe3 branch December 13, 2023 22:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. do-not-merge/release-note-label-needed Indicates that a PR should not merge because it's missing one of the release note labels. kind/cleanup Categorizes issue or PR as related to cleaning up code, process, or technical debt. needs-ok-to-test Indicates a PR that requires an org member to verify it is safe to test. needs-priority size/L Denotes a PR that changes 100-499 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants