RustCrypto / formats

Cryptography-related format encoders/decoders: DER, PEM, PKCS, PKIX
229 stars 122 forks source link

chore(deps): bump ciborium from 0.2.1 to 0.2.2 #1338

Closed dependabot[bot] closed 5 months ago

dependabot[bot] commented 5 months ago

Bumps ciborium from 0.2.1 to 0.2.2.

Commits
  • fdf3ec5 chore: version bump
  • 2ac91ce Disable enarxbot workflow
  • 09134e6 New reader API that allows providing the scratch buffer.
  • fa74215 chore(deps): update dependency half
  • 3b4d95d chore: bump to Rust 1.58
  • a5bfd82 Correctly set minimum serde version
  • 114614d Update spelling for error type in ciborium docs
  • 25174b7 feat: add from_reader_with_recursion_limit
  • 1fc610b fix: is_human_readable should be false
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
baloo commented 5 months ago

Bump of https://crates.io/crates/ciborium-ll/0.2.1/dependencies to https://crates.io/crates/ciborium-ll/0.2.2/dependencies Made the half dependency bump from 1.6 to 2.2 and bumped MSRV to 1.70 in tls_codec.

I'm inclined to @dependabot ignore this minor version. @franziskuskiefer any opinion?

franziskuskiefer commented 5 months ago

I'm inclined to @dependabot ignore this minor version. @franziskuskiefer any opinion?

I agree, I'd wait for criterion to actually bump those deps.

baloo commented 5 months ago

@dependabot ignore this minor version

dependabot[bot] commented 5 months ago

OK, I won't notify you about version 0.2.x again, unless you re-open this PR.