gardener / landscaper

Development of Landscaper - A deployer for K8S workloads with integrated data flow engine.
Apache License 2.0
56 stars 34 forks source link

fix(deps): update module github.com/open-component-model/ocm to v0.15.0 #1203

Open gardener-ci-robot opened 1 month ago

gardener-ci-robot commented 1 month ago

This PR contains the following updates:

Package Type Update Change OpenSSF
github.com/open-component-model/ocm require minor v0.11.0 -> v0.15.0 OpenSSF Scorecard

Release Notes

open-component-model/ocm (github.com/open-component-model/ocm) ### [`v0.15.0`](https://redirect.github.com/open-component-model/ocm/releases/tag/v0.15.0) [Compare Source](https://redirect.github.com/open-component-model/ocm/compare/v0.14.0...v0.15.0) ### Release v0.15.0 - Update check_diff_action.yaml ([#​924](https://redirect.github.com/open-component-model/ocm/issues/924)) - fix: default component download link ([#​920](https://redirect.github.com/open-component-model/ocm/issues/920)) - extend signing list component descriptors ([#​922](https://redirect.github.com/open-component-model/ocm/issues/922)) - small change to test github actions ([#​921](https://redirect.github.com/open-component-model/ocm/issues/921)) - feat: remove deprecated code - v2 ([#​919](https://redirect.github.com/open-component-model/ocm/issues/919)) - move identity packages into tech packages ([#​914](https://redirect.github.com/open-component-model/ocm/issues/914)) - mega fix for new selector handling + accessor interface alignment + tests ([#​918](https://redirect.github.com/open-component-model/ocm/issues/918)) - chore: fixup validate usage context passage ([#​912](https://redirect.github.com/open-component-model/ocm/issues/912)) - fix: runner caching code that it uses ([#​917](https://redirect.github.com/open-component-model/ocm/issues/917)) - Revert "feat: remove deprecated functions" ([#​916](https://redirect.github.com/open-component-model/ocm/issues/916)) - feat: remove deprecated functions ([#​915](https://redirect.github.com/open-component-model/ocm/issues/915)) - chore: nightly build ([#​903](https://redirect.github.com/open-component-model/ocm/issues/903)) - docu: remove some command crosslinks ([#​895](https://redirect.github.com/open-component-model/ocm/issues/895)) - Add cv parameter to walking step function ([#​909](https://redirect.github.com/open-component-model/ocm/issues/909)) - release branch creation workflow ([#​899](https://redirect.github.com/open-component-model/ocm/issues/899)) - Add utilities for ocm controllers ([#​898](https://redirect.github.com/open-component-model/ocm/issues/898)) - Chore: setup-go@\v4 does caching automatically ([#​908](https://redirect.github.com/open-component-model/ocm/issues/908)) - chore: publish latest release to different package registries ([#​897](https://redirect.github.com/open-component-model/ocm/issues/897)) - fix npm input ([#​900](https://redirect.github.com/open-component-model/ocm/issues/900)) - feedback from migrating a project ([#​907](https://redirect.github.com/open-component-model/ocm/issues/907)) - access method ocm ([#​896](https://redirect.github.com/open-component-model/ocm/issues/896)) - annotate oci layers with component information ([#​882](https://redirect.github.com/open-component-model/ocm/issues/882)) - align package names with folder names ([#​906](https://redirect.github.com/open-component-model/ocm/issues/906)) - add extended description and remove archlinux ([#​901](https://redirect.github.com/open-component-model/ocm/issues/901)) - chore: always create a new release branch and delete all old ones during new release action ([#​894](https://redirect.github.com/open-component-model/ocm/issues/894)) - chore: change release notes template, auto label PRs, ... ([#​893](https://redirect.github.com/open-component-model/ocm/issues/893)) #### 🚀 Features - Resource resolution on CD set ([#​865](https://redirect.github.com/open-component-model/ocm/issues/865)) #### ⬆️ Dependencies
4 changes - Bump the go group with 10 updates ([#​910](https://redirect.github.com/open-component-model/ocm/issues/910)) - Bump the go group with 11 updates ([#​905](https://redirect.github.com/open-component-model/ocm/issues/905)) - Bump the go group with 7 updates ([#​892](https://redirect.github.com/open-component-model/ocm/issues/892)) - Bump anchore/sbom-action from 0.17.1 to 0.17.2 in the ci group ([#​891](https://redirect.github.com/open-component-model/ocm/issues/891))
### [`v0.14.0`](https://redirect.github.com/open-component-model/ocm/releases/tag/v0.14.0) [Compare Source](https://redirect.github.com/open-component-model/ocm/compare/v0.13.0...v0.14.0) Release v0.14.0 - move migrate tooling to 'hack' folder ([#​889](https://redirect.github.com/open-component-model/ocm/issues/889)) - feat: add npm input type ([#​886](https://redirect.github.com/open-component-model/ocm/issues/886)) - Validate method for oci/ocm repository specs ([#​866](https://redirect.github.com/open-component-model/ocm/issues/866)) - add public GPG key that can be used for signing ([#​884](https://redirect.github.com/open-component-model/ocm/issues/884)) - disable manual/secondary caching ([#​885](https://redirect.github.com/open-component-model/ocm/issues/885)) - Add linux packages to goreleaser ([#​888](https://redirect.github.com/open-component-model/ocm/issues/888)) - raise alpine version ([#​883](https://redirect.github.com/open-component-model/ocm/issues/883)) - fix: typo + missing bin directory ([#​880](https://redirect.github.com/open-component-model/ocm/issues/880)) - Verify/markdown ([#​871](https://redirect.github.com/open-component-model/ocm/issues/871)) - Bump the go group with 16 updates ([#​878](https://redirect.github.com/open-component-model/ocm/issues/878)) - more path mappings ([#​877](https://redirect.github.com/open-component-model/ocm/issues/877)) - ignore status error for reading pubsub config ([#​873](https://redirect.github.com/open-component-model/ocm/issues/873)) - introduce optional repository interface for resolvers ([#​867](https://redirect.github.com/open-component-model/ocm/issues/867)) - Bump anchore/sbom-action from 0.17.0 to 0.17.1 in the ci group ([#​875](https://redirect.github.com/open-component-model/ocm/issues/875)) - fix cli docu generation ([#​876](https://redirect.github.com/open-component-model/ocm/issues/876)) - Adjust workflow: check diff ([#​874](https://redirect.github.com/open-component-model/ocm/issues/874)) - Bump sigstore/cosign-installer from 3.5.0 to 3.6.0 in the ci group ([#​868](https://redirect.github.com/open-component-model/ocm/issues/868)) - Bump the go group with 15 updates ([#​870](https://redirect.github.com/open-component-model/ocm/issues/870)) - Package restructuring ([#​784](https://redirect.github.com/open-component-model/ocm/issues/784)) ### [`v0.13.0`](https://redirect.github.com/open-component-model/ocm/releases/tag/v0.13.0) [Compare Source](https://redirect.github.com/open-component-model/ocm/compare/v0.12.1...v0.13.0) Release v0.13.0 - fix goreleaser ([#​863](https://redirect.github.com/open-component-model/ocm/issues/863)) - feat: add check for diffs after go mod tidy and generate ([#​861](https://redirect.github.com/open-component-model/ocm/issues/861)) - Typo ([#​860](https://redirect.github.com/open-component-model/ocm/issues/860)) - Bump the go group across 1 directory with 26 updates ([#​854](https://redirect.github.com/open-component-model/ocm/issues/854)) - feat: remove GetInexpensiveContentVersionIdentity ([#​845](https://redirect.github.com/open-component-model/ocm/issues/845)) - Bump the ci group across 1 directory with 5 updates ([#​853](https://redirect.github.com/open-component-model/ocm/issues/853)) - add changes for multi-arch ([#​851](https://redirect.github.com/open-component-model/ocm/issues/851)) - Bump github.com/docker/docker from 27.0.1+incompatible to 27.1.0+incompatible in the go_modules group ([#​857](https://redirect.github.com/open-component-model/ocm/issues/857)) - Improve errors ([#​850](https://redirect.github.com/open-component-model/ocm/issues/850)) - rework selectors ([#​858](https://redirect.github.com/open-component-model/ocm/issues/858)) - Rework adding elements to a component version ([#​844](https://redirect.github.com/open-component-model/ocm/issues/844)) - Add AUR as installation option for OCM-CLI ([#​855](https://redirect.github.com/open-component-model/ocm/issues/855)) - extension point for pub/sub support ([#​832](https://redirect.github.com/open-component-model/ocm/issues/832)) - cleanup json schemes ([#​840](https://redirect.github.com/open-component-model/ocm/issues/840)) - Exchange Algorithm constant in polymorphic handler method ([#​852](https://redirect.github.com/open-component-model/ocm/issues/852)) - forward error message from OCI registry ([#​848](https://redirect.github.com/open-component-model/ocm/issues/848)) This is the last release using the module name `github.com/open-component-model/ocm`. The next releases will use the new module name `ocm.software/ocm`. Additionally the package structure of the new module will change. You can use the migration script provided by the next release to migrate your project to the new module and structure. ### [`v0.12.1`](https://redirect.github.com/open-component-model/ocm/compare/v0.12.0...v0.12.1) [Compare Source](https://redirect.github.com/open-component-model/ocm/compare/v0.12.0...v0.12.1) ### [`v0.12.0`](https://redirect.github.com/open-component-model/ocm/releases/tag/v0.12.0) [Compare Source](https://redirect.github.com/open-component-model/ocm/compare/v0.11.0...v0.12.0) Release v0.12.0 - Extend version regexp to support semver ([#​834](https://redirect.github.com/open-component-model/ocm/issues/834)) - fix broken links ([#​837](https://redirect.github.com/open-component-model/ocm/issues/837)) - fix duplicate command argument for plugin command execution ([#​831](https://redirect.github.com/open-component-model/ocm/issues/831)) - fix plugin error propagation ([#​830](https://redirect.github.com/open-component-model/ocm/issues/830)) - rework source info access for plugin clients ([#​829](https://redirect.github.com/open-component-model/ocm/issues/829)) - Bump github.com/hashicorp/go-retryablehttp from 0.7.6 to 0.7.7 in the go_modules group ([#​827](https://redirect.github.com/open-component-model/ocm/issues/827)) - Support for CLI Extensions by OCM Plugins ([#​815](https://redirect.github.com/open-component-model/ocm/issues/815)) - Bump github.com/docker/docker from 26.1.4+incompatible to 27.0.0+incompatible ([#​817](https://redirect.github.com/open-component-model/ocm/issues/817)) - cleanup unused ([#​828](https://redirect.github.com/open-component-model/ocm/issues/828)) - close() writer, before trying to rename ([#​824](https://redirect.github.com/open-component-model/ocm/issues/824)) - enhance the auto update of the flake vendor hash ([#​826](https://redirect.github.com/open-component-model/ocm/issues/826)) - Bump the go group with 7 updates ([#​825](https://redirect.github.com/open-component-model/ocm/issues/825)) - Update README.md ([#​822](https://redirect.github.com/open-component-model/ocm/issues/822)) - fix [https://github.com/open-component-model/ocm-project/issues/196](https://redirect.github.com/open-component-model/ocm-project/issues/196) ([#​819](https://redirect.github.com/open-component-model/ocm/issues/819)) - Bump the go group with 8 updates ([#​816](https://redirect.github.com/open-component-model/ocm/issues/816)) - Fix make cmds ([#​810](https://redirect.github.com/open-component-model/ocm/issues/810)) - Adjust action ([#​813](https://redirect.github.com/open-component-model/ocm/issues/813)) - adjust github action definition ([#​811](https://redirect.github.com/open-component-model/ocm/issues/811)) - restruct blobaccess ([#​804](https://redirect.github.com/open-component-model/ocm/issues/804)) - auto update \`flake.nix\` vendor hash incl. singed commit ([#​809](https://redirect.github.com/open-component-model/ocm/issues/809)) - Simplify Pull Request Template ([#​808](https://redirect.github.com/open-component-model/ocm/issues/808))

Configuration

📅 Schedule: Branch creation - "after 10:30am,before 03:30pm,every weekday" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Renovate Bot.

gardener-ci-robot commented 1 month ago

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: go.sum
Command failed: go get -d -t ./...
go: -d flag is deprecated. -d=true is a no-op
go: github.com/open-component-model/ocm@v0.15.0: parsing go.mod:
    module declares its path as: ocm.software/ocm
            but was required as: github.com/open-component-model/ocm
gardener-robot commented 1 month ago

@gardener-ci-robot Thank you for your contribution.