notaryproject / notation-go

A collection of libraries for supporting sign and verify OCI artifacts. Based on Notary Project specifications.
Apache License 2.0
39 stars 42 forks source link

build(deps): bump golang.org/x/crypto from 0.24.0 to 0.25.0 #420

Closed dependabot[bot] closed 4 months ago

dependabot[bot] commented 4 months ago

Bumps golang.org/x/crypto from 0.24.0 to 0.25.0.

Commits
  • 9fadb0b go.mod: update golang.org/x dependencies
  • a6a393f all: bump go.mod version and drop compatibility shims
  • 1c74500 ssh/test: make struct comment match struct name
  • d4e7c9c ssh: fail client auth immediately on receiving disconnect message
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

Dependabot will merge this PR once it's up-to-date and CI passes on it, as requested by @priteshbandi.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
codecov[bot] commented 4 months ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 80.29%. Comparing base (c2cd70f) to head (61a8fe1).

Additional details and impacted files ```diff @@ Coverage Diff @@ ## main #420 +/- ## ======================================= Coverage 80.29% 80.29% ======================================= Files 33 33 Lines 2340 2340 ======================================= Hits 1879 1879 Misses 324 324 Partials 137 137 ```

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

priteshbandi commented 4 months ago

@dependabot rebase

dependabot[bot] commented 4 months ago

Looks like this PR has been edited by someone other than Dependabot. That means Dependabot can't rebase it - sorry!

If you're happy for Dependabot to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

priteshbandi commented 4 months ago

@dependabot recreate

dependabot[bot] commented 4 months ago

Dependabot tried to merge this PR, but received the following error from GitHub:

Waiting on code owner review from JeyJeyGao, NiazFK, Two-Hearts, gokarnm, priteshbandi, rgnote, shizhMSFT, toddysm, vaninrao10, and/or yizha1.
shizhMSFT commented 4 months ago

@dependabot merge