openfga / cli

A cross-platform CLI to interact with an OpenFGA server
https://openfga.dev
Apache License 2.0
50 stars 25 forks source link

chore(deps): bump the dependencies group with 2 updates #383

Closed dependabot[bot] closed 2 months ago

dependabot[bot] commented 2 months ago

Bumps the dependencies group with 2 updates: github.com/openfga/go-sdk and github.com/openfga/openfga.

Updates github.com/openfga/go-sdk from 0.5.0 to 0.6.0

Release notes

Sourced from github.com/openfga/go-sdk's releases.

v0.6.0

0.6.0 (2024-08-29)

  • feat: support OpenTelemetry metrics reporting (#115)
  • feat!: support for sending the consistency parameter to the read, check, list users, list objects, and expand endpoints (#117)
  • chore(docs): update stale README (#113) - thanks @​Code2Life

BREAKING CHANGE:

When the generator converts enums in the open API definition, by default it removes the type prefix. For example, TYPE_NAME_UNSPECIFIED is converted to a const named UNSPECIFIED. This leads to potential collisions with other enums, and as the consistency type is a new enum, we finally got a collision (it was just a matter of time).

The fix for this is to specify "enumClassPrefix": true in the generation config. This will then include the class name on the const name, which resolves collision issues. This means any enum value, such as INT now becomes TYPENAME_INT. The main impact of this is the TypeName const and error codes. The fix is to add the class name prefix, as discussed above.

Changelog

Sourced from github.com/openfga/go-sdk's changelog.

v0.6.0

0.6.0 (2024-08-29)

  • feat: support OpenTelemetry metrics reporting (#115)
  • feat!: support for sending the consistency parameter to the read, check, list users, list objects, and expand endpoints (#117)
  • chore(docs): update stale README (#113) - thanks @​Code2Life

BREAKING CHANGE:

When the generator converts enums in the open API definition, by default it removes the type prefix. For example, TYPE_NAME_UNSPECIFIED is converted to a const named UNSPECIFIED. This leads to potential collisions with other enums, and as the consistency type is a new enum, we finally got a collision (was just a matter of time).

The fix for this is to specify "enumClassPrefix": true in the generation config. This will then include the class name on the const name, which resoles collision issues. This means any enum value, such as INT now becomes TYPENAME_INT. The main impact of this is the TypeName consts and error codes. The fix is to add the class name prefix as discussed above.

Commits
  • 2694fb9 release: v0.6.0 (#118)
  • 74964e8 chore: fix out-dated document of ClientTupleKey (#113)
  • 0887f1c feat: support OpenTelemetry metrics (#115)
  • d1fa227 feat!: support consistency parameter (#117)
  • 9449c5e chore(deps): bump golang.org/x/sync from 0.7.0 to 0.8.0 in the dependencies g...
  • 847a8f1 chore(deps): bump actions/setup-go from 5.0.1 to 5.0.2 in the dependencies gr...
  • e445b77 chore(docs): fix typo in README.md (#111)
  • f0daa03 chore(deps): bump the dependencies group with 2 updates (#109)
  • See full diff in compare view


Updates github.com/openfga/openfga from 1.5.9 to 1.6.0

Release notes

Sourced from github.com/openfga/openfga's releases.

v1.6.0

Changed

Fixed

  • Check API: internal fixes #1843
  • Correct docker file syntax #1852

Performance

  • Performance improvements for Check API:
    • introduce an optimization when the input request relation is pointing to a computed relation #1793
    • batch calls that compute membership checks and start processing them earlier #1804
    • performance improvement in wildcard scenarios #1848
  • Performance improvement in tuple validation on reads #1825

Breaking changes

  • Set a maximum limit on bytes to the WriteAssertions API: 64 KB #1847
Changelog

Sourced from github.com/openfga/openfga's changelog.

[1.6.0] - 2024-08-30

Full changelog

Changed

Fixed

  • Check API: internal fixes #1843
  • Correct docker file syntax #1852

Performance

  • Performance improvements for Check API:
    • introduce an optimization when the input request relation is pointing to a computed relation #1793
    • batch calls that compute membership checks and start processing them earlier #1804
    • performance improvement in wildcard scenarios #1848
  • Performance improvement in tuple validation on reads #1825

Breaking changes

  • Set a maximum limit on bytes to the WriteAssertions API: 64 KB #1847
Commits
  • 5efeccf chore: add v1.6.0 release notes to CHANGELOG (#1898)
  • 42d22d4 feat: remove Check optimizations experimental flag (#1895)
  • cd50d7e chore: add tests for TypeSystem type creation (#1887)
  • 3d83acd test: add cycle tests to the test matrix (#1894)
  • 28495e0 ci: add action to enforce adding changelog entries (#1893)
  • a4fdfd9 test: run ListUsers and ListObects tests as part of the test matrix (#1891)
  • c2ef51f refactor: split Check into multiple files (#1883)
  • 545b359 refactor: internal errors (#1858)
  • f578351 test: add unit test for consume usersets (#1860)
  • 23e48b7 test: use different store per test in the test matrix (#1890)
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions
stacklok-cloud[bot] commented 2 months ago

Minder Vulnerability Report ✅

Minder analyzed this PR and found it does not add any new vulnerable dependencies.

Vulnerability scan of e868a51a:

  • 🐞 vulnerable packages: 0
  • 🛠 fixes available for: 0