This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.View this repository on the Mend.io Web Portal .
Abandoned Dependencies
The following dependencies have not received updates for an extended period and may be unmaintained.
Note
Packages are marked as abandoned when they exceed the abandonmentThreshold since their last release. Unlike deprecated packages with official notices, abandonment is detected by release inactivity.
View abandoned dependencies (5)
Awaiting Schedule
The following updates are awaiting their schedule. To get an update now, click on a checkbox below.
fix(deps): update golang.org/x/exp digest to 85c1c22 in go.mod
fix(deps): update all non-major dependencies in .github/workflows/sonar.yaml (SonarSource/sonarqube-scan-action, actions/setup-node, alpine, docker/login-action, docker/setup-buildx-action, docker/setup-qemu-action, github.com/creativeprojects/go-selfupdate, github.com/hashicorp/go-getter/v2, github.com/knadh/koanf/parsers/yaml, github.com/knadh/koanf/providers/env/v2, github.com/knadh/koanf/providers/rawbytes, github.com/knadh/koanf/v2, github.com/kyokomi/emoji/v2, github.com/rs/zerolog, github.com/stretchr/testify, github/codeql-action, go, go.yaml.in/yaml/v4, goreleaser/goreleaser-action, ossf/scorecard-action, wait4x.dev/v3)
fix(deps): update module golang.org/x/net to v0.59.0 in go.mod
fix(deps): update module golang.org/x/time to v0.16.0 in go.mod
chore(deps): update actions/setup-node action to v7 in .github/workflows/release-please.yml
chore(deps): update sonarsource/sonarqube-scan-action action to v8 in .github/workflows/sonar.yaml
🔐 Create all awaiting schedule PRs at once 🔐
PR Edited (Blocked)
The following updates have been manually edited so Renovate will no longer make changes. To discard all commits and start over, click on a checkbox below.
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
Detected Dependencies
dockerfile (1)
Dockerfile (1)
alpine 3.23.3@sha256:25109184c71bdad752c8312a8623239686a9a2071e8825f20acb8f2198c3f659 → [Updates: 3.24.2]
github-actions (7)
.github/workflows/codeql-analysis.yml (4)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
.github/workflows/codeql.yml (4)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
.github/workflows/release-please.yml (4)
actions/create-github-app-token v3.2.0@bcd2ba49218906704ab6c1aa796996da409d3eb1
googleapis/release-please-action v5.0.0@45996ed1f6d02564a971a2fa1b5860e934307cf7
actions/setup-node v6.0.0@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 → [Updates: v6.5.0, v7.0.0]
node 24
.github/workflows/release.yml (7)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
docker/setup-qemu-action v4.0.0@ce360397dd3f832beb865e1373c09c0e9f86d70a → [Updates: v4.4.0]
docker/setup-buildx-action v4.0.0@4d04d5d9486b7bd6fa91e7baf45bbb4f8b9deedd → [Updates: v4.4.1]
actions/setup-go v7.0.0@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e
docker/login-action v4.1.0@4907a6ddec9925e35a0a9e82d7399ccc52663121 → [Updates: v4.6.0]
actions/create-github-app-token v3.2.0@bcd2ba49218906704ab6c1aa796996da409d3eb1
goreleaser/goreleaser-action v7.0.0@ec59f474b9834571250b370d4735c50f8e2d1e29 → [Updates: v7.2.3]
.github/workflows/scorecard.yml (4)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
ossf/scorecard-action v2.4.3@4eaacf0543bb3f2c246792bd56e8cdeffafb205a → [Updates: v2.4.4]
actions/upload-artifact v7.0.1@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a
github/codeql-action v4.35.1@c10b8064de6f491fea524254123dbe5e09572f13 → [Updates: v4.38.1]
.github/workflows/sonar.yaml (4)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
actions/setup-go v7.0.0@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e
SonarSource/sonarqube-scan-action v7.1.0@299e4b793aaa83bf2aba7c9c14bedbb485688ec4 → [Updates: v7.2.1, v8.2.2]
go ^1.25
.github/workflows/test.yml (3)
actions/checkout v7.0.1@3d3c42e5aac5ba805825da76410c181273ba90b1
actions/setup-go v7.0.0@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e
go ^1.25
gomod (1)
go.mod (27)
go 1.25.7
go 1.26.6 → [Updates: 1.27.1]
github.com/Masterminds/sprig/v3 v3.3.0
github.com/corazawaf/coraza/v3 v3.7.0 → [Updates: v3.8.0]
github.com/coreruleset/ftw-tests-schema/v2 v2.3.0 → [Updates: v3.0.1]
github.com/coreruleset/ftw-tests-schema/v3 v3.0.1
github.com/creativeprojects/go-selfupdate v1.5.2 → [Updates: v1.6.0]
github.com/go-logr/zerologr v1.2.3
github.com/google/uuid v1.6.0
github.com/hashicorp/go-getter/v2 v2.2.3 → [Updates: v2.2.4]
github.com/icza/backscanner v0.0.0-20241124160932-dff01ac50250@dff01ac50250
github.com/knadh/koanf/parsers/yaml v1.1.0 → [Updates: v1.1.1]
github.com/knadh/koanf/providers/env/v2 v2.0.0 → [Updates: v2.0.1]
github.com/knadh/koanf/providers/file v1.2.1
github.com/knadh/koanf/providers/rawbytes v1.0.0 → [Updates: v1.0.1]
github.com/knadh/koanf/v2 v2.3.4 → [Updates: v2.3.6]
github.com/kyokomi/emoji/v2 v2.2.13 → [Updates: v2.2.14]
github.com/rs/zerolog v1.35.0 → [Updates: v1.35.1]
github.com/spf13/cobra v1.10.2
github.com/stretchr/testify v1.11.1 → [Updates: v1.12.1]
github.com/yargevad/filepathx v1.0.0
go.yaml.in/yaml/v4 v4.0.0-rc.4 → [Updates: v4.0.0-rc.6]
golang.org/x/exp v0.0.0-20260410095643-746e56fc9e2f@746e56fc9e2f → [Updates: v0.0.0-20260908205506-85c1c2202aba]
golang.org/x/net v0.58.0 → [Updates: v0.59.0]
golang.org/x/time v0.15.0 → [Updates: v0.16.0]
wait4x.dev/v3 v3.6.0 → [Updates: v3.7.1]
golang.org/x/crypto v0.55.0 → [Updates: v0.56.0]
renovate-config (1)
renovate.json
This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.
View this repository on the Mend.io Web Portal.
Abandoned Dependencies
The following dependencies have not received updates for an extended period and may be unmaintained.
Note
Packages are marked as abandoned when they exceed the
abandonmentThresholdsince their last release. Unlike deprecated packages with official notices, abandonment is detected by release inactivity.View abandoned dependencies (5)
2024-08-292023-02-012024-01-232024-11-242021-05-01Awaiting Schedule
The following updates are awaiting their schedule. To get an update now, click on a checkbox below.
SonarSource/sonarqube-scan-action,actions/setup-node,alpine,docker/login-action,docker/setup-buildx-action,docker/setup-qemu-action,github.com/creativeprojects/go-selfupdate,github.com/hashicorp/go-getter/v2,github.com/knadh/koanf/parsers/yaml,github.com/knadh/koanf/providers/env/v2,github.com/knadh/koanf/providers/rawbytes,github.com/knadh/koanf/v2,github.com/kyokomi/emoji/v2,github.com/rs/zerolog,github.com/stretchr/testify,github/codeql-action,go,go.yaml.in/yaml/v4,goreleaser/goreleaser-action,ossf/scorecard-action,wait4x.dev/v3)PR Edited (Blocked)
The following updates have been manually edited so Renovate will no longer make changes. To discard all commits and start over, click on a checkbox below.
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
Detected Dependencies
dockerfile (1)
github-actions (7)
gomod (1)
renovate-config (1)