🌱 Update Builder Image group #110
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v1.33.0->v1.35.10.49.0->0.51.33.19.1->3.20.0v1.55.2->v1.58.2v0.14.2->v0.15.1Release Notes
adrienverge/yamllint (adrienverge/yamllint)
v1.35.1Compare Source
v1.35.0Compare Source
v1.34.0Compare Source
aquasecurity/trivy (docker.io/aquasec/trivy)
v0.51.2Compare Source
Changelog
eadc6fbfix: node-collector high and critical cves (#6707)cc489b1Merge pull request from GHSA-xcq4-m2r3-cmrj013f71achore: auto-bump golang patch versions (#6711)113a5b2fix(misconf): don't shift ignore rule related to code (#6708)733e5acfix(go): include only.version|.ver(no prefixes) ldflags forgobinaries(#6705)d311e49fix(go): add only non-empty root modules forgobinaries(#6710)cf1a7bfrefactor: unify package addition and vulnerability scanning (#6579)d465d9dfix: Golang version parsing from binaries w/GOEXPERIMENT (#6696)0af225cfix(conda): add supportpipdeps forenvironment.ymlfiles (#6675)6f64d55fix(misconf): skip Rego errors with a nil location (#6666)8c27430fix(misconf): skip Rego errors with a nil location (#6638)c2b46d3refactor: unify Library and Package structs (#6633)4368f11fix: use of specified context to obtain cluster name (#6645)5ec62f8docs: fix usage of image-config-scanners (#6635)v0.51.1Compare Source
Changelog
8016b82fix(fs): handle default skip dirs properly (#6628)7a25dadfix(misconf): load cached tf modules (#6607)9c794c0fix(misconf): do not use semver for parsing tf module versions (#6614)v0.51.0Compare Source
⚡Release highlights and summary⚡
👉 https://github.com/aquasecurity/trivy/discussions/6622
Changelog
14c1024refactor: move setting scanners when using compliance reports to flag parsing (#6619)998f750feat: introduce package UIDs for improved vulnerability mapping (#6583)770b141perf(misconf): Improve cause performance (#6586)3ccb1a0docs: trivy-k8s new experiance remove un-used section (#6608)58cfd1bchore(deps): bump github.com/docker/docker from 26.0.1+incompatible to 26.0.2+incompatible (#6612)715963ddocs: remove mention of GitLab Gold because it doesn't exist anymore (#6609)37da98dfeat(misconf): Use updated terminology for misconfiguration checks (#6476)cdee703chore(deps): bump github.com/aws/aws-sdk-go-v2/feature/s3/manager from 1.15.15 to 1.16.15 (#6593)6a2225bdocs: usegenericlink fromtrivy-repo(#6606)a2a02dedocs: update trivy k8s with new experience (#6465)e739ab8feat: support--skip-imagesscanning flag (#6334)c6d5d85BREAKING: add support for k8sdisable-node-collectorflag (#6311)194a814chore(deps): bump github.com/zclconf/go-cty from 1.14.1 to 1.14.4 (#6601)03830c5chore(deps): bump github.com/sigstore/rekor from 1.2.2 to 1.3.6 (#6599)8e814fachore(deps): bump google.golang.org/protobuf from 1.33.0 to 1.34.0 (#6597)2dc76bachore(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 (#6588)c17176bchore(deps): bump github.com/testcontainers/testcontainers-go from 0.28.0 to 0.30.0 (#6595)bce70afchore(deps): bump github.com/open-policy-agent/opa from 0.62.0 to 0.64.1 (#6596)4369a19feat: add ubuntu 23.10 and 24.04 support (#6573)5566548chore(deps): bump azure/setup-helm from 3.5 to 4 (#6590)a8af76achore(deps): bump actions/checkout from 4.1.2 to 4.1.4 (#6587)c8ed432chore(deps): bump github.com/aws/aws-sdk-go-v2/service/ecr from 1.24.6 to 1.27.4 (#6598)551a46edocs(go): add stdlib (#6580)261649bchore(deps): bump github.com/containerd/containerd from 1.7.13 to 1.7.16 (#6592)acfddd4chore(deps): bump github.com/go-openapi/runtime from 0.27.1 to 0.28.0 (#6600)419e3d2feat(go): parse main mod version from build info settings (#6564)f0961d5feat: respect custom exit code from plugin (#6584)a5d485cdocs: add asdf and mise installation method (#6063)29b8faffeat(vuln): Handle scanning conan v2.x lockfiles (#6357)e3bef02feat: add supportenvironment.yamlfiles (#6569)916f6c6fix: close plugin.yaml (#6577)8e6cd0efix: trivy k8s avoid deleting non-default node collector namespace (#6559)060d0bbBREAKING: support excludekinds/namespacesand includekinds/namespaces(#6323)2d090effeat(go): add main module (#6574)6343e4ffeat: add relationships (#6563)a018ee1ci: disableGocache forreusable-release.yaml(#6572)5da053fdocs: mention--show-suppressedis available in table (#6571)3d66cb8chore: fix sqlite to support loong64 (#6511)9aca98cfix(debian): sort dpkg info before parsing due to exclude directories (#6551)7811ad0docs: update info about config file (#6547)fae710ddocs: remove RELEASE_VERSION from trivy.repo (#6546)d2d4022fix(sbom): change error to warning for multiple OSes (#6541)164b025fix(vuln): skip empty versions (#6542)5dd9bd4feat(c): add license support for conan lock files (#6329)7c2017ffix(terraform): Attribute and fileset fixes (#6544)63c9469refactor: change warning if no vulnerability details are found (#6230)aa822c2refactor(misconf): improve error handling in the Rego scanner (#6527)30cc88fci: use tmp dir inside Trivy repo dir for GoReleaser (#6533)e32215cfeat(go): parse main module of go binary files (#6530)d4da83cchore(deps): bump golang.org/x/net from 0.21.0 to 0.23.0 (#6526)0d7d97drefactor(misconf): simplify the retrieval of module annotations (#6528)9873cf3chore(deps): bump github.com/hashicorp/go-getter from 1.7.3 to 1.7.4 (#6523)95c8fd9docs(nodejs): add info about supported versions of pnpm lock files (#6510)12ec0dffeat(misconf): loading embedded checks as a fallback (#6502)9b7d713fix(misconf): Parse JSON k8s manifests properly (#6490)13e72ecrefactor: remove parallel walk (#5180)a986199fix: close pom.xml (#6507)46d5abafix(secret): convert severity for custom rules (#6500)34ab09dfix(java): update logic to detectpom.xmlfile snapshot artifacts from remote repositories (#6412)1ba5b59fix: typo (#6283)4fab0f8docs(k8s,image): fix command-line syntax issues (#6403)d770981chore(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#6435)4337068fix(misconf): avoid panic if the scheme is not valid (#6496)d82d6cbfeat(image): goversion as stdlib (#6277)cfddfb3fix: add color for error inside of log message (#6493)dfcb0f9chore(deps): bump actions/add-to-project from 0.4.1 to 1.0.0 (#6438)183eaafdocs: fix links to OPA docs (#6480)94d6e8crefactor: replace zap with slog (#6466)336c47edocs: update links to IaC schemas (#6477)06b4473chore: bump Go to 1.22 (#6075)a51ceddrefactor(terraform): sync funcs with Terraform (#6415)53517d6feat(misconf): add helm-api-version and helm-kube-version flag (#6332)ad544e9chore(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azidentity from 1.4.0 to 1.5.1 (#6426)089368dchore(deps): bump github.com/go-openapi/strfmt from 0.22.0 to 0.23.0 (#6452)1163565chore(deps): bump github.com/hashicorp/golang-lru/v2 from 2.0.6 to 2.0.7 (#6430)637da2bchore(deps): bump aquaproj/aqua-installer from 2.2.0 to 3.0.0 (#6437)13190e9fix(terraform): eval submodules (#6411)6bca7c3refactor(terraform): remove unused options (#6446)8e4279brefactor(terraform): remove unused file (#6445)e98c873chore(deps): bump github.com/testcontainers/testcontainers-go to v0.28.0 (#6387)b1c2eabchore(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azcore from 1.9.0 to 1.10.0 (#6427)1c49a16fix(misconf): Escape template value correctly (#6292)8dd0fcdfeat(misconf): add support for wildcard ignores (#6414)74e4c6efix(cloudformation): resolveDedicatedMasterEnabledparsing issue (#6439)245c120refactor(terraform): remove metrics collection (#6444)86714bffeat(cloudformation): add support for logging and endpoint access for EKS (#6440)a758392chore(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.51.1 to 1.53.1 (#6424)4d00d8bchore(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.27.4 to 1.27.10 (#6428)3ad2b3echore(deps): bump go.etcd.io/bbolt from 1.3.8 to 1.3.9 (#6429)8baccd7fix(db): check schema version for image name only (#6410)e75a90fchore(deps): bump github.com/google/wire from 0.5.0 to 0.6.0 (#6425)6625bd3chore(deps): bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.149.1 to 1.155.1 (#6433)826fe60chore(deps): bump actions/cache from 4.0.0 to 4.0.2 (#6436)f23ed77feat(misconf): Support private registries for misconf check bundle (#6327)df024e8feat(cloudformation): inline ignore support for YAML templates (#6358)29dee32feat(terraform): ignore resources by nested attributes (#6302)1a67472perf(helm): load in-memory files (#6383)09e37b7feat(aws): apply filter options to result (#6367)87a9aa6feat(aws): quiet flag support (#6331)712dcd3fix(misconf): clear location URI for SARIF (#6405)625f22btest(cloudformation): add CF tests (#6315)6a2f6fdfix(cloudformation): infer type after resolving a function (#6406)v0.50.4Compare Source
Note
v0.50.3 hads a critical problem, and we deleted it and released v0.50.4.
Changelog
e47fd48fix(sbom): change error to warning for multiple OSes (#6541)v0.50.2Compare Source
Changelog
9aa9e17ci: use tmp dir inside Trivy repo dir for GoReleaser (#6533)058f483chore(deps): bump golang.org/x/net from 0.21.0 to 0.23.0 (#6526)9e3d2c5chore(deps): bump github.com/hashicorp/go-getter from 1.7.3 to 1.7.4 (#6523)2ad8e33fix(java): update logic to detectpom.xmlfile snapshot artifacts from remote repositories (#6412)v0.50.1Compare Source
Changelog
5f69937fix(sbom): fix error when parent of SPDX Relationships is not a package. (#6399)258d153fix(nodejs): mergeIndirect,Dev,ExternalReferencesfields for same deps frompackage-lock.jsonfiles v2 or later (#6356)ade033adocs: add info about support for package license detection infs/repomodes (#6381)f85c9fafix(nodejs): add support for parsingworkspacesfrompackage.jsonas an object (#6231)9d7f5c9fix: use0600perms for tmp files for post analyzers (#6386)f148eb1fix(helm): scan the subcharts once (#6382)97f95c4docs(terraform): add file patterns for Terraform Plan (#6393)abd62aefix(terraform): сhecking SSE encryption algorithm validity (#6341)7c409fdfix(java): parse modules frompom.xmlfiles once (#6312)1b68327chore(deps): bump github.com/docker/docker from 25.0.3+incompatible to 25.0.5+incompatible (#6364)a2482c1fix(server): add Locations forPackagesin client/server mode (#6366)e866bd5fix(sbom): add check forCreationInfoto nil when detecting SPDX created using Trivy (#6346)1870f28fix(report): don't include empty strings in.vulnerabilities[].identifiers[].urlwhengitlab.tplis used (#6348)6c81e55chore(ubuntu): Add Ubuntu 22.04 EOL date (#6371)v0.50.0Compare Source
⚡Release highlights and summary⚡
👉 https://github.com/aquasecurity/trivy/discussions/6340
Changelog
8ec3938chore(deps): bump google.golang.org/protobuf from 1.32.0 to 1.33.0 (#6321)f6c5d58feat(java): add support licenses and graph for gradle lock files (#6140)c4022d6feat(vex): consider root component for relationships (#6313)3177924fix: increase the default buffer size for scanning dpkg status files by 2 times (#6298)dd9620echore: updates wazero to v1.7.0 (#6301)eb3ceb3feat(sbom): Support license detection for SBOM scan (#6072)ab74caarefactor(sbom): use intermediate representation for SPDX (#6310)71da44fdocs(terraform): improve documentation for filtering by inline comments (#6284)102b6dffix(terraform): fix policy document retrieval (#6276)aa19aafrefactor(terraform): remove unused custom error (#6303)8fcef35refactor(sbom): add intermediate representation for BOM (#6240)fb8c516fix(amazon): check only major version of AL to find advisories (#6295)96bd7acfix(db): use schema version as tag only fortrivy-dbandtrivy-java-dbregistries by default (#6219)12c5bf0fix(nodejs): add name validation for package name frompackage.json(#6268)d6c40cedocs: Added install instructions for FreeBSD (#6293)9d2057afeat(image): customer podman host or socket option (#6256)2a9d9bdchore(deps): bump wazero from 1.2.1 to 1.6.0 (#6290)617c3e3feat(java): mark dependencies frommaven-invoker-pluginintegration tests pom.xml files asDev(#6213)56cedc0fix(license): reorder logic of how python package licenses are acquired (#6220)d7d7265test(terraform): skip cached modules (#6281)6639911feat(secret): Support for detecting Hugging Face Access Tokens (#6236)337cb75fix(cloudformation): support of all SSE algorithms for s3 (#6270)9361cdbfeat(terraform): Terraform Plan snapshot scanning support (#6176)ee01e6echore(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.26.6 to 1.27.4 (#6249)3d2f583fix: typo function name and comment optimization (#6200)c4b5ab7fix(java): don't ignore runtime scope for pom.xml files (#6223)355c1b5chore(deps): bump helm/kind-action from 1.8.0 to 1.9.0 (#6242)7244ecechore(deps): bump golangci/golangci-lint-action from 3.7.0 to 4.0.0 (#6243)5cd0566chore(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.48.1 to 1.51.1 (#6251)ebb74a5chore(deps): bump github.com/hashicorp/go-uuid from 1.0.1 to 1.0.3 (#6253)24a8d6achore(deps): bump github.com/open-policy-agent/opa from 0.61.0 to 0.62.0 (#6250)9d0d7adchore(deps): bump github.com/containerd/containerd from 1.7.12 to 1.7.13 (#6247)e8230e1chore(deps): bump go.uber.org/zap from 1.26.0 to 1.27.0 (#6246)04535b5fix(license): add FilePath to results to allow for license path filtering via trivyignore file (#6215)939e34echore(deps): Upgrade iac deps (#6255)7cb6c02feat: add info log message about dev deps suppression (#6211)c1d26ectest(k8s): use test-db for k8s integration tests (#6222)4f70468ci: add maximize-build-space forTestjob (#6221)1dfece8fix(terraform): fix root module search (#6160)e1ea02ctest(parser): squash test data for yarn (#6203)64926d8fix(terraform): do not re-expand dynamic blocks (#6151)eb54bb5docs: update ecosystem page reporting with db app (#6201)dc76c6efix: k8s summary separate infra and user finding results (#6120)1b7e474fix: add context to target finding on k8s table view (#6099)876ab84fix: Printf format err (#6198)eef7c4frefactor: better integration of the parser into Trivy (#6183)069aae5chore(deps): bump helm.sh/helm/v3 from 3.14.1 to 3.14.2 (#6189)4a9ac6dfeat(terraform): Add hyphen and non-ASCII support for domain names in credential extraction (#6108)9c5e5a0fix(vex): CSAF filtering should consider relationships (#5923)388f476refactor(report): Replacingsource_locationingithubreport when scanning an image (#5999)cd3e4bcfeat(vuln): ignore vulnerabilities by PURL (#6178)ce81c05feat(java): add support for fetching packages from repos mentioned in pom.xml (#6171)cf0f0d0feat(k8s): rancher rke2 version support (#5988)8a3a113docs: update kbom distribution for scanning (#6019)19495bachore: update CODEOWNERS (#6173)e787e1afix(swift): try to use branch to resolve version (#6168)327cf88fix(terraform): ensure consistent path handling across OS (#6161)8221473fix(java): add only valid libs frompom.propertiesfiles fromjars(#6164)7694df1fix(sbom): skip executable file analysis if Rekor isn't a specified SBOM source (#6163)74dc5b6chore(deps): merge go-dep-parser into Trivy (#6094)32a02a9docs(report): add remark aboutpathto filter licenses using.trivyignore.yamlfile (#6145)fb79ea7docs: update template path for gitlab-ci tutorial (#6144)c6844a7feat(report): support for filtering licenses and secrets via rego policy files (#6004)a813506fix(cyclonedx): move root component from scanned cyclonedx file to output cyclonedx file (#6113)14adbb4refactor(deps): Merge defsec into trivy (#6109)efe0e0fchore(deps): bump helm.sh/helm/v3 from 3.14.0 to 3.14.1 (#6142)73dde32docs: add SecObserve in CI/CD and reporting (#6139)aadbad1fix(alpine): exclude empty licenses for apk packages (#6130)14a0981docs: add docs tutorial on custom policies with rego (#6104)3ac6388fix(nodejs): use project dir when searching for workspaces for Yarn.lock files (#6102)3c1601bfeat(vuln): show suppressed vulnerabilities in table (#6084)c107e1adocs: rename governance to principles (#6107)b26f217docs: add governance (#6090)7bd3b63refactor(deps): Merge trivy-iac into Trivy (#6005)535b5a9feat(java): add dependency location support forgradlefiles (#6083)428420echore(deps): bump github.com/aws/aws-sdk-go-v2/feature/s3/manager from 1.15.11 to 1.15.15 (#6038)7fec991fix(misconf): getuserfromConfig.User(#6070)v0.49.1Compare Source
Changelog
6ccc0a5fix: check unescapedBomRefwhen matchingPkgIdentifier(#6025)458c5d9docs: Fix broken link to "pronunciation" (#6057)5c0ff6dchore(deps): bump actions/upload-artifact from 3 to 4 (#6047)e2bd7f7chore(deps): bump github.com/spf13/viper from 1.16.0 to 1.18.2 (#6042)f95fbcbchore(deps): bump k8s.io/api from 0.29.0 to 0.29.1 (#6043)7651bf5ci: reduceroot-reserve-mbsize formaximize-build-space(#6064)fc20dfdchore(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.48.0 to 1.48.1 (#6041)3bd80e7chore(deps): bump github.com/open-policy-agent/opa from 0.60.0 to 0.61.0 (#6039)2900a21fix: fix cursor usage in Redis Clear function (#6056)85cb9a7chore(deps): bump github.com/go-openapi/runtime from 0.26.0 to 0.27.1 (#6037)4e962c0fix(nodejs): add local packages support forpnpm-lock.yamlfiles (#6034)aa48a7bchore(deps): bump sigstore/cosign-installer from 3.3.0 to 3.4.0 (#6046)8aabbeachore(deps): bump github.com/go-openapi/strfmt from 0.21.7 to 0.22.0 (#6044)ec02a65chore(deps): bump actions/cache from 3.3.2 to 4.0.0 (#6048)27d35batest: fix flakyTestDockerEngine(#6054)c3a66dachore(deps): bump github.com/google/go-containerregistry from 0.17.0 to 0.19.0 (#6040)2000fe2chore(deps): bump easimon/maximize-build-space from 9 to 10 (#6049)2be6421chore(deps): bump alpine from 3.19.0 to 3.19.1 (#6051)41c0ef6chore(deps): bump github.com/moby/buildkit from 0.11.6 to 0.12.5 (#6028)golangci/golangci-lint (golangci/golangci-lint)
v1.58.2Compare Source
canonicalheader: from 1.0.6 to 1.1.1gosec: from 2.19.0 to 2.20.0musttag: from 0.12.1 to 0.12.2nilnil: from 0.1.8 to 0.1.9v1.58.1Compare Source
tagalign: from 1.3.3 to 1.3.4protogetter: from 0.3.5 to 0.3.6gochecknoinits: fix analyzer namegihub-actionsoutput format (removes GitHub Action problem matchers)v1.58.0Compare Source
fatcontext: https://github.com/Crocmagnon/fatcontextcanonicalheader: https://github.com/lasiar/canonicalheadercopyloopvar: from 1.0.10 to 1.1.0 (ignore-aliasis replaced bycheck-aliaswith the opposite behavior)decorder: from 0.4.1 to 0.4.2errname: from 0.1.12 to 0.1.13errorlint: from 1.4.8 to 1.5.1 (new optionsallowed-errorsandallowed-errors-wildcard)execinquery: deprecate lintergci: from 0.12.3 to 0.13.4 (new sectionlocalModule)gocritic: from 0.11.2 to 0.11.3spancheck: from 0.5.3 to 0.6.1goerr113is replaced byerr113gomndis replaced bymndgomodguard: from 1.3.1 to 1.3.2grouper: from 1.1.1 to 1.1.2intrange: from 0.1.1 to 0.1.2mirror: from 1.1.0 to 1.2.0misspell: from 0.4.1 to 0.5.1musttag: from 0.9.0 to 0.12.1nilnil: from 0.1.7 to 0.1.8nonamedreturns: from 1.0.4 to 1.0.5promlinter: from 0.2.0 to 0.3.0sloglint: from 0.5.0 to 0.6.0unparam: bump to HEAD (063aff9)whitespace: from 0.1.0 to 0.1.1go.modreport inside autogenerated processortypecheckissues when neededtypecheckerrors inside diff processordeadcode: deprecated since v1.49.0 (2022-08-23).exhaustivestruct: deprecated since v1.46.0 (2022-05-08).golint: deprecated since v1.41.0 (2021-06-15).ifshort: deprecated since v1.48.0 (2022-08-04).interfacer: deprecated since v1.38.0 (2021-03-03).maligned: deprecated since v1.38.0 (2021-03-03).nosnakecase: deprecated since v1.48.0 (2022-08-04).scopelint: deprecated since v1.39.0 (2021-03-25).structcheck: deprecated since v1.49.0 (2022-08-23).varcheck: deprecated since v1.49.0 (2022-08-23).config verifycommandpre-commithook to runconfig verifygithub-actionoutputGitHub Action (v5.1.0) for golangci-lint:
pull,pull_request_target, andmerge_groupevents with the optiononly-new-issues.skip-pkg-cacheandskip-build-cachehave been removed because the cache related to Go itself is already handled byactions/setup-go.v1.57.2Compare Source
contextcheck: from 1.1.4 to 1.1.5copyloopvar: from 1.0.8 to 1.0.10ginkgolinter: from 0.16.1 to 0.16.2goconst: from 1.7.0 to 1.7.1gomoddirectives: from 0.2.3 to 0.2.4intrange: from 0.1.0 to 0.1.1colored-taboutput formatinspectionTypeservice messagev1.57.1Compare Source
contextcheck).v1.57.0Compare Source
copyloopvar: https://github.com/karamaru-alpha/copyloopvarintrange: https://github.com/ckaznocha/intrangedupword: from 0.0.13 to 0.0.14gci: from 0.12.1 to 0.12.3ginkgolinter: from 0.15.2 to 0.16.1 (new optionforce-expect-to,validate-async-intervals, andforbid-spec-pollution)go-critic: from 0.11.1 to 0.11.2go-critic: support ofenable-allanddisable-alloptionsgo-spancheck: from 0.5.2 to 0.5.3gomodguard: from 1.3.0 to 1.3.1govet: deprecation ofcheck-shadowinggovet: disable temporarilyhttpresponsebecause of a bug https://github.com/golang/go/issues/66259misspell: addextra-wordsmusttag: from 0.8.0 to 0.9.0nakedret: from 2.0.2 to 2.0.4paralleltest: from 1.0.9 to 1.0.10perfsprint: from 0.6.0 to 0.7.1 (new optionstrconcat)protogetter: from 0.3.4 to 0.3.5revive: addexcludeoptionsloglint: from 0.4.0 to 0.5.0 (new optionno-global)staticcheck: from 0.4.6 to 0.4.7testifylint: from 1.1.2 to 1.2.0 (new optionbool-compare)unconvert: to HEAD (new optionsfast-mathandsafe)wrapcheck: from 2.8.1 to 2.8.3copyloopvarandintrangeon Go < 1.22--enable-only)output.sort-order)run.concurrency=0config verifycommand to check the configuration against the JSON Schemaissues.exclude-generated-strict)severityfrom linters (@linter)gosecoutput.formats.pathmergeLineIssueson multiple issuesdeadcode,exhaustivestruct,golint,ifshort,interfacer,maligned,nosnakecase,scopelint,structcheck,varcheck)show-statsoption fromruntooutputconfiguration sectionrun.skip-xxxoptions byissues.exclude-xxxoptionsoutput.formatbyoutput.formatswith a new file configuration syntaxGOTOOLCHAIN=autoinside the Docker imagesConfiguration
📅 Schedule: Branch creation - "on the first day of the month" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.