chore(deps): bump github.com/twmb/franz-go/pkg/kmsg from 1.13.1 to 1.14.0 - #157
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [github.com/twmb/franz-go/pkg/kmsg](https://github.com/twmb/franz-go) from 1.13.1 to 1.14.0. - [Changelog](https://github.com/twmb/franz-go/blob/master/CHANGELOG.md) - [Commits](twmb/franz-go@v1.13.1...v1.14.0) --- updated-dependencies: - dependency-name: github.com/twmb/franz-go/pkg/kmsg dependency-version: 1.14.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: Organization UI Review profile: ASSERTIVE Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Comment |
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
🔒 Security Scan Results —
|
| Stage | Status | Blocking? |
|---|---|---|
| Filesystem Scan | ✅ Clean | — |
| Docker Image Scan | ➖ Skipped | — |
| Docker Hub Health Score | ➖ Skipped | — |
| Pre-release Version Check | ✅ Clean | — |
Trivy
Filesystem Scan
✅ No vulnerabilities or secrets found.
Pre-release Version Check
✅ No unstable version pins found.
🔍 PR Validation Summary🚫 PR Blocked — 2 blocking failures
|
📊 Unit Test Coverage Report:
|
| Metric | Value |
|---|---|
| Overall Coverage | 86.8% ✅ PASS |
| Threshold | 80% |
Coverage by Package
| Package | Coverage |
|---|---|
github.com/LerianStudio/lib-streaming/v4/billing |
97.3% |
github.com/LerianStudio/lib-streaming/v4/internal/cloudevents |
93.7% |
github.com/LerianStudio/lib-streaming/v4/internal/config |
86.8% |
github.com/LerianStudio/lib-streaming/v4/internal/consumer |
92.3% |
github.com/LerianStudio/lib-streaming/v4/internal/contract |
85.0% |
github.com/LerianStudio/lib-streaming/v4/internal/dlqheader |
40.0% |
github.com/LerianStudio/lib-streaming/v4/internal/emitter |
100.0% |
github.com/LerianStudio/lib-streaming/v4/internal/kafkasec |
84.9% |
github.com/LerianStudio/lib-streaming/v4/internal/manifest |
84.0% |
github.com/LerianStudio/lib-streaming/v4/internal/producer |
89.1% |
github.com/LerianStudio/lib-streaming/v4/internal/transport/eventbridge |
87.3% |
github.com/LerianStudio/lib-streaming/v4/internal/transport/kafka |
56.4% |
github.com/LerianStudio/lib-streaming/v4/internal/transport/rabbitmq |
93.2% |
github.com/LerianStudio/lib-streaming/v4/internal/transport/sqs |
84.4% |
github.com/LerianStudio/lib-streaming/v4/internal/transport |
96.7% |
github.com/LerianStudio/lib-streaming/v4/streamingtest |
90.7% |
github.com/LerianStudio/lib-streaming/v4 |
86.2% |
Generated by Go PR Analysis workflow
|
Pull requests to main can only come from:
Your source branch: Please change the base branch or create a PR from an allowed branch. |
Bumps github.com/twmb/franz-go/pkg/kmsg from 1.13.1 to 1.14.0.
Changelog
Sourced from github.com/twmb/franz-go/pkg/kmsg's changelog.
... (truncated)
Commits
f132eaaMerge pull request #504 from twmb/bump_kmsgfa4e091franz-go: bump kmsg to v1.6.17182514Merge pull request #503 from twmb/kmsg_noretract23c38ffplugin/klogrus: use fmt.Sprint7ea9b09pkg/kmsg: avoid retract v2 directive063ab3eMerge pull request #502 from twmb/v1.14-changelogcd58477CHANGELOG: note incoming v1.14118e822Merge pull request #470 from JGShaw/master6fb7260Merge pull request #498 from twmb/ftbc4b0e4Merge pull request #496 from twmb/kadm_listDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)