Dependency Dashboard
Nobody has claimed this yet.
- Dominant language
- Go
- Stars
- 103
- Forks
- 257
- Avg merge
- 2d 21h
- Merged PRs (30d)
- 43
Description
This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.
Repository Problems
Renovate tried to run on this repository, but found these problems.
- ⚠️ WARN: Some release(s) did not have a releaseTimestamp, but as we're running with minimumReleaseAgeBehaviour=timestamp-optional, proceeding. See debug logs for more information
- ⚠️ WARN: Some upgrade(s) did not have a releaseTimestamp, but as we're running with minimumReleaseAgeBehaviour=timestamp-optional, proceeding. See debug logs for more information
- ⚠️ WARN: Package lookup failures
Pending Status Checks
The following updates await pending status checks. To force their creation now, click on a checkbox below.
- OCM-00000 | ci: Update module github.com/go-logr/logr to v1.4.4
[!WARNING]
Renovate failed to look up the following dependencies:Failed to look up go package go.uber.org/mock: no-result,Failed to look up go package github.com/aws/aws-sdk-go-v2/service/s3: no-result,Failed to look up go package github.com/onsi/gomega: no-result.Files affected:
.bingo/mockgen.mod,go.mod
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
- OCM-00000 | ci: Update Konflux references
- OCM-00000 | ci: Update aws-sdk (
github.com/aws/aws-sdk-go-v2/service/route53,github.com/aws/aws-sdk-go-v2/service/servicequotas) - OCM-00000 | ci: Update registry.access.redhat.com/ubi9/go-toolset Docker tag to v1.26.5-1784190466
- Click on this checkbox to rebase all open PRs at once
PR Closed (Blocked)
The following updates are blocked by an existing closed PR. To recreate the PR, click on a checkbox below.
- OCM-00000 | ci: Update github.com/nathan-fiscaletti/consolesize-go digest to 3bac975
- OCM-00000 | ci: Update bingo-tooling to v1.6.0
- OCM-00000 | ci: Update module github.com/alessio/shellescape to v1.6.0
- OCM-00000 | ci: Update helpers to v3
- OCM-00000 | ci: Update module github.com/dchest/validator to v1
- OCM-00000 | ci: Update module github.com/golang-jwt/jwt/v4 to v5
- OCM-00000 | ci: Update registry.access.redhat.com/ubi9/go-toolset Docker tag to v9
Detected Dependencies
dockerfile (5)
Dockerfile (1)
registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]Dockerfile.clients (1)
registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]images/Dockerfile.e2e (3)
registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]images/Dockerfile.konflux (1)
registry.access.redhat.com/ubi9/go-toolset 1.26.5-1783931515→ [Updates:1.26.5-1784190466,9.8-1784190466]images/Dockerfile.release
gomod (8)
.bingo/bingo.mod (2)
go 1.26.3github.com/bwplotka/bingo v0.10.0.bingo/gci.mod (2)
go 1.26.3github.com/daixiang0/gci v0.14.0.bingo/go-bindata.mod (2)
go 1.26.3github.com/go-bindata/go-bindata v3.1.2+incompatible.bingo/golangci-lint.mod (2)
go 1.26.3github.com/golangci/golangci-lint/v2 v2.12.2.bingo/goreleaser.mod (1)
go 1.26.3.bingo/govulncheck.mod (2)
go 1.25.8golang.org/x/vuln v1.1.4→ [Updates:v1.6.0].bingo/mockgen.mod (2)
go 1.26.3go.uber.org/mock v0.4.0go.mod (50)
go 1.26.3github.com/AlecAivazis/survey/v2 v2.3.7github.com/Masterminds/semver v1.5.0github.com/PuerkitoBio/goquery v1.12.0github.com/aws/aws-sdk-go-v2 v1.42.1github.com/aws/aws-sdk-go-v2/config v1.32.30github.com/aws/aws-sdk-go-v2/credentials v1.19.29github.com/aws/aws-sdk-go-v2/service/cloudformation v1.74.1github.com/aws/aws-sdk-go-v2/service/ec2 v1.316.1github.com/aws/aws-sdk-go-v2/service/iam v1.55.1github.com/aws/aws-sdk-go-v2/service/organizations v1.52.1→ [Updates:v1.52.2]github.com/aws/aws-sdk-go-v2/service/s3 v1.105.2github.com/aws/aws-sdk-go-v2/service/secretsmanager v1.43.1github.com/aws/aws-sdk-go-v2/service/servicequotas v1.36.0→ [Updates:v1.36.1]github.com/aws/aws-sdk-go-v2/service/sts v1.44.1github.com/aws/smithy-go v1.27.4github.com/briandowns/spinner v1.23.2github.com/dchest/validator v0.0.0-20191217151620-8e45250f2371@8e45250f2371→ [Updates:v1.0.0]github.com/dustin/go-humanize v1.0.1github.com/golang-jwt/jwt/v4 v4.5.2→ [Updates:v5.3.1]github.com/golang/glog v1.2.5github.com/google/go-cmp v0.7.0github.com/google/uuid v1.6.0github.com/hashicorp/go-version v1.9.0github.com/nathan-fiscaletti/consolesize-go v0.0.0-20210105204122-a87d9f614b9d@a87d9f614b9d→ [Updates:v0.0.0-20260406063853-3bac975de715]github.com/onsi/ginkgo/v2 v2.32.0github.com/onsi/gomega v1.42.1github.com/openshift-online/ocm-api-model/clientapi v0.0.461github.com/openshift-online/ocm-common v0.0.44github.com/openshift-online/ocm-sdk-go v0.1.505github.com/pkg/errors v0.9.1github.com/robfig/cron/v3 v3.0.1github.com/sirupsen/logrus v1.9.4github.com/spf13/cobra v1.10.2github.com/spf13/pflag v1.0.10github.com/zgalor/weberr v0.9.0gitlab.com/c0b/go-ordered-json v0.0.0-20201030195603-febf46534d5a@febf46534d5ago.uber.org/mock v0.6.0gopkg.in/yaml.v3 v3.0.1k8s.io/apimachinery v0.36.2k8s.io/utils v0.0.0-20260707023825-cf1189d6abe3@cf1189d6abe3sigs.k8s.io/yaml v1.6.0github.com/alessio/shellescape v1.4.1→ [Updates:v1.6.0]github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs v1.79.1github.com/aws/aws-sdk-go-v2/service/route53 v1.64.0→ [Updates:v1.64.1]github.com/go-logr/logr v1.4.3→ [Updates:v1.4.4]golang.org/x/crypto v0.54.0golang.org/x/text v0.40.0gopkg.in/yaml.v2 v2.4.0→ [Updates:v3.0.1]github.com/kubermatic/glog-logrus v0.0.0-20180829085450-3fa5b9870d1d@3fa5b9870d1d
regex (1)
hack/govulncheck.sh (1)
jqlang/jq 1.8.2
tekton (1)
.tekton/rosa-github-release.yaml (19)
quay.io/konflux-ci/tekton-catalog/task-init 0.4@sha256:5a423246792ac501ea279229b42ee57da9927da441c04b5c9ff86817b0856b08quay.io/konflux-ci/tekton-catalog/task-git-clone-oci-ta 0.2@sha256:e5ba1f8549e6a0f043629ef00bea7511957121e05304b688f40ff12304560f38quay.io/konflux-ci/tekton-catalog/task-prefetch-dependencies-oci-ta 0.3@sha256:92956e75cd4714286f9c0c043f5301d1c0df1d750884edeceee87e0a91cc1975quay.io/konflux-ci/tekton-catalog/task-buildah-oci-ta 0.10@sha256:daa9a28265b8d92033ac94f610ff6bc3135e1b2cbf65076af74a76dd940a46a9quay.io/konflux-ci/tekton-catalog/task-build-image-index 0.3@sha256:70c52e88e737340e7b58418fda38c13273aa7cdf587b825778e3560aca1d1133quay.io/konflux-ci/tekton-catalog/task-source-build-oci-ta 0.3@sha256:2dd5b3e88f2ff3ea5679dfae07a14ee840b828610edd0c2e1ff2d8b25e808fe2quay.io/konflux-ci/tekton-catalog/task-deprecated-image-check 0.5@sha256:0ccc688a77e9b7b0b8973c132a1e840844137e77f887be4a0bec8893b0776872quay.io/konflux-ci/tekton-catalog/task-clair-scan 0.3@sha256:f5b4415db9ac1fba3e11d993a617e0b275d1f0ed2fc669b12c400ed848c39174quay.io/konflux-ci/tekton-catalog/task-ecosystem-cert-preflight-checks 0.2@sha256:2e5ebe0b462fd19d85ad314f2709a27b905b729046b5d9bce282b10d333e9d6cquay.io/konflux-ci/tekton-catalog/task-sast-snyk-check-oci-ta 0.5@sha256:b865be59a6ea0cf86e08fc8085784981a00f2c6f9d9018d4f62f210b9c572ae0quay.io/konflux-ci/tekton-catalog/task-clamav-scan 0.3@sha256:53a02326bfb930ca5ef6bfa7a33acca833d57752f34f3cb79255fe2e25e7d217quay.io/konflux-ci/tekton-catalog/task-sast-coverity-check-oci-ta 0.3@sha256:e92d00ed858233d0096627861192d3e4fc013cf1559c0d0b0ea0657d3377ce75quay.io/konflux-ci/tekton-catalog/task-coverity-availability-check 0.2@sha256:8b501440a960aec446db2ebc6625a49d0317a9fc7bf0f7bd9b18cb63052db7dequay.io/konflux-ci/tekton-catalog/task-sast-shell-check-oci-ta 0.1@sha256:2e8a61aaaacd8939b01b50cc1cb1abeb8ce377be824630c45401e96114744bffquay.io/konflux-ci/tekton-catalog/task-sast-unicode-check-oci-ta 0.4@sha256:924deef20c28aea91528879a423761c47d09b5f4d6aa9946db352c0aa371439equay.io/konflux-ci/tekton-catalog/task-apply-tags 0.3@sha256:6387614ae4f9efa8abb7c4175db0ce5d958bc2b90665b4704880e46fbe0535bfquay.io/konflux-ci/tekton-catalog/task-push-dockerfile-oci-ta 0.3@sha256:f3e97e6eaf09d6585e915c3e7b82d110d97e34202bf591a2d990127ba5bb362dquay.io/konflux-ci/tekton-catalog/task-rpms-signature-scan 0.2@sha256:53678a169a41152bb6a4ea69d2a345fff8124e857b4146bf9ba45a4f0385a8bb→ [Updates:0.2]quay.io/konflux-ci/tekton-catalog/task-show-sbom 0.1@sha256:8fe70a95c28b1ac92abd67a7477ad960218f3f570a9f8a12ad082dff7e9c9579
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start with the Dependency Dashboard entries and the linked pull requests, then inspect go.mod, .bingo/mockgen.mod, the listed Dockerfiles, hack/govulncheck.sh, and .tekton/rosa-github-release.yaml. Done would require resolving the reported lookup or release-timestamp problems and determining which pending dependency updates can be completed, but the issue does not define a single acceptance target.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- docker, go
- Domain
- build-system, ci-cd, devops
- Issue type
- Refactor
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100