Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 9, 2025

Bumps golang.org/x/net from 0.40.0 to 0.46.0.

Commits
  • 2002a06 go.mod: update golang.org/x dependencies
  • 59706cd html: impose open element stack size limit
  • 6ec8895 html: align in row insertion mode with spec
  • 5393563 http2: fix RFC 9218 write scheduler not being idempotent
  • b2ab371 internal/httpsfv: implement parsing support for date and display string
  • edb764c internal/httpsfv: add parsing functionality for types defined in RFC 8941
  • fbba2c2 internal/httpsfv: add support for consuming Display String and Date type
  • 47a241f http2: make the error channel pool per-Server
  • 51f657b webdav/internal/xml: use the built-in min function
  • f2e909b internal/httpsfv: implement parsing support for Dictionary and List type.
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Important

Bump golang.org/x/net to 0.46.0 and update related indirect dependencies in customer-os-neo4j-repository.

  • Dependencies:
    • Bump golang.org/x/net from 0.40.0 to 0.46.0 in go.mod and go.sum.
    • Update indirect dependencies: golang.org/x/crypto to 0.43.0, golang.org/x/sys to 0.37.0, and golang.org/x/text to 0.30.0 in go.mod and go.sum.

This description was created by Ellipsis for 7fd2160. You can customize this summary. It will automatically update as commits are pushed.

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Bumps [golang.org/x/net](https://github.com/golang/net) from 0.40.0 to 0.46.0.
- [Commits](golang/net@v0.40.0...v0.46.0)

---
updated-dependencies:
- dependency-name: golang.org/x/net
  dependency-version: 0.46.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Copy link
Contributor

@ellipsis-dev ellipsis-dev bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Important

Looks good to me! πŸ‘

Reviewed everything up to 7fd2160 in 1 minute and 6 seconds. Click for details.
  • Reviewed 107 lines of code in 2 files
  • Skipped 0 files when reviewing.
  • Skipped posting 2 draft comments. View those below.
  • Modify your settings and rules to customize what types of comments Ellipsis leaves. And don't forget to react with πŸ‘ or πŸ‘Ž to teach Ellipsis.
1. packages/server/customer-os-neo4j-repository/go.mod:19
  • Draft comment:
    Bump golang.org/x/net to v0.46.0. Ensure that this update is compatible with existing usage and that no breaking changes are introduced. Also verify that the transitive dependency updates (e.g. for x/crypto, x/sys, x/text, x/sync, and x/term) are expected.
  • Reason this comment was not posted:
    Confidence changes required: 33% <= threshold 50% None
2. packages/server/customer-os-neo4j-repository/go.sum:327
  • Draft comment:
    The go.sum file now reflects updated checksums for golang.org/x/net (v0.46.0) along with updates for its related transitive modules. Confirm that these changes are the expected outcome of running 'go mod tidy'.
  • Reason this comment was not posted:
    Confidence changes required: 0% <= threshold 50% None

Workflow ID: wflow_oOks3IX6DBDl81tu

You can customize Ellipsis by changing your verbosity settings, reacting with πŸ‘ or πŸ‘Ž, replying to comments, or adding code review rules.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code module/customer-os-neo4j-repository

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant