Skip to content

deps: bump the go-deps group across 1 directory with 15 updates - #806

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/go-deps-f5d331d555
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/go_modules/go-deps-f5d331d555

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 10, 2026

Copy link
Copy Markdown
Contributor

Bumps the go-deps group with 15 updates in the / directory:

Package From To
github.com/aws/aws-sdk-go-v2/config 1.33.6 1.33.7
github.com/aws/aws-sdk-go-v2/credentials 1.20.6 1.20.7
github.com/aws/aws-sdk-go-v2/service/dynamodb 1.69.1 1.70.1
github.com/aws/smithy-go 1.28.1 1.28.4
github.com/dustin/go-humanize 1.0.1 1.1.0
github.com/klauspost/compress 1.19.2 1.20.1
github.com/moby/moby/api 1.55.0 1.56.1
github.com/moby/moby/client 0.5.1 0.6.1
github.com/nats-io/nats-server/v2 2.14.6 2.15.0
github.com/nats-io/nats.go 1.53.1 1.54.0
go.opentelemetry.io/contrib/bridges/otelslog 0.20.1 0.21.0
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp 0.71.0 0.72.0
go.opentelemetry.io/contrib/instrumentation/runtime 0.71.0 0.72.0
golang.org/x/sync 0.23.0 0.24.0
golang.org/x/time 0.15.0 0.16.0

Updates github.com/aws/aws-sdk-go-v2/config from 1.33.6 to 1.33.7

Commits

Updates github.com/aws/aws-sdk-go-v2/credentials from 1.20.6 to 1.20.7

Commits

Updates github.com/aws/aws-sdk-go-v2/service/dynamodb from 1.69.1 to 1.70.1

Commits

Updates github.com/aws/smithy-go from 1.28.1 to 1.28.4

Changelog

Sourced from github.com/aws/smithy-go's changelog.

Release (2026-10-09)

General Highlights

  • Dependency Update: Updated to the latest SDK module versions

Module Highlights

  • github.com/aws/smithy-go: v1.28.5
    • Bug Fix: Retain the key with the zero value when encountering a null-value key in a dense map. This matches how legacy code-generated JSON deserializers behaved.

Release (2026-10-07)

General Highlights

  • Dependency Update: Updated to the latest SDK module versions

Module Highlights

  • github.com/aws/smithy-go: v1.28.4
    • Bug Fix: Revert #698 that fixed JoinPath with trailing slash. This has a side effect on certain S3 API paths in the downstream SDK that need more consideration.

Release (2026-10-06)

General Highlights

  • Dependency Update: Updated to the latest SDK module versions

Module Highlights

  • github.com/aws/smithy-go: v1.28.3
    • Bug Fix: Accept either casing of message/Message on modeled JSON error structures in schema-based deserialization, and emit the smithy.api#error trait in generated schemas
    • Bug Fix: Include the underlying error when logging failures to discard or close an HTTP response body

Release (2026-09-18)

General Highlights

  • Dependency Update: Updated to the latest SDK module versions

Module Highlights

  • github.com/aws/smithy-go: v1.28.2
    • Bug Fix: Avoid allocating a slice in ValidateEndpointHost by indexing into the hostname instead of using strings.Split.
    • Bug Fix: Fix event stream decode panic on unknown header value type.
    • Bug Fix: Fix schema-serde CBOR decode panic on malformed string/blob length.
    • Bug Fix: JoinPath keeps a trailing slash when the added path is a slash.

Release (2026-08-26)

General Highlights

  • Dependency Update: Updated to the latest SDK module versions

Module Highlights

  • github.com/aws/smithy-go: v1.28.1
    • Bug Fix: Fix broken AddLogger middleware since its insert point was removed.

Release (2026-08-25.2)

... (truncated)

Commits

Updates github.com/dustin/go-humanize from 1.0.1 to 1.1.0

Commits

Updates github.com/klauspost/compress from 1.19.2 to 1.20.1

Release notes

Sourced from github.com/klauspost/compress's releases.

v1.20.1

What's Changed

New Contributors

Full Changelog: klauspost/compress@v1.20.0...v1.20.1

v1.20.0

What's Changed

New Contributors

Full Changelog: klauspost/compress@v1.19.2...v1.20.0

Commits
  • 5d880f2 tests: Pre-release cleanups (#1231)
  • 5ed8a01 Report unexpected EOF for truncated Huffman extra bits (#1229)
  • 0bed724 flate: avoid FMA in EstimatedBits for portable rounding (#1224)
  • 147b531 zstd: apply reset options to reused frame decoders (#1226)
  • 58dac78 gzhttp: only decompress a request when gzip is the outermost coding (#1223)
  • 9b00a55 gzhttp: preserve caller request headers in Transport (#1225)
  • de8f55d ossfuzz: include zstd seqdec path tests (#1222)
  • a1c49c6 flate: precompute literal costs for findMatch (#1217)
  • ebd8190 flate: avoid the hand-rolled sorts when generating Huffman codes (#1214)
  • 4dc0d32 flate: use separate tables in histogramSplit (#1215)
  • Additional commits viewable in compare view

Updates github.com/moby/moby/api from 1.55.0 to 1.56.1

Release notes

Sourced from github.com/moby/moby/api's releases.

api/v1.56.1

1.56.1

Changelog

api/v1.56.0

1.56.0

Changelog

  • GET /containers/json now supports an annotation filter to filter containers by annotation, either by key (annotation=key) or by key and value (annotation="key=value"), similar to the existing label filter. moby/moby#53538
  • POST /containers/create now supports HostConfig.Umask to set the initial umask for a Unix container. When set, the daemon includes the value in the OCI process configuration for the container's entrypoint, exec processes, and healthchecks. When omitted, the runtime's default behavior applies.moby/moby#53463
  • api/docs: sync API docs v1.25 - v1.55. moby/moby#53246
  • api/swagger: Align Healthcheck name with Go struct. moby/moby#53567
  • api/types/plugin: Deprecated plugin.Privileges sorting methods in favor of slices.SortFunc. moby/moby#53511
  • api/types/plugin: fix Privileges Swap implementation. moby/moby#53510
  • api: Bump to 1.56. moby/moby#53425
  • api: document Task.NetworksAttachments in the swagger definition. moby/moby#53082
  • api: remove gotest.tools from tests. moby/moby#53535
  • api: swagger: Use int64 for build query params. moby/moby#53520
  • api: use blackbox testing. moby/moby#53525
  • Fix API reference documenting an unsupported names filter for GET /configs. moby/moby#53447
Commits
  • 14ebc60 Merge pull request #53830 from tonistiigi/update-buildkit-v0.34.0-rc1
  • 8eded0e Merge pull request #53671 from thaJeztah/add_WithHTTPRequestHook
  • c4e39af Merge pull request #53596 from vvoland/c8d-refactor-imgload
  • b8a569e client: add WithHTTPRequestHook option
  • 0fed273 Merge pull request #53803 from thaJeztah/etchosts_cleanups
  • 80c72a3 Merge pull request #53831 from corhere/fix-dnsproxy-servfail-test
  • 1cfa161 daemon/containerd: Split image loading into import and unpack steps
  • e7272aa Merge pull request #53606 from flostellbrink/fix/swagger-yaml-indentation
  • 357096e libnetwork/etchosts: keep file open when updating hosts
  • 012b2ef libnetwork/etchosts: propagate file close errors
  • Additional commits viewable in compare view

Updates github.com/moby/moby/client from 0.5.1 to 0.6.1

Release notes

Sourced from github.com/moby/moby/client's releases.

client/v0.6.1

0.6.1

Changelog

client/v0.6.0

0.6.0

Changelog

Changelog

Sourced from github.com/moby/moby/client's changelog.

0.6.1 (2013-08-23)

  • Registry: Pass "meta" headers in API calls to the registry
  • Packaging: Use correct upstart script with new build tool
  • Packaging: Use libffi-dev, don't build it from sources
  • Packaging: Removed duplicate mercurial install command

0.6.0 (2013-08-22)

  • Runtime: Load authConfig only when needed and fix useless WARNING
  • Runtime: Add lxc-conf flag to allow custom lxc options
  • Runtime: Fix race conditions in parallel pull
  • Runtime: Improve CMD, ENTRYPOINT, and attach docs.
  • Documentation: Small fix to docs regarding adding docker groups
  • Documentation: Add MongoDB image example
  • Builder: Add USER instruction do Dockerfile
  • Documentation: updated default -H docs
  • Remote API: Sort Images by most recent creation date.
  • Builder: Add workdir support for the Buildfile
  • Runtime: Add an option to set the working directory
  • Runtime: Show tag used when image is missing
  • Documentation: Update readme with dependencies for building
  • Documentation: Add instructions for creating and using the docker group
  • Remote API: Reworking opaque requests in registry module
  • Runtime: Fix Graph ByParent() to generate list of child images per parent image.
  • Runtime: Add Image name to LogEvent tests
  • Documentation: Add sudo to examples and installation to documentation
  • Hack: Bash Completion: Limit commands to containers of a relevant state
  • Remote API: Add image name in /events
  • Runtime: Apply volumes-from before creating volumes
  • Runtime: Make docker run handle SIGINT/SIGTERM
  • Runtime: Prevent crash when .dockercfg not readable
  • Hack: Add docker dependencies coverage testing into docker-ci
  • Runtime: Add -privileged flag and relevant tests, docs, and examples
  • Packaging: Docker-brew 0.5.2 support and memory footprint reduction
  • Runtime: Install script should be fetched over https, not http.
  • Packaging: Add new docker dependencies into docker-ci
  • Runtime: Use Go 1.1.2 for dockerbuilder
  • Registry: Improve auth push
  • Runtime: API, issue 1471: Use groups for socket permissions
  • Documentation: PostgreSQL service example in documentation
  • Contrib: bash completion script
  • Tests: Improve TestKillDifferentUser to prevent timeout on buildbot
  • Documentation: Fix typo in docs for docker run -dns
  • Documentation: Adding a reference to ps -a
  • Runtime: Correctly detect IPv4 forwarding
  • Packaging: Revert "docker.upstart: avoid spawning a sh process"
  • Runtime: Use ranged for loop on channels
  • Runtime: Fix typo: fmt.Sprint -> fmt.Sprintf
  • Tests: Fix typo in TestBindMounts (runContainer called without image)
  • Runtime: add websocket support to /container//attach/ws
  • Runtime: Mount /dev/shm as a tmpfs

... (truncated)

Commits
  • 5105263 Bump to v0.6.1
  • 7b5c579 Use correct upstart script with new build tool
  • 15d658d Removed duplicate mercurial install command
  • 59281d6 use libffi-dev, don't build it from sources
  • 29be20f Fixed: ImagePull in runtime test
  • 5a8c32d Use additional decorator in RequestFactory to pass meta headers to registry
  • 588f8e1 Merge pull request #1628 from dotcloud/bump_0.6.0
  • f4a4f1c Bump to 0.6.0
  • f925edd Merge pull request #1525 from griff/1503-fix
  • 12715c8 Merge pull request #1609 from jpetazzo/release-docker-with-docker
  • Additional commits viewable in compare view

Updates github.com/nats-io/nats-server/v2 from 2.14.6 to 2.15.0

Release notes

Sourced from github.com/nats-io/nats-server/v2's releases.

Release v2.15.0

Changelog

Refer to the 2.15 Upgrade Guide for backwards compatibility notes with 2.14.x. This release also contains all changes up to and including v2.14.7.

Go Version

Added

JetStream

  • Desired state metalayer (#8432, #8437, #8439, #8443, #8452, #8460, #8476, #8576, #8598, #8602, #8603)
  • Cancel stream move endpoint (#8476)
  • Evacuate endpoints (#8443)
    • The new $JS.API.SERVER.EVACUATE endpoint can safely evacuate streams, and any consumers on those streams, from a node
    • The new $JS.API.STREAM.PEER.EVACUATE.* endpoint can safely evacuate a peer, and any consumers on that peer, from a stream
    • These operations combined allow for maintenance operations with full transfer of data and state without having to peer-remove first
    • ADR: https://github.com/nats-io/nats-architecture-and-design/blob/main/adr/ADR-62.md
  • Metalayer rescue for disaster recovery (#8408)
  • Stream backup and restore v2 (#7882, #8584, #8591, #8604)
  • Detect source stream recreation (#8384)
    • The server now detects a source stream being recreated, restarting the sourcing back from the beginning, ensuring new messages are sourced
  • Stream source indexing (#8282, #8516, #8283)
    • Restarts and leader changes previously required expensive backward scans through the stream to find the last sourced indices. These are now persisted in an index for instant lookup.
  • Domain-prefixed JS API in system account (#8429)
    • When a system account is bridged between the hub and a leaf node, the domain-prefixed JS API can now be used to operate on the leaf node while directly connected to the hub

Changed

JetStream

  • Streams now have a default limit of 1000 consumers, unless max_consumers is specified in the stream config or account limits (#8337, #8566)
    • Applications planning to use a large number of consumers on a stream should configure max_consumers in the stream config or account limits to an appropriately high number
    • The server-wide default of 1000 can be overridden by setting default_max_consumers in the JetStream limits, or can be disabled by setting to -1
    • This limit does not affect existing consumers and will not result in consumer deletions, only the creation of new consumers is prevented
  • Sync changes for replicated streams (#8447)
    • When the sync_interval is set to always, replicated streams now sync their WAL entries but no longer sync upper stream layer writes
    • The synced log allows the stream to recover safely, but removing unnecessary syncs from the upper stream layer dramatically improves performance

... (truncated)

Commits
  • eb76367 Release v2.15.0
  • 8f3f31b [FIXED] Config reload disconnects operator mode clients sending an nkey (#8609)
  • 7d77240 [FIXED] Stream scale down into a missing account tier was accepted (#8608)
  • e46d21f [FIXED] Concurrent account updates invalidating stream imports (#8610)
  • 2ecd77a De-flake TestJetStreamClusterHardKillAfterStreamAdd
  • 901df78 De-flake TestJetStreamClusterAccountMaxConnectionsReconnect
  • e133a1f De-flake TestJetStreamClusterMessageTTLCatchup
  • 2990f6c [FIXED] Concurrent account updates invalidating stream imports
  • 51fd55f De-flake TestJWTImportsOnServerRestartAndClientsReconnect
  • 6a82cf9 De-flake TestNoRaceRouteSendSubs
  • Additional commits viewable in compare view

Updates github.com/nats-io/nats.go from 1.53.1 to 1.54.0

Release notes

Sourced from github.com/nats-io/nats.go's releases.

Release v1.54.0

Changelog

This release raises the minimum supported Go version to 1.26 and adds support for nats-server v2.15 stream and consumer info fields.

ADDED

  • Core NATS:
    • nats.MultipathTCP() option to enable or disable MPTCP for outbound connections (#2145)
    • Conn.ConnectedDomain() to read the JetStream domain advertised by the connected server (#2139)
  • JetStream:
    • ClusterInfo.Desired, PeerInfo.Peer, PeerInfo.Pending and StreamSourceInfo.Seq in stream and consumer info, reported by nats-server v2.15 (#2144)
    • Nats-Schedule-Rollup header const and WithScheduleRollup() publish option (#2142)

FIXED

  • Core NATS:
    • Panic in DecodeHeadersMsg on inline status tokens shorter than 3 characters. Thanks @​nikitha-m for the contribution (#2101)
    • Data race on Subscription.sid between applyNewSID and removeSub (#2122)
  • JetStream:
    • Messages() iterator going silent after a reconnect that completes between Next() calls. Thanks @​1995parham for the contribution (#2135)
    • Legacy ordered consumer silently losing messages when the subscription hits its pending limits (#2137)
    • Legacy ordered consumer reset resurrecting an unsubscribed or draining subscription (#2133)

IMPROVED

  • Core NATS:
    • Avoid allocation when parsing header message arguments with a fifth token. Thanks @​0xAozora for the contribution (#2130)
    • Preallocate reply subject buffers. Thanks @​0xAozora for the contribution (#2123)
  • JetStream:
    • Prevent doErr closure escaping to the heap in async publish reply handling. Thanks @​0xAozora for the contribution (#2127)
    • Fix typo in Publisher interface methods comment. Thanks @​sreeram77 for the contribution (#2120)
  • Minimum Go version is now 1.26 (#2146)
  • Bump klauspost/compress to v1.20.0 and nkeys to v0.4.16 (#2117, #2146)
  • Tests run locally without docker via an in-process ntf tester (#2131), and CI now runs against nats-server v2.15.0 (#2146)
  • Fix flaky cluster restart tests (#2141) and list consumers test against latest server (#2138)

Complete Changes

nats-io/nats.go@v1.53.1...v1.54.0

Commits
  • 7a8404a Release v1.54.0 (#2148)
  • 240fb1f [IMPROVED] Bump dependencies and update server version in CI (#2146)
  • 203d828 [FIXED] Panic in DecodeHeadersMsg on status tokens shorter than 3 characters ...
  • dc92fca [FIXED] Ordered consumer silently losing messages on slow consumer (#2137)
  • e18cea8 [IMPROVED] Prevent doErr closure escaping to heap (#2127)
  • d8d8c09 [ADDED] nats.MultipathTCP() for enabling or disabling MPTCP (#2145)
  • e95c424 [FIXED] Flaky cluster restart tests: waitForStream must see a stream leader (...
  • e3abbf4 [ADDED] Nats-Schedule-Rollup header const and publish options (#2142)
  • f1289db [ADDED] Desired state, peer ID/pending and source seq in stream and consumer ...
  • b84f783 Ignore Claude Code local files and .worktrees (#2140)
  • Additional commits viewable in compare view

Updates go.opentelemetry.io/contrib/bridges/otelslog from 0.20.1 to 0.21.0

Release notes

Sourced from go.opentelemetry.io/contrib/bridges/otelslog's releases.

Release v0.21.0

0.21.0 - 2021-06-18

Fixed

  • Dockerfile based examples for otelgin and otelmacaron. (#767)

Changed

  • Supported minimum version of Go bumped from 1.14 to 1.15. (#787)
  • EKS Resource Detector now use the Kubernetes Go client to obtain the ConfigMap. (#813)

Removed

  • Remove service name from otelmongodb configuration and span attributes. (#763)
Changelog

Sourced from go.opentelemetry.io/contrib/bridges/otelslog's changelog.

[1.47.0/2.6.0/0.72.0/0.38.0/0.27.0/0.21.0/0.17.0/0.19.0] - 2026-10-03

Added

  • Add NewResourceDetectorWithOptions and the WithAWSLogger option to go.opentelemetry.io/contrib/detectors/aws/ec2/v2, allowing a custom AWS SDK logging.Logger to be supplied to the EC2 resource detector. (#9132)
  • Add go.opentelemetry.io/contrib/detectors/openshift, a new resource detector for OpenShift 4 clusters, ported from processor/resourcedetectionprocessor/internal/openshift in opentelemetry-collector-contrib. Detects k8s.cluster.name, and cloud.provider, cloud.platform and cloud.region for clusters running on AWS, Google Cloud and IBM Cloud; Azure clusters report cloud.provider and cloud.platform only. (#9499)
  • Add go.opentelemetry.io/contrib/detectors/kubeadm, a new resource detector for kubeadm-provisioned Kubernetes clusters, ported from processor/resourcedetectionprocessor/internal/kubeadm in opentelemetry-collector-contrib. Detects k8s.cluster.name from the ClusterConfiguration document in the kube-system/kubeadm-config ConfigMap and k8s.cluster.uid from the kube-system namespace UID. (#9500)

Changed

  • Client metrics in go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp no longer include attributes from the server-side Labeler, preventing attributes such as http.route from leaking into outbound requests. This is a breaking change for applications that use ContextWithLabeler to add custom client metric attributes: use ContextWithClientLabeler / ClientLabelerFromContext or the WithMetricAttributesFn option instead. Server-side use of ContextWithLabeler / LabelerFromContext is unchanged. (#8924)
  • Stop emitting the legacy http.read_bytes and http.wrote_bytes attributes on the per-operation span events enabled by WithMessageEvents in go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp. The read and write events remain, while total body sizes continue to be recorded on the server span as http.request.body.size and http.response.body.size according to HTTP semantic conventions. (#9624)

Deprecated

  • Deprecate go.opentelemetry.io/contrib/instrumentation/github.com/aws/aws-sdk-go-v2/otelaws. (#9707)
  • Deprecate go.opentelemetry.io/contrib/propagators/aws. (#9706)
  • Deprecate go.opentelemetry.io/contrib/samplers/probability/consistent. (#9633)
  • Deprecate ReadBytesKey, ReadErrorKey, WroteBytesKey, and WriteErrorKey in go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp. The identifiers remain available and their values are unchanged, but WithMessageEvents no longer emits http.read_bytes or http.wrote_bytes. There is no semantic-convention replacement for per-read or per-write byte counts or the human-readable error fields. Use HTTPRequestBodySizeKey and HTTPResponseBodySizeKey from go.opentelemetry.io/otel/semconv/v1.43.0 to record total body sizes on the span. If an error causes the HTTP request to fail, set the span status to Error and record ErrorType(err) from go.opentelemetry.io/otel/semconv/v1.43.0 on the span. (#9624)

Fixed

  • Treat empty Prometheus exporter environment variable values as unset in go.opentelemetry.io/contrib/exporters/autoexport, restoring the documented defaults. (#9636)
  • Bound converter-owned recursive map, slice, array, and pointer traversal in go.opentelemetry.io/contrib/bridges/otellogr, go.opentelemetry.io/contrib/bridges/otellogrus, go.opentelemetry.io/contrib/bridges/otelslog, and go.opentelemetry.io/contrib/bridges/otelzap. A field requiring more than 100 such levels is replaced with <max-depth-exceeded> and the record continues to be emitted. Existing fmt and user-method behavior remains unchanged. (#9691)
  • Format span attributes in go.opentelemetry.io/contrib/zpages using attribute.Value.String instead of the deprecated attribute.Value.Emit, following the OpenTelemetry AnyValue representation for non-OTLP protocols. (#9453)
  • Set error.type on the span and on the request-duration, request-body-size, and response-body-size metrics when a client disconnects mid-request in go.opentelemetry.io/contrib/instrumentation/github.com/gin-gonic/gin/otelgin, using the request context's cancellation error as the classification source when the handler has not already recorded an error via c.Error. Previously a disconnect was recorded with span status Error and no error.type, indistinguishable from a genuine server fault. (#9394)
  • Report Prometheus metrics HTTP server errors in go.opentelemetry.io/contrib/otelconf when using the v0.2.0 configuration schema. The error check was inverted, so a clean shutdown (http.ErrServerClosed) was reported as unexpected while real Serve errors were ignored. (#9653)
  • Fix temporary file cleanup for multipart requests in go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp by copying the parsed multipart form back to the original request during deferred cleanup, preserving net/http cleanup during panic unwinding for HTTP/2 panic handling and outer recovery middleware paths. Unrecovered HTTP/1 handler panics remain uncleaned because net/http skips finishRequest in that path. (Description has been truncated

Bumps the go-deps group with 15 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [github.com/aws/aws-sdk-go-v2/config](https://github.com/aws/aws-sdk-go-v2) | `1.33.6` | `1.33.7` |
| [github.com/aws/aws-sdk-go-v2/credentials](https://github.com/aws/aws-sdk-go-v2) | `1.20.6` | `1.20.7` |
| [github.com/aws/aws-sdk-go-v2/service/dynamodb](https://github.com/aws/aws-sdk-go-v2) | `1.69.1` | `1.70.1` |
| [github.com/aws/smithy-go](https://github.com/aws/smithy-go) | `1.28.1` | `1.28.4` |
| [github.com/dustin/go-humanize](https://github.com/dustin/go-humanize) | `1.0.1` | `1.1.0` |
| [github.com/klauspost/compress](https://github.com/klauspost/compress) | `1.19.2` | `1.20.1` |
| [github.com/moby/moby/api](https://github.com/moby/moby) | `1.55.0` | `1.56.1` |
| [github.com/moby/moby/client](https://github.com/moby/moby) | `0.5.1` | `0.6.1` |
| [github.com/nats-io/nats-server/v2](https://github.com/nats-io/nats-server) | `2.14.6` | `2.15.0` |
| [github.com/nats-io/nats.go](https://github.com/nats-io/nats.go) | `1.53.1` | `1.54.0` |
| [go.opentelemetry.io/contrib/bridges/otelslog](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.20.1` | `0.21.0` |
| [go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.71.0` | `0.72.0` |
| [go.opentelemetry.io/contrib/instrumentation/runtime](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.71.0` | `0.72.0` |
| [golang.org/x/sync](https://github.com/golang/sync) | `0.23.0` | `0.24.0` |
| [golang.org/x/time](https://github.com/golang/time) | `0.15.0` | `0.16.0` |



Updates `github.com/aws/aws-sdk-go-v2/config` from 1.33.6 to 1.33.7
- [Release notes](https://github.com/aws/aws-sdk-go-v2/releases)
- [Commits](aws/aws-sdk-go-v2@config/v1.33.6...config/v1.33.7)

Updates `github.com/aws/aws-sdk-go-v2/credentials` from 1.20.6 to 1.20.7
- [Release notes](https://github.com/aws/aws-sdk-go-v2/releases)
- [Commits](aws/aws-sdk-go-v2@service/mq/v1.20.6...service/mq/v1.20.7)

Updates `github.com/aws/aws-sdk-go-v2/service/dynamodb` from 1.69.1 to 1.70.1
- [Release notes](https://github.com/aws/aws-sdk-go-v2/releases)
- [Commits](aws/aws-sdk-go-v2@service/ssm/v1.69.1...service/ec2/v1.70.1)

Updates `github.com/aws/smithy-go` from 1.28.1 to 1.28.4
- [Release notes](https://github.com/aws/smithy-go/releases)
- [Changelog](https://github.com/aws/smithy-go/blob/main/CHANGELOG.md)
- [Commits](aws/smithy-go@v1.28.1...v1.28.4)

Updates `github.com/dustin/go-humanize` from 1.0.1 to 1.1.0
- [Commits](dustin/go-humanize@v1.0.1...v1.1.0)

Updates `github.com/klauspost/compress` from 1.19.2 to 1.20.1
- [Release notes](https://github.com/klauspost/compress/releases)
- [Commits](klauspost/compress@v1.19.2...v1.20.1)

Updates `github.com/moby/moby/api` from 1.55.0 to 1.56.1
- [Release notes](https://github.com/moby/moby/releases)
- [Commits](moby/moby@api/v1.55.0...api/v1.56.1)

Updates `github.com/moby/moby/client` from 0.5.1 to 0.6.1
- [Release notes](https://github.com/moby/moby/releases)
- [Changelog](https://github.com/moby/moby/blob/v0.6.1/CHANGELOG.md)
- [Commits](moby/moby@v0.5.1...v0.6.1)

Updates `github.com/nats-io/nats-server/v2` from 2.14.6 to 2.15.0
- [Release notes](https://github.com/nats-io/nats-server/releases)
- [Changelog](https://github.com/nats-io/nats-server/blob/main/RELEASES.md)
- [Commits](nats-io/nats-server@v2.14.6...v2.15.0)

Updates `github.com/nats-io/nats.go` from 1.53.1 to 1.54.0
- [Release notes](https://github.com/nats-io/nats.go/releases)
- [Commits](nats-io/nats.go@v1.53.1...v1.54.0)

Updates `go.opentelemetry.io/contrib/bridges/otelslog` from 0.20.1 to 0.21.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-go-contrib@bridges/otelzap/v0.20.1...v0.21.0)

Updates `go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp` from 0.71.0 to 0.72.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-go-contrib@zpages/v0.71.0...zpages/v0.72.0)

Updates `go.opentelemetry.io/contrib/instrumentation/runtime` from 0.71.0 to 0.72.0
- [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md)
- [Commits](open-telemetry/opentelemetry-go-contrib@zpages/v0.71.0...zpages/v0.72.0)

Updates `golang.org/x/sync` from 0.23.0 to 0.24.0
- [Commits](golang/sync@v0.23.0...v0.24.0)

Updates `golang.org/x/time` from 0.15.0 to 0.16.0
- [Commits](golang/time@v0.15.0...v0.16.0)

---
updated-dependencies:
- dependency-name: github.com/aws/aws-sdk-go-v2/config
  dependency-version: 1.33.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/aws/aws-sdk-go-v2/credentials
  dependency-version: 1.20.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/aws/aws-sdk-go-v2/service/dynamodb
  dependency-version: 1.70.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/aws/smithy-go
  dependency-version: 1.28.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: go-deps
- dependency-name: github.com/dustin/go-humanize
  dependency-version: 1.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/klauspost/compress
  dependency-version: 1.20.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/moby/moby/api
  dependency-version: 1.56.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/moby/moby/client
  dependency-version: 0.6.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/nats-io/nats-server/v2
  dependency-version: 2.15.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: github.com/nats-io/nats.go
  dependency-version: 1.54.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: go.opentelemetry.io/contrib/bridges/otelslog
  dependency-version: 0.21.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp
  dependency-version: 0.72.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: go.opentelemetry.io/contrib/instrumentation/runtime
  dependency-version: 0.72.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: golang.org/x/sync
  dependency-version: 0.24.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
- dependency-name: golang.org/x/time
  dependency-version: 0.16.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: go-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot requested review from a team and EricAndrechek October 10, 2026 12:30
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels Oct 10, 2026
@coderabbitai

coderabbitai Bot commented Oct 10, 2026

Copy link
Copy Markdown

Important

Review skipped

Auto reviews are disabled on this repository. Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: Organization UI
  • Review profile: ASSERTIVE
  • Plan: Advanced
  • Run ID: 07dd79df-39b8-4348-a9a6-213e7178dfe5

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autofix · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@github-actions github-actions Bot added area/infra CI, build, deploy, Docker, release and removed go Pull requests that update go code labels Oct 10, 2026
@github-code-quality

Copy link
Copy Markdown
Contributor

Code Coverage Overview

Languages: Go

Go

The overall line coverage in commit d7c3d25 in the dependabot/go_module... branch remains at 93%, unchanged from commit c01b912 in the main branch.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area/infra CI, build, deploy, Docker, release dependencies Pull requests that update a dependency file

Projects

Status: Backlog

Development

Successfully merging this pull request may close these issues.

0 participants