Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump github.com/spf13/cobra from 1.0.0 to 1.1.1 #697

Conversation

dependabot-preview[bot]
Copy link
Contributor

@dependabot-preview dependabot-preview bot commented Nov 1, 2020

Bumps github.com/spf13/cobra from 1.0.0 to 1.1.1.

Release notes

Sourced from github.com/spf13/cobra's releases.

v1.1.1

  • Fix: yaml.v2 2.3.0 contained a unintended breaking change. This release reverts to yaml.v2 v2.2.8 which has recent critical CVE fixes, but does not have the breaking changes. See spf13/cobra#1259 for context.
  • Fix: correct internal formatting for go-md2man v2 (which caused man page generation to be broken). See spf13/cobra#1049 for context.

v1.1.0

Notable Changes

  • Extend Go completions and revamp zsh comp (#1070)
  • Add completion for help command (#1136)
  • Complete subcommands when TraverseChildren is set (#1171)
  • Fix stderr printing functions (#894)
  • fix: fish output redirection (#1247)
Changelog

Sourced from github.com/spf13/cobra's changelog.

Cobra Changelog

Pending

  • Fix man page doc generation - no auto generated tag when cmd.DisableAutoGenTag = true @jpmcb
Commits
  • 86f8bfd fix manpage building with new go-md2man (#1255)
  • f32f4ef Don't use yaml.v2 2.3.0 which has a breaking change (#1259)
  • 142dfb1 Add example for making persistent flags required (#1135)
  • 723d0c3 Add tendermint and cosmos-sdk to the list of projects using cobra (#855)
  • b97b5ea fix: fish output redirection (#1247)
  • f64bfa1 Fix zsh completion not working on the first time in a shell session (#1237)
  • 40d34bc Fix stderr printing functions (#894)
  • 0bc8bfb Remove secondary go mod to prevent broken go get (#1233)
  • 7f8e83d Modifying "snake-case" to "kebab-case" for clarity. (#1196)
  • 8a39cb2 Bug fix in README (#1199)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in the .dependabot/config.yml file in this repo:

  • Update frequency
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

@dependabot-preview dependabot-preview bot added dependencies Pull requests that update a dependency file minor labels Nov 1, 2020
@dependabot-preview dependabot-preview bot force-pushed the dependabot/go_modules/github.com/spf13/cobra-1.1.1 branch from 40bd51b to fc36a85 Compare November 1, 2020 15:34
Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra) from 1.0.0 to 1.1.1.
- [Release notes](https://github.com/spf13/cobra/releases)
- [Changelog](https://github.com/spf13/cobra/blob/master/CHANGELOG.md)
- [Commits](spf13/cobra@v1.0.0...v1.1.1)

Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
@dependabot-preview dependabot-preview bot force-pushed the dependabot/go_modules/github.com/spf13/cobra-1.1.1 branch from fc36a85 to 9578811 Compare November 1, 2020 17:02
@jsign
Copy link
Contributor

jsign commented Nov 1, 2020

@asutula , any clue what's happening with ensure docs? Doing make docs-pow isn't generating a diff at least locally.

Signed-off-by: Aaron Sutula <hi@asutula.com>
@asutula
Copy link
Member

asutula commented Nov 2, 2020

The check for updated docs just builds the docs and then checks to see if there are any file changes at all, not just changes in the docs. This could be improved to only check the docs, but I also don't think the current check is unreasonable. So, looks like running make docs-pow (or doing any build) generates an update to go.sum that dependabot wasn't generating. I just pushed that change.

@jsign
Copy link
Contributor

jsign commented Nov 2, 2020

Yeah, I know it checks all. Weird, since i updated go.sum just to avoid that same error in this commit for that same reason.

Current master doesn't produce a changed go.sum doing a go mod tidy for me... but maybe its because I'm running Go 1.15 and the CI 1.14. Who knows!

@jsign
Copy link
Contributor

jsign commented Nov 2, 2020

Ah, the go.sum is for the change in the PR. I see now!

@dependabot-preview dependabot-preview bot merged commit 5eb00fb into master Nov 2, 2020
@dependabot-preview dependabot-preview bot deleted the dependabot/go_modules/github.com/spf13/cobra-1.1.1 branch November 2, 2020 16:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file minor
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants