deps: bump the go-deps group across 1 directory with 24 updates - #438
Conversation
Bumps the go-deps group with 13 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/ClickHouse/clickhouse-go/v2](https://github.com/ClickHouse/clickhouse-go) | `2.46.0` | `2.48.0` | | [github.com/MicahParks/keyfunc/v3](https://github.com/MicahParks/keyfunc) | `3.8.0` | `3.8.1` | | [github.com/dgraph-io/ristretto/v2](https://github.com/dgraph-io/ristretto) | `2.4.0` | `2.4.2` | | [github.com/go-chi/chi/v5](https://github.com/go-chi/chi) | `5.3.0` | `5.3.1` | | [github.com/nats-io/nats-server/v2](https://github.com/nats-io/nats-server) | `2.14.2` | `2.14.4` | | [github.com/prometheus/client_golang](https://github.com/prometheus/client_golang) | `1.23.2` | `1.24.1` | | [go.opentelemetry.io/contrib/bridges/otelslog](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.19.0` | `0.20.0` | | [go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.69.0` | `0.70.0` | | [go.opentelemetry.io/contrib/instrumentation/runtime](https://github.com/open-telemetry/opentelemetry-go-contrib) | `0.69.0` | `0.70.0` | | [go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploggrpc](https://github.com/open-telemetry/opentelemetry-go) | `0.20.0` | `0.21.0` | | [go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc](https://github.com/open-telemetry/opentelemetry-go) | `1.44.0` | `1.45.0` | | [go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc](https://github.com/open-telemetry/opentelemetry-go) | `1.44.0` | `1.45.0` | | [go.opentelemetry.io/otel/exporters/prometheus](https://github.com/open-telemetry/opentelemetry-go) | `0.66.0` | `0.67.0` | Updates `github.com/ClickHouse/clickhouse-go/v2` from 2.46.0 to 2.48.0 - [Release notes](https://github.com/ClickHouse/clickhouse-go/releases) - [Changelog](https://github.com/ClickHouse/clickhouse-go/blob/main/CHANGELOG.md) - [Commits](ClickHouse/clickhouse-go@v2.46.0...v2.48.0) Updates `github.com/MicahParks/keyfunc/v3` from 3.8.0 to 3.8.1 - [Release notes](https://github.com/MicahParks/keyfunc/releases) - [Commits](MicahParks/keyfunc@v3.8.0...v3.8.1) Updates `github.com/dgraph-io/ristretto/v2` from 2.4.0 to 2.4.2 - [Release notes](https://github.com/dgraph-io/ristretto/releases) - [Changelog](https://github.com/dgraph-io/ristretto/blob/main/CHANGELOG.md) - [Commits](dgraph-io/ristretto@v2.4.0...v2.4.2) Updates `github.com/go-chi/chi/v5` from 5.3.0 to 5.3.1 - [Release notes](https://github.com/go-chi/chi/releases) - [Changelog](https://github.com/go-chi/chi/blob/master/CHANGELOG.md) - [Commits](go-chi/chi@v5.3.0...v5.3.1) Updates `github.com/nats-io/nats-server/v2` from 2.14.2 to 2.14.4 - [Release notes](https://github.com/nats-io/nats-server/releases) - [Changelog](https://github.com/nats-io/nats-server/blob/main/RELEASES.md) - [Commits](nats-io/nats-server@v2.14.2...v2.14.4) Updates `github.com/prometheus/client_golang` from 1.23.2 to 1.24.1 - [Release notes](https://github.com/prometheus/client_golang/releases) - [Changelog](https://github.com/prometheus/client_golang/blob/v1.24.1/CHANGELOG.md) - [Commits](prometheus/client_golang@v1.23.2...v1.24.1) Updates `github.com/testcontainers/testcontainers-go` from 0.42.0 to 0.43.0 - [Release notes](https://github.com/testcontainers/testcontainers-go/releases) - [Commits](testcontainers/testcontainers-go@v0.42.0...v0.43.0) Updates `go.opentelemetry.io/contrib/bridges/otelslog` from 0.19.0 to 0.20.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go-contrib@v0.19.0...v0.20.0) Updates `go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp` from 0.69.0 to 0.70.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go-contrib@zpages/v0.69.0...zpages/v0.70.0) Updates `go.opentelemetry.io/contrib/instrumentation/runtime` from 0.69.0 to 0.70.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go-contrib/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go-contrib/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go-contrib@zpages/v0.69.0...zpages/v0.70.0) Updates `go.opentelemetry.io/otel` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploggrpc` from 0.20.0 to 0.21.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v0.20.0...log/v0.21.0) Updates `go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/exporters/prometheus` from 0.66.0 to 0.67.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@metric/x/v0.66.0...metric/x/v0.67.0) Updates `go.opentelemetry.io/otel/log` from 0.20.0 to 0.21.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v0.20.0...log/v0.21.0) Updates `go.opentelemetry.io/otel/metric` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/sdk` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/sdk/log` from 0.20.0 to 0.21.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v0.20.0...log/v0.21.0) Updates `go.opentelemetry.io/otel/sdk/metric` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/otel/trace` from 1.44.0 to 1.45.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.44.0...v1.45.0) Updates `go.opentelemetry.io/proto/otlp` from 1.10.0 to 1.11.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-proto-go/releases) - [Commits](open-telemetry/opentelemetry-proto-go@v1.10.0...v1.11.0) Updates `golang.org/x/sync` from 0.21.0 to 0.22.0 - [Commits](golang/sync@v0.21.0...v0.22.0) Updates `google.golang.org/grpc` from 1.81.1 to 1.83.0 - [Release notes](https://github.com/grpc/grpc-go/releases) - [Commits](grpc/grpc-go@v1.81.1...v1.83.0) --- updated-dependencies: - dependency-name: github.com/ClickHouse/clickhouse-go/v2 dependency-version: 2.48.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: github.com/MicahParks/keyfunc/v3 dependency-version: 3.8.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-deps - dependency-name: github.com/dgraph-io/ristretto/v2 dependency-version: 2.4.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-deps - dependency-name: github.com/go-chi/chi/v5 dependency-version: 5.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-deps - dependency-name: github.com/nats-io/nats-server/v2 dependency-version: 2.14.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-deps - dependency-name: github.com/prometheus/client_golang dependency-version: 1.24.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: github.com/testcontainers/testcontainers-go dependency-version: 0.43.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/contrib/bridges/otelslog dependency-version: 0.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp dependency-version: 0.70.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/contrib/instrumentation/runtime dependency-version: 0.70.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploggrpc dependency-version: 0.21.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/exporters/prometheus dependency-version: 0.67.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/log dependency-version: 0.21.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/metric dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/sdk dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/sdk/log dependency-version: 0.21.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/sdk/metric dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/otel/trace dependency-version: 1.45.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: go.opentelemetry.io/proto/otlp dependency-version: 1.11.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: golang.org/x/sync dependency-version: 0.22.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps - dependency-name: google.golang.org/grpc dependency-version: 1.83.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-deps ... Signed-off-by: dependabot[bot] <support@github.com>
|
This is the PR that unblocks every branch in the repo. It needs a one-line fix to land; diagnosis and the fix are below. Why everything is red right now
Every branch cut from What was breaking this PR
Exactly one line in the tree uses it, which is why both Fixed by swapping that call to Verification (locally, with the fix applied)
The only local red is Note on the rest of the queue
|
otel/log v0.21.0 removes the package's own log.Value / log.KeyValue type system in favour of the standard attribute.Value / attribute.KeyValue; Record.SetBody now takes an attribute.Value. The go-deps group bump moves otel/log 0.20.0 -> 0.21.0, so the one call site using otellog.StringValue stopped compiling, failing both Lint (golangci typecheck) and Unit tests. Non-test code is unaffected: logger.go emits through the otelslog bridge, which absorbs the change internally. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01QFfYUaPp3Pv3gLjniiHCpm
## Why The repo hit **10.53 GB against GitHub's hard 10 GB Actions cache cap** after #438's 24-module bump. Past the cap GitHub LRU-evicts, so warm entries disappear mid-run and builds get slower and less predictable — silently. `setup-env` cached the Go module cache and build cache together under a per-flavor key: ```yaml path: | ~/go/pkg/mod # pure function of go.sum — identical for every flavor ~/.cache/go-build # genuinely flavor-specific key: gobuild-v2-<os>-go<suffix>-<go.sum hash> ``` `~/go/pkg/mod` measures **1.6 GB on disk** for the current `go.sum` and is byte-identical across all five suffixes, so it was stored five times over — five entries of ~0.9–1.2 GB each, **~5.2 GB per generation**. Two live generations is the *normal* steady state (a bump mints a new set while the previous is still warm), so ~10 GB was the expected footprint. #438 tipped it over: ``` 1210MB gobuild-v2-Linux-go-lint-136f5059… 1068MB gobuild-v2-Linux-go-unit-136f5059… 1067MB gobuild-v2-Linux-go-integration-136f5059… 1058MB gobuild-v2-Linux-go-unit-1a18a4a1… <- previous generation 1033MB gobuild-v2-Linux-go-e2e-cov-136f5059… 929MB gobuild-v2-Linux-go-cov-1a18a4a1… <- previous generation 928MB gobuild-v2-Linux-go-cov-136f5059… ``` The action's header already noted the duplication — *"Cross-suffix restore-keys still share the (identical) module cache on a cold start"* — without drawing the sizing conclusion. ## What Split the one cache into two: | | key | path | scope | | --- | --- | --- | --- | | modules | `gomod-v1-<os>-<go.mod+go.sum hash>` | `~/go/pkg/mod` | **unsuffixed** — one entry, every Go job | | build objects | `gobuild-v3-<os>-go<suffix>-<go.mod+go.sum hash>` | `~/.cache/go-build` | per compile flavor, as before | **Measured on this branch's own runs: 5.18 GB → 1.05 GB per generation** (a 4.9× reduction) — `gomod-v1` at 0.48 GB plus five `gobuild-v3` entries totalling 0.57 GB (25–152 MB each). Two generations now fit with room to spare. All sizes are stored-archive bytes ÷ 2³⁰, the unit the README's own usage check prints. (The 0.48 GB module entry is a cold first save with no restore-key fallback; it drifts up as superseded module versions accumulate through the restore→save chain, so budget nearer ~1 GB for it in steady state.) Two details worth review attention: - **`v3` on the build key is required.** Saves fire only on an exact-key miss, so without the bump the old `v2` entry — which still contains the module cache — would exact-hit forever and the new, smaller content would never be saved. Same reasoning as the v2 bump documented at the top of the action. - **`gobuild-v3` drops the bare-prefix restore-key.** `gobuild-v2-<os>-go-` existed to borrow *another flavor's* copy of the shared module cache on a cold start. That job now belongs to `gomod-v1`, and another flavor's build objects aren't reusable here, so the fallback would only restore bytes that get thrown away. `gomod-v1` keeps a prefix restore-key: a bump moves a handful of modules, so a stale generation is still worth restoring and `go mod download` fetches only the delta. **Both keys hash `go.mod` as well as `go.sum`** (CodeRabbit review). `GOTOOLCHAIN=auto` lands the toolchain in `~/go/pkg/mod/golang.org/toolchain` and `go.sum` records no entry for it — this repo's `go.sum` has zero `golang.org/toolchain` lines. A `go`-directive bump would therefore leave a `go.sum`-only key byte-identical (verified: `bcc16701da2c001f` before and after `go 1.26.5` → `1.27.0`), exact-hit a toolchain-less archive, and — saves firing only on an exact-key *miss* — never save the freshly fetched toolchain, re-downloading it every run until some unrelated dependency bump moved `go.sum`. The same bump also invalidates every cached build object, since the compiler build ID feeds every action hash. ## The sixth copy (from review) Consolidating five copies left a sixth outside `setup-env` entirely: `actions/setup-go` caches `~/go/pkg/mod` + `~/.cache/go-build` by default, so `publish-dev.yml` carries a live **0.97 GB** entry (keyed on the root `go.mod` — setup-go hashed `go.sum` through v6.2.0 and `go.mod` from v6.3.0, [actions/setup-go#705](actions/setup-go#705)) — larger than the `gomod-v1` entry this PR consolidates to, and a direct violation of the sizing rule the PR introduces. It is re-saved on each cache miss (every dependency bump), so the cost is ~1.95 GB across the two generations the repo holds in steady state. `release.yml` carried the same default. Both now pass `cache: false`, matching the call `goreleaser-validate.yml` already made. **But `publish-dev.yml` re-caches the half that pays for itself.** Reviewing this surfaced a measured regression: across its last 20 runs, GoReleaser takes **36–246 s with setup-go's cache warm and 401–446 s cold** — zero overlap between the two groups. Dropping it outright would cost **roughly 2.5–7 minutes (mean delta ≈4.8 min) on every push to main**, and the value is entirely in the `~/.cache/go-build` half (8-target cross-compile), not the module tree. So that job now caches `~/.cache/go-build` alone under `gobuild-v3-<os>-go-release-` (~0.5 GB instead of ~0.97 GB). The duplicate module tree — the actual #443 complaint — is gone; the cross-compile stays warm. **And it keeps the module tree warm too.** The 36–246 s timings were measured with setup-go's *bundled* entry, which held `~/go/pkg/mod` as well — so caching only the build half would have left the module tree cold on every push (~90 modules, ~112 MB re-downloaded) and landed the job above its own documented range. `publish-dev` therefore also **restores** `gomod-v1` via `actions/cache/restore`: read-only, reading `ci.yml`'s entry from `main`'s scope. It writes nothing, so it costs 0 GB of budget and — importantly — cannot write a partial module tree to the key every `ci.yml` Go job shares. The `-release` suffix keeps those objects separate from CI's native-only flavors, which can't use them. `release.yml` keeps the plain opt-out — and re-enabling it there would be strictly negative, not merely unhelpful: cache writes are scoped to the ref that made them, so a save from `refs/tags/v1.0.0` can never be read by `refs/tags/v1.0.1`, by `main`, or by a PR — only by a re-run of that same tag. It would be a ~1 GB entry per release that nothing but a retry can ever read. If release wall-clock ever matters, the lever is `actions/cache/restore` (restore-only) on `publish-dev`'s key. ## Docs `.github/workflows/README.md` gets the updated inventory rows plus a **sizing policy** section — the 10 GB cap, the two-generations rule, the `gh api` one-liners to check the current footprint, and the rule that content which is a pure function of a lockfile gets keyed once, unsuffixed. That's the part that stops this recurring. Two additions from review: - **A narrowing-rotation exception to the key-versioning policy.** The existing policy says to keep old prefixes as transitional restore-keys; `gobuild-v3` deliberately doesn't, because a v2 archive still contains `~/go/pkg/mod` and restoring it would re-materialize exactly what the rotation removes. The doc now prescribes what the code does. - **The CodeQL caches are listed.** `codeql-dependencies-*` / `codeql-overlay-base-database-*` (~0.4 GB) are minted by GHAS default setup, outside this repo's workflows. They were invisible in the inventory, so a maintainer doing the two-generations check was seeing ~85% of the real budget. ## Verification - `make ci` green on this tree (full pipeline incl. integration + e2e) - `make verify` clean — markdownlint over the README + CHANGELOG, and actionlint over `.github/workflows/**`. **Note:** `make lint-gha` globs workflows only, so `.github/actions/setup-env/action.yml` gets no actionlint and no shellcheck — pointed at it directly, actionlint rejects a composite action as a malformed workflow. The new guard step's inline `run:` is therefore hand-verified, not tool-verified: the `if:` predicate is byte-identical to the two `actions/cache` steps' own conditions, and all 8 call sites were audited (5 suffixed, 3 `go: "false"`). - Both pre-push reviewers run, no skips - No change to what any job *does*; only which cache keys hold which paths Expect the first run on `main` after merge to be a cold miss on both new keys (one-time repopulation), then warm. Don't read that run's timing as a regression. ## Post-merge **Purge the orphaned entries** — the five dead `gobuild-v2-*` (5.18 GB) **and** the `setup-go-*` entry (0.97 GB) that `cache: false` orphans. Nothing restores or refreshes either family after this lands. The repo is at **9.27 GB / 10 GB across 24 entries** with them still resident. This branch's own runs add a ~1.05 GB generation on the PR ref (pre-merge peak ~9.3 GB), and merging adds another ~1.05 GB generation plus the ~0.5 GB release cache on `main` — so if the PR-scope entries haven't been reclaimed yet the transient peak is **~10.3 GB, over the cap this PR exists to defend**. Purge immediately at merge, not later — this is load-bearing, not housekeeping. The orphans would clear on the 7-day idle sweep, but not necessarily before the next dependency bump. ```bash gh api repos/Wave-RF/WaveHouse/actions/caches --paginate \ -q '.actions_caches[]|select(.key|startswith("gobuild-v2-") or startswith("setup-go-"))|.id' \ | xargs -I{} gh api -X DELETE repos/Wave-RF/WaveHouse/actions/caches/{} ``` Do this **after** merge, not before — `main` still uses the v2 keys until then, so an early purge just forces a cold repopulate of caches we're about to abandon. ## Notes - GitHub's LRU eviction reclaimed the previous generation on its own mid-investigation (10.53 GB → 7.19 GB), so this isn't currently breaking builds — it recurs on the next dependency bump. Usage has since climbed to 9.27 GB as this branch's runs added entries, which is why the post-merge purge above matters. - Pre-existing docs drift surfaced by the `docs-reviewer` gate (unrelated to this branch) is tracked in #444 rather than folded in here. Closes #443 🤖 Generated with [Claude Code](https://claude.com/claude-code) --------- Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
…V accuracy Drops the CHANGELOG dependency-bump entry: after merging origin/main, go.mod and go.sum are byte-identical to main and no longer appear in this PR's delta, and the bumps it claimed credit for landed on main via Dependabot (#438). The matching bullet in the PR description was removed too. Corrects the test-target flag documentation in development.md, which claimed all test targets accept ARGS. Per the Makefile: gotestsum drives test-unit and test-integration only; ARGS reaches test-unit, test-integration, and test-ts; V=1 reaches test-unit, test-integration, and test-e2e (the orchestrator reads it directly). Adds the Go SDK unit test and wire-conformance case entries to "Adding New Tests", which the SDK sync rule requires for every new endpoint. Narrows the "every operation returns (T, error)" claim in the Go SDK index, reference, and README: the void operations (Pipes.Set/Delete, Policy.Set, Schema.Refresh, Sys.Health) return a bare error, as reference.md's own API tree already showed. Lists the FilterOp constants rather than raw symbols in the streaming filter docs, matching how every example calls .Where(), and fixes "the SDK readme" to "readmes" now that docs-prose.sh resolves both.
Bumps the go-deps group with 13 updates in the / directory:
2.46.02.48.03.8.03.8.12.4.02.4.25.3.05.3.12.14.22.14.41.23.21.24.10.19.00.20.00.69.00.70.00.69.00.70.00.20.00.21.01.44.01.45.01.44.01.45.00.66.00.67.0Updates
github.com/ClickHouse/clickhouse-go/v2from 2.46.0 to 2.48.0Release notes
Sourced from github.com/ClickHouse/clickhouse-go/v2's releases.
... (truncated)
Changelog
Sourced from github.com/ClickHouse/clickhouse-go/v2's changelog.
... (truncated)
Commits
69b5195Update release notesbbc3549Merge pull request #1949 from ClickHouse/kavirajk/perf-exception-parser46e0fe9chore: review remarks222cf04chore: doc string fixes41bfccaperf: makesafeLen()linear runtime in exception parser8fd6f43Merge pull request #1944 from fallintoplace/fix/tuple-map-scan-errord502655Merge pull request #1947 from ClickHouse/pr-review-fable6f469c9use fable for code review95ae021fix: return errors when scanning Tuple mapsb67d227Merge pull request #1937 from fallintoplace/remove-http-compression-debug-outputUpdates
github.com/MicahParks/keyfunc/v3from 3.8.0 to 3.8.1Commits
39974f2Update deps (#149)Updates
github.com/dgraph-io/ristretto/v2from 2.4.0 to 2.4.2Release notes
Sourced from github.com/dgraph-io/ristretto/v2's releases.
Changelog
Sourced from github.com/dgraph-io/ristretto/v2's changelog.
Commits
8d05e8afix: revert eager sampledLFU keyCosts pre-allocation (#482) (#494)e89d89achore: prepare release v2.4.1 (#492)fe05eabfix: handle mremap size mismatch on Linux s390xbb27952chore(ci): add stale Action (#488)7aac03adocs: add contributing guide and code of conductb483e0cperf: pre-allocate keyCosts map in sampledLFU469a1a0Update trunk conf3ac041bchore: update ci-ristretto-tests.ymlUpdates
github.com/go-chi/chi/v5from 5.3.0 to 5.3.1Release notes
Sourced from github.com/go-chi/chi/v5's releases.
Commits
8b258c7ci: pin GitHub Actions to full commit SHAs (#1116)caf87e6feat(mux): support http QUERY method ietf rfc10008 (#1132)7fcb8a2middleware: document printPrettyStack and harden NoColor panic test (#1131)878fe71Fix defaultLogEntry.Panic not respecting NoColor setting (#1050)d7b767bfeat(middleware): add text/xml and application/xml to default compressible ty...3b50c7cTidy build directives (#1113)2b9fca2Honor Discard() in httpFancyWriter.ReadFrom (#1110)Updates
github.com/nats-io/nats-server/v2from 2.14.2 to 2.14.4Release notes
Sourced from github.com/nats-io/nats-server/v2's releases.
... (truncated)
Commits
bbd6dc5Release v2.14.47d26d07Update to Go 1.26.5/1.25.12c7163b2Release v2.14.4-RC.4ee56a6cCherry-picks for 2.14.4-RC.4 (#147)725f008[FIXED] Certificate users authenticatable by username on other listeners566e772[FIXED] Block MQTT subscriptions to internal MQTT subjects43607c4[FIXED] Consumer assignment proposed without a raft group3b90b2c[FIXED] Panic setting up a stream source/mirror on malformed create responsef44c537[FIXED] Panic decoding MQTT retained messages, sessions and JS API repliesc6c7061[FIXED] Panic decoding counter source with null entryUpdates
github.com/prometheus/client_golangfrom 1.23.2 to 1.24.1Release notes
Sourced from github.com/prometheus/client_golang's releases.
... (truncated)
Changelog
Sourced from github.com/prometheus/client_golang's changelog.
Commits
d6087eerelease: cut v1.24.1 (#2076)48dd383Cut v1.24.0 (#2061)a725305Cut v1.24.0-rc.0 (#2058)77c584fbuild(deps): update all Go dependencies in all go.mod files (#2059)78262a7feat(promhttp): add CoalesceGather option to deduplicate concurrent Gather ca...34e9a7fMerge pull request #2055 from prombot/repo_sync43749bcUpdate common Prometheus filesde19217examples: improve simple main.go example (#1999)20355ebfix: correct typos in comments and test error messages (#2049)4cd2d3atest: fix two flaky tests (darwin start_time regex, memstats HeapReleased dri...Updates
github.com/testcontainers/testcontainers-gofrom 0.42.0 to 0.43.0Release notes
Sourced from github.com/testcontainers/testcontainers-go's releases.