Skip to content
This repository has been archived by the owner on Apr 7, 2024. It is now read-only.

build(deps): bump oras.land/oras-go/v2 from 2.0.2 to 2.1.0 #60

Merged
merged 1 commit into from
May 5, 2023

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 5, 2023

Bumps oras.land/oras-go/v2 from 2.0.2 to 2.1.0.

Release notes

Sourced from oras.land/oras-go/v2's releases.

v2.1.0

New Features

  • Introduce remote.ReferrersError in case there is an error in updating the referrers index when the referrers tag schema is applied
    • Here is an example to ignore referrer index deletion error during push a referrer manifest.

Other Changes

Note oras-go remains on distribution-spec v1.1.0-rc1 and has not implemented v1.1.0-rc.2 yet.

Detailed Commits

Full Changelog: oras-project/oras-go@v2.0.2...v2.1.0

Commits
  • 8aed964 build: upgrade image-spec to v1.1.0-rc.3 (#496)
  • 264f5f2 doc: fix broken links for ORAS logo and oras-go doc (#490)
  • b74a2a1 feat: add type for failure during deleting dangling referrer index (#482)
  • e8225cb fix: OCI store resolve returns full descriptor (#468)
  • c1bf59e chore: add .cover to ignore (#463)
  • 97a80e5 build(deps): bump actions/setup-go from 3 to 4 (#464)
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [oras.land/oras-go/v2](https://github.com/oras-project/oras-go) from 2.0.2 to 2.1.0.
- [Release notes](https://github.com/oras-project/oras-go/releases)
- [Commits](oras-project/oras-go@v2.0.2...v2.1.0)

---
updated-dependencies:
- dependency-name: oras.land/oras-go/v2
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels May 5, 2023
Copy link
Contributor

@shizhMSFT shizhMSFT left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@shizhMSFT
Copy link
Contributor

@dependabot merge

@dependabot dependabot bot merged commit 8c9764f into main May 5, 2023
@dependabot dependabot bot deleted the dependabot/go_modules/oras.land/oras-go/v2-2.1.0 branch May 5, 2023 15:01
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file go Pull requests that update Go code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant