Skip to content

chore: Configure Renovate#274

Open
deckhouse-BOaTswain wants to merge 3 commits into
mainfrom
renovate/configure
Open

chore: Configure Renovate#274
deckhouse-BOaTswain wants to merge 3 commits into
mainfrom
renovate/configure

Conversation

@deckhouse-BOaTswain
Copy link
Copy Markdown

@deckhouse-BOaTswain deckhouse-BOaTswain commented Jan 30, 2026

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

  • internal/packagecmd/templates/application/images/echo/Dockerfile (dockerfile)
  • internal/packagecmd/templates/module/images/echo/Dockerfile (dockerfile)
  • .github/workflows/release.yaml (github-actions)
  • .github/workflows/trdl_publish.yml (github-actions)
  • .github/workflows/trdl_releaser.yml (github-actions)
  • go.mod (gomod)
  • Taskfile.yml (regex)
  • .github/workflows/release.yaml (regex)
  • .github/workflows/release.yaml (regex)

Configuration Summary

Based on the default config's presets, Renovate will:

  • Start dependency updates only once this onboarding PR is merged
  • Enable Renovate Dependency Dashboard creation.
  • Use semantic commit type fix for dependencies and chore for all others if semantic commits are in use.
  • Ignore node_modules, bower_components, vendor and various test/tests (except for nuget) directories.
  • Group known monorepo packages together.
  • Use curated list of recommended non-monorepo package groupings.
  • Show only the Age and Confidence Merge Confidence badges for pull requests.
  • Apply crowd-sourced package replacement rules.
  • Apply crowd-sourced workarounds for known problems with packages.
  • Enable Renovate Dependency Dashboard creation.
  • Use semantic prefixes for commit messages and PR titles.
  • Evaluate schedules according to timezone Europe/Moscow.
  • Raise PR when vulnerability alerts are detected with label security.
  • Run Renovate on following schedule: before 6am on monday

🔡 Do you want to change how Renovate upgrades your dependencies? Add your custom config to renovate.json in this branch. Renovate will update the Pull Request description the next time it runs.


What to Expect

With your current configuration, Renovate will create 44 Pull Requests:

chore(deps): update module github.com/containerd/containerd to v1.7.32 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-containerd-containerd-vulnerability
  • Merge into: main
  • Upgrade github.com/containerd/containerd to v1.7.32
chore(deps): update module github.com/jackc/pgx/v5 to v5.9.2 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-jackc-pgx-v5-vulnerability
  • Merge into: main
  • Upgrade github.com/jackc/pgx/v5 to v5.9.2
chore(deps): update module github.com/moby/spdystream to v0.5.1 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-moby-spdystream-vulnerability
  • Merge into: main
  • Upgrade github.com/moby/spdystream to v0.5.1
chore(deps): update module github.com/containers/buildah to v1.38.0 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-containers-buildah-vulnerability
  • Merge into: main
  • Upgrade github.com/containers/buildah to v1.38.0
chore(deps): update module github.com/go-git/go-billy/v5 to v5.9.0 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-go-git-go-billy-v5-vulnerability
  • Merge into: main
  • Upgrade github.com/go-git/go-billy/v5 to v5.9.0
chore(deps): update module github.com/go-git/go-git/v5 to v5.19.1 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-go-git-go-git-v5-vulnerability
  • Merge into: main
  • Upgrade github.com/go-git/go-git/v5 to v5.19.1
chore(deps): update module github.com/in-toto/in-toto-golang to v0.11.0 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-in-toto-in-toto-golang-vulnerability
  • Merge into: main
  • Upgrade github.com/in-toto/in-toto-golang to v0.11.0
chore(deps): update module github.com/moby/buildkit to v0.28.1 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-moby-buildkit-vulnerability
  • Merge into: main
  • Upgrade github.com/moby/buildkit to v0.28.1
chore(deps): update module github.com/opencontainers/selinux to v1.13.0 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-opencontainers-selinux-vulnerability
  • Merge into: main
  • Upgrade github.com/opencontainers/selinux to v1.13.0
chore(deps): update module github.com/sigstore/fulcio to v1.8.5 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-sigstore-fulcio-vulnerability
  • Merge into: main
  • Upgrade github.com/sigstore/fulcio to v1.8.5
chore(deps): update module github.com/sigstore/rekor to v1.5.0 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-sigstore-rekor-vulnerability
  • Merge into: main
  • Upgrade github.com/sigstore/rekor to v1.5.0
chore(deps): update module github.com/sigstore/sigstore to v1.10.4 [security]
  • Schedule: ["at any time"]
  • Branch name: renovate/go-github.com-sigstore-sigstore-vulnerability
  • Merge into: main
  • Upgrade github.com/sigstore/sigstore to v1.10.4
chore(deps): update module go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp to v1 [security]
fix(deps): update deckhouse
fix(deps): update golang.org/x/exp digest to c761662
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/golang.org-x-exp-digest
  • Merge into: main
  • Upgrade golang.org/x/exp to c761662dc8c9
chore(deps): update module github.com/docker/cli to v25.0.7+incompatible
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-docker-cli-25.x
  • Merge into: main
  • Upgrade github.com/docker/cli to v25.0.7+incompatible
chore(deps): update module github.com/docker/docker to v25.0.16+incompatible
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-docker-docker-25.x
  • Merge into: main
  • Upgrade github.com/docker/docker to v25.0.16+incompatible
fix(deps): update module github.com/sirupsen/logrus to v1.9.4
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-sirupsen-logrus-1.x
  • Merge into: main
  • Upgrade github.com/sirupsen/logrus to v1.9.4
chore(deps): update dependency go to 1.26
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/go-toolchain
  • Merge into: main
  • Upgrade go to 1.26
chore(deps): update dependency golangci/golangci-lint to v2.12.2
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/golangci-golangci-lint-2.x
  • Merge into: main
  • Upgrade golangci/golangci-lint to v2.12.2
chore(deps): update dependency kubernetes/kubernetes to v1.36.1
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/kubernetes-kubernetes-1.x
  • Merge into: main
  • Upgrade kubernetes/kubernetes to v1.36.1
chore(deps): update module github.com/distribution/reference to v0.6.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-distribution-reference-0.x
  • Merge into: main
  • Upgrade github.com/distribution/reference to v0.6.0
chore(deps): update module github.com/google/gnostic-models to v0.7.1
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-google-gnostic-models-0.x
  • Merge into: main
  • Upgrade github.com/google/gnostic-models to v0.7.1
chore(deps): update module github.com/opencontainers/runc to v1.4.2
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-opencontainers-runc-1.x
  • Merge into: main
  • Upgrade github.com/opencontainers/runc to v1.4.2
chore(deps): update webfactory/ssh-agent action to v0.10.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github-actions
  • Merge into: main
  • Upgrade webfactory/ssh-agent to v0.10.0
fix(deps): update kubernetes
fix(deps): update module github.com/fatih/color to v1.19.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-fatih-color-1.x
  • Merge into: main
  • Upgrade github.com/fatih/color to v1.19.0
fix(deps): update module github.com/fluxcd/flagger to v1.42.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-fluxcd-flagger-1.x
  • Merge into: main
  • Upgrade github.com/fluxcd/flagger to v1.42.0
fix(deps): update module github.com/google/go-containerregistry to v0.21.6
fix(deps): update module github.com/hashicorp/vault to v1.21.4
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/hashicorp
  • Merge into: main
  • Upgrade github.com/hashicorp/vault to v1.21.4
fix(deps): update module github.com/int128/kubelogin to v1.36.1
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-int128-kubelogin-1.x
  • Merge into: main
  • Upgrade github.com/int128/kubelogin to v1.36.1
fix(deps): update module github.com/masterminds/semver/v3 to v3.5.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-masterminds-semver-v3-3.x
  • Merge into: main
  • Upgrade github.com/Masterminds/semver/v3 to v3.5.0
fix(deps): update module github.com/rs/zerolog to v1.35.1
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-rs-zerolog-1.x
  • Merge into: main
  • Upgrade github.com/rs/zerolog to v1.35.1
fix(deps): update module github.com/samber/lo to v1.53.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-samber-lo-1.x
  • Merge into: main
  • Upgrade github.com/samber/lo to v1.53.0
fix(deps): update module github.com/spf13/cobra to v1.10.2
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-spf13-cobra-1.x
  • Merge into: main
  • Upgrade github.com/spf13/cobra to v1.10.2
fix(deps): update module github.com/vbauerster/mpb/v8 to v8.12.1
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-vbauerster-mpb-v8-8.x
  • Merge into: main
  • Upgrade github.com/vbauerster/mpb/v8 to v8.12.1
fix(deps): update module github.com/werf/werf/v2 to v2.70.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/werf
  • Merge into: main
  • Upgrade github.com/werf/werf/v2 to v2.70.0
fix(deps): update module gitlab.com/greyxor/slogor to v1.6.10
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/gitlab.com-greyxor-slogor-1.x
  • Merge into: main
  • Upgrade gitlab.com/greyxor/slogor to v1.6.10
fix(deps): update module golang.org/x/crypto to v0.52.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/golang.org-x-crypto-0.x
  • Merge into: main
  • Upgrade golang.org/x/crypto to v0.52.0
fix(deps): update module golang.org/x/image to v0.41.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/golang.org-x-image-0.x
  • Merge into: main
  • Upgrade golang.org/x/image to v0.41.0
fix(deps): update module golang.org/x/term to v0.43.0
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/golang.org-x-term-0.x
  • Merge into: main
  • Upgrade golang.org/x/term to v0.43.0
chore(deps): update github-actions (major)
chore(deps): update module github.com/docker/cli to v29
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-docker-cli-29.x
  • Merge into: main
  • Upgrade github.com/docker/cli to v29.5.2+incompatible
chore(deps): update module github.com/docker/docker to v28
  • Schedule: ["before 6am on monday"]
  • Branch name: renovate/github.com-docker-docker-28.x
  • Merge into: main
  • Upgrade github.com/docker/docker to v28.5.2+incompatible

🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or overwhelm the project. See docs for prhourlylimit for details.


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.


This PR has been generated by Renovate Bot.

Signed-off-by: Pavel Okhlopkov <pavel.okhlopkov@flant.com>
@ldmonster ldmonster self-assigned this May 25, 2026
@ldmonster ldmonster added enhancement New feature or request dependencies Pull requests that update a dependency file labels May 25, 2026
Signed-off-by: Pavel Okhlopkov <pavel.okhlopkov@flant.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants