Update docker.io/library/golang Docker tag to v1.26.4 (main)#3372
Update docker.io/library/golang Docker tag to v1.26.4 (main)#3372red-hat-konflux[bot] wants to merge 1 commit into
Conversation
|
🤖 Finished Review · ✅ Success · Started 1:08 AM UTC · Completed 1:15 AM UTC |
ReviewFindingsHigh
Previous runReview — Approve ✅Patch version bump of the Go Docker base image ( SummaryThis is a mechanical, Renovate-generated dependency update that bumps the Go builder image by two patch versions. The change is a single-line tag swap with no behavioral, API, or architectural impact. Correctness: No logic, edge-case, or build risks introduced. The Security: No secrets, permissions, workflows, or auth-related files are modified. The mutable-tag pattern ( Intent & coherence: Automated patch maintenance by Renovate bot — authorization is implicit in the mechanical nature of the change and the project's configured auto-merge policy. Style & conventions: The new value follows the identical Documentation: No user-facing documentation references the specific Go builder image version. No staleness introduced. No findings above the severity threshold.
Previous run (2)Review — ✅ ApprovePR: #3372 — Update docker.io/library/golang Docker tag to v1.26.4 (main) SummaryRoutine patch version bump of the Go build base image in the Dockerfile from Analysis
FindingsNo findings.
Previous run (3)Review — ✅ ApproveScope: Automated patch version bump of Go Docker base image ( SummaryThis is a single-line, automated Renovate/MintMaker dependency update that bumps the Go compiler Docker image tag from Analysis
No findings above the severity threshold.
Previous run (4)Review — ✅ ApproveScope: Automated patch version bump of the Analysis
Notes
No findings. Safe to merge.
Previous run (5)Review of #3372 — Update docker.io/library/golang Docker tag to v1.26.5Verdict: ✅ Approve SummaryThis is an automated patch version bump of the Go Docker build image from Dimensions reviewed
Notes
Previous run (6)ReviewOutcome: Approve This PR is an automated Renovate/MintMaker dependency update that bumps the Go build image in Dimensions evaluated
No findings at or above the reporting threshold.
Previous run (7)ReviewOutcome: Approve SummaryMechanical patch-version bump of the Go build image from Findings
Dimensions evaluated
Labels: PR already has appropriate labels (dependencies, docker, renovate); adding go label since this is a Go compiler version bump. Previous run (8)Review of #3372 — Update docker.io/library/golang Docker tag to v1.26.4Verdict: Approve ✅ SummaryThis is a routine Renovate-automated patch version bump of the Go build image in Analysis
No findings.
Previous run (9)Review — #3372Verdict: ✅ Approve SummaryThis is a single-line, automated patch version bump of the Go build image in Dimension Results
Low-severity Observations
Previous run (10)ReviewFindingsHigh
Previous run (11)ReviewFindingsMedium
Labels: PR modifies the Dockerfile to bump a dependency version. |
93943cb to
48696b2
Compare
|
🤖 Finished Review · ✅ Success · Started 1:39 AM UTC · Completed 1:44 AM UTC |
9bcbd75 to
76d8bf9
Compare
|
🤖 Finished Review · ✅ Success · Started 1:49 AM UTC · Completed 1:54 AM UTC |
76d8bf9 to
275f5f9
Compare
|
🤖 Finished Review · ✅ Success · Started 1:39 AM UTC · Completed 1:42 AM UTC |
275f5f9 to
224bb6b
Compare
|
🤖 Finished Review · ✅ Success · Started 1:33 AM UTC · Completed 1:38 AM UTC |
4f19f34 to
b6b6c6b
Compare
|
🤖 Finished Review · ✅ Success · Started 1:23 AM UTC · Completed 1:27 AM UTC |
b6b6c6b to
0e9e73a
Compare
|
🤖 Finished Review · ✅ Success · Started 1:32 AM UTC · Completed 1:36 AM UTC |
0e9e73a to
f5a781d
Compare
|
🤖 Finished Review · ✅ Success · Started 1:43 AM UTC · Completed 1:47 AM UTC |
f5a781d to
f8ed7f3
Compare
|
🤖 Review · |
f8ed7f3 to
25c6a6a
Compare
|
🤖 Finished Review · ✅ Success · Started 1:36 AM UTC · Completed 1:40 AM UTC |
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
25c6a6a to
09fec53
Compare
|
🤖 Finished Review · ✅ Success · Started 1:46 AM UTC · Completed 1:55 AM UTC |
| ## Build | ||
|
|
||
| FROM docker.io/library/golang:1.26.3@sha256:2d6c80227255c3112a4d08e67ba98e58efd3846daf15d9d7d4c389565d881b1a AS build | ||
| FROM docker.io/library/golang:1.26.4@sha256:f96cc555eb8db430159a3aa6797cd5bae561945b7b0fe7d0e284c63a3b291609 AS build |
There was a problem hiding this comment.
[high] protected-path
This PR modifies Dockerfile, which is a protected path requiring human approval. The PR has no linked issue providing explicit authorization for the change. This is a mechanical Renovate dependency bump (golang 1.26.3 → 1.26.4) with proper digest pinning — the change itself appears correct, but protected-path modifications always require human maintainer review regardless of the change's nature.
Suggested fix: A human maintainer should review and approve this Dockerfile change. No code changes are needed — the dependency bump itself is straightforward.
This PR contains the following updates:
1.26.3→1.26.41.26.5Warning
Some dependencies could not be looked up. Check the warning logs for more information.
Configuration
📅 Schedule: (UTC)
* 0-3 * * *)🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
To execute skipped test pipelines write comment
/ok-to-test.Documentation
Find out how to configure dependency updates in MintMaker documentation or see all available configuration options in Renovate documentation.