Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 16, 2025

Bumps github.com/opentdf/platform/lib/ocrypto from 0.6.0 to 0.7.0.

Release notes

Sourced from github.com/opentdf/platform/lib/ocrypto's releases.

service: v0.7.0

0.7.0 (2025-06-24)

⚠ BREAKING CHANGES

  • policy: disable kas grants in favor of key mappings (#2220)

Features

  • authz: Add caching to keycloak ERS (#2466) (f5b0a06)
  • authz: auth svc registered resource GetDecision support (#2392) (5405674)
  • authz: authz v2 GetBulkDecision (#2448) (0da3363)
  • authz: cache entitlement policy within authorization service (#2457) (c16361c)
  • authz: ensure logging parity between authz v2 and v1 (#2443) (ef68586)
  • core: add cache manager (#2449) (2b062c5)
  • core: consume RPC interceptor request context metadata in logging (#2442) (2769c48)
  • core: DSPX-609 - add cli-client to keycloak provisioning (#2396) (48e7489)
  • core: ERS cache setup, fix cache initialization (#2458) (d0c6938)
  • inject logger and cache manager to key managers (#2461) (9292162)
  • kas: expose provider config from key details. (#2459) (0e7d39a)
  • main: Add Close() method to cache manager (#2465) (32630d6)
  • policy: disable kas grants in favor of key mappings (#2220) (30f8cf5)
  • policy: Restrict deletion of pc with used key. (#2414) (3b40a46)
  • sdk: allow Connect-Protocol-Version RPC header for cors (#2437) (4bf241e)

Bug Fixes

  • core: remove generics on new platform cache manager and client (#2456) (98c3c16)
  • core: replace opentdf-public client with cli-client (#2422) (fb18525)
  • deps: bump github.com/casbin/casbin/v2 from 2.106.0 to 2.107.0 in /service in the external group (#2416) (43afd48)
  • deps: bump github.com/opentdf/platform/protocol/go from 0.4.0 to 0.5.0 in /service (#2470) (3a73fc9)
  • deps: bump github.com/opentdf/platform/sdk from 0.4.7 to 0.5.0 in /service (#2473) (ad37476)
  • deps: bump the external group across 1 directory with 2 updates (#2450) (9d8d1f1)
  • deps: bump the external group across 1 directory with 2 updates (#2472) (d45b3c8)
  • only request a token when near expiration (#2370) (556d95e)
  • policy: fix casing bug and get provider config on update. (#2403) (a52b8f9)
  • policy: properly formatted pem in test fixtures (#2409) (54ffd23)

protocol/go: v0.7.0

0.7.0 (2025-08-08)

⚠ BREAKING CHANGES

  • policy: disable kas grants in favor of key mappings (#2220)
  • core: Require go 1.23+ (#1979)

Features

... (truncated)

Commits
  • 5874ce6 chore(main): release sdk 0.7.0 (#2589)
  • b838bbc fix(deps): bump github.com/go-viper/mapstructure/v2 from 2.3.0 to 2.4.0 in /s...
  • 78fb8d6 chore(deps): bump github.com/go-viper/mapstructure/v2 from 2.3.0 to 2.4.0 in ...
  • b4c67ec chore: Add dependency-review workflow that always targets main (#2645)
  • 855611d feat(core): add multi-strategy ERS to support ldap and sql (#2596)
  • a411b05 chore(ci): DSPX-1424 Enforce minimum buf version (#2641)
  • 15d20b1 chore(ci): Add BDD Test framework (#2640)
  • e775e14 fix(deps): bump github.com/opentdf/platform/protocol/go from 0.6.2 to 0.7.0 i...
  • 3c392aa fix(deps): bump github.com/docker/docker from 28.2.2+incompatible to 28.3.3+i...
  • c52bc15 chore(ci): Fixes for checks for buf and go mods (#2633)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/opentdf/platform/lib/ocrypto](https://github.com/opentdf/platform) from 0.6.0 to 0.7.0.
- [Release notes](https://github.com/opentdf/platform/releases)
- [Commits](sdk/v0.6.0...sdk/v0.7.0)

---
updated-dependencies:
- dependency-name: github.com/opentdf/platform/lib/ocrypto
  dependency-version: 0.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 16, 2025
@dependabot dependabot bot requested review from a team as code owners October 16, 2025 17:11
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 16, 2025
@github-actions
Copy link
Contributor

Benchmark results, click to expand

Benchmark authorization.GetDecisions Results:

Metric Value
Approved Decision Requests 1000
Denied Decision Requests 0
Total Time 176.496373ms

Benchmark authorization.v2.GetMultiResourceDecision Results:

Metric Value
Approved Decision Requests 1000
Denied Decision Requests 0
Total Time 99.88714ms

Standard Benchmark Metrics Skipped or Failed

Bulk Benchmark Results

Metric Value
Total Decrypts 100
Successful Decrypts 100
Failed Decrypts 0
Total Time 369.055531ms
Throughput 270.96 requests/second

TDF3 Benchmark Results:

Metric Value
Total Requests 5000
Successful Requests 5000
Failed Requests 0
Concurrent Requests 50
Total Time 41.271413003s
Average Latency 410.348786ms
Throughput 121.15 requests/second

NANOTDF Benchmark Results:

Metric Value
Total Requests 5000
Successful Requests 5000
Failed Requests 0
Concurrent Requests 50
Total Time 28.643811601s
Average Latency 285.255538ms
Throughput 174.56 requests/second

@dmihalcik-virtru dmihalcik-virtru added this pull request to the merge queue Oct 16, 2025
Merged via the queue into main with commit a6d180d Oct 16, 2025
35 checks passed
@dmihalcik-virtru dmihalcik-virtru deleted the dependabot/go_modules/service/github.com/opentdf/platform/lib/ocrypto-0.7.0 branch October 16, 2025 18:33
github-merge-queue bot pushed a commit that referenced this pull request Oct 22, 2025
🤖 I have created a release *beep* *boop*
---


##
[0.11.0](service/v0.10.0...service/v0.11.0)
(2025-10-22)


### Features

* **authz:** add obligation fulfillment logic to obligation PDP
([#2740](#2740))
([2f8d30d](2f8d30d))
* **authz:** audit logs should properly handle obligations
([#2824](#2824))
([874ec7b](874ec7b))
* **authz:** defer to request auth as decision/entitlements entity
([#2789](#2789))
([feb34d8](feb34d8))
* **authz:** obligations protos within auth service
([#2745](#2745))
([41ee5a8](41ee5a8))
* **authz:** protovalidate tests for new authz obligations fields
([#2747](#2747))
([73e6319](73e6319))
* **authz:** service logic to use request auth as entity identifier in
PDP decisions/entitlements
([#2790](#2790))
([6784e88](6784e88))
* **authz:** wire up obligations enforcement in auth service
([#2756](#2756))
([11b3ea9](11b3ea9))
* **core:** propagate token clientID on configured claim via interceptor
into shared context metadata
([#2760](#2760))
([0f77246](0f77246))
* **kas:** Add required obligations to kao metadata.:
([#2806](#2806))
([16fb26c](16fb26c))
* **policy:** add FQNs to obligation defs + vals
([#2749](#2749))
([fa2585c](fa2585c))
* **policy:** Add obligation support to KAS
([#2786](#2786))
([bb1bca0](bb1bca0))
* **policy:** List obligation triggers rpc
([#2823](#2823))
([206abe3](206abe3))
* **policy:** namespace root certificates
([#2771](#2771))
([beaff21](beaff21))
* **policy:** Proto - root certificates by namespace
([#2800](#2800))
([0edb359](0edb359))
* **policy:** Protos List obligation triggers
([#2803](#2803))
([b32df81](b32df81))
* **policy:** Return built obligations fqns with triggers.
([#2830](#2830))
([e843018](e843018))
* **policy:** Return obligations from GetAttributeValue calls
([#2742](#2742))
([aa9b393](aa9b393))


### Bug Fixes

* **core:** CORS
([#2787](#2787))
([a030ac6](a030ac6))
* **core:** deprecate policy WithValue selector not utilized by RPC
([#2794](#2794))
([c573595](c573595))
* **core:** deprecated stale protos and add better upgrade comments
([#2793](#2793))
([f2678cc](f2678cc))
* **core:** Don't require known manager names
([#2792](#2792))
([8a56a96](8a56a96))
* **core:** Fix mode negation and core mode
([#2779](#2779))
([de9807d](de9807d))
* **core:** resolve environment loading issues
([#2827](#2827))
([9af3184](9af3184))
* **deps:** bump github.com/opentdf/platform/lib/ocrypto from 0.6.0 to
0.7.0 in /service
([#2812](#2812))
([a6d180d](a6d180d))
* **deps:** bump github.com/opentdf/platform/protocol/go from 0.12.0 to
0.13.0 in /service
([#2814](#2814))
([5e9c695](5e9c695))
* **deps:** bump github.com/opentdf/platform/sdk from 0.7.0 to 0.9.0 in
/service ([#2798](#2798))
([d6bc9a8](d6bc9a8))
* **deps:** bump github.com/opentdf/platform/sdk from 0.9.0 to 0.10.0 in
/service ([#2831](#2831))
([412dfd1](412dfd1))
* ECC key loading (deprecated)
([#2757](#2757))
([49990eb](49990eb))
* **policy:** Change to nil
([#2746](#2746))
([a449434](a449434))

---
This PR was generated with [Release
Please](https://github.com/googleapis/release-please). See
[documentation](https://github.com/googleapis/release-please#release-please).

Co-authored-by: opentdf-automation[bot] <149537512+opentdf-automation[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code size/xs

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants