Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 22, 2025

Bumps github.com/opentdf/platform/sdk from 0.9.0 to 0.10.0.

Release notes

Sourced from github.com/opentdf/platform/sdk's releases.

protocol/go: v0.10.0

0.10.0 (2025-09-16)

Features

  • policy: add protovalidate for obligation defs + vals (#2699) (af5c049)

service: v0.10.0

0.10.0 (2025-09-17)

⚠ BREAKING CHANGES

  • policy: Add manager column to provider configuration for multi-instance support (#2601)

Features

  • authz: add obligation policy decision point (#2706) (bb2a4f8)
  • core: add service negation for op mode (#2680) (029db8c)
  • core: Bump default write timeout. (#2671) (6a233c1)
  • core: Encapsulate>Encrypt (#2676) (3c5a614)
  • core: Lets key manager factory take context (#2715) (8d70993)
  • policy: add FQN of obligation definitions/values to protos (#2703) (45ded0e)
  • policy: Add manager column to provider configuration for multi-instance support (#2601) (a5fc994)
  • policy: Add obligation triggers (#2675) (22d0837)
  • policy: add protovalidate for obligation defs + vals (#2699) (af5c049)
  • policy: Allow creation and update of triggers on Obligation Values (#2691) (b1e7ba1)
  • policy: Allow for additional context to be added to obligation triggers (#2705) (7025599)
  • policy: Include Triggers in GET/LISTable reqs (#2704) (b4381d1)
  • policy: obligations + values CRUD (#2545) (c194e35)
  • use public AES protected key from lib/ocrypto (#2600) (75d7590)

Bug Fixes

  • core: remove extraneous comment (#2741) (ada8da6)
  • core: return services in the order they were registered (#2733) (1d661db)
  • deps: bump github.com/opentdf/platform/lib/ocrypto from 0.3.0 to 0.6.0 in /service (#2714) (00354b3)
  • deps: bump github.com/opentdf/platform/protocol/go from 0.7.0 to 0.9.0 in /service (#2726) (9004368)
  • deps: bump protocol/go to 0.10.0 in service (#2734) (11e6201)
  • deps: update protovalidate to v0.14.2 to use new buf validate MessageOneofRule (#2698) (1cae18e)
  • policy: Registered Resources should consider actions correctly within Decision Requests (#2681) (cf264a2)
  • sanitize db schema identifiers (#2682) (0d3dd94)

sdk: v0.10.0

0.10.0 (2025-10-21)

Features

... (truncated)

Commits
  • ebdc8bf chore(main): release sdk 0.10.0 (#2801)
  • 14191e4 feat(sdk): Call init if obligations are empty. (#2825)
  • 907f672 chore(ci): fix xtest job permissions (#2828)
  • 3cccfd2 feat(sdk): Add obligations support. (#2759)
  • 206abe3 feat(policy): List obligation triggers rpc (#2823)
  • 72fa722 chore(ci): bump github/codeql-action from 3.28.19 to 4.30.9 (#2821)
  • 23cf0f1 chore(ci): bump actions/checkout from 4.2.2 to 5.0.0 (#2774)
  • beaff21 feat(policy): namespace root certificates (#2771)
  • 205812e feat(sdk): ADR documenting SDK Obligations method coupling with decrypt (#2822)
  • cedca5b chore(ci): Correct manually entered wrong version (#2818)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/opentdf/platform/sdk](https://github.com/opentdf/platform) from 0.9.0 to 0.10.0.
- [Release notes](https://github.com/opentdf/platform/releases)
- [Commits](sdk/v0.9.0...sdk/v0.10.0)

---
updated-dependencies:
- dependency-name: github.com/opentdf/platform/sdk
  dependency-version: 0.10.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 22, 2025
@dependabot dependabot bot requested a review from a team as a code owner October 22, 2025 17:10
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Oct 22, 2025
@dependabot dependabot bot requested a review from a team as a code owner October 22, 2025 17:10
@dependabot dependabot bot added the go Pull requests that update Go code label Oct 22, 2025
@github-actions
Copy link
Contributor

Benchmark results, click to expand

Benchmark authorization.GetDecisions Results:

Metric Value
Approved Decision Requests 1000
Denied Decision Requests 0
Total Time 192.123567ms

Benchmark authorization.v2.GetMultiResourceDecision Results:

Metric Value
Approved Decision Requests 1000
Denied Decision Requests 0
Total Time 94.198925ms

Standard Benchmark Metrics Skipped or Failed

Bulk Benchmark Results

Metric Value
Total Decrypts 100
Successful Decrypts 100
Failed Decrypts 0
Total Time 369.21091ms
Throughput 270.85 requests/second

TDF3 Benchmark Results:

Metric Value
Total Requests 5000
Successful Requests 5000
Failed Requests 0
Concurrent Requests 50
Total Time 40.291370256s
Average Latency 399.991325ms
Throughput 124.10 requests/second

NANOTDF Benchmark Results:

Metric Value
Total Requests 5000
Successful Requests 5000
Failed Requests 0
Concurrent Requests 50
Total Time 28.115074625s
Average Latency 280.279073ms
Throughput 177.84 requests/second

@github-actions
Copy link
Contributor

@jakedoublev jakedoublev added this pull request to the merge queue Oct 22, 2025
Merged via the queue into main with commit 412dfd1 Oct 22, 2025
41 checks passed
@jakedoublev jakedoublev deleted the dependabot/go_modules/service/github.com/opentdf/platform/sdk-0.10.0 branch October 22, 2025 20:59
github-merge-queue bot pushed a commit that referenced this pull request Oct 22, 2025
🤖 I have created a release *beep* *boop*
---


##
[0.11.0](service/v0.10.0...service/v0.11.0)
(2025-10-22)


### Features

* **authz:** add obligation fulfillment logic to obligation PDP
([#2740](#2740))
([2f8d30d](2f8d30d))
* **authz:** audit logs should properly handle obligations
([#2824](#2824))
([874ec7b](874ec7b))
* **authz:** defer to request auth as decision/entitlements entity
([#2789](#2789))
([feb34d8](feb34d8))
* **authz:** obligations protos within auth service
([#2745](#2745))
([41ee5a8](41ee5a8))
* **authz:** protovalidate tests for new authz obligations fields
([#2747](#2747))
([73e6319](73e6319))
* **authz:** service logic to use request auth as entity identifier in
PDP decisions/entitlements
([#2790](#2790))
([6784e88](6784e88))
* **authz:** wire up obligations enforcement in auth service
([#2756](#2756))
([11b3ea9](11b3ea9))
* **core:** propagate token clientID on configured claim via interceptor
into shared context metadata
([#2760](#2760))
([0f77246](0f77246))
* **kas:** Add required obligations to kao metadata.:
([#2806](#2806))
([16fb26c](16fb26c))
* **policy:** add FQNs to obligation defs + vals
([#2749](#2749))
([fa2585c](fa2585c))
* **policy:** Add obligation support to KAS
([#2786](#2786))
([bb1bca0](bb1bca0))
* **policy:** List obligation triggers rpc
([#2823](#2823))
([206abe3](206abe3))
* **policy:** namespace root certificates
([#2771](#2771))
([beaff21](beaff21))
* **policy:** Proto - root certificates by namespace
([#2800](#2800))
([0edb359](0edb359))
* **policy:** Protos List obligation triggers
([#2803](#2803))
([b32df81](b32df81))
* **policy:** Return built obligations fqns with triggers.
([#2830](#2830))
([e843018](e843018))
* **policy:** Return obligations from GetAttributeValue calls
([#2742](#2742))
([aa9b393](aa9b393))


### Bug Fixes

* **core:** CORS
([#2787](#2787))
([a030ac6](a030ac6))
* **core:** deprecate policy WithValue selector not utilized by RPC
([#2794](#2794))
([c573595](c573595))
* **core:** deprecated stale protos and add better upgrade comments
([#2793](#2793))
([f2678cc](f2678cc))
* **core:** Don't require known manager names
([#2792](#2792))
([8a56a96](8a56a96))
* **core:** Fix mode negation and core mode
([#2779](#2779))
([de9807d](de9807d))
* **core:** resolve environment loading issues
([#2827](#2827))
([9af3184](9af3184))
* **deps:** bump github.com/opentdf/platform/lib/ocrypto from 0.6.0 to
0.7.0 in /service
([#2812](#2812))
([a6d180d](a6d180d))
* **deps:** bump github.com/opentdf/platform/protocol/go from 0.12.0 to
0.13.0 in /service
([#2814](#2814))
([5e9c695](5e9c695))
* **deps:** bump github.com/opentdf/platform/sdk from 0.7.0 to 0.9.0 in
/service ([#2798](#2798))
([d6bc9a8](d6bc9a8))
* **deps:** bump github.com/opentdf/platform/sdk from 0.9.0 to 0.10.0 in
/service ([#2831](#2831))
([412dfd1](412dfd1))
* ECC key loading (deprecated)
([#2757](#2757))
([49990eb](49990eb))
* **policy:** Change to nil
([#2746](#2746))
([a449434](a449434))

---
This PR was generated with [Release
Please](https://github.com/googleapis/release-please). See
[documentation](https://github.com/googleapis/release-please#release-please).

Co-authored-by: opentdf-automation[bot] <149537512+opentdf-automation[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code size/xs

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants