Skip to content

Bump the nats group with 1 update#69

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/nuget/nats-cf276f1f86
Closed

Bump the nats group with 1 update#69
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/nuget/nats-cf276f1f86

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 13, 2026

Copy link
Copy Markdown
Contributor

Updated NATS.Net from 2.8.1 to 3.0.0.

Release notes

Sourced from NATS.Net's releases.

3.0.0

NuGet

NATS .NET 3.0 is now stable. This release has been in the works since early this year and brings OpenTelemetry tracing and metrics, .NET 10 target, and a number of API and behavior changes refined over the preview series. Thanks to everyone who tried the previews and reported issues along the way. There are no changes since 3.0.0-preview.11.

.NET 10 Target

3.0 targets netstandard2.0, netstandard2.1, net8.0, and net10.0. net6.0 has been dropped.

OpenTelemetry

API and behavior changes

Performance and internals

Tests and docs

Thanks

Thanks to the community for the contributions and issue reports behind this release:

  • @​colprog for the header handling optimization (#​1203), the custom span destination name formatter (#​1201), and requesting the explicit drain API (#​1176)
    ... (truncated)

3.0.0-preview.11

NuGet

Last planned preview on the 3.0 line centered on OpenTelemetry: a new NATS.Client.OpenTelemetry package, richer metrics, and lower-overhead tracing. Also moves the socket connection interfaces into NATS.Client.Abstractions and tightens the header-parsing hot path.

OpenTelemetry:

  • Add OpenTelemetry package (#​1172)
  • Add custom span destination name formatter (#​1201)
  • Add ack/dropped metrics and collapse inbox trace tags (#​1194)
  • Exclude NATS status frames from consumed metrics (#​1195)
  • Make shared instrumentation options thread-visible (#​1207)
  • Match subject filters without per-message allocation (#​1206)
  • Fix null-key tag in receive fallback (#​1205)

Core & packaging:

  • Move socket connection interfaces to NATS.Client.Abstractions (#​1192)
  • Add abstractions package boundary test (#​1197)
  • Optimize header handling with SearchValues (#​1203)
  • Simplify object store base64url encoder (#​1199)
  • Gate positive-path test connections with ConnectRetryAsync (#​1198)
  • Remove stale net6.0 references (#​1196)

Thanks to @​colprog for the custom span destination name formatter (#​1201) and the SearchValues header optimization (#​1203).

Thanks to everyone testing the previews so far. This should be the last one; please give it one more round of testing, and if no bugs turn up we'll cut the stable 3.0 release in about a week.

Full Changelog: nats-io/nats.net@v3.0.0-preview.10...v3.0.0-preview.11

3.0.0-preview.10

NuGet

Bug-fix preview on the 3.0 line. Carries the ordered push consumer subscription teardown fixes from the 2.x line; no 3.0-only changes this round.

From the 2.x line:

  • jetstream: simplify ordered push consumer sub teardown (#​1191)
  • jetstream: dispose ordered push consumer sub on teardown (#​1188)

Full Changelog: nats-io/nats.net@v3.0.0-preview.9...v3.0.0-preview.10

3.0.0-preview.9

NuGet

Ninth preview of NATS .NET 3.0. Request-reply now defaults to Direct mode, and subscriptions and consumers can be drained explicitly.

Heads-up: the default request-reply mode is now NatsRequestReplyMode.Direct (previously SharedInbox). Direct uses the same inbox prefix but skips per-reply muxer processing, making RequestAsync more resource-efficient. At the default it still throws NatsNoRespondersException on a no-responders reply, so existing RequestAsync behavior is preserved. If you already set RequestReplyMode explicitly to either mode, nothing changes for you. To keep the old default mechanism, set NatsOpts.RequestReplyMode = NatsRequestReplyMode.SharedInbox.

3.0-only changes:

  • Default request-reply to Direct mode (#​1182)
  • Add explicit subscription and consumer drain (#​1177)
  • Unify subscription channel overflow defaults (#​1181)
  • Deprecate SkipSubjectValidation (#​1180)
  • Fix OTel server.port tag type and source (#​1175)

Also from the 2.x line:

  • Bump MessagePack 3.1.1 -> 3.1.7 (#​1183)

Full Changelog: nats-io/nats.net@v3.0.0-preview.8...v3.0.0-preview.9

3.0.0-preview.8

NuGet

Eighth preview of NATS .NET 3.0. Adds OpenTelemetry metrics support.

3.0-only changes:

  • Add OTel metrics support (#​1154)

Thanks to @​divyeshio (#​629) and @​thompson-tomo (#​871) for earlier work toward OTel metrics, and @​aradalvand for the OpenTelemetry tracing groundwork (#​859, #​907, #​911) this builds on. Long-requested feature (#​316); thanks also to @​Cooksauce and @​iby-dev for weighing in along the way.

Full Changelog: nats-io/nats.net@v3.0.0-preview.7...v3.0.0-preview.8

3.0.0-preview.7

NuGet

Seventh preview of NATS .NET 3.0. Brings in everything released in 2.8.1: a Services helper for detecting error responses on the requester side, plus bug fixes across JetStream, KV, subscriptions, and connection logging. No 3.0-only changes.

From main (via 2.8.1):

  • Add helpers to detect Nats-Service-Error on responses (#​1152)
  • Fix durable consumer create when only DurableName is set (#​1150)
  • kv: cap duplicate_window at max_age (#​1149)
  • Quiet recoverable server-error logs (#​1148) (thanks @​garrett-sutton)
  • Fix subscription timeout overflow (#​1134) (thanks @​Prochy)
  • test: fix Windows CI flaps (#​1147)
  • docs: add JetStream basic example (#​1138)

Full Changelog: nats-io/nats.net@v3.0.0-preview.6...v3.0.0-preview.7

3.0.0-preview.6

NuGet

Sixth preview of NATS .NET 3.0. Brings in everything merged to main since preview.5: a new server error event on NatsConnection, slnx solution-format migration, README and example docs additions, and a CI matrix bump to nats-server v2.12. No 3.0-only changes.

From main:

  • Add server error event (#​745)
  • Migrate solution to slnx format (#​1131)
  • Add Client and Orbit section to README (#​1133)
  • Add Example Docs (#​1119)
  • ci: test against v2.12, drop v2.10 (#​1136)

Full Changelog: nats-io/nats.net@v3.0.0-preview.5...v3.0.0-preview.6

3.0.0-preview.5

NuGet

Fifth preview of NATS .NET 3.0. Brings in everything from 2.8.0-preview.3 via a main sync (nats-server 2.14 features and a fix for in-flight message loss on consumer dispose). No 3.0-only changes since preview.4.

From main (also in 2.8.0-preview.3):

  • Add consumer reset API (#​1126, server 2.14)
  • Add $JS.FC support to JS metadata parser (#​1127, server 2.14)
  • Add consumer field on stream source/mirror (#​1128, server 2.14)
  • Fix message loss on consumer dispose (#​1085)

Full Changelog: nats-io/nats.net@v3.0.0-preview.4...v3.0.0-preview.5

3.0.0-preview.4

NuGet

Fourth preview of NATS .NET 3.0 ships nats-server v2.14 support: streams that opt into fast-ingest batch publishing per ADR-50 can now set the new AllowBatchPublish field on StreamConfig (the fast-ingest publisher itself will live in orbit.net alongside the existing atomic batch publisher). Also brings in everything from 2.8.0-preview.2 via the main sync, and switches to System.Threading.Lock on net9.0+ on the 3.0 line.

3.0-only since preview.3:

  • Use System.Threading.Lock on NET9_0_OR_GREATER (#​1118)

From main (also in 2.8.0-preview.2):

  • Add AllowBatchPublish stream config field (#​1120)
  • Bump OpenTelemetry and OpenTelemetry.Exporter.OpenTelemetryProtocol (#​1121)
  • Fix setting wrong pin id from status header (#​1116) (thanks @​colprog)
  • Fix slow-consumer test first-ping RTT flap (#​1115)
  • Fix net481 TLS test flakes (#​1111)
  • Rewrite README intro (#​1114)

Full Changelog: nats-io/nats.net@v3.0.0-preview.3...v3.0.0-preview.4

3.0.0-preview.3

Preview release on the 3.0 line. Brings in everything from 2.8.0-preview.1 via the main syncs, plus context-aware serialization. Three breaking changes in total, all intentional on the preview channel before stable 3.0. Please try it and report anything odd.

Package on NuGet: https://www.nuget.org/packages/NATS.Net

Breaking changes:

  • Subject validation is on by default. Subjects containing whitespace (space, tab, CR, LF) now throw. Opt out with SkipSubjectValidation = true on NatsOpts. Closes a class of CRLF injection issues from malformed subjects.
  • NATS.Client.Core.NKeys and NKeyPair are removed. Signing now goes through the NATS.NKeys package (https://www.nuget.org/packages/NATS.NKeys), which lets the nkey/Ed25519 code be versioned independently of the client.
  • Serializers that want access to message context during (de)serialization opt in via the new INatsSerializeWithContext<T> / INatsDeserializeWithContext<T> interfaces (or the combined INatsSerializerWithContext<T>). Existing serializers keep working unchanged; the library dispatches via runtime type check and falls back to the standard interface. Built-in serializers propagate the context through chains. The read-only flag on NatsHeaders is removed so context-aware serializers can mutate headers; a single NatsHeaders instance is no longer safe to share across concurrent publishes.

Also includes protocol size checks (64MB incoming payload cap, in line with nats.js), KV watcher cancellation fix, credential loading state reset on failure, and Pin ID handling improvements.

Thanks to the NATS community who contributed PRs, reviews, bug reports on this one ❤️

3.0-only since preview.2:

  • Add message context to serialization interfaces (#​1082) [breaking] (thanks @​adminnz)

From main (also in 2.8.0-preview.1):

  • auth: sign nonce regardless of auth_required (#​1109) (thanks @​Lionel-Zieminski)
  • auth: use NATS.NKeys package for nkey signing (#​1101) [breaking]
  • conn: reset state on credential loading failure (#​1107) (thanks @​Prochy)
  • Improve package metadata and README (#​1103)
  • tests: fix TlsPreferTest flap on net481 (#​1108)
  • Fix release workflow (#​1106)
  • Fix test flaps (#​1083)
  • ci: add contents and actions read permissions to Claude workflow (#​1102)
  • tls: document Prefer mode plaintext behavior (#​1094)
  • tests: increase NuidTests thread join timeouts (#​1100)
  • Improve Pin ID handling (#​1099) (thanks @​colprog)
  • Fix KV watcher cancellation behavior (#​1084)
  • Clear ArrayPool buffers before returning to pool (#​1097)
  • Enable subject validation by default (#​1093) [breaking]
  • Add protocol size checks (#​1095)
  • Fix Range attribute for MaxBytes property (#​1096) (thanks @​partnerRuiSilva)
  • Add CC reviews (#​1092)

Full Changelog: nats-io/nats.net@v3.0.0-preview.2...v3.0.0-preview.3

3.0.0-preview.2

This is a main branch sync release.

Please see 2.7.3 release for details.

What's Changed

Full Changelog: nats-io/nats.net@v3.0.0-preview.1...v3.0.0-preview.2

2.8.2

NuGet

Patch release on the 2.8 line. Fixes ordered push consumer subscription teardown. Thanks to @​haoguanjun for the fix.

What's Changed

Full Changelog: nats-io/nats.net@v2.8.1...v2.8.2

Commits viewable in compare view.

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps NATS.Net from 2.8.1 to 3.0.0

---
updated-dependencies:
- dependency-name: NATS.Net
  dependency-version: 3.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: nats
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Jul 13, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jul 21, 2026

Copy link
Copy Markdown
Contributor Author

Looks like NATS.Net is updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Jul 21, 2026
@dependabot
dependabot Bot deleted the dependabot/nuget/nats-cf276f1f86 branch July 21, 2026 07:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants