Skip to content

chore(deps): bump github.com/sigstore/timestamp-authority/v2 from 2.0.6 to 2.1.0#3645

Merged
tekton-robot merged 1 commit into
mainfrom
dependabot/go_modules/github.com/sigstore/timestamp-authority/v2-2.1.0
Jul 1, 2026
Merged

chore(deps): bump github.com/sigstore/timestamp-authority/v2 from 2.0.6 to 2.1.0#3645
tekton-robot merged 1 commit into
mainfrom
dependabot/go_modules/github.com/sigstore/timestamp-authority/v2-2.1.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 1, 2026

Copy link
Copy Markdown
Contributor

Bumps github.com/sigstore/timestamp-authority/v2 from 2.0.6 to 2.1.0.

Release notes

Sourced from github.com/sigstore/timestamp-authority/v2's releases.

v2.1.0

What's Changed

Full Changelog: sigstore/timestamp-authority@v2.0.6...v2.1.0

Commits
  • 58ae149 Fix spec violations in policy, EKU, and hash verification (#1375)
  • 506ec57 Bound path and HTTP method metric label cardinality to prevent OOM (#1374)
  • ee10add chore(deps): bump the actions group with 2 updates (#1370)
  • 5238ec7 chore(deps): bump golang.org/x/net from 0.54.0 to 0.55.0 (#1369)
  • 0ff73b8 chore(deps): bump goreleaser/goreleaser-action in the actions group (#1367)
  • 97813ca chore(deps): bump the actions group with 2 updates (#1366)
  • ece88f8 chore(deps): bump github.com/go-openapi/runtime from 0.30.0 to 0.31.0 (#1365)
  • 77e0ee5 chore(deps): bump github.com/tink-crypto/tink-go-awskms/v2 to v3 (#1364)
  • 6ea07df chore(deps): bump go.step.sm/crypto from 0.80.0 to 0.81.0 (#1363)
  • f1dc03b chore(deps): bump github.com/tink-crypto/tink-go-hcvault/v2 (#1362)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Used by dependabot - identifies all PRs created by dependabot kind/misc Categorizes issue or PR as a miscellaneuous one. ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesnt merit a release note. labels Jul 1, 2026
@tekton-robot tekton-robot added the size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files. label Jul 1, 2026

@vdemeester vdemeester left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/lgtm

@tekton-robot tekton-robot added the lgtm Indicates that a PR is ready to be merged. label Jul 1, 2026
@tekton-robot

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: vdemeester

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@tekton-robot tekton-robot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Jul 1, 2026
Bumps [github.com/sigstore/timestamp-authority/v2](https://github.com/sigstore/timestamp-authority) from 2.0.6 to 2.1.0.
- [Release notes](https://github.com/sigstore/timestamp-authority/releases)
- [Changelog](https://github.com/sigstore/timestamp-authority/blob/main/CHANGELOG.md)
- [Commits](sigstore/timestamp-authority@v2.0.6...v2.1.0)

---
updated-dependencies:
- dependency-name: github.com/sigstore/timestamp-authority/v2
  dependency-version: 2.1.0
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/go_modules/github.com/sigstore/timestamp-authority/v2-2.1.0 branch from fc18579 to 3e07036 Compare July 1, 2026 08:26
@tekton-robot tekton-robot removed the lgtm Indicates that a PR is ready to be merged. label Jul 1, 2026
@vdemeester

Copy link
Copy Markdown
Member

/lgtm

@tekton-robot tekton-robot added the lgtm Indicates that a PR is ready to be merged. label Jul 1, 2026
@tekton-robot tekton-robot merged commit a0dc61f into main Jul 1, 2026
16 checks passed
@dependabot dependabot Bot deleted the dependabot/go_modules/github.com/sigstore/timestamp-authority/v2-2.1.0 branch July 1, 2026 09:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approved Indicates a PR has been approved by an approver from all required OWNERS files. dependencies Used by dependabot - identifies all PRs created by dependabot kind/misc Categorizes issue or PR as a miscellaneuous one. lgtm Indicates that a PR is ready to be merged. ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesnt merit a release note. size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants