[COD-2349] feat(callgrind): track subprocesses across fork and exec - #25
Conversation
Greptile SummaryThis PR tracks benchmark subprocesses across fork and exec. The main changes are:
Confidence Score: 5/5This looks safe to merge.
|
| Filename | Overview |
|---|---|
| callgrind/dump.c | Writes subprocess metadata per dump part and removes emitted records to prevent unbounded retention. |
| callgrind/main.c | Tracks forked children, resets child state, and forwards instrumentation state across execs. |
| callgrind/threads.c | Retains exited-thread data until it can be included in per-thread dumps. |
| coregrind/m_libcproc.c | Extends parent fork callbacks with the newly created child PID. |
Reviews (5): Last reviewed commit: "feat(callgrind): inherit instrumentation..." | Re-trigger Greptile
Merging this PR will not alter performance
Comparing Footnotes
|
ce72315 to
69b355e
Compare
69b355e to
002990c
Compare
002990c to
ec038a4
Compare
art049
left a comment
There was a problem hiding this comment.
As discussed it would be simpler to have a new inherit mode that would resolve a file owned by the parent process declaring if instrumentation is enabled or not.
It will make the overall change in the logic of the codebase more isolated and easier to maintain.
4d05dec to
c6a3e0b
Compare
22d978f to
9f332b3
Compare
9f332b3 to
c938f14
Compare
c938f14 to
fd30e19
Compare
22dc0c5 to
6d3edf8
Compare
When a benchmark spawns a subprocess, the resulting profile had no way to attribute that subprocess back to the exact benchmark (dump part) that spawned it, so the spawn tree could not be rebuilt. Track fork edges and emit them in the dump: on fork the parent records the new child pid against the part currently being measured, and each part's header lists the children spawned during it as "desc: Spawned pid:" lines (a desc field so kcachegrind and callgrind_annotate ignore it). A fork child restarts its part counter at 1 and drops the inherited edges so it only reports children it spawns itself, and zeroes cost so work before the fork stays attributed to the parent. The new child's pid is not passed to the atfork hooks, so it is read from the fork syscall's result: the core announces a fork through the atfork pre hook, and callgrind's syscall wrapper picks the pid up when that syscall returns. This keeps the fork sites (Linux, FreeBSD, Solaris, generic) untouched and reuses the core's own fork detection. The wrapper is therefore always registered, not only under --collect-systime. The child hook also re-stamps the in-flight fork syscall's start time from the child's clocks, since the thread CPU clock restarts in the child and the exit delta would otherwise underflow. Closes COD-2349
A process spawned via exec under --trace-children=yes gets a fresh valgrind whose instrumentation state resets to --instr-atstart, so a benchmark reached through an exec chain (e.g. `cargo run`) was measured from the wrong point. A plain fork inherits the state with the address space, but an exec does not. Add --instr-atstart=inherit: like "no", except each process advertises its current instrumentation state by keeping <tmpdir>/callgrind-instr-<pid> in existence while enabled, and a fresh valgrind adopts the state advertised for its own PID. An exec keeps the PID, so the file maintained by the pre-exec image hands the state over; a fork child inherits the state with the address space and republishes it under its new PID. Closes COD-2349
We forward the objects through argv as if they've been provided by argv in the first place. Multiple --obj-skip are cumulative.
6d3edf8 to
ae6bf15
Compare
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) | action | minor | `v5.0.3` → `v5.2.1` | --- ### Release Notes <details> <summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary> ### [`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1) Bumps the CodSpeed runner to [v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1). ##### 🚀 Features - Add a `simulation-track-subprocess` input, which enables measuring the subprocesses spawned by the benchmarked process in `simulation` mode by [@&open-telemetry#8203;adriencaccia](https://redirect.github.com/adriencaccia) in [#&open-telemetry#8203;235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - Bump the go-runner to [v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0), adding Go 1.26 and 1.27 support by [@&open-telemetry#8203;adriencaccia](https://redirect.github.com/adriencaccia) in [#&open-telemetry#8203;516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - feat: add simulation-track-subprocess input by [@&open-telemetry#8203;adriencaccia](https://redirect.github.com/adriencaccia) in [#&open-telemetry#8203;235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - chore: bump runner version to 5.2.1 by [@&open-telemetry#8203;github-actions](https://redirect.github.com/github-actions)\[bot] in [#&open-telemetry#8203;236](https://redirect.github.com/CodSpeedHQ/action/pull/236) **Full Changelog**: <CodSpeedHQ/action@v5.2.0...v5.2.1> ### [`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0) Bumps the CodSpeed runner to [v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0), including [v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0). ##### 🚀 Features - Add a `--simulation-track-subprocess` flag that enables tracking benchmark subprocesses, along with per-thread dumps by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#&open-telemetry#8203;493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) and [#&open-telemetry#8203;513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513) - Collect RSS via rss\_stat and folio-rmap reconstruction by [@&open-telemetry#8203;not-matthias](https://redirect.github.com/not-matthias) in [#&open-telemetry#8203;453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453) - Support CircleCI for GitHub repositories by [@&open-telemetry#8203;fargito](https://redirect.github.com/fargito) in [#&open-telemetry#8203;482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482) ##### 🐛 Bug Fixes - Fix cache behavior that was causing an apt reinstall of the libc debug symbols despite cache restore by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#&open-telemetry#8203;509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509) ##### ⚙️ Internals - Bump pinned valgrind-codspeed to [3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7) by [@&open-telemetry#8203;adriencaccia](https://redirect.github.com/adriencaccia) in [#&open-telemetry#8203;515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515) - fix(callgrind): represent os threads under `--separate-threads=yes` by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24) - feat(callgrind): track subprocesses across fork and exec by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25) - Stop skipping the rustup wrapper for valgrind by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#&open-telemetry#8203;493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - fix: add the distribution to the instruments cache key by [@&open-telemetry#8203;GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#&open-telemetry#8203;233](https://redirect.github.com/CodSpeedHQ/action/pull/233) - chore: bump runner version to 5.1.0 by [@&open-telemetry#8203;github-actions](https://redirect.github.com/github-actions)\[bot] in [#&open-telemetry#8203;232](https://redirect.github.com/CodSpeedHQ/action/pull/232) - chore: bump runner version to 5.2.0 by [@&open-telemetry#8203;github-actions](https://redirect.github.com/github-actions)\[bot] in [#&open-telemetry#8203;234](https://redirect.github.com/CodSpeedHQ/action/pull/234) **Full Changelog**: <CodSpeedHQ/action@v5.0.3...v5.2.0> </details> --- ### Configuration 📅 **Schedule**: (UTC) - Branch creation - "on tuesday" - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/open-telemetry/opentelemetry-collector). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC4zOS4wIiwidXBkYXRlZEluVmVyIjoiNDQuMzkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiZGVwZW5kZW5jaWVzIiwicmVub3ZhdGVib3QiXX0=--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
> ℹ️ **Note**
>
> This PR body was truncated due to platform limits.
This PR contains the following updates:
| Package | Type | Update | Change |
[Age](https://docs.renovatebot.com/merge-confidence/) |
[Confidence](https://docs.renovatebot.com/merge-confidence/) |
|---|---|---|---|---|---|
| [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) |
action | minor | `v5.0.3` → `v5.2.1` |

|

|
| [anchore/sbom-action](https://redirect.github.com/anchore/sbom-action)
| action | patch | `v0.24.0` → `v0.24.2` |

|

|
| [astral-sh/uv](https://redirect.github.com/astral-sh/uv) | | patch |
`0.12.5` → `0.12.7` |

|

|
| cgr.dev/chainguard/apko | | digest | `e398a22` → `b942538` | | |
| [chainguard-dev/apko](https://redirect.github.com/chainguard-dev/apko)
| | patch | `v1.2.39` → `v1.2.41` |

|

|
|
[chainguard-dev/melange](https://redirect.github.com/chainguard-dev/melange)
| | patch | `v0.59.1` → `v0.59.2` |

|

|
|
[charm.land/bubbles/v2](https://redirect.github.com/charmbracelet/bubbles)
| require | patch | `v2.2.0` → `v2.2.1` |

|

|
| debian | final | digest | `3a39a05` → `d7e1218` | | |
| [dhi.io/nats](https://dhi.io/catalog/nats)
([source](https://redirect.github.com/docker-hardened-images/definitions))
| | digest | `6e380f3` → `66af06f` | | |
| [dhi.io/pgvector](https://dhi.io/catalog/pgvector)
([source](https://redirect.github.com/docker-hardened-images/definitions))
| | digest | `9387a61` → `eac200f` | | |
| [errata-ai/vale](https://redirect.github.com/errata-ai/vale) | | minor
| `v3.18.0` → `v3.19.0` |

|

|
| [ghcr.io/astral-sh/uv](https://redirect.github.com/astral-sh/uv) |
stage | patch | `0.12.5` → `0.12.7` |

|

|
| [github.com/gofrs/flock](https://redirect.github.com/gofrs/flock) |
require | patch | `v0.13.0` → `v0.13.1` |

|

|
|
[github.com/golangci/golangci-lint/v2/cmd/golangci-lint](https://redirect.github.com/golangci/golangci-lint)
| | patch | `v2.13.1` → `v2.13.2` |

|

|
|
[github.com/google/go-containerregistry](https://redirect.github.com/google/go-containerregistry)
| require | minor | `v0.21.9` → `v0.22.0` |

|

|
|
[github/codeql-action](https://redirect.github.com/github/codeql-action)
| action | patch | `v4.37.8` → `v4.37.9` |

|

|
| [golang](https://hub.docker.com/_/golang)
([source](https://redirect.github.com/docker-library/golang)) | stage |
digest | `70b4654` → `28d89ee` | | |
|
[golangci/golangci-lint](https://redirect.github.com/golangci/golangci-lint)
| | patch | `v2.13.1` → `v2.13.2` |

|

|
|
[golangci/golangci-lint](https://redirect.github.com/golangci/golangci-lint)
| uses-with | patch | `v2.13.1` → `v2.13.2` |

|

|
|
[goreleaser/goreleaser](https://redirect.github.com/goreleaser/goreleaser)
| | minor | `v2.17.1` → `v2.18.0` |

|

|
|
[hadolint/hadolint-action](https://redirect.github.com/hadolint/hadolint-action)
| action | minor | `v3.4.0` → `v3.5.0` |

|

|
| [node](https://redirect.github.com/actions/node-versions) | uses-with
| minor | `24.19.0` → `24.20.0` |

|

|
| [terrastruct/d2](https://redirect.github.com/terrastruct/d2) | | minor
| `v0.7.1` → `v0.8.2` |

|

|
---
> [!WARNING]
> Some dependencies could not be looked up. Check the [Dependency
Dashboard](../issues/1730) for more information.
---
### Release Notes
<details>
<summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary>
###
[`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1)
[Compare
Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1)
Bumps the CodSpeed runner to
[v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1).
##### 🚀 Features
- Add a `simulation-track-subprocess` input, which enables measuring the
subprocesses spawned by the benchmarked process in `simulation` mode by
[@​adriencaccia](https://redirect.github.com/adriencaccia) in
[#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235)
- Bump the go-runner to
[v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0),
adding Go 1.26 and 1.27 support by
[@​adriencaccia](https://redirect.github.com/adriencaccia) in
[#​516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516)
**Full Runner Changelog**:
<https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md>
##### What's Changed
- feat: add simulation-track-subprocess input by
[@​adriencaccia](https://redirect.github.com/adriencaccia) in
[#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235)
- chore: bump runner version to 5.2.1 by
[@​github-actions](https://redirect.github.com/github-actions)\[bot]
in [#​236](https://redirect.github.com/CodSpeedHQ/action/pull/236)
**Full Changelog**:
<https://github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1>
###
[`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0)
[Compare
Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0)
Bumps the CodSpeed runner to
[v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0),
including
[v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0).
##### 🚀 Features
- Add a `--simulation-track-subprocess` flag that enables tracking
benchmark subprocesses, along with per-thread dumps by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in
[#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493)
and
[#​513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513)
- Collect RSS via rss\_stat and folio-rmap reconstruction by
[@​not-matthias](https://redirect.github.com/not-matthias) in
[#​453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453)
- Support CircleCI for GitHub repositories by
[@​fargito](https://redirect.github.com/fargito) in
[#​482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482)
##### 🐛 Bug Fixes
- Fix cache behavior that was causing an apt reinstall of the libc debug
symbols despite cache restore by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in
[#​509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509)
##### ⚙️ Internals
- Bump pinned valgrind-codspeed to
[3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7)
by [@​adriencaccia](https://redirect.github.com/adriencaccia) in
[#​515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515)
- fix(callgrind): represent os threads under `--separate-threads=yes` by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in
[CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24)
- feat(callgrind): track subprocesses across fork and exec by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in
[CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25)
- Stop skipping the rustup wrapper for valgrind by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in
[#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493)
**Full Runner Changelog**:
<https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md>
##### What's Changed
- fix: add the distribution to the instruments cache key by
[@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange)
in [#​233](https://redirect.github.com/CodSpeedHQ/action/pull/233)
- chore: bump runner version to 5.1.0 by
[@​github-actions](https://redirect.github.com/github-actions)\[bot]
in [#​232](https://redirect.github.com/CodSpeedHQ/action/pull/232)
- chore: bump runner version to 5.2.0 by
[@​github-actions](https://redirect.github.com/github-actions)\[bot]
in [#​234](https://redirect.github.com/CodSpeedHQ/action/pull/234)
**Full Changelog**:
<https://github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0>
</details>
<details>
<summary>anchore/sbom-action (anchore/sbom-action)</summary>
###
[`v0.24.2`](https://redirect.github.com/anchore/sbom-action/releases/tag/v0.24.2)
[Compare
Source](https://redirect.github.com/anchore/sbom-action/compare/v0.24.1...v0.24.2)
##### Added Features
- bump eslint from 10.8.1 to 10.9.0
\[[#​724](https://redirect.github.com/anchore/sbom-action/pull/724)
[@​dependabot](https://redirect.github.com/dependabot)]
##### Additional Changes
- add makefile target to bump syft
\[[#​620](https://redirect.github.com/anchore/sbom-action/pull/620)
[@​willmurphyscode](https://redirect.github.com/willmurphyscode)]
- update zizmor workflow triggers
\[[#​624](https://redirect.github.com/anchore/sbom-action/pull/624)
[@​wagoodman](https://redirect.github.com/wagoodman)]
- require zizmor security events
\[[#​621](https://redirect.github.com/anchore/sbom-action/pull/621)
[@​wagoodman](https://redirect.github.com/wagoodman)]
**[(Full
Changelog)](https://redirect.github.com/anchore/sbom-action/compare/v0.24.0...v0.24.2)**
###
[`v0.24.1`](https://redirect.github.com/anchore/sbom-action/compare/v0.24.0...v0.24.1)
[Compare
Source](https://redirect.github.com/anchore/sbom-action/compare/v0.24.0...v0.24.1)
</details>
<details>
<summary>astral-sh/uv (astral-sh/uv)</summary>
###
[`v0.12.7`](https://redirect.github.com/astral-sh/uv/blob/HEAD/CHANGELOG.md#0127)
[Compare
Source](https://redirect.github.com/astral-sh/uv/compare/0.12.6...0.12.7)
Released on 2026-08-27.
##### Python
- Replace managed Python installations when upgrading to a newer build
of the same version
([#​21323](https://redirect.github.com/astral-sh/uv/pull/21323))
##### Enhancements
- Support Linux `s390x`, `ppc64le`, and `loongarch64` targets for
cross-platform dependency resolution
([#​21313](https://redirect.github.com/astral-sh/uv/pull/21313))
- Retry downloads with configured credentials when Azure Storage denies
anonymous access to an endpoint configured via `UV_AZURE_ENDPOINT_URL`
([#​21318](https://redirect.github.com/astral-sh/uv/pull/21318))
##### Preview features
- Use content-based directory hashes to deduplicate extracted wheels in
the cache with the `content-addressed-cache` preview feature
([#​19693](https://redirect.github.com/astral-sh/uv/pull/19693))
##### Bug fixes
- Reject source archives with hash mismatches before persisting their
extracted contents to the cache
([#​21248](https://redirect.github.com/astral-sh/uv/pull/21248))
##### Other changes
- remove pyx specific features
([#​21182](https://redirect.github.com/astral-sh/uv/pull/21182),
[#​21183](https://redirect.github.com/astral-sh/uv/pull/21183),
[#​21184](https://redirect.github.com/astral-sh/uv/pull/21184),
[#​21185](https://redirect.github.com/astral-sh/uv/pull/21185),
[#​21186](https://redirect.github.com/astral-sh/uv/pull/21186))
###
[`v0.12.6`](https://redirect.github.com/astral-sh/uv/blob/HEAD/CHANGELOG.md#0126)
[Compare
Source](https://redirect.github.com/astral-sh/uv/compare/0.12.5...0.12.6)
Released on 2026-08-25.
##### Python
- Update CPython to use OpenSSL 3.5.8 and libffi 3.4.8
[#​21295](https://redirect.github.com/astral-sh/uv/pull/21295))
##### Enhancements
- Report cache-cleaning space savings from filesystem block allocation
and avoid double-counting hard links
([#​21261](https://redirect.github.com/astral-sh/uv/pull/21261))
- Limit warnings about unbounded `uv_build` requirements to
source-distribution builds
([#​21078](https://redirect.github.com/astral-sh/uv/pull/21078))
- Display byte counts below 1 KiB without a fractional part
([#​21237](https://redirect.github.com/astral-sh/uv/pull/21237))
##### Preview features
- Add `uv workspace metadata --sync --exact` to remove packages outside
the selected resolution
([#​21117](https://redirect.github.com/astral-sh/uv/pull/21117))
- Add the `artifact-hash-filtering` preview feature to make `uv pip
compile --generate-hashes` honor `--only-binary` and `--no-binary`
([#​21235](https://redirect.github.com/astral-sh/uv/pull/21235))
- Respect package-specific `exclude-newer` cutoffs when `uv check`
selects its `ty` executable
([#​21227](https://redirect.github.com/astral-sh/uv/pull/21227))
- Preserve virtual-environment hints from `tar-codec`
source-distribution errors when the base interpreter is outside a `bin`
directory
([#​21146](https://redirect.github.com/astral-sh/uv/pull/21146))
##### Performance
- Enable profile-guided optimization for Linux x86-64 release binaries
([#​21001](https://redirect.github.com/astral-sh/uv/pull/21001))
- Enable profile-guided optimization for Windows x86-64 release binaries
([#​21003](https://redirect.github.com/astral-sh/uv/pull/21003))
- Enable profile-guided optimization for macOS ARM64 release binaries
([#​21002](https://redirect.github.com/astral-sh/uv/pull/21002))
- Enable profile-guided optimization for Linux ARM64 release binaries
([#​21004](https://redirect.github.com/astral-sh/uv/pull/21004))
- Speed up syncing projects with many activated conflict items by
reusing their encoded representation
([#​21148](https://redirect.github.com/astral-sh/uv/pull/21148))
##### Bug fixes
- Allow explicit `uv build` and non-editable first-party workspace
packages when `no-build` is enabled
([#​21294](https://redirect.github.com/astral-sh/uv/pull/21294))
- Reuse configured index credentials during `uv tool upgrade` when the
tool receipt references the same index
([#​21275](https://redirect.github.com/astral-sh/uv/pull/21275))
- Ensure full 40-character Git commit pins resolve to the requested
object instead of a SHA-named branch
([#​21224](https://redirect.github.com/astral-sh/uv/pull/21224))
- Prevent TLS segfaults in riscv64 musl release binaries
([#​21158](https://redirect.github.com/astral-sh/uv/pull/21158))
- Preserve dependencies selected by recursive extras when markers mix
production and extra conditions
([#​21181](https://redirect.github.com/astral-sh/uv/pull/21181))
- Preserve version constraints from transitively referenced recursive
extras
([#​21209](https://redirect.github.com/astral-sh/uv/pull/21209))
- Resolve repository-relative Git archive dependencies inside the
checkout during the initial `uv sync`
([#​21264](https://redirect.github.com/astral-sh/uv/pull/21264))
- Return an error instead of panicking when a bearer token cannot be
encoded as an HTTP header
([#​21282](https://redirect.github.com/astral-sh/uv/pull/21282))
- Do not misclassify package URLs ending in `.py` as local script paths
([#​21144](https://redirect.github.com/astral-sh/uv/pull/21144))
- Use directory creation times consistently across libc implementations
for directory `cache-keys` entries
([#​21137](https://redirect.github.com/astral-sh/uv/pull/21137))
- Promote human-readable sizes to the next unit at rounding boundaries
([#​21136](https://redirect.github.com/astral-sh/uv/pull/21136))
##### Other changes
- Add Python 3.15 release-candidate Docker images
([#​21293](https://redirect.github.com/astral-sh/uv/pull/21293))
- Raise the minimum supported Rust version to 1.96 and update the
repository toolchain to Rust 1.98
([#​21258](https://redirect.github.com/astral-sh/uv/pull/21258))
</details>
<details>
<summary>chainguard-dev/apko (chainguard-dev/apko)</summary>
###
[`v1.2.41`](https://redirect.github.com/chainguard-dev/apko/releases/tag/v1.2.41)
[Compare
Source](https://redirect.github.com/chainguard-dev/apko/compare/v1.2.40...v1.2.41)
##### Changelog
-
[`326edce`](https://redirect.github.com/chainguard-dev/apko/commit/326edceed8d0f8987cde35623be734eadf0cdcc3)
apk: expose cache metrics
([#​2435](https://redirect.github.com/chainguard-dev/apko/issues/2435))
-
[`d7ffba3`](https://redirect.github.com/chainguard-dev/apko/commit/d7ffba39ce3a96739af261ced2300c4a9d861d55)
build(deps): bump chainguard-dev/actions/setup-registry from 1.6.31 to
1.6.32
([#​2421](https://redirect.github.com/chainguard-dev/apko/issues/2421))
-
[`aeedd74`](https://redirect.github.com/chainguard-dev/apko/commit/aeedd74f2113205a720e9c414df18ca1a21fb2c1)
build(deps): bump chainguard.dev/sdk from 0.1.197 to 0.1.204
([#​2425](https://redirect.github.com/chainguard-dev/apko/issues/2425))
-
[`c0b1316`](https://redirect.github.com/chainguard-dev/apko/commit/c0b1316becd4928e7b7a4cb9122e3c9725fe0df3)
build(deps): bump chainguard.dev/sdk from 0.1.204 to 0.1.210
([#​2428](https://redirect.github.com/chainguard-dev/apko/issues/2428))
-
[`c89724f`](https://redirect.github.com/chainguard-dev/apko/commit/c89724f244e9d41f5e14cc7a5f3d0bd08a82128e)
build(deps): bump chainguard.dev/sdk from 0.1.210 to 0.1.212
([#​2434](https://redirect.github.com/chainguard-dev/apko/issues/2434))
-
[`a2e35ac`](https://redirect.github.com/chainguard-dev/apko/commit/a2e35acdf791159eac2e1ef9e0b749af605e2535)
build(deps): bump github.com/package-url/packageurl-go from 0.1.6 to
0.1.7
([#​2430](https://redirect.github.com/chainguard-dev/apko/issues/2430))
-
[`e202915`](https://redirect.github.com/chainguard-dev/apko/commit/e202915336e55f7d4b6f464f77bc334726d4c66b)
build(deps): bump github.com/stretchr/testify from 1.12.0 to 1.12.1
([#​2419](https://redirect.github.com/chainguard-dev/apko/issues/2419))
-
[`5eab44e`](https://redirect.github.com/chainguard-dev/apko/commit/5eab44e4b31ca569b6c08feda482ca3825934aae)
build(deps): bump go.step.sm/crypto from 0.88.0 to 0.89.0
([#​2424](https://redirect.github.com/chainguard-dev/apko/issues/2424))
-
[`de11e49`](https://redirect.github.com/chainguard-dev/apko/commit/de11e492797f8f0094be458cf435aa4d4bd111fb)
build(deps): bump k8s.io/apimachinery from 0.36.3 to 0.36.4
([#​2429](https://redirect.github.com/chainguard-dev/apko/issues/2429))
-
[`1520c60`](https://redirect.github.com/chainguard-dev/apko/commit/1520c603b2f2df983f5ee06af19d0b87b41b41de)
build(deps): bump step-security/action-actionlint from 1.72.0 to 1.73.1
([#​2420](https://redirect.github.com/chainguard-dev/apko/issues/2420))
-
[`51d37b4`](https://redirect.github.com/chainguard-dev/apko/commit/51d37b413dd5ab8d43f7ea888f701fc87088f517)
build(deps): bump the codeql group with 2 updates
([#​2431](https://redirect.github.com/chainguard-dev/apko/issues/2431))
-
[`883c5ad`](https://redirect.github.com/chainguard-dev/apko/commit/883c5ad1e3036eebfb75efb5e554976db101493d)
fix(apk): stop racing on the shared indexOpts authenticator
([#​2432](https://redirect.github.com/chainguard-dev/apko/issues/2432))
-
[`6a223c2`](https://redirect.github.com/chainguard-dev/apko/commit/6a223c20c6c14015fdc9554e8ff385e22c5ac4fb)
go1.27
([#​2427](https://redirect.github.com/chainguard-dev/apko/issues/2427))
###
[`v1.2.40`](https://redirect.github.com/chainguard-dev/apko/releases/tag/v1.2.40)
[Compare
Source](https://redirect.github.com/chainguard-dev/apko/compare/v1.2.39...v1.2.40)
##### Changelog
-
[`d1b5d5e`](https://redirect.github.com/chainguard-dev/apko/commit/d1b5d5ec7633ad7288e5841b38fc8103a9773436)
erofs: add 'apko erofs mount' and 'apko erofs umount'
([#​2415](https://redirect.github.com/chainguard-dev/apko/issues/2415))
</details>
<details>
<summary>chainguard-dev/melange (chainguard-dev/melange)</summary>
###
[`v0.59.2`](https://redirect.github.com/chainguard-dev/melange/releases/tag/v0.59.2)
[Compare
Source](https://redirect.github.com/chainguard-dev/melange/compare/v0.59.1...v0.59.2)
#### What's Changed
- build(deps): bump the gomod group across 1 directory with 5 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2618](https://redirect.github.com/chainguard-dev/melange/pull/2618)
- build(deps): bump chainguard-dev/actions/setup-gitsign from 1.6.30 to
1.6.31 in the actions group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2617](https://redirect.github.com/chainguard-dev/melange/pull/2617)
- Remove stale SHA-1 signature references by
[@​xnox](https://redirect.github.com/xnox) in
[#​2620](https://redirect.github.com/chainguard-dev/melange/pull/2620)
- build(deps): bump google.golang.org/protobuf from
1.36.12-0.20260120151049-f2248ac996af to 1.36.12 by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2622](https://redirect.github.com/chainguard-dev/melange/pull/2622)
- build(deps): bump step-security/harden-runner from 2.20.1 to 2.21.0 in
the actions group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2623](https://redirect.github.com/chainguard-dev/melange/pull/2623)
- build(deps): bump the gomod group across 1 directory with 4 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2621](https://redirect.github.com/chainguard-dev/melange/pull/2621)
**Full Changelog**:
<https://github.com/chainguard-dev/melange/compare/v0.59.1...v0.59.2>
</details>
<details>
<summary>charmbracelet/bubbles (charm.land/bubbles/v2)</summary>
###
[`v2.2.1`](https://redirect.github.com/charmbracelet/bubbles/releases/tag/v2.2.1)
[Compare
Source](https://redirect.github.com/charmbracelet/bubbles/compare/v2.2.0...v2.2.1)
### Tiny Monday bugfix
Textarea element had a bug, where you used to be able to go 1 word
backwards, even if there was nothing, which resulted in the whole TUI
freezing. It was now fixed by
[@​OxQuasar](https://redirect.github.com/OxQuasar)!
#### Changelog
##### Fixed
-
[`f613411`](https://redirect.github.com/charmbracelet/bubbles/commit/f6134114d735cf40e95c15ff62e7359e46d04fc9):
fix(textarea): stop word-left at input boundary
([#​1036](https://redirect.github.com/charmbracelet/bubbles/issues/1036))
([@​OxQuasar](https://redirect.github.com/OxQuasar))
##### Docs
-
[`87d4458`](https://redirect.github.com/charmbracelet/bubbles/commit/87d445838781700cb25e3fc3a6b26006eab97b41):
docs: update godoc link in readme to new package
([@​meowgorithm](https://redirect.github.com/meowgorithm))
##### Other stuff
-
[`10489b5`](https://redirect.github.com/charmbracelet/bubbles/commit/10489b5fafe92bfaea873297cab8ac8b5c5237f4):
readme: drop tree section for now
([@​meowgorithm](https://redirect.github.com/meowgorithm))
-
[`4909481`](https://redirect.github.com/charmbracelet/bubbles/commit/490948109eb4731927ba2f4cd464d8175a9630d7):
v2.2.1 ([@​andrinoff](https://redirect.github.com/andrinoff))
***
<a href="https://charm.land/"><img alt="The Charm logo"
src="https://stuff.charm.sh/charm-banner-next.jpg" width="400"></a>
Thoughts? Questions? We love hearing from you. Feel free to reach out on
[X](https://x.com/charmcli), [Discord](https://charm.land/discord),
[Slack](https://charm.land/slack), [The
Fediverse](https://mastodon.social/@​charmcli),
[Bluesky](https://bsky.app/profile/charm.land).
</details>
<details>
<summary>errata-ai/vale (errata-ai/vale)</summary>
###
[`v3.19.0`](https://redirect.github.com/vale-cli/vale/releases/tag/v3.19.0)
[Compare
Source](https://redirect.github.com/errata-ai/vale/compare/v3.18.0...v3.19.0)
#### MDX: JSX children are now linted
Vale now reads a JSX element's children as the Markdown they are —
matching MDX's own grammar, where only tags, attributes, and `{...}`
expressions are JavaScript. The prose inside wrapping components like
`<Steps>`, `<Tabs>`, or `<Aside>` is linted at its exact source
position, as is the text of inline elements (`<abbr>HTML</abbr>` —
"HTML" is read as part of its sentence). For documentation built on
component-heavy frameworks like Astro Starlight, this can mean a quarter
of your prose is now covered.
Children carry the element's name as a [class
scope](https://docs.vale.sh/topics/scopes), the same way MyST and Quarto
directives work — so a rule can target one component's content (`scope:
text.class.Aside`), and a component whose content shouldn't be linted
can be excluded by name:
```ini
IgnoredClasses = RawOutput
```
That's also the escape hatch if you preferred the old skip-everything
behavior. Attribute values, expressions, self-closing elements, and
elements opened and closed on a single standalone line are still treated
as code.
#### Changelog
-
[`405a7da`](https://redirect.github.com/errata-ai/vale/commit/405a7dab)
fix: strip a comment's delimiters, not its prose's
([#​1151](https://redirect.github.com/errata-ai/vale/issues/1151))
-
[`7766415`](https://redirect.github.com/errata-ai/vale/commit/7766415d)
feat(code): add Elixir comment and doc-attribute extraction
([#​1151](https://redirect.github.com/errata-ai/vale/issues/1151))
-
[`055db43`](https://redirect.github.com/errata-ai/vale/commit/055db438)
feat: let a sequence token ask for repeated occurrences
([#​899](https://redirect.github.com/errata-ai/vale/issues/899))
-
[`9ba5dea`](https://redirect.github.com/errata-ai/vale/commit/9ba5dea6)
feat: lint a JSX element's children as the Markdown they are
([#​1155](https://redirect.github.com/errata-ai/vale/issues/1155))
-
[`8702043`](https://redirect.github.com/errata-ai/vale/commit/87020434)
fix: lint a block title as written, without its generated label
([#​1152](https://redirect.github.com/errata-ai/vale/issues/1152))
-
[`d0e65f4`](https://redirect.github.com/errata-ai/vale/commit/d0e65f41)
docs: update contributing for native MDX and Typst
</details>
<details>
<summary>gofrs/flock (github.com/gofrs/flock)</summary>
###
[`v0.13.1`](https://redirect.github.com/gofrs/flock/releases/tag/v0.13.1)
[Compare
Source](https://redirect.github.com/gofrs/flock/compare/v0.13.0...v0.13.1)
#### What's Changed
- chore: update Path method comment by
[@​thiagola92](https://redirect.github.com/thiagola92) in
[#​129](https://redirect.github.com/gofrs/flock/pull/129)
- chore(deps): bump the github-actions group with 2 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​130](https://redirect.github.com/gofrs/flock/pull/130)
- chore(deps): bump golang.org/x/sys from 0.37.0 to 0.38.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​131](https://redirect.github.com/gofrs/flock/pull/131)
- chore(deps): bump golang.org/x/sys from 0.38.0 to 0.39.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​132](https://redirect.github.com/gofrs/flock/pull/132)
- chore(deps): bump the github-actions group with 5 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​133](https://redirect.github.com/gofrs/flock/pull/133)
- chore(deps): bump golang.org/x/sys from 0.39.0 to 0.40.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​134](https://redirect.github.com/gofrs/flock/pull/134)
- chore(deps): bump the github-actions group with 3 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​135](https://redirect.github.com/gofrs/flock/pull/135)
- chore(deps): bump golang.org/x/sys from 0.40.0 to 0.41.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​136](https://redirect.github.com/gofrs/flock/pull/136)
- chore(deps): bump the github-actions group with 3 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​137](https://redirect.github.com/gofrs/flock/pull/137)
- chore(deps): bump golang.org/x/sys from 0.41.0 to 0.42.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​138](https://redirect.github.com/gofrs/flock/pull/138)
- chore(deps): bump the github-actions group with 2 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​139](https://redirect.github.com/gofrs/flock/pull/139)
- chore(deps): bump golang.org/x/sys from 0.42.0 to 0.43.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​140](https://redirect.github.com/gofrs/flock/pull/140)
- chore(deps): bump the github-actions group with 2 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​141](https://redirect.github.com/gofrs/flock/pull/141)
- chore: improve workflows by
[@​ldez](https://redirect.github.com/ldez) in
[#​142](https://redirect.github.com/gofrs/flock/pull/142)
- chore(deps): bump github/codeql-action from 3.35.3 to 4.35.2 in the
github-actions group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​143](https://redirect.github.com/gofrs/flock/pull/143)
- chore(deps): bump golang.org/x/sys from 0.43.0 to 0.45.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​144](https://redirect.github.com/gofrs/flock/pull/144)
- chore(deps): bump the github-actions group across 1 directory with 3
updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​145](https://redirect.github.com/gofrs/flock/pull/145)
- chore(deps): bump the github-actions group with 4 updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​147](https://redirect.github.com/gofrs/flock/pull/147)
- chore(deps): bump golang.org/x/sys from 0.45.0 to 0.46.0 in the gomod
group across 1 directory by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​146](https://redirect.github.com/gofrs/flock/pull/146)
- chore(deps): bump golang.org/x/sys from 0.46.0 to 0.47.0 in the gomod
group by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​149](https://redirect.github.com/gofrs/flock/pull/149)
- chore(deps): bump the github-actions group across 1 directory with 6
updates by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​150](https://redirect.github.com/gofrs/flock/pull/150)
- chore: update linter by
[@​ldez](https://redirect.github.com/ldez) in
[#​154](https://redirect.github.com/gofrs/flock/pull/154)
- chore(deps): bump github.com/stretchr/testify from 1.11.1 to 1.12.1 in
the gomod group across 1 directory by
[@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​153](https://redirect.github.com/gofrs/flock/pull/153)
#### New Contributors
- [@​thiagola92](https://redirect.github.com/thiagola92) made
their first contribution in
[#​129](https://redirect.github.com/gofrs/flock/pull/129)
**Full Changelog**:
<https://github.com/gofrs/flock/compare/v0.13.0...v0.13.1>
</details>
<details>
<summary>golangci/golangci-lint
(github.com/golangci/golangci-lint/v2/cmd/golangci-lint)</summary>
###
[`v2.13.2`](https://redirect.github.com/golangci/golangci-lint/blob/HEAD/CHANGELOG.md#v2132)
[Compare
Source](https://redirect.github.com/golangci/golangci-lint/compare/v2.13.1...v2.13.2)
*Released on 2026-08-28*
1. Bug fixes
- Decrease cache entropy
2. Linters bug fixes
- `iface`: from 1.5.0 to 1.5.1
- `staticcheck`: from 0.8.0 to 0.8.1
- `unparam`: from
[`3f964bc`](https://redirect.github.com/golangci/golangci-lint/commit/3f964bcb5673)
to
[`2fa3d84`](https://redirect.github.com/golangci/golangci-lint/commit/2fa3d841b0c8)
- `canonicalheader`: from v1.1.2 to a temporary fork
</details>
<details>
<summary>google/go-containerregistry
(github.com/google/go-containerregistry)</summary>
###
[`v0.22.0`](https://redirect.github.com/google/go-containerregistry/releases/tag/v0.22.0)
[Compare
Source](https://redirect.github.com/google/go-containerregistry/compare/v0.21.9...v0.22.0)
#### What's Changed
- mutate: let Time and Canonical take tarball.LayerOption by
[@​mzihlmann](https://redirect.github.com/mzihlmann) in
[#​2403](https://redirect.github.com/google/go-containerregistry/pull/2403)
- build: add multi-architecture Cloud Build configurations for crane,
gcrane, and krane by
[@​tprussak](https://redirect.github.com/tprussak) in
[#​2412](https://redirect.github.com/google/go-containerregistry/pull/2412)
- remote: resolve push-check credentials against the repository by
[@​mzihlmann](https://redirect.github.com/mzihlmann) in
[#​2411](https://redirect.github.com/google/go-containerregistry/pull/2411)
- Allow single-character repository paths by
[@​semx](https://redirect.github.com/semx) in
[#​2407](https://redirect.github.com/google/go-containerregistry/pull/2407)
- fix: add missing substitutions and workspace cleanup to new build
files by [@​tprussak](https://redirect.github.com/tprussak) in
[#​2413](https://redirect.github.com/google/go-containerregistry/pull/2413)
- remote: retry failed Puller and Pusher initialization by
[@​iahsanGill](https://redirect.github.com/iahsanGill) in
[#​2406](https://redirect.github.com/google/go-containerregistry/pull/2406)
- build(deps): bump the actions group across 1 directory with 8 updates
by [@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2405](https://redirect.github.com/google/go-containerregistry/pull/2405)
- build(deps): bump the go-deps group across 1 directory with 3 updates
by [@​dependabot](https://redirect.github.com/dependabot)\[bot] in
[#​2415](https://redirect.github.com/google/go-containerregistry/pull/2415)
- go.mod: bump Go version + add toolchain directive to replace
.go-version file by
[@​Subserial](https://redirect.github.com/Subserial) in
[#​2416](https://redirect.github.com/google/go-containerregistry/pull/2416)
- fix: Fix new build options and provenance by
[@​tprussak](https://redirect.github.com/tprussak) in
[#​2417](https://redirect.github.com/google/go-containerregistry/pull/2417)
- fix(build): unify new build flow into cloudbuild\_v2.yaml by
[@​tprussak](https://redirect.github.com/tprussak) in
[#​2419](https://redirect.github.com/google/go-containerregistry/pull/2419)
#### New Contributors
- [@​mzihlmann](https://redirect.github.com/mzihlmann) made their
first contribution in
[#​2403](https://redirect.github.com/google/go-containerregistry/pull/2403)
- [@​tprussak](https://redirect.github.com/tprussak) made their
first contribution in
[#​2412](https://redirect.github.com/google/go-containerregistry/pull/2412)
- [@​semx](https://redirect.github.com/semx) made their first
contribution in
[#​2407](https://redirect.github.com/google/go-containerregistry/pull/2407)
**Full Changelog**:
<https://github.com/google/go-containerregistry/compare/v0.21.9...v0.21.10>
</details>
<details>
<summary>github/codeql-action (github/codeql-action)</summary>
###
[`v4.37.9`](https://redirect.github.com/github/codeql-action/releases/tag/v4.37.9)
[Compare
Source](https://redirect.github.com/github/codeql-action/compare/v4.37.8...v4.37.9)
- Update default CodeQL bundle version to
[2.26.4](https://redirect.github.com/github/codeql-action/releases/tag/codeql-bundle-v2.26.4).
[#​4106](https://redirect.github.com/github/codeql-action/pull/4106)
</details>
<details>
<summary>goreleaser/goreleaser (goreleaser/goreleaser)</summary>
###
[`v2.18.0`](https://redirect.github.com/goreleaser/goreleaser/releases/tag/v2.18.0)
[Compare
Source](https://redirect.github.com/goreleaser/goreleaser/compare/v2.17.1...v2.18.0-97002309-nightly)
#### Announcement
Read the official announcement: [Announcing GoReleaser
v2.18](https://goreleaser.com/blog/goreleaser-v2.18/).
#### Changelog
##### New Features
-
[`601cd87`](https://redirect.github.com/goreleaser/goreleaser/commit/601cd877957f6dba2180a5405886acace8f2e022):
feat(ko): support templating for local\_domain, base\_image, and
repositories
([#​6741](https://redirect.github.com/goreleaser/goreleaser/issues/6741))
([@​mrueg](https://redirect.github.com/mrueg))
-
[`de88f38`](https://redirect.github.com/goreleaser/goreleaser/commit/de88f3820cf137cd665c30ba8f54304ec1dd0b07):
feat(winget): support publishing additional locale manifests
([#​6733](https://redirect.github.com/goreleaser/goreleaser/issues/6733))
([@​MohammedAnasuddinZaid](https://redirect.github.com/MohammedAnasuddinZaid))
-
[`cefbc6f`](https://redirect.github.com/goreleaser/goreleaser/commit/cefbc6faba0c5746ba2edefa32204c77cc26b1fd):
feat: add iru custom apps publisher
([#​6709](https://redirect.github.com/goreleaser/goreleaser/issues/6709))
([@​wimwenigerkind](https://redirect.github.com/wimwenigerkind))
-
[`1d6e7c0`](https://redirect.github.com/goreleaser/goreleaser/commit/1d6e7c06e47ec4bf283bb3231ae1348500e0bf3b):
feat: allow PR creation to use a different auth token
([#​6717](https://redirect.github.com/goreleaser/goreleaser/issues/6717))
([@​emily-curry](https://redirect.github.com/emily-curry))
-
[`4c41ac0`](https://redirect.github.com/goreleaser/goreleaser/commit/4c41ac0e2fe68b30f2035ca9f760c1329b7330a5):
feat: preflight checks
([#​6704](https://redirect.github.com/goreleaser/goreleaser/issues/6704))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`060260a`](https://redirect.github.com/goreleaser/goreleaser/commit/060260ae7c0ba358a494c2ce175beceee9d7382b):
feat: release summary
([#​6810](https://redirect.github.com/goreleaser/goreleaser/issues/6810))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`82a5aba`](https://redirect.github.com/goreleaser/goreleaser/commit/82a5aba0a9a3d7907da4163b89512f1d3da658ab):
feat: update to Go 1.27
([#​6802](https://redirect.github.com/goreleaser/goreleaser/issues/6802))
([@​caarlos0](https://redirect.github.com/caarlos0))
##### Security updates
-
[`b1cafd4`](https://redirect.github.com/goreleaser/goreleaser/commit/b1cafd427fa798312d3429c63781512bb45d7dca):
sec(deps): bump go-openapi/spec and go-openapi/validade
([#​6766](https://redirect.github.com/goreleaser/goreleaser/issues/6766))
([@​caarlos0](https://redirect.github.com/caarlos0))
##### Bug fixes
-
[`1970443`](https://redirect.github.com/goreleaser/goreleaser/commit/197044372e624c80bfb982b356f4bdf0ddf2ffb6):
fix(aur): expand description templates before escaping quotes
([#​6791](https://redirect.github.com/goreleaser/goreleaser/issues/6791))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​caarlos0](https://redirect.github.com/caarlos0))
-
[`a27402d`](https://redirect.github.com/goreleaser/goreleaser/commit/a27402dd9f2ce59a31aed5e4ded249cd6502e1e7):
fix(blob): honor s3\_force\_path\_style without a custom endpoint
([#​6789](https://redirect.github.com/goreleaser/goreleaser/issues/6789))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​caarlos0](https://redirect.github.com/caarlos0))
-
[`db65b99`](https://redirect.github.com/goreleaser/goreleaser/commit/db65b99a43786ae3cebbf39637f530534fa8d485):
fix(brew): a formula without a repository stops the ones after it
([#​6783](https://redirect.github.com/goreleaser/goreleaser/issues/6783))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`2b5fb31`](https://redirect.github.com/goreleaser/goreleaser/commit/2b5fb317cb771bedb09c5b2acb592fa37da64431):
fix(build): node windows targets get no .exe extension
([#​6777](https://redirect.github.com/goreleaser/goreleaser/issues/6777))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`951fc57`](https://redirect.github.com/goreleaser/goreleaser/commit/951fc57101613cb5fc86a9ae55a05febe7b25aa8):
fix(cask): a cask without a repository stops the ones after it
([#​6785](https://redirect.github.com/goreleaser/goreleaser/issues/6785))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`54a6c8e`](https://redirect.github.com/goreleaser/goreleaser/commit/54a6c8e941da2236e1704e23d8481ca3311fc726):
fix(cask): emit Casks that pass brew style
([#​6752](https://redirect.github.com/goreleaser/goreleaser/issues/6752))
([@​r0h1tb](https://redirect.github.com/r0h1tb))
-
[`2d6b235`](https://redirect.github.com/goreleaser/goreleaser/commit/2d6b235930f39c538fcdd58eba8ef045b47f31a6):
fix(changelog): a commit matching two include filters is listed twice
([#​6773](https://redirect.github.com/goreleaser/goreleaser/issues/6773))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​caarlos0](https://redirect.github.com/caarlos0))
-
[`c4cc86f`](https://redirect.github.com/goreleaser/goreleaser/commit/c4cc86f7b8436e6735c9929f5b2ebfa7684eabe6):
fix(chocolatey): error on multiple archives for the same platform
([#​6792](https://redirect.github.com/goreleaser/goreleaser/issues/6792))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`1a246da`](https://redirect.github.com/goreleaser/goreleaser/commit/1a246da4164ae81e3b435228995074164f9c701e):
fix(config): type retry durations as strings in schema
([#​6801](https://redirect.github.com/goreleaser/goreleaser/issues/6801))
([@​skatkov](https://redirect.github.com/skatkov))
-
[`8be344b`](https://redirect.github.com/goreleaser/goreleaser/commit/8be344b19e5bb723590a207c46b124d383458fc1):
fix(docker): add gpg-agent to the image
([#​6763](https://redirect.github.com/goreleaser/goreleaser/issues/6763))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`5282589`](https://redirect.github.com/goreleaser/goreleaser/commit/5282589091a7a0df652ae039467bfc5be9187346):
fix(dockers/v2): annotation scopes
([#​6800](https://redirect.github.com/goreleaser/goreleaser/issues/6800))
([@​CraigAstillRVU](https://redirect.github.com/CraigAstillRVU)
and [@​caarlos0](https://redirect.github.com/caarlos0))
-
[`5560bb9`](https://redirect.github.com/goreleaser/goreleaser/commit/5560bb9acf609f23de14d2c4f7d31808d46b364e):
fix(flatpak): a disabled flatpak stops the ones after it
([#​6781](https://redirect.github.com/goreleaser/goreleaser/issues/6781))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`b68113a`](https://redirect.github.com/goreleaser/goreleaser/commit/b68113a4a78e95de2efcde8384a61d526279625f):
fix(git): tag templates strip apostrophes from the message
([#​6779](https://redirect.github.com/goreleaser/goreleaser/issues/6779))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`1bc6ec7`](https://redirect.github.com/goreleaser/goreleaser/commit/1bc6ec7dfe77db0961b44588a4f8efe5120b7f84):
fix(healthcheck): register upx and makeself dependency checkers
([#​6793](https://redirect.github.com/goreleaser/goreleaser/issues/6793))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`9d7d49f`](https://redirect.github.com/goreleaser/goreleaser/commit/9d7d49ff17546abd01f4588636a04201cf3d6bf7):
fix(krew): a manifest without a name stops the ones after it
([#​6787](https://redirect.github.com/goreleaser/goreleaser/issues/6787))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`4276c51`](https://redirect.github.com/goreleaser/goreleaser/commit/4276c5174e80a4240dee31d3af8d11438cbfeae0):
fix(krew): apply the documented goarm default
([#​6775](https://redirect.github.com/goreleaser/goreleaser/issues/6775))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`9700230`](https://redirect.github.com/goreleaser/goreleaser/commit/97002309efe9b11cee15426c940a42c44a9f55b2):
fix(mcp): mcp.disable is documented but never read
([#​6795](https://redirect.github.com/goreleaser/goreleaser/issues/6795))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`1d79a09`](https://redirect.github.com/goreleaser/goreleaser/commit/1d79a09e56ea59226ff554959ba562c172db9ca9):
fix(milestone): a milestone with close disabled stops the ones after it
([#​6778](https://redirect.github.com/goreleaser/goreleaser/issues/6778))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`2a0393d`](https://redirect.github.com/goreleaser/goreleaser/commit/2a0393dc951468dff3cf37603b9a92d3fb268d09):
fix(nfpm): don't set deb arch variant for goamd64 v1
([#​6765](https://redirect.github.com/goreleaser/goreleaser/issues/6765))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`912704c`](https://redirect.github.com/goreleaser/goreleaser/commit/912704c71ce0649ef87d41d427fc103e69544b45):
fix(nfpm): overrides ignore package\_name, epoch, release and prerelease
([#​6782](https://redirect.github.com/goreleaser/goreleaser/issues/6782))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`3cf25c0`](https://redirect.github.com/goreleaser/goreleaser/commit/3cf25c0db61ed7b1684a974995deb3ff29d09ecf):
fix(nfpm): record the conventional extension, not the format name
([#​6776](https://redirect.github.com/goreleaser/goreleaser/issues/6776))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`ad028a3`](https://redirect.github.com/goreleaser/goreleaser/commit/ad028a32aa82dd98b5986e2a000a3ac9e9913f7f):
fix(nix): a skipped nix entry stops the ones after it
([#​6788](https://redirect.github.com/goreleaser/goreleaser/issues/6788))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`b787cd2`](https://redirect.github.com/goreleaser/goreleaser/commit/b787cd207c28f5ec4664bde7bbd0cf181bf606a3):
fix(notarize): cap macOS notarization timeout at 20m
([#​6758](https://redirect.github.com/goreleaser/goreleaser/issues/6758))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`81a5509`](https://redirect.github.com/goreleaser/goreleaser/commit/81a55090039d93c90a24a0d18139021522e4471d):
fix(sign): artifacts: none masks real signing failures
([#​6790](https://redirect.github.com/goreleaser/goreleaser/issues/6790))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`4eb6037`](https://redirect.github.com/goreleaser/goreleaser/commit/4eb603712f4418671f76a97fe4cbd435e7b7fdd6):
fix(snapcraft): a disabled snap stops the ones after it
([#​6784](https://redirect.github.com/goreleaser/goreleaser/issues/6784))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`d93d0f1`](https://redirect.github.com/goreleaser/goreleaser/commit/d93d0f196d4a76458c2531b6b0c4af61790a0d46):
fix(snapcraft): assumes, hooks and plugs are dropped when apps is
omitted
([#​6780](https://redirect.github.com/goreleaser/goreleaser/issues/6780))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​vxncxnx](https://redirect.github.com/vxncxnx))
-
[`b3bbd53`](https://redirect.github.com/goreleaser/goreleaser/commit/b3bbd53334b2d5e9f545ecfcf65850548938a94f):
fix(srpm): make documented rpm fields actually configurable
([#​6762](https://redirect.github.com/goreleaser/goreleaser/issues/6762))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`7304fdb`](https://redirect.github.com/goreleaser/goreleaser/commit/7304fdbd72f445fed66d5a206e2d2aa6bda1a1ff):
fix(tmpl): register the documented join template function
([#​6772](https://redirect.github.com/goreleaser/goreleaser/issues/6772))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`6f88b00`](https://redirect.github.com/goreleaser/goreleaser/commit/6f88b00188cbc1afdc2995bbfe7374e540f32e85):
fix(upload): a misconfigured upload stops the others
([#​6786](https://redirect.github.com/goreleaser/goreleaser/issues/6786))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`67e4c45`](https://redirect.github.com/goreleaser/goreleaser/commit/67e4c45090e842817467ca94a51b3d68f549b2b3):
fix(winget): a skipped winget entry stops the ones after it
([#​6797](https://redirect.github.com/goreleaser/goreleaser/issues/6797))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`92453c1`](https://redirect.github.com/goreleaser/goreleaser/commit/92453c1dbdf592d227cb236600093a503f2351f3):
fix(winget): count arm64 in the duplicate-archive check
([#​6774](https://redirect.github.com/goreleaser/goreleaser/issues/6774))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX) and
[@​caarlos0](https://redirect.github.com/caarlos0))
-
[`9a43dd0`](https://redirect.github.com/goreleaser/goreleaser/commit/9a43dd006d7cf164646c3f20df8bee715fc0cbd7):
fix(winget): fall back to the default description in additional locales
([#​6771](https://redirect.github.com/goreleaser/goreleaser/issues/6771))
([@​VXNCXNX](https://redirect.github.com/VXNCXNX))
-
[`6127e0f`](https://redirect.github.com/goreleaser/goreleaser/commit/6127e0feff9cfaf54c25ca9562d4103a5fe9049c):
fix: do not panic decoding a commit whose message contains a log marker
([#​6738](https://redirect.github.com/goreleaser/goreleaser/issues/6738))
([@​arpitjain099](https://redirect.github.com/arpitjain099))
-
[`02cfda7`](https://redirect.github.com/goreleaser/goreleaser/commit/02cfda7102906edff9dd067bcea516574fa68308):
fix: lint ([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`b990083`](https://redirect.github.com/goreleaser/goreleaser/commit/b9900831dd40b3d88df95fdc2e420713a88c85f9):
fix: surface archive Close errors when writing release archives
([#​6690](https://redirect.github.com/goreleaser/goreleaser/issues/6690))
([@​SebTardif](https://redirect.github.com/SebTardif) and
[@​caarlos0](https://redirect.github.com/caarlos0))
##### Documentation updates
-
[`33a3f22`](https://redirect.github.com/goreleaser/goreleaser/commit/33a3f227d1592e583e055368d309c685d1f052bf):
docs(dockers\_v2): clarify that build and push are a single step
([#​6742](https://redirect.github.com/goreleaser/goreleaser/issues/6742))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`1eb0ee9`](https://redirect.github.com/goreleaser/goreleaser/commit/1eb0ee94b4a2987b063e312e1ecbbd3d394f27c0):
docs: download SBOMs
([#​6803](https://redirect.github.com/goreleaser/goreleaser/issues/6803))
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`16debcb`](https://redirect.github.com/goreleaser/goreleaser/commit/16debcb0a11d7f4792f02277841c74ebb0d81c10):
docs: many fixes
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`ff2822a`](https://redirect.github.com/goreleaser/goreleaser/commit/ff2822a2b69b05eb8731ec4284dc2926c9e88aa8):
docs: update dockers\_v2
([@​caarlos0](https://redirect.github.com/caarlos0))
-
[`686946e`](https://redirect.github.com/goreleaser/goreleaser/commit/686946ed407a7f68ab9757d92da9f4b8a7695852):
docs: use correct script for debconf
([#​6759](https://redirect.github.com/goreleaser/goreleaser/issues/6759))
([@​Daniel15](https://redirect.github.com/Daniel15))
-
[`9921479`](https://redirect.github.com/goreleaser/goreleaser/commit/9921479b6b53236e88306d1641bda2b92f0f4d27):
docs: use formats plural syntax
([#​6756](https://redirect.github.com/goreleaser/goreleaser/issues/6756))
([@​FelicianoTech](https://redirect.github.com/FelicianoTech))
##### Other work
-
[`2b80858`](https://redirect.github.com/goreleaser/goreleaser/commit/2b80858a3a93ba4df282e4cde697916281d90f15):
chore: auto-update generated files
([#​6731](https://redirect.github.com/goreleaser/goreleaser/issues/6731))
([@​goreleaserbot](https://redirect.github.com/goreleaserbot))
-
[`7df2cd5`](https://redirect.github.com/goreleaser/goreleaser/commit/7df2cd53abea0e92af6b5e498c8aea0fef3bbc01):
chore: auto-update generated files
([#​6732](https://redirect.github.com/goreleaser/goreleaser/issues/6732))
([@​goreleaserbot](https://redirect.github.com/goreleaserbot))
-
[`dd08c1f`](https://redirect.github.com/goreleaser/goreleaser/commit/dd08c1f12e373abfcdd5285da5cd836f301cd7c3):
chore: auto-update generated files
([#​6740](https://redirect.github.com/goreleaser/goreleaser/issues/6740))
([@​goreleaserbot](https://redirect.github.com/goreleaserbot))
-
[`ee0e3c1`](https://redirect.github.com/goreleaser/goreleaser/commit/ee0e3c11ede0ba9736e665bee11535ae2d581b57):
chore: auto-update generated files
([#​6744](https://redirect.github.com/goreleaser/goreleaser/issues/6744))
([@​goreleaserbot](https://redirect.github.com/goreleaserbot))
-
[`cab7c6e`](https://redirect.github.com/goreleaser/goreleaser/commit/cab7c6ef5d4ffc2429828f031ff7bb4645de7dad):
chore: auto-update generated files
([#​6769](https://redirect.github.com/goreleaser/goreleaser/issues/6769))
([@​goreleaserbot](https://redirect.github.com/goreleaserbot))
- [`39552ca`](https://redirect.github.com/go
> ✂ **Note**
>
> PR body was truncated to here.
</details>
---
### Configuration
📅 **Schedule**: (in timezone Etc/UTC)
- Branch creation
- Between 12:00 AM and 06:59 AM, only on Saturday (`* 0-6 * * 6`)
- Automerge
- At any time (no schedule defined)
🚦 **Automerge**: Disabled by config. Please merge this manually once you
are satisfied.
♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.
👻 **Immortal**: This PR will be recreated if closed unmerged. Get
[config
help](https://redirect.github.com/renovatebot/renovate/discussions) if
that's undesired.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box
---
This PR was generated by [Mend Renovate](https://mend.io/renovate/).
View the [repository job
log](https://developer.mend.io/github/Aureliolo/synthorg).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC40OS4wIiwidXBkYXRlZEluVmVyIjoiNDQuNDkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiZGVwZW5kZW5jaWVzIiwidHlwZTppbmZyYSJdfQ==-->
---------
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: Aurelio <19254254+Aureliolo@users.noreply.github.com>
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) | action | minor | `v5.0.3` → `v5.2.1` | | [voidzero-dev/setup-vp](https://redirect.github.com/voidzero-dev/setup-vp) | action | minor | `v1.17.0` → `v1.18.0` | --- ### Release Notes <details> <summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary> ### [`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1) Bumps the CodSpeed runner to [v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1). ##### 🚀 Features - Add a `simulation-track-subprocess` input, which enables measuring the subprocesses spawned by the benchmarked process in `simulation` mode by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - Bump the go-runner to [v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0), adding Go 1.26 and 1.27 support by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - feat: add simulation-track-subprocess input by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - chore: bump runner version to 5.2.1 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​236](https://redirect.github.com/CodSpeedHQ/action/pull/236) **Full Changelog**: <CodSpeedHQ/action@v5.2.0...v5.2.1> ### [`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0) Bumps the CodSpeed runner to [v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0), including [v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0). ##### 🚀 Features - Add a `--simulation-track-subprocess` flag that enables tracking benchmark subprocesses, along with per-thread dumps by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) and [#​513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513) - Collect RSS via rss\_stat and folio-rmap reconstruction by [@​not-matthias](https://redirect.github.com/not-matthias) in [#​453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453) - Support CircleCI for GitHub repositories by [@​fargito](https://redirect.github.com/fargito) in [#​482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482) ##### 🐛 Bug Fixes - Fix cache behavior that was causing an apt reinstall of the libc debug symbols despite cache restore by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509) ##### ⚙️ Internals - Bump pinned valgrind-codspeed to [3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7) by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515) - fix(callgrind): represent os threads under `--separate-threads=yes` by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24) - feat(callgrind): track subprocesses across fork and exec by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25) - Stop skipping the rustup wrapper for valgrind by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - fix: add the distribution to the instruments cache key by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​233](https://redirect.github.com/CodSpeedHQ/action/pull/233) - chore: bump runner version to 5.1.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​232](https://redirect.github.com/CodSpeedHQ/action/pull/232) - chore: bump runner version to 5.2.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​234](https://redirect.github.com/CodSpeedHQ/action/pull/234) **Full Changelog**: <CodSpeedHQ/action@v5.0.3...v5.2.0> </details> <details> <summary>voidzero-dev/setup-vp (voidzero-dev/setup-vp)</summary> ### [`v1.18.0`](https://redirect.github.com/voidzero-dev/setup-vp/releases/tag/v1.18.0) [Compare Source](https://redirect.github.com/voidzero-dev/setup-vp/compare/v1.17.0...v1.18.0) ##### What's Changed - chore(deps): update vite-plus to v0.2.9 by [@​renovate](https://redirect.github.com/renovate)\[bot] in [#​125](https://redirect.github.com/voidzero-dev/setup-vp/pull/125) - chore(deps): update pnpm/action-setup action to v6.0.10 by [@​renovate](https://redirect.github.com/renovate)\[bot] in [#​124](https://redirect.github.com/voidzero-dev/setup-vp/pull/124) - feat: pin the install script to the requested version by [@​fengmk2](https://redirect.github.com/fengmk2) in [#​127](https://redirect.github.com/voidzero-dev/setup-vp/pull/127) - docs: clarify automatic Node.js resolution by [@​fengmk2](https://redirect.github.com/fengmk2) in [#​130](https://redirect.github.com/voidzero-dev/setup-vp/pull/130) - ci: add GitLab end-to-end testing by [@​fengmk2](https://redirect.github.com/fengmk2) in [#​132](https://redirect.github.com/voidzero-dev/setup-vp/pull/132) - feat: resolve Vite+ executable paths from VpDirs by [@​fengmk2](https://redirect.github.com/fengmk2) in [#​131](https://redirect.github.com/voidzero-dev/setup-vp/pull/131) - chore: release v1.18.0 by [@​fengmk2](https://redirect.github.com/fengmk2) in [#​133](https://redirect.github.com/voidzero-dev/setup-vp/pull/133) **Full Changelog**: <voidzero-dev/setup-vp@v1.17.0...v1.18.0> </details> --- ### Configuration 📅 **Schedule**: (in timezone Asia/Shanghai) - Branch creation - "before 10am on monday" - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://redirect.github.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/oxc-project/oxc-browserslist). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC40OS4wIiwidXBkYXRlZEluVmVyIjoiNDQuNDkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) | action | minor | `v5.0.3` → `v5.2.1` | --- ### Release Notes <details> <summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary> ### [`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1) Bumps the CodSpeed runner to [v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1). ##### 🚀 Features - Add a `simulation-track-subprocess` input, which enables measuring the subprocesses spawned by the benchmarked process in `simulation` mode by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - Bump the go-runner to [v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0), adding Go 1.26 and 1.27 support by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - feat: add simulation-track-subprocess input by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - chore: bump runner version to 5.2.1 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​236](https://redirect.github.com/CodSpeedHQ/action/pull/236) **Full Changelog**: <CodSpeedHQ/action@v5.2.0...v5.2.1> ### [`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0) Bumps the CodSpeed runner to [v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0), including [v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0). ##### 🚀 Features - Add a `--simulation-track-subprocess` flag that enables tracking benchmark subprocesses, along with per-thread dumps by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) and [#​513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513) - Collect RSS via rss\_stat and folio-rmap reconstruction by [@​not-matthias](https://redirect.github.com/not-matthias) in [#​453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453) - Support CircleCI for GitHub repositories by [@​fargito](https://redirect.github.com/fargito) in [#​482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482) ##### 🐛 Bug Fixes - Fix cache behavior that was causing an apt reinstall of the libc debug symbols despite cache restore by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509) ##### ⚙️ Internals - Bump pinned valgrind-codspeed to [3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7) by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515) - fix(callgrind): represent os threads under `--separate-threads=yes` by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24) - feat(callgrind): track subprocesses across fork and exec by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25) - Stop skipping the rustup wrapper for valgrind by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - fix: add the distribution to the instruments cache key by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​233](https://redirect.github.com/CodSpeedHQ/action/pull/233) - chore: bump runner version to 5.1.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​232](https://redirect.github.com/CodSpeedHQ/action/pull/232) - chore: bump runner version to 5.2.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​234](https://redirect.github.com/CodSpeedHQ/action/pull/234) **Full Changelog**: <CodSpeedHQ/action@v5.0.3...v5.2.0> </details> --- ### Configuration 📅 **Schedule**: (in timezone Asia/Shanghai) - Branch creation - "before 10am on monday" - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/oxc-project/json-strip-comments). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC40OS4wIiwidXBkYXRlZEluVmVyIjoiNDQuNDkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) | action | minor | `v5.0.3` → `v5.2.1` | --- ### Release Notes <details> <summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary> ### [`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1) Bumps the CodSpeed runner to [v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1). ##### 🚀 Features - Add a `simulation-track-subprocess` input, which enables measuring the subprocesses spawned by the benchmarked process in `simulation` mode by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - Bump the go-runner to [v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0), adding Go 1.26 and 1.27 support by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - feat: add simulation-track-subprocess input by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - chore: bump runner version to 5.2.1 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​236](https://redirect.github.com/CodSpeedHQ/action/pull/236) **Full Changelog**: <CodSpeedHQ/action@v5.2.0...v5.2.1> ### [`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0) Bumps the CodSpeed runner to [v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0), including [v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0). ##### 🚀 Features - Add a `--simulation-track-subprocess` flag that enables tracking benchmark subprocesses, along with per-thread dumps by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) and [#​513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513) - Collect RSS via rss\_stat and folio-rmap reconstruction by [@​not-matthias](https://redirect.github.com/not-matthias) in [#​453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453) - Support CircleCI for GitHub repositories by [@​fargito](https://redirect.github.com/fargito) in [#​482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482) ##### 🐛 Bug Fixes - Fix cache behavior that was causing an apt reinstall of the libc debug symbols despite cache restore by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509) ##### ⚙️ Internals - Bump pinned valgrind-codspeed to [3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7) by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515) - fix(callgrind): represent os threads under `--separate-threads=yes` by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24) - feat(callgrind): track subprocesses across fork and exec by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25) - Stop skipping the rustup wrapper for valgrind by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - fix: add the distribution to the instruments cache key by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​233](https://redirect.github.com/CodSpeedHQ/action/pull/233) - chore: bump runner version to 5.1.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​232](https://redirect.github.com/CodSpeedHQ/action/pull/232) - chore: bump runner version to 5.2.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​234](https://redirect.github.com/CodSpeedHQ/action/pull/234) **Full Changelog**: <CodSpeedHQ/action@v5.0.3...v5.2.0> </details> --- ### Configuration 📅 **Schedule**: (in timezone Asia/Shanghai) - Branch creation - "before 10am on monday" - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/oxc-project/oxc-resolver). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC40OS4wIiwidXBkYXRlZEluVmVyIjoiNDQuNDkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
This PR contains the following updates: | Package | Type | Update | Change | Pending | |---|---|---|---|---| | [CodSpeedHQ/action](https://redirect.github.com/CodSpeedHQ/action) | action | minor | `v5.0.3` → `v5.2.1` | | | [semgrep/semgrep](https://redirect.github.com/semgrep/semgrep-proprietary) | container | minor | `1.174.0` → `1.175.0` | | | [taiki-e/install-action](https://redirect.github.com/taiki-e/install-action) | action | minor | `v2.86.4` → `v2.87.0` | `v2.87.2` (+1) | --- > [!WARNING] > Some dependencies could not be looked up. Check the warning logs for more information. --- ### Release Notes <details> <summary>CodSpeedHQ/action (CodSpeedHQ/action)</summary> ### [`v5.2.1`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.1) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.2.0...v5.2.1) Bumps the CodSpeed runner to [v5.2.1](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.1). ##### 🚀 Features - Add a `simulation-track-subprocess` input, which enables measuring the subprocesses spawned by the benchmarked process in `simulation` mode by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - Bump the go-runner to [v1.3.0](https://redirect.github.com/CodSpeedHQ/codspeed-go/releases/tag/v1.3.0), adding Go 1.26 and 1.27 support by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​516](https://redirect.github.com/CodSpeedHQ/codspeed/pull/516) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - feat: add simulation-track-subprocess input by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​235](https://redirect.github.com/CodSpeedHQ/action/pull/235) - chore: bump runner version to 5.2.1 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​236](https://redirect.github.com/CodSpeedHQ/action/pull/236) **Full Changelog**: <CodSpeedHQ/action@v5.2.0...v5.2.1> ### [`v5.2.0`](https://redirect.github.com/CodSpeedHQ/action/releases/tag/v5.2.0) [Compare Source](https://redirect.github.com/CodSpeedHQ/action/compare/v5.0.3...v5.2.0) Bumps the CodSpeed runner to [v5.2.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.2.0), including [v5.1.0](https://redirect.github.com/CodSpeedHQ/codspeed/releases/tag/v5.1.0). ##### 🚀 Features - Add a `--simulation-track-subprocess` flag that enables tracking benchmark subprocesses, along with per-thread dumps by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) and [#​513](https://redirect.github.com/CodSpeedHQ/codspeed/pull/513) - Collect RSS via rss\_stat and folio-rmap reconstruction by [@​not-matthias](https://redirect.github.com/not-matthias) in [#​453](https://redirect.github.com/CodSpeedHQ/codspeed/pull/453) - Support CircleCI for GitHub repositories by [@​fargito](https://redirect.github.com/fargito) in [#​482](https://redirect.github.com/CodSpeedHQ/codspeed/pull/482) ##### 🐛 Bug Fixes - Fix cache behavior that was causing an apt reinstall of the libc debug symbols despite cache restore by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​509](https://redirect.github.com/CodSpeedHQ/codspeed/pull/509) ##### ⚙️ Internals - Bump pinned valgrind-codspeed to [3.26.0-0codspeed7](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/releases/tag/3.26.0-0codspeed7) by [@​adriencaccia](https://redirect.github.com/adriencaccia) in [#​515](https://redirect.github.com/CodSpeedHQ/codspeed/pull/515) - fix(callgrind): represent os threads under `--separate-threads=yes` by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#24](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/24) - feat(callgrind): track subprocesses across fork and exec by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [CodSpeedHQ/valgrind-codspeed#25](https://redirect.github.com/CodSpeedHQ/valgrind-codspeed/pull/25) - Stop skipping the rustup wrapper for valgrind by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​493](https://redirect.github.com/CodSpeedHQ/codspeed/pull/493) **Full Runner Changelog**: <https://github.com/CodSpeedHQ/codspeed/blob/main/CHANGELOG.md> #### What's Changed - fix: add the distribution to the instruments cache key by [@​GuillaumeLagrange](https://redirect.github.com/GuillaumeLagrange) in [#​233](https://redirect.github.com/CodSpeedHQ/action/pull/233) - chore: bump runner version to 5.1.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​232](https://redirect.github.com/CodSpeedHQ/action/pull/232) - chore: bump runner version to 5.2.0 by [@​github-actions](https://redirect.github.com/github-actions)\[bot] in [#​234](https://redirect.github.com/CodSpeedHQ/action/pull/234) **Full Changelog**: <CodSpeedHQ/action@v5.0.3...v5.2.0> </details> <details> <summary>taiki-e/install-action (taiki-e/install-action)</summary> ### [`v2.87.0`](https://redirect.github.com/taiki-e/install-action/releases/tag/v2.87.0): 2.87.0 [Compare Source](https://redirect.github.com/taiki-e/install-action/compare/v2.86.8...v2.87.0) - Support `kache`. ([#​1980](https://redirect.github.com/taiki-e/install-action/pull/1980), thanks [@​ChrisJr404](https://redirect.github.com/ChrisJr404)) - Update `vacuum@latest` to 0.30.1. - Update `uv@latest` to 0.12.6. - Update `mise@latest` to 2026.8.14. - Update `editorconfig-checker@latest` to 3.11.2. ### [`v2.86.8`](https://redirect.github.com/taiki-e/install-action/releases/tag/v2.86.8): 2.86.8 [Compare Source](https://redirect.github.com/taiki-e/install-action/compare/v2.86.7...v2.86.8) - Update `wasmtime@latest` to 48.0.1. - Update `wasm-tools@latest` to 1.258.0. - Update `oxfmt@latest` to 1.80.0. - Update `mise@latest` to 2026.8.12. - Update `kingfisher@latest` to 2.0.0. - Update `cargo-zigbuild@latest` to 0.23.2. ### [`v2.86.7`](https://redirect.github.com/taiki-e/install-action/releases/tag/v2.86.7): 2.86.7 [Compare Source](https://redirect.github.com/taiki-e/install-action/compare/v2.86.6...v2.86.7) - Update `tombi@latest` to 1.4.1. - Update `rafn@latest` to 0.1.5. - Update `cargo-binstall@latest` to 1.22.0. ### [`v2.86.6`](https://redirect.github.com/taiki-e/install-action/releases/tag/v2.86.6): 2.86.6 [Compare Source](https://redirect.github.com/taiki-e/install-action/compare/v2.86.5...v2.86.6) - Update `dprint@latest` to 0.56.1. - Update `cargo-lambda@latest` to 1.9.2. - Update `biome@latest` to 2.5.10. ### [`v2.86.5`](https://redirect.github.com/taiki-e/install-action/releases/tag/v2.86.5): 2.86.5 [Compare Source](https://redirect.github.com/taiki-e/install-action/compare/v2.86.4...v2.86.5) - Update `zola@latest` to 0.23.4. - Update `wasm-tools@latest` to 1.257.1. - Update `protoc@latest` to 3.36.0. - Update `mise@latest` to 2026.8.10. - Update `cargo-dinghy@latest` to 0.8.6. - Update `wasmtime@latest` to 48.0.0. </details> --- ### Configuration 📅 **Schedule**: (in timezone Asia/Shanghai) - Branch creation - "before 10am on monday" - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://redirect.github.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/oxc-project/oxc). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC40OS4wIiwidXBkYXRlZEluVmVyIjoiNDQuNDkuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Track subprocesses spawned by a benchmark so they can be measured and
attributed back to the benchmark that spawned them, across both
forkandexec.Two independent pieces, one per commit:
1. Forward instrumentation state across a traced exec. A process spawned
via
execunder--trace-children=yesgets a fresh valgrind whoseinstrumentation state resets to
--instr-atstart, so a benchmark reachedthrough an exec chain (e.g.
cargo run) was measured from the wrong point. Aplain
forkinherits the state with the address space, but an exec does not.This adds a
VG_(needs_child_exec_args)tool need: the core asks the tool forextra valgrind arguments while building the child's argv at exec time and
appends them after
VG_(args_for_valgrind)(later options win). Callgrind usesit to forward
--instr-atstart=<current state>. Wired into the exec argvconstruction on Linux (generic), Darwin, and Solaris.
2. Record spawned subprocesses per dump part. When a benchmark spawns a
subprocess, the profile had no way to attribute that subprocess to the exact
benchmark (dump part) that spawned it. On
forkthe parent now records the newchild pid against the part currently being measured, and each part's header
lists the children spawned during it as
desc: Spawned pid:lines (adescfield so kcachegrind and callgrind_annotate ignore it). A fork child restarts
its part counter at 1 and drops the inherited edges so it only reports children
it spawns itself, and zeroes cost so work before the fork stays attributed to
the parent.
To carry the child pid to the fork hook,
VG_(atfork)'s parent callback nowtakes the pid of the just-created child; the pre/child callbacks are unchanged.
All fork/clone sites (Linux, FreeBSD, Solaris, generic) pass it through. The
child hook also re-stamps the in-flight fork syscall's start time from the
child's clocks, since the thread CPU clock restarts in the child and the exit
delta would otherwise underflow.
The spawn edge is recorded parent→child rather than child→parent: at fork time
the parent already knows both the child pid and its own live part, so no spawn
identity needs to cross the exec boundary — only the instrumentation state
does. This is a change from the earlier squashed design that emitted
desc: Spawned by: <pid>:<part>from the child; see the COD-2349 discussion forthe full rationale.
Stacked on top of #24 (COD-3196, per-thread dump support), which this builds
on for the retired-thread handling in the fork/exec paths.
Behavior verified with fork/exec integration tests in the valgrind-helpers repo
(subprocess measured and recorded across fork, across a traced exec, through a
deep fork tree, and one child recorded per part across a two-part run).
Closes COD-2349