build(deps): bump the prod-cargo-major-dependencies group across 1 directory with 21 updates#748
Open
dependabot[bot] wants to merge 1 commit intomainfrom
Open
Conversation
…rectory with 21 updates Bumps the prod-cargo-major-dependencies group with 20 updates in the / directory: | Package | From | To | | --- | --- | --- | | [async-openai](https://github.com/64bit/async-openai) | `0.33.1` | `0.34.0` | | [sentry](https://github.com/getsentry/sentry-rust) | `0.46.2` | `0.47.0` | | [sqlparser](https://github.com/apache/datafusion-sqlparser-rs) | `0.37.0` | `0.58.0` | | [arrow](https://github.com/apache/arrow-rs) | `56.2.0` | `58.1.0` | | [bcrypt](https://github.com/Keats/rust-bcrypt) | `0.17.1` | `0.19.0` | | [clickhouse](https://github.com/ClickHouse/clickhouse-rs) | `0.13.3` | `0.15.0` | | [dashmap](https://github.com/xacrimon/dashmap) | `5.5.3` | `6.1.0` | | [hmac](https://github.com/RustCrypto/MACs) | `0.12.1` | `0.13.0` | | [indicatif](https://github.com/console-rs/indicatif) | `0.17.11` | `0.18.4` | | [ndarray](https://github.com/rust-ndarray/ndarray) | `0.16.1` | `0.17.2` | | [opentelemetry](https://github.com/open-telemetry/opentelemetry-rust) | `0.27.1` | `0.31.0` | | [opentelemetry-otlp](https://github.com/open-telemetry/opentelemetry-rust) | `0.27.0` | `0.31.1` | | [opentelemetry_sdk](https://github.com/open-telemetry/opentelemetry-rust) | `0.27.1` | `0.31.0` | | [rand](https://github.com/rust-random/rand) | `0.8.5` | `0.9.2` | | [rmcp](https://github.com/modelcontextprotocol/rust-sdk) | `0.8.5` | `0.10.0` | | [serde_arrow](https://github.com/chmp/serde_arrow) | `0.13.7` | `0.14.0` | | [sha2](https://github.com/RustCrypto/hashes) | `0.10.9` | `0.11.0` | | [statrs](https://github.com/statrs-dev/statrs) | `0.17.1` | `0.18.0` | | [tqdm](https://github.com/mrlazy1708/tqdm) | `0.7.0` | `0.8.0` | | [tracing-opentelemetry](https://github.com/tokio-rs/tracing-opentelemetry) | `0.28.0` | `0.32.1` | Updates `async-openai` from 0.33.1 to 0.34.0 - [Release notes](https://github.com/64bit/async-openai/releases) - [Commits](64bit/async-openai@async-openai-v0.33.1...async-openai-v0.34.0) Updates `sentry` from 0.46.2 to 0.47.0 - [Release notes](https://github.com/getsentry/sentry-rust/releases) - [Changelog](https://github.com/getsentry/sentry-rust/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-rust@0.46.2...0.47.0) Updates `sqlparser` from 0.37.0 to 0.58.0 - [Changelog](https://github.com/apache/datafusion-sqlparser-rs/blob/main/CHANGELOG.md) - [Commits](apache/datafusion-sqlparser-rs@v0.37.0...v0.58.0) Updates `arrow` from 56.2.0 to 58.1.0 - [Release notes](https://github.com/apache/arrow-rs/releases) - [Changelog](https://github.com/apache/arrow-rs/blob/main/CHANGELOG.md) - [Commits](apache/arrow-rs@56.2.0...58.1.0) Updates `bcrypt` from 0.17.1 to 0.19.0 - [Commits](Keats/rust-bcrypt@v0.17.1...v0.19.0) Updates `clickhouse` from 0.13.3 to 0.15.0 - [Changelog](https://github.com/ClickHouse/clickhouse-rs/blob/main/CHANGELOG.md) - [Commits](https://github.com/ClickHouse/clickhouse-rs/commits) Updates `dashmap` from 5.5.3 to 6.1.0 - [Release notes](https://github.com/xacrimon/dashmap/releases) - [Commits](xacrimon/dashmap@v.5.5.3...v6.1.0) Updates `hmac` from 0.12.1 to 0.13.0 - [Commits](RustCrypto/MACs@hmac-v0.12.1...hmac-v0.13.0) Updates `indicatif` from 0.17.11 to 0.18.4 - [Release notes](https://github.com/console-rs/indicatif/releases) - [Commits](console-rs/indicatif@0.17.11...0.18.4) Updates `ndarray` from 0.16.1 to 0.17.2 - [Release notes](https://github.com/rust-ndarray/ndarray/releases) - [Changelog](https://github.com/rust-ndarray/ndarray/blob/master/RELEASES.md) - [Commits](rust-ndarray/ndarray@0.16.1...0.17.2) Updates `opentelemetry` from 0.27.1 to 0.31.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-rust/blob/main/docs/release_0.30.md) - [Commits](open-telemetry/opentelemetry-rust@opentelemetry-0.27.1...opentelemetry-prometheus-0.31.0) Updates `opentelemetry-otlp` from 0.27.0 to 0.31.1 - [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-rust/blob/main/docs/release_0.30.md) - [Commits](open-telemetry/opentelemetry-rust@opentelemetry-otlp-0.27.0...opentelemetry-otlp-0.31.1) Updates `opentelemetry_sdk` from 0.27.1 to 0.31.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-rust/blob/main/docs/release_0.30.md) - [Commits](open-telemetry/opentelemetry-rust@opentelemetry_sdk-0.27.1...v0.31.0) Updates `rand` from 0.8.5 to 0.9.2 - [Release notes](https://github.com/rust-random/rand/releases) - [Changelog](https://github.com/rust-random/rand/blob/master/CHANGELOG.md) - [Commits](rust-random/rand@0.8.5...rand_core-0.9.2) Updates `reqwest` from 0.12.28 to 0.13.2 - [Release notes](https://github.com/seanmonstar/reqwest/releases) - [Changelog](https://github.com/seanmonstar/reqwest/blob/master/CHANGELOG.md) - [Commits](seanmonstar/reqwest@v0.12.28...v0.13.2) Updates `rmcp` from 0.8.5 to 0.10.0 - [Release notes](https://github.com/modelcontextprotocol/rust-sdk/releases) - [Changelog](https://github.com/modelcontextprotocol/rust-sdk/blob/main/release-plz.toml) - [Commits](modelcontextprotocol/rust-sdk@rmcp-v0.8.5...rmcp-v0.10.0) Updates `serde_arrow` from 0.13.7 to 0.14.0 - [Release notes](https://github.com/chmp/serde_arrow/releases) - [Changelog](https://github.com/chmp/serde_arrow/blob/main/Changes.md) - [Commits](chmp/serde_arrow@v0.13.7...v0.14.0) Updates `sha2` from 0.10.9 to 0.11.0 - [Commits](RustCrypto/hashes@sha2-v0.10.9...sha2-v0.11.0) Updates `statrs` from 0.17.1 to 0.18.0 - [Release notes](https://github.com/statrs-dev/statrs/releases) - [Changelog](https://github.com/statrs-dev/statrs/blob/master/CHANGELOG.md) - [Commits](statrs-dev/statrs@v0.17.1...v0.18.0) Updates `tqdm` from 0.7.0 to 0.8.0 - [Commits](https://github.com/mrlazy1708/tqdm/commits) Updates `tracing-opentelemetry` from 0.28.0 to 0.32.1 - [Release notes](https://github.com/tokio-rs/tracing-opentelemetry/releases) - [Changelog](https://github.com/tokio-rs/tracing-opentelemetry/blob/v0.1.x/CHANGELOG.md) - [Commits](tokio-rs/tracing-opentelemetry@v0.28.0...v0.32.1) --- updated-dependencies: - dependency-name: async-openai dependency-version: 0.34.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: sentry dependency-version: 0.47.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: sqlparser dependency-version: 0.58.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: arrow dependency-version: 58.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: prod-cargo-major-dependencies - dependency-name: bcrypt dependency-version: 0.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: clickhouse dependency-version: 0.15.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: dashmap dependency-version: 6.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: prod-cargo-major-dependencies - dependency-name: hmac dependency-version: 0.13.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: indicatif dependency-version: 0.18.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: ndarray dependency-version: 0.17.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: opentelemetry dependency-version: 0.31.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: opentelemetry-otlp dependency-version: 0.31.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: opentelemetry_sdk dependency-version: 0.31.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: rand dependency-version: 0.9.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: reqwest dependency-version: 0.13.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: rmcp dependency-version: 0.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: serde_arrow dependency-version: 0.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: sha2 dependency-version: 0.11.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: statrs dependency-version: 0.18.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: tqdm dependency-version: 0.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies - dependency-name: tracing-opentelemetry dependency-version: 0.32.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: prod-cargo-major-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
Contributor
|
|
Overall Grade |
Security Reliability Complexity Hygiene |
Code Review Summary
| Analyzer | Status | Updated (UTC) | Details |
|---|---|---|---|
| Rust | Apr 13, 2026 12:25p.m. | Review ↗ | |
| Shell | Apr 13, 2026 12:25p.m. | Review ↗ | |
| JavaScript | Apr 13, 2026 12:25p.m. | Review ↗ |
Important
AI Review is run only on demand for your team. We're only showing results of static analysis review right now. To trigger AI Review, comment @deepsourcebot review on this thread.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the prod-cargo-major-dependencies group with 20 updates in the / directory:
0.33.10.34.00.46.20.47.00.37.00.58.056.2.058.1.00.17.10.19.00.13.30.15.05.5.36.1.00.12.10.13.00.17.110.18.40.16.10.17.20.27.10.31.00.27.00.31.10.27.10.31.00.8.50.9.20.8.50.10.00.13.70.14.00.10.90.11.00.17.10.18.00.7.00.8.00.28.00.32.1Updates
async-openaifrom 0.33.1 to 0.34.0Release notes
Sourced from async-openai's releases.
Commits
833e906chore: Release2c8776bfeat: sync upstream spec (#529)Updates
sentryfrom 0.46.2 to 0.47.0Release notes
Sourced from sentry's releases.
Changelog
Sourced from sentry's changelog.
Commits
f638ca0release: 0.47.079ada42build(cargo): Runcargo update(#1030)e66f897meta(changelog): Prepare for release (#1029)d7a6da9ref(protocol): Generic items serializer (#1021)1795e4ameta(zed): Add project settings for Zed editor (#1019)fe351f6ref(sentry-core): Refactor logs batching into generic Batcher (#1018)0600229meta(ai): Remove trailing comma in.claude/settings.json(#1015)b913085fix!(core): Make HubSwitchGuard !Send to prevent thread corruption (#957)a819520build!: Updatereqwesttov0.13.1(#998)108c51dchore(repo): Add Claude Code settings with basic permissions (#959)Updates
sqlparserfrom 0.37.0 to 0.58.0Commits
40bbcc9Prepare 0.58.0 release: update version + Changelog (#1955)5f69df2Add support forDROP USERstatement (#1951)92db206Snowflake: Improve accuracy of lookahead in implicit LIMIT alias (#1941)4d93386Fix for Postgres regex and like binary operators (#1928)6506814docs: Update rust badge (#1943)ecd5d88Add identifier start unicode support for Postegres, MySql and Redshift (#1944)c5e6ba5Add identifier unicode support in Mysql, Postgres and Redshift (#1933)9b9ffe4MSSQL: Add support for EXEC output and default keywords (#1940)750a7aaSnowflake: support trailing options inCREATE TABLE(#1931)bc2c4e2Support optional semicolon between statements (#1937)Updates
arrowfrom 56.2.0 to 58.1.0Release notes
Sourced from arrow's releases.
... (truncated)
Changelog
Sourced from arrow's changelog.
... (truncated)
Commits
6cadf3bPrepare for 58.1.0 Release (#9573)322f9ce[Variant] Add unshred_variant support for Binary and LargeBinary types (#9576)bc74c71feat(parquet): add content defined chunking for arrow writer (#9450)39dda22Make Sbbf Constructers Public (#9569)d53df60feat: Optimize from_bitwise_binary_op with 64-bit alignment (#9441)44f5dfcperf: Coalesce page fetches when RowSelection selects all rows (#9578)14f1eb9pyarrow: Cache the imported classes to avoid importing them each time (#9439)55a7768[Variant] Addvariant_to_arrowStructtype support (#9572)42ab0bcfix: Usedchecked_addfor bounds checks to avoid UB (#9568)88422cbarrow-flight: generate dict_ids for dicts nested inside complex types (#9556)Updates
bcryptfrom 0.17.1 to 0.19.0Commits
9222c28Update readme4babc9aUpgrade getrandom to 0.4 (#96)e9a8394Support allocation free usage of bcrypt (#95)217eab3Bump MSRV (#94)308b7baReady for release800e0ffSimplify error kinds: remove deadBcryptError::Iobranch, unify invalid has...Updates
clickhousefrom 0.13.3 to 0.15.0Changelog
Sourced from clickhouse's changelog.
... (truncated)
Commits
Updates
dashmapfrom 5.5.3 to 6.1.0Release notes
Sourced from dashmap's releases.
Commits
f2d248ev6.1.0da6ac5eAdd typesize::TypeSize implementation for DashMap/DashSet (#308)633aadbv6.0.1d5c8be6add shrink_to_fit test488dbfafix deadlock in shrink_to_fit (#305)458238cv6.0.01e3df1av6.0.0-rc.1bdb86b0Merge branch 'arthurprs-small-optimizations'4cdfc39fix: merge errors74b34f8Merge branch 'small-optimizations' of github.com:arthurprs/dashmap into arthu...Updates
hmacfrom 0.12.1 to 0.13.0Commits
0236c8ehmac v0.13.0 (#263)b895e50Migrate tests to the new blobby format (#264)3d1440bWorkspace-level lint configuration (#261)11d4f36hmac: use release versions ofdev-dependencies(#260)c40b82bhmac: bumpsha2dev-dependency to v0.11 (#259)1fa0781Cut rc.5 prereleases (#258)a008265hmac v0.13.0-rc.6 (#256)da485cdUse(Reset)MacTraits(#254)2c51e3bhmac: deriveCloneinstead of relying on(Reset)MacTraits(#253)669d805RelaxClonebounds (#250)Updates
indicatiffrom 0.17.11 to 0.18.4Release notes
Sourced from indicatif's releases.
Commits
4de2f60Bump version to 0.18.48e0ab0efix: respect NO_COLOR and TERM=dumb environment variables781b2d0Take semver-compatible dependency updates34aee07Introduce unicode-width feature51d284fIntroduce wasmbind featureee057e5Bump tokio from 1.48.0 to 1.49.031bcea3Bump portable-atomic from 1.11.1 to 1.12.0dbd26ebBump console from 0.16.1 to 0.16.27ac4a0dExpose the current tab width95088ffiter: clean up variable names, castingUpdates
ndarrayfrom 0.16.1 to 0.17.2Changelog
Sourced from ndarray's changelog.
... (truncated)
Commits
2cf23d6chore: Release1eb4559Remove most version specifiers inREADME(#1573)59c1ce0Craft a release log for 0.17.2 (#1572)6fd0a9dClean up clippy allows and unnecessary borrows (#1571)8adf5d8Revert #1563 and #1567 to prepare for patch release (#1570)953f2e9Move LayoutBitset to its own module (#1567)6e02f15Configure docs for feature gates globally (#1565)d573745Rename Layout to LayoutBitset (#1563)13a8963Add PartialEq implementations between ArrayRef and ArrayBase (#1557)e039158Add additional commits to ignore on git blame (#1562)Updates
opentelemetryfrom 0.27.1 to 0.31.0Release notes
Sourced from opentelemetry's releases.
Changelog
Sourced from opentelemetry's changelog.
... (truncated)
Commits
2b63b75fix: Panics and exploding memory usage from large cardinality limit (#3290)c346d4bfeat: Upgrade SDK version to 0.31.0 (#3287)07bb613feat: Improve support for exponential histogram (#3259)693dcc0chore: UnifySpanExporterwithLogExporterandPushMetricExporter(#3281)65969fddocs: logs enrichment (#3266)627f252feat: Stabilize Logger Enabled (#3278)4c16d9bfix: Remove unused tracing dependency from opentelemetry-otlp (#3264)759b539chore(sampling): move sdk types from opentelemetry to opentelemetry_sdk (#3277)483b420fix: handle shutdown in logs exporter (#3255)53c9f47chore(deps): bump step-security/harden-runner from 2.13.1 to 2.13.2 (#3273)Updates
opentelemetry-otlpfrom 0.27.0 to 0.31.1Release notes
Sourced from opentelemetry-otlp's releases.
Changelog
Sourced from opentelemetry-otlp's changelog.