Skip to content

Bump aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml from 1004088a1b5122b9b71a39b40f619f6b50e78d16 to bb39c4ec073b5693438911e6eefca7782ea53e8d - #1170

Open
dependabot[bot] wants to merge 24 commits into
stagefrom
dependabot/github_actions/dev/aerospike/shared-workflows/dot-github/workflows/reusable_execute-build.yaml-523949cc2fdae9dd0792f9af9b4a94fe5abf492a
Open

dependabot[bot] wants to merge 24 commits into
stagefrom
dependabot/github_actions/dev/aerospike/shared-workflows/dot-github/workflows/reusable_execute-build.yaml-523949cc2fdae9dd0792f9af9b4a94fe5abf492a

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 24, 2026 •

Copy link
Copy Markdown
Contributor

Bumps aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml from 1004088a1b5122b9b71a39b40f619f6b50e78d16 to bb39c4ec073b5693438911e6eefca7782ea53e8d.

Commits
  • bb39c4e feat(deploy-artifacts): [INFRA-726] publish distro-agnostic RPMs per dist and...
  • 3e338ee fix(release-evidence): emit pasteable verify commands (#328)
  • b4b1e9d Build(deps): bump aerospike/shared-workflows/.github/actions/setup-gpg (#326)
  • df38d6e ci(example): use the org-scoped OIDC provider for the docker example (#325)
  • 42eecc2 feat(docker)!: [INFRA-727] simplify default tags and reduce duplication (#323)
  • 2d019d9 fix(execute-build): [INFRA-717] scope the minted token to the source repo (#319)
  • 3a1fc42 Build(deps): bump actions/setup-java from 5.7.0 to 6.0.0 (#312)
  • 1c37798 Build(deps): bump the minor-and-patch group across 1 directory with 2 updates...
  • 239e4c7 Build(deps): bump aerospike/shared-workflows/.github/actions/setup-gpg (#313)
  • 6caf42a Build(deps): bump trunk-io/trunk-action from 1.3.1 to 2.0.0 (#310)
  • Additional commits viewable in compare view

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@codecov-commenter

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 85.38%. Comparing base (730db52) to head (8664bce).

Additional details and impacted files
@@           Coverage Diff           @@
##              dev    #1170   +/-   ##
=======================================
  Coverage   85.38%   85.38%           
=======================================
  Files         101      101           
  Lines       14609    14609           
=======================================
  Hits        12474    12474           
  Misses       2135     2135           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dependabot @github

dependabot Bot commented on behalf of github Jul 27, 2026

Copy link
Copy Markdown
Contributor Author

A newer version of aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml exists, but since this PR has been edited by someone other than Dependabot I haven't updated it. You'll get a PR for the updated version as normal once this PR is merged.

juliannguyen4 and others added 23 commits August 19, 2026 14:58
…ctly to TEST and skip DEV gate (#1186)

This reduces the time it takes to provide QE with artifacts by upwards of 66% compared to the time it currently takes in dev. We run valgrind and the tests from both the dev and stage workflow in parallel now instead of serially.

Extra changes

We are removing testing for Alma Linux 8 (binary compatible with RHEL 8) here, which is okay since we dropped support for RHEL 8 in an earlier release.
…cords and address test issues that caused it to fail intermittently (#1193)

Extra changes

insert_records fixture: cleanup the server before inserting records during setup instead of teardown. This makes it easier to inspect the records after running a test case locally
…ck.json (#1207)

These dependencies aren't currently being used, but will be used in the future for nightly and weekend tests.

Addresses the following high vulnerabilities:

- CVE-2026-69152

Also updating undici to 6.28.0 to address medium vulnerabilities CVE-2026-16728 and CVE-2026-16729.
…y has both operations and a UDF set instead of silently ignoring the operations (#1201)
…nt details about expressions if they fail to build. Also return per-row subcode and error message details in batch commands (#1192)
- CLIENT-5338 Add list_join operation and ListJoin expression
- CLIENT-5347 Add bit_b64_encode operation and BitB64Encode expression
- CLIENT-5275 Docs: further clarify that NumericType.FLOAT expects a decimal point and at least one digit afterward
- CLIENT-5309 Fix string operation test regressions where passing a ctx list argument causes the server to return invalid request.
- feat: expose additional server subcodes aerospike.SUB_OPNOT_STRING_REGEX_LIMIT_EXCEEDED and aerospike.SUB_PARAM_STRING_CTX_MALFORMED.
- CLIENT-5365 Add CREATE_ONLY and UPDATE_ONLY string write flags.
- fix: string ops replace(), replace_all(), and regex_replace()s' replacement parameter should be required, not optional
- feat: make snip operation and expression's "end" parameter optional
… work (#1217)

- Add tests that fail on server 8.1.3 RC3, but should pass on RC4
- Disables expression tracing as discussed with Shannon, since it isn't necessary to run the whole test suite and most of it doesn't check for enhanced error details, anyway.
…h_{operate,apply,remove,write}() when a dictionary is passed as an argument to the "policy_batch" parameter (#766)

Additional changes

- docs: fix some bad usage of "transaction" level policies and rename to "command" level.
- fix: for batch_write, batch_remove, and batch_apply policies, when passing in a dictionary to a command-level policy parameter, have it automatically inherit from the config level policy values.
- perf: remove unnecessary init for command-level batch_write, batch_read, batch_apply, and batch_remove policies.
- test: make indirect params for insert_records more readable by passing the params as a kwarg dictionary.
- test: add ability to override client config values in a test.
- test: connection_with_udf: pass udf name as indirect parameter instead of as a class attribute
- test: retrofit TestReadTouchTTLPercent class to use insert_records to reduce technical debt
…as "xfail" so we can provide QE with a release bundle sooner (#1219)

Long term TODO: we need to unmark these tests once they start reporting "XPASS"
…ppressions file to unblock release bundle (#1223)

This did not show up in the prior release bundle's e2e tests, so I don't believe this leak can be reproduced consistently. The changes between the last release bundle and in stage only include Python client C header code changes and have nothing to do with TLS.

In the C client, git log -G "as_cluster_create|as_tls_context_setup" shows that the latest changes to these methods were from last year.
…operation functions (#577)

Extra changes

Address "test_bit_set_bit_value_size_too_large" and "test_bit_and_offset_value_byte_size_too_large" reading the null character after the bytes returned by PyByteArray_AsString(). Now that value_byte_size is ignored, we need to actually pass in a bytearray larger than the bytes bin.

Notes

Bit insert operation no longer has a parameter to insert only a select range of bits in the "value" parameter. But this is ok since the other language clients do not have this feature either, so now the Python client's bit insert operation API is more consistent with the other clients. The "value_byte_size" parameter being deprecated was never intended to select specific bits in "value", anyways, since it was meant to specify the exact size for "value" which is redundant. The user can still select specific bytes by slicing the array of bytes in Python.
… invalid command-level policy key is passed and "validate_keys" is true (#1220)

client.remove_bin() raises ClientError instead of ParamError when "validate_keys" is enabled and the policy dictionary has an invalid key. Fixing that outright is a breaking change, so this only emits a DeprecationWarning that a future major release will raise ParamError instead of ClientError.
… gating tests with 8.2 instead of 8.1.3 (#1225)

Moving forward, the next server RC will have version 8.2

Extra changes

test: unmark test_read_across_normalization_forms and remove xfail since test now reports XPASS on the latest server 8.2 RC
…ion for "InList" bin reference test case (#1232)

Converts the "test_expr_in_list" xfail case into a dedicated test case "test_expr_in_list_referencing_bin" that asserts that InvalidRequest is raised. This is confirmed to be expected server behavior thanks to Shu's investigation and is not a client bug.
…and potentially crash the server by applying a bad UDF payload (#1233)

Extra changes

Add more exception subcodes
…ers by specifying when a map expression would take in a list bin and vice versa (#1237)
…or (#1249)

- fix: B64Encode expression raising AttributeError exception with non-None byte_size parameter is passed
- fix: issue where B64Encode's invert_size causes server to return OpNotApplicable
- fix: edge case where end=0 can cause client to under-allocate memory for Snip() which may lead to a buffer overflow
- fix: incorrect type annotation for RegexReplace's replacement parameter
- fix: invalid string policy being silently ignored instead of raising ParamError when using string expressions
- fix: TypeError when ListJoin receives a non-None ctx arg and None arg for separator
- test: specifically check OpNotApplicable as documented for negative to_string op test cases instead of a wider ServerError
Bumps [docker/build-push-action](https://github.com/docker/build-push-action) from 7.3.0 to 7.4.0.
- [Release notes](https://github.com/docker/build-push-action/releases)
- [Commits](docker/build-push-action@53b7df9...c3c9e26)

---
updated-dependencies:
- dependency-name: docker/build-push-action
  dependency-version: 7.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [delvewheel](https://github.com/adang1345/delvewheel) from 1.12.0 to 1.13.1.
- [Changelog](https://github.com/adang1345/delvewheel/blob/master/CHANGELOG.md)
- [Commits](https://github.com/adang1345/delvewheel/commits)

---
updated-dependencies:
- dependency-name: delvewheel
  dependency-version: 1.13.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@juliannguyen4

Copy link
Copy Markdown
Collaborator

@dependabot recreate

…ild.yaml

Bumps [aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml](https://github.com/aerospike/shared-workflows) from 1004088a1b5122b9b71a39b40f619f6b50e78d16 to bb39c4ec073b5693438911e6eefca7782ea53e8d.
- [Release notes](https://github.com/aerospike/shared-workflows/releases)
- [Commits](aerospike/shared-workflows@1004088...bb39c4e)

---
updated-dependencies:
- dependency-name: aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml
  dependency-version: 523949cc2fdae9dd0792f9af9b4a94fe5abf492a
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot changed the base branch from dev to stage September 28, 2026 00:13
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/dev/aerospike/shared-workflows/dot-github/workflows/reusable_execute-build.yaml-523949cc2fdae9dd0792f9af9b4a94fe5abf492a branch from 8664bce to 176735b Compare September 28, 2026 00:13
@dependabot dependabot Bot changed the title Bump aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml from 1004088a1b5122b9b71a39b40f619f6b50e78d16 to 523949cc2fdae9dd0792f9af9b4a94fe5abf492a Bump aerospike/shared-workflows/.github/workflows/reusable_execute-build.yaml from 1004088a1b5122b9b71a39b40f619f6b50e78d16 to bb39c4ec073b5693438911e6eefca7782ea53e8d Sep 28, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants