Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

Dependency Dashboard

Open
#3 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
4/5
Estimated time
3-5 days
Newbie friendliness
25/100
Issue type
Refactor
Clarity
Mostly clear
Activity status
Stale
Tech stack
docker, github-actions, go

Research direction

Start with the Dependency Dashboard and review the affected files: .github/workflows/build.yml, lint.yml, release-images.yml, release.yml, security.yml, test.yml, triage.yml, the Dockerfiles, and go.mod. The dashboard lists available updates and linked pull requests; done means the selected dependency updates are handled and the Renovate lookup failure for arduino/setup-task is resolved or retried.

Written by the indexing model from the issue text.

Description

This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.
View this repository on the Mend.io Web Portal.

Repository Problems

These problems occurred while renovating this repository. View logs.

  • ⚠️ WARN: Package lookup failures

Rate-Limited

The following updates are currently rate-limited. To force their creation now, click on a checkbox below.

  • chore(deps): update aquasecurity/trivy-action action to v0.36.0
  • chore(deps): update golangci/golangci-lint-action action to v9.3.0
  • chore(deps): update ko-build/setup-ko action to v0.10
  • fix(deps): update module github.com/mark3labs/mcp-go to v0.58.0
  • chore(deps): update actions/checkout action to v7
  • chore(deps): update actions/setup-go action to v7
  • chore(deps): update arduino/setup-task action to v3
  • fix(deps): update module github.com/mark3labs/mcp-go to v1
  • 🔐 Create all rate-limited PRs at once 🔐

[!WARNING]
Renovate failed to look up the following dependencies: Could not determine new digest for update (github-tags package arduino/setup-task).

Files affected: .github/workflows/build.yml, .github/workflows/lint.yml, .github/workflows/release.yml, .github/workflows/test.yml


Open

The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.

Detected Dependencies

dockerfile (4)
images/base/Dockerfile (1)
  • alpine 3.23 → [Updates: 3.24]
images/node/Dockerfile
images/python/Dockerfile
images/shell/Dockerfile
github-actions (7)
.github/workflows/build.yml (4)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • actions/setup-go v6@4b73464bb391d4059bd26b0524d20df3927bd417 → [Updates: v7, v6]
  • arduino/setup-task v2@b91d5d2c96a56797b48ac1e0e89220bf64044611 → [Updates: v3.0.0]
  • actions/upload-artifact v6@b7c566a772e6b6bfb58ed0dc250532a479d7789f → [Updates: v7]
.github/workflows/lint.yml (4)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • actions/setup-go v6@4b73464bb391d4059bd26b0524d20df3927bd417 → [Updates: v7, v6]
  • arduino/setup-task v2@b91d5d2c96a56797b48ac1e0e89220bf64044611 → [Updates: v3.0.0]
  • golangci/golangci-lint-action v9.2.0@1e7e51e771db61008b38414a730f564565cf7c20 → [Updates: v9.3.0]
.github/workflows/release-images.yml (12)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • docker/setup-qemu-action v3@c7c53464625b32c7a7e944ae62b3e17d2b600130 → [Updates: v4]
  • docker/setup-buildx-action v3@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f → [Updates: v4]
  • docker/login-action v3@c94ce9fb468520275223c153574b00df6fe4bcc9 → [Updates: v4]
  • docker/build-push-action v6@10e90e3645eae34f1e60eeb005ba3a3d33f178e8 → [Updates: v7]
  • sigstore/cosign-installer v4.0.0@faadad0cce49287aee09b3a48701e75088a2c6ad → [Updates: v4.1.2]
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • docker/setup-qemu-action v3@c7c53464625b32c7a7e944ae62b3e17d2b600130 → [Updates: v4]
  • docker/setup-buildx-action v3@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f → [Updates: v4]
  • docker/login-action v3@c94ce9fb468520275223c153574b00df6fe4bcc9 → [Updates: v4]
  • docker/build-push-action v6@10e90e3645eae34f1e60eeb005ba3a3d33f178e8 → [Updates: v7]
  • sigstore/cosign-installer v4.0.0@faadad0cce49287aee09b3a48701e75088a2c6ad → [Updates: v4.1.2]
.github/workflows/release.yml (6)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • actions/setup-go v6@4b73464bb391d4059bd26b0524d20df3927bd417 → [Updates: v7, v6]
  • arduino/setup-task v2@b91d5d2c96a56797b48ac1e0e89220bf64044611 → [Updates: v3.0.0]
  • ko-build/setup-ko v0.9@d006021bd0c28d1ce33a07e7943d48b079944c8d → [Updates: v0.10]
  • docker/login-action v3@c94ce9fb468520275223c153574b00df6fe4bcc9 → [Updates: v4]
  • sigstore/cosign-installer v4.0.0@faadad0cce49287aee09b3a48701e75088a2c6ad → [Updates: v4.1.2]
.github/workflows/security.yml (3)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • aquasecurity/trivy-action 0.35.0@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 → [Updates: v0.36.0]
  • aquasecurity/trivy-action 0.35.0@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 → [Updates: v0.36.0]
.github/workflows/test.yml (3)
  • actions/checkout v6@de0fac2e4500dabe0009e67214ff5f5447ce83dd → [Updates: v7, v6]
  • actions/setup-go v6@4b73464bb391d4059bd26b0524d20df3927bd417 → [Updates: v7, v6]
  • arduino/setup-task v2@b91d5d2c96a56797b48ac1e0e89220bf64044611 → [Updates: v3.0.0]
.github/workflows/triage.yml (1)
  • stacklok/.github v1@b43e3f174f9bbf2ca4efe6e421a1d007e7fa1b8f
gomod (1)
go.mod (5)
  • go 1.26.0
  • github.com/adrg/xdg v0.5.3
  • github.com/google/uuid v1.6.0
  • github.com/mark3labs/mcp-go v0.45.0 → [Updates: v0.58.0, v1.1.1]
  • github.com/stacklok/go-microvm v0.0.22 → [Updates: v0.0.41]

  • Check this box to trigger a request for Renovate to run again on this repository
Dominant language
Go
Stars
4
Forks
1
PR merge metrics
No merged PRs in 30d

Getting set up

This project ships no dev container, Dockerfile or contributing guide, so setting up is up to you: start from its README, and see our first-contribution guide for the general steps.

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from stacklok/waggle

All issues in stacklok/waggle

Similar issues

More Go issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.