chore(main): release convergio 0.3.40#488
Conversation
|
You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard. |
d634ab3 to
560bf47
Compare
560bf47 to
3b6ae13
Compare
🔴 CI blocked — RUSTSEC-2026-0185 (quinn-proto, HIGH 7.5)
Catena di dipendenza: Come sbloccare la release: # In locale, dal root del workspace:
cargo update quinn-proto
# oppure, se quinn ha rilasciato una patch:
cargo update quinn
# Poi commita il Cargo.lock aggiornato:
git add Cargo.lock
git commit -m "fix(deps): bump quinn-proto to >=0.11.15 (RUSTSEC-2026-0185)"
git pushQuesto aggiornerà il
Generated by Claude Code |
Automated PR status audit — 2026-06-25PR #488 ·
The Recommended action: Review the audit failure logs at the check run to identify the affected dependency, then either update the crate, add an No PRs are older than 14 days. This is the only open PR. Generated by Claude Code |
CI Status — automated scan (2026-06-26)
Blocking issue: Dependency chain: Fix: Upgrade This advisory is shared across all currently open PRs (#488, #507, #508) — it predates all three branches and needs to be fixed upstream (on Generated by Claude Code |
Automated CI Status Report — 2026-06-27Age: 10 days open (opened 2026-06-17). Reaches 14-day review threshold on 2026-07-01.
Failing job: Note: This same This PR is ready to merge on all other checks. The release covers: LLM gateway (W5/ADR-0058), CSV+HTTP connectors (W4/ADR-0057), ontology bitemporal reads (W3/ADR-0053), A11y gate phase-2 (W11), and several other features. Action needed: investigate and resolve the Generated by Claude Code |
CI Status — 2026-06-28Automated PR audit run. Summary across all 3 open PRs
Root cause — same advisory on all 3RUSTSEC-2026-0185 — Remote memory exhaustion in Dependency chain: Advisory URL: https://rustsec.org/advisories/RUSTSEC-2026-0185 Action neededThe vulnerability sits in the base branch. Until cargo update quinn-proto
# verify the resolved version is >= 0.11.15, then commit Cargo.lockOnce Age flagNo PR has crossed the 14-day review threshold yet. PR #488 is at 11 days — flag will trigger on 2026-07-01 if still open. Posted by automated CI audit routine. Generated by Claude Code |
CI status — automated scan (2026-06-29)Blocker on this PR and all 3 open PRs:
Vulnerable crate: This is a workspace-wide issue — all three open PRs (#488, #507, #508) fail on the same advisory because they all share the same Also flagged on PR #508 (rmcp 1.7.0 → 1.8.0): that release contains a source-breaking API change ( Age summary:
Generated by Claude Code |
Automated CI status report — 2026-06-30Status: CI partially failing (13 days open — hits 14-day review threshold tomorrow)
Blocking: RUSTSEC-2026-0185 —
|
🤖 I have created a release beep boop
0.3.40 (2026-06-24)
Features
Refactoring
Documentation
This PR was generated with Release Please. See documentation.