Skip to content

build(deps): bump sha2 from 0.10.9 to 0.11.0#478

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/sha2-0.11.0
Open

build(deps): bump sha2 from 0.10.9 to 0.11.0#478
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/sha2-0.11.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 28, 2026

Bumps sha2 from 0.10.9 to 0.11.0.

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Apr 28, 2026
@github-actions github-actions Bot enabled auto-merge (squash) April 28, 2026 17:03
Copy link
Copy Markdown

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: d386f436be

ℹ️ About Codex in GitHub

Codex has been enabled to automatically review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

When you sign up for Codex through ChatGPT, Codex can also answer questions or update the PR, like "@codex address that feedback".

Comment thread Cargo.toml
argon2 = { version = "0.5", default-features = false, features = ["std"] }
hmac = "0.12"
sha2 = "0.10"
sha2 = "0.11"
Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Keep sha2 compatible with hmac in write-key feature

Bumping sha2 to 0.11 introduces a digest major-version split with hmac = 0.12: hmac 0.12.1 in the lockfile still depends on digest 0.10, while sha2 0.11.0 depends on digest 0.11. In searchlite-core’s write-key path, Hmac::<Sha256> (see searchlite-core/src/util/write_key.rs) requires Sha256 to implement the same digest traits as hmac, so builds with --all-features (or write-key enabled) will fail with trait-bound mismatches.

Useful? React with 👍 / 👎.

@dependabot dependabot Bot force-pushed the dependabot/cargo/sha2-0.11.0 branch 10 times, most recently from cbd619c to 30eb4d6 Compare May 6, 2026 12:22
@dependabot dependabot Bot force-pushed the dependabot/cargo/sha2-0.11.0 branch 3 times, most recently from 1fb3fe0 to f33476e Compare May 7, 2026 12:33
@dependabot dependabot Bot force-pushed the dependabot/cargo/sha2-0.11.0 branch from f33476e to 5d7572a Compare May 20, 2026 02:03
Bumps [sha2](https://github.com/RustCrypto/hashes) from 0.10.9 to 0.11.0.
- [Commits](RustCrypto/hashes@sha2-v0.10.9...sha2-v0.11.0)

---
updated-dependencies:
- dependency-name: sha2
  dependency-version: 0.11.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/cargo/sha2-0.11.0 branch from 5d7572a to 665cb3a Compare May 20, 2026 02:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants