Skip to content

chore(deps): bump the github-actions group with 2 updates - #281

Merged
turnipdabeets merged 1 commit into
mainfrom
dependabot/github_actions/github-actions-30bf8f96ae
Sep 23, 2026
Merged

turnipdabeets merged 1 commit into
mainfrom
dependabot/github_actions/github-actions-30bf8f96ae

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 23, 2026

Copy link
Copy Markdown
Contributor

Bumps the github-actions group with 2 updates: ruby/setup-ruby and PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml.

Updates ruby/setup-ruby from 1.321.0 to 1.323.0

Release notes

Sourced from ruby/setup-ruby's releases.

v1.323.0

What's Changed

Full Changelog: ruby/setup-ruby@v1.322.0...v1.323.0

v1.322.0

What's Changed

Full Changelog: ruby/setup-ruby@v1.321.0...v1.322.0

Commits

Updates PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml from 1.1.1 to 1.5.0

Release notes

Sourced from PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml's releases.

1.5.0

Minor changes

  • d14f173 Add versioned Feature Flag Rules v2 definitions, evaluation response, management diagnostic, and event contracts with producer and tolerant-reader fixtures. Include source-distribution integrity verification. Contract package 2.0.0 narrows the registry warning codes to the five actionable management warnings (registry 2.0.0), removing EXPERIMENT_VALUE_COLLISION, SDK_REMOTE_FALLBACK_REQUIRED, SDK_EXPERIMENT_CONTEXT_MISSING, and LEGACY_PROJECTION_LIMITED from published contract 1.2.0. — Thanks @​andehen!

1.4.0

Minor changes

  • 3de40b7 Publish Feature Flag Rules v2 contract 1.2.0 and corpus 1.1.0 with fixtures pinning the Rust version 1 reference's empty-identifier rollout, variant, and holdout behavior. Correct the hash/parity documentation and record the Python local-evaluation divergence. — Thanks @​andehen!

1.3.0

Minor changes

  • 89f5b4e Add the Feature Flag Rules v2 corpus with version 1 evaluation fixtures, sha1_60_v1 hash vectors, legacy projection fixtures, and companion schemas. — Thanks @​andehen!

1.2.0

Minor changes

  • bcaa923 Add the versioned Feature Flag Rules v2 configuration contract, validation fixtures, and OpenFeature reason mapping. — Thanks @​andehen!
Changelog

Sourced from PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml's changelog.

posthog-sdk-test-harness

1.8.0 — 2026-09-22

Minor changes

  • 1e1a41e Add a language-neutral person boolean evaluation corpus with ordered rules, explicit context, hash evidence, and typed terminal expectations. Preserve the frozen v1 corpus and all published contract component bytes. — Thanks @​andehen!

1.7.1 — 2026-09-22

Patch changes

  • 1d1d5e7 Include failing step text and structured expected/actual evidence for feature-flag getter and request-field assertions in v2 diagnostics, so compliance reports can identify the failing call or field without changing assertion outcomes. — Thanks @​dustinbyrne!

1.7.0 — 2026-09-22

Minor changes

  • ba3f732 Publish the opt-in ghcr.io/posthog/sdk-test-harness-v2 image alongside the existing harness image under the approved release gate, with bundled pinned SDK specifications, multi-platform builds, and digest/provenance handoff artifacts. — Thanks @​dustinbyrne!

1.6.0 — 2026-09-17

Minor changes

  • b6f033a Add Feature Flag Rules v2 config fixtures for the targeted-release and percentage-rollout family as contract package 2.1.0: one canonical boolean configuration and ten schema-rejected shapes (rollout fields on a targeted release, a percentage below the minimum, unknown miss policy, assignment algorithm, assignment target, property field, property operator and property type, a null rule value, and a default value of the wrong type). Published schema, registry, corpus and fixture bytes are unchanged. — Thanks @​andehen!

1.5.0 — 2026-09-15

Minor changes

  • d14f173 Add versioned Feature Flag Rules v2 definitions, evaluation response, management diagnostic, and event contracts with producer and tolerant-reader fixtures. Include source-distribution integrity verification. Contract package 2.0.0 narrows the registry warning codes to the five actionable management warnings (registry 2.0.0), removing EXPERIMENT_VALUE_COLLISION, SDK_REMOTE_FALLBACK_REQUIRED, SDK_EXPERIMENT_CONTEXT_MISSING, and LEGACY_PROJECTION_LIMITED from published contract 1.2.0. — Thanks @​andehen!

1.4.0 — 2026-09-10

Minor changes

  • 3de40b7 Publish Feature Flag Rules v2 contract 1.2.0 and corpus 1.1.0 with fixtures pinning the Rust version 1 reference's empty-identifier rollout, variant, and holdout behavior. Correct the hash/parity documentation and record the Python local-evaluation divergence. — Thanks @​andehen!

1.3.0 — 2026-09-10

Minor changes

  • 89f5b4e Add the Feature Flag Rules v2 corpus with version 1 evaluation fixtures, sha1_60_v1 hash vectors, legacy projection fixtures, and companion schemas. — Thanks @​andehen!

1.2.0 — 2026-09-10

Minor changes

  • bcaa923 Add the versioned Feature Flag Rules v2 configuration contract, validation fixtures, and OpenFeature reason mapping. — Thanks @​andehen!

... (truncated)

Commits
  • e487249 chore: Release v1.5.0 [skip ci]
  • d14f173 test(flags): add definitions, response, and event contracts (#57)
  • 029a94a chore: Release v1.4.0 [skip ci]
  • 3de40b7 test(flags): pin v1 empty-identifier reference behavior (#56)
  • 6860597 chore: Release v1.3.0 [skip ci]
  • 89f5b4e test(flags): add v1 and hashing contract corpus (#52)
  • 8882c1d ci: remove redundant release token permissions (#55)
  • 1fa8541 chore: Release v1.2.0 [skip ci]
  • bcaa923 feat(flags): add rules v2 config contract (#51)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the github-actions group with 2 updates: [ruby/setup-ruby](https://github.com/ruby/setup-ruby) and [PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml](https://github.com/posthog/posthog-sdk-test-harness).


Updates `ruby/setup-ruby` from 1.321.0 to 1.323.0
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@95ef2b0...984c0c8)

Updates `PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml` from 1.1.1 to 1.5.0
- [Release notes](https://github.com/posthog/posthog-sdk-test-harness/releases)
- [Changelog](https://github.com/PostHog/posthog-sdk-test-harness/blob/main/CHANGELOG.md)
- [Commits](PostHog/posthog-sdk-test-harness@1d6b197...e487249)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.323.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: github-actions
- dependency-name: PostHog/posthog-sdk-test-harness/.github/workflows/test-sdk-action.yml
  dependency-version: 1.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 23, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner September 23, 2026 18:26
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 23, 2026
@github-actions

Copy link
Copy Markdown

posthog-ruby-sync Compliance Report

Date: 2026-09-23T18:28:55.492707+00:00
Duration: 94099ms

⚠️ Some Tests Failed

45/47 tests passed, 2 failed


Capture Tests

⚠️ 29/30 tests passed, 1 failed

View Details
Test Status Duration
Format Validation.Event Has Required Fields 10ms
Format Validation.Event Has Uuid 8ms
Format Validation.Event Has Lib Properties 6ms
Format Validation.Distinct Id Is String 10ms
Format Validation.Token Is Present 8ms
Format Validation.Custom Properties Preserved 7ms
Format Validation.Event Has Timestamp 8ms
Format Validation.Non Utc Event Timestamp Is Converted To Utc 7ms
Retry Behavior.Retries On 503 5297ms
Retry Behavior.Does Not Retry On 400 2010ms
Retry Behavior.Does Not Retry On 401 2012ms
Retry Behavior.Respects Retry After Header 8015ms
Retry Behavior.Implements Backoff 15325ms
Retry Behavior.Retries On 500 5116ms
Retry Behavior.Retries On 502 5160ms
Retry Behavior.Retries On 504 5159ms
Retry Behavior.Max Retries Respected 15557ms
Deduplication.Generates Unique Uuids 24ms
Deduplication.Preserves Uuid On Retry 5116ms
Deduplication.Preserves Uuid And Timestamp On Retry 10269ms
Deduplication.Preserves Uuid And Timestamp On Batch Retry 5122ms
Deduplication.No Duplicate Events In Batch 18ms
Deduplication.Different Events Have Different Uuids 9ms
Compression.Sends Gzip When Enabled 7ms
Batch Format.Uses Proper Batch Structure 6ms
Batch Format.Flush With No Events Sends Nothing 3ms
Batch Format.Multiple Events Batched Together 17ms
Error Handling.Does Not Retry On 403 2009ms
Error Handling.Does Not Retry On 413 2010ms
Error Handling.Retries On 408 5162ms

Failures

batch_format.multiple_events_batched_together

Expected 1 requests, got 5

Feature_Flags Tests

⚠️ 16/17 tests passed, 1 failed

View Details
Test Status Duration
Request Payload.Request With Person Properties Device Id 9ms
Request Payload.Flags Request Uses V2 Query Param 7ms
Request Payload.Flags Request Hits Flags Path Not Decide 6ms
Request Payload.Flags Request Omits Authorization Header 8ms
Request Payload.Token In Flags Body Matches Init 8ms
Request Payload.Groups Round Trip 8ms
Request Payload.Groups Default To Empty Object 8ms
Request Payload.Disable Geoip False Propagates As Geoip Disable False 8ms
Request Payload.Disable Geoip Omitted Defaults To False 6ms
Request Payload.Flag Keys To Evaluate Contains Only Requested Key 7ms
Request Lifecycle.No Flags Request On Init Alone 2ms
Request Lifecycle.No Flags Request On Normal Capture 6ms
Request Lifecycle.Two Flag Calls Produce Two Remote Requests 10ms
Request Lifecycle.Mock Response Value Is Returned To Caller 6ms
Retry Behavior.Retries Flags On 502 110ms
Retry Behavior.Retries Flags On 504 110ms
Side Effect Events.Get Feature Flag Captures Feature Flag Called Event 8ms

Failures

request_payload.disable_geoip_omitted_defaults_to_false

Field 'geoip_disable' not found in /flags request body at path 'geoip_disable'. Available keys: ['distinct_id', 'groups', 'person_properties', 'group_properties', 'flag_keys_to_evaluate', 'token']

@github-actions

Copy link
Copy Markdown

posthog-ruby-async Compliance Report

Date: 2026-09-23T18:28:57.943823+00:00
Duration: 98505ms

⚠️ Some Tests Failed

46/47 tests passed, 1 failed


Capture Tests

30/30 tests passed

View Details
Test Status Duration
Format Validation.Event Has Required Fields 109ms
Format Validation.Event Has Uuid 106ms
Format Validation.Event Has Lib Properties 108ms
Format Validation.Distinct Id Is String 106ms
Format Validation.Token Is Present 107ms
Format Validation.Custom Properties Preserved 106ms
Format Validation.Event Has Timestamp 107ms
Format Validation.Non Utc Event Timestamp Is Converted To Utc 7ms
Retry Behavior.Retries On 503 5310ms
Retry Behavior.Does Not Retry On 400 2110ms
Retry Behavior.Does Not Retry On 401 2109ms
Retry Behavior.Respects Retry After Header 8115ms
Retry Behavior.Implements Backoff 15622ms
Retry Behavior.Retries On 500 5210ms
Retry Behavior.Retries On 502 5212ms
Retry Behavior.Retries On 504 5212ms
Retry Behavior.Max Retries Respected 15708ms
Deduplication.Generates Unique Uuids 113ms
Deduplication.Preserves Uuid On Retry 5210ms
Deduplication.Preserves Uuid And Timestamp On Retry 10317ms
Deduplication.Preserves Uuid And Timestamp On Batch Retry 5214ms
Deduplication.No Duplicate Events In Batch 111ms
Deduplication.Different Events Have Different Uuids 108ms
Compression.Sends Gzip When Enabled 106ms
Batch Format.Uses Proper Batch Structure 106ms
Batch Format.Flush With No Events Sends Nothing 3ms
Batch Format.Multiple Events Batched Together 111ms
Error Handling.Does Not Retry On 403 2108ms
Error Handling.Does Not Retry On 413 2109ms
Error Handling.Retries On 408 5211ms

Feature_Flags Tests

⚠️ 16/17 tests passed, 1 failed

View Details
Test Status Duration
Request Payload.Request With Person Properties Device Id 107ms
Request Payload.Flags Request Uses V2 Query Param 107ms
Request Payload.Flags Request Hits Flags Path Not Decide 106ms
Request Payload.Flags Request Omits Authorization Header 107ms
Request Payload.Token In Flags Body Matches Init 107ms
Request Payload.Groups Round Trip 108ms
Request Payload.Groups Default To Empty Object 107ms
Request Payload.Disable Geoip False Propagates As Geoip Disable False 107ms
Request Payload.Disable Geoip Omitted Defaults To False 106ms
Request Payload.Flag Keys To Evaluate Contains Only Requested Key 106ms
Request Lifecycle.No Flags Request On Init Alone 3ms
Request Lifecycle.No Flags Request On Normal Capture 105ms
Request Lifecycle.Two Flag Calls Produce Two Remote Requests 110ms
Request Lifecycle.Mock Response Value Is Returned To Caller 106ms
Retry Behavior.Retries Flags On 502 252ms
Retry Behavior.Retries Flags On 504 235ms
Side Effect Events.Get Feature Flag Captures Feature Flag Called Event 108ms

Failures

request_payload.disable_geoip_omitted_defaults_to_false

Field 'geoip_disable' not found in /flags request body at path 'geoip_disable'. Available keys: ['distinct_id', 'groups', 'person_properties', 'group_properties', 'flag_keys_to_evaluate', 'token']

@turnipdabeets
turnipdabeets merged commit 01309e8 into main Sep 23, 2026
22 checks passed
@turnipdabeets
turnipdabeets deleted the dependabot/github_actions/github-actions-30bf8f96ae branch September 23, 2026 19:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant