Bump golang from 1.26.8-alpine3.24 to 1.27.1-alpine3.24 - #120
Conversation
Bumps golang from 1.26.8-alpine3.24 to 1.27.1-alpine3.24. --- updated-dependencies: - dependency-name: golang dependency-version: 1.27.1-alpine3.24 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
There was a problem hiding this comment.
Copilot review overview
🟡 Changes recommended
CI and security scanning still use Go 1.26.8, leaving the shipped toolchain untested and unscanned.
Get a fresh assessment by requesting another Copilot review.
Review effort: Lite
Findings: 1
Open (1)
What changed in this PR
Updates the Docker build stage to Go 1.27.1.
Changes:
- Bumps the builder image from Go 1.26.8 to 1.27.1.
| File | Description |
|---|---|
| Dockerfile | Updates the Go builder image version. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
Co-authored-by: juliojimenez <648113+juliojimenez@users.noreply.github.com>
Head branch was pushed to by a user without write access
|
|

Bumps golang from 1.26.8-alpine3.24 to 1.27.1-alpine3.24.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)