Skip to content

build(deps-dev): bump postgresql from 42.3.5 to 42.3.6 - #11

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/org.postgresql-postgresql-42.3.6
Closed

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/org.postgresql-postgresql-42.3.6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 24, 2022

Copy link
Copy Markdown

Bumps postgresql from 42.3.5 to 42.3.6.

Changelog

Sourced from postgresql's changelog.

[42.3.6] (2022-05-24 08:52:27 -0400)

Changed

Added

Fixed

  • fix: close refcursors when underlying cursor==null instead of relying on defaultRowFetchSize [PR #2377](pgjdbc/pgjdbc#2377)
Commits
  • 7714d03 Created release notes for 42.3.6 [SKIP-CI] (#2515)
  • 85f8581 fix: close refcursors when underlying cursor==null instead of relying on defa...
  • 12541c4 bumped version number
  • 0872ad0 Fix heading format for version numbers (#2504)
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [postgresql](https://github.com/pgjdbc/pgjdbc) from 42.3.5 to 42.3.6.
- [Release notes](https://github.com/pgjdbc/pgjdbc/releases)
- [Changelog](https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md)
- [Commits](pgjdbc/pgjdbc@REL42.3.5...REL42.3.6)

---
updated-dependencies:
- dependency-name: org.postgresql:postgresql
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label May 24, 2022
@dependabot @github

dependabot Bot commented on behalf of github Jun 9, 2022

Copy link
Copy Markdown
Author

Superseded by #14.

@dependabot dependabot Bot closed this Jun 9, 2022
@dependabot
dependabot Bot deleted the dependabot/maven/org.postgresql-postgresql-42.3.6 branch June 9, 2022 19:31
astubbs added a commit that referenced this pull request Aug 25, 2026
…ts own seams

The review's remaining two mechanical findings (#2, #11). MockConsumerCommitFailureSeamTest
had grown to 1456 lines and 27 flat test methods, and PMD CPD/jscpd flagged its repeated
setup and Awaitility blocks as this PR's largest new duplication.

Now: MockConsumerCommitFailureSeamTestBase owns the fixture (failing MockConsumer factory,
RecordingHandler, startPc overloads, latching feed, teardown, awaitAsserted and the CONTINUE
opening helpers), and five classes own one seam each - Decision (10), HandlerFreeExits (4),
PauseIntake (5), DeferralEscalation (5), Metrics (3). All 27 tests survive with assertions
byte-for-byte intact; the base keeps the documented decision NOT to extend
MockConsumerTestBase. ParallelConsumerOptionsCommitFailureTest's twin assertThrows blocks
collapse into one assertAsyncRejects helper. The deliberate
ConsumerManagerCommitRetryBudgetTest/ProducerManagerCommitBudgetTest mirror is untouched.

Verified: 27/27 across the five classes plus options/symptom suites, maven exit 0;
copyright, issue-ref and file-ref gates green.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_016jCtV2yqQvxDR6cLML8J8a
astubbs added a commit that referenced this pull request Aug 31, 2026
…ed, and its breach is loud

Review finding #11 ruled on by the author: implement the R8 bound
rather than strike the claim. Three session-settled decisions bound
the shape - the post-claim debit always succeeds (KTD1), the ledger
never clamps (KTD2), and burst manifests only as the overdraft
allowance, never extra minting (KTD7) - so burst is implemented as a
monitored budget, not a gate: spend() now reads the contract's burst,
tracks per-resource per-quantum overdraft under the existing
stateLock, and a debit that pushes the quantum's overdraft beyond
burst still succeeds and still counts, but additionally increments
the new monotonic overdraftBeyondBurst counter (exposed on the
conservation ledger, explicitly outside the identity) and warns once
per resource per quantum. New meter
pc.navigator.credits.overdraft.beyond.burst surfaces it; the false
'bounded by the declared burst' prose in PCMetricsDef and
ConservationLedger is corrected to the honest semantics.

Defect-class sweep for other false 'bounded by' claims: fixed the two
above; checked and dismissed RetryQueue/ShardManager (different
meaning), ResourceContract and the IT derivation (already honest).

Tests sabotage-verified: inverting the burst comparison reddens four
tests; removing the quantum-roll reset reddens exactly the reset
test. Scoped suites 47/47 green.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_015BHdUNhXgjvDwNJ3XYz5uM
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants