chore: update Go to 1.27.1 and golangci-lint to v2.14 - #183
Merged
Merged
Conversation
- Bump the go directive to 1.27.1; CI picks it up via go-version-file. - Drop GOEXPERIMENT=jsonv2: Go 1.27 enables the jsonv2 experiment by default. - Pin golangci-lint v2.14 in GitHub Actions, and update the GitLab CI images (cimg/go:1.27, golangci-lint:v2.14). - Remove a //nolint:gosec directive that gosec 2.29 no longer needs. GitHub Actions were already on their latest major versions. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Since Go 1.27, crypto/x509 honors SSL_CERT_FILE and SSL_CERT_DIR on Windows and macOS too (GODEBUG x509sslcertoverrideplatform), so the Go part of the CLI trusts the same certificates as the legacy PHP part without a workaround. This also covers HTTP transports other than the default one. An unreadable SSL_CERT_FILE now fails verification instead of printing a warning and falling back to the system certificates, as it already did on Linux. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
setup-goinstalls exactly the version ingo.mod, so releases were still built with 1.26.2.GOEXPERIMENT=jsonv2: Go 1.27 enables it by default, so released binaries now use the v2-backedencoding/jsonthat tests already ran against.cimg/go:1.27. Remove a//nolint:gosecthat is no longer needed.internal/certs. Since Go 1.27,crypto/x509honorsSSL_CERT_FILEandSSL_CERT_DIRon Windows and macOS too, and for all HTTP transports. An unreadableSSL_CERT_FILEnow fails verification instead of warning and falling back to system certificates, matching the existing Linux behavior.GitHub Actions were already on their latest major versions.
🤖 Generated with Claude Code