Script 'mail_helper' called by obssrc
Hello community,

here is the log from the commit of package sops for openSUSE:Factory checked in 
at 2026-07-23 23:10:55
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/sops (Old)
 and      /work/SRC/openSUSE:Factory/.sops.new.2004 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "sops"

Thu Jul 23 23:10:55 2026 rev:20 rq:1367308 version:3.13.3

Changes:
--------
--- /work/SRC/openSUSE:Factory/sops/sops.changes        2026-07-01 
16:54:01.001270123 +0200
+++ /work/SRC/openSUSE:Factory/.sops.new.2004/sops.changes      2026-07-23 
23:14:16.288554731 +0200
@@ -1,0 +2,27 @@
+Thu Jul 23 06:05:59 UTC 2026 - Johannes Kastl 
<[email protected]>
+
+- Update to version 3.13.3:
+  * Add ini to supported input/output type descriptions by
+    @TheKhanj in #2239
+  * build(deps): Bump the go group with 10 updates by
+    @dependabot[bot] in #2242
+  * build(deps): Bump the ci group with 6 updates by
+    @dependabot[bot] in #2241
+  * fix: include decrypted sequence comments in the MAC (fixes
+    #2243) by @cbcoutinho in #2245
+  * build(deps): Bump the go group with 14 updates by
+    @dependabot[bot] in #2251
+  * build(deps): Bump the ci group with 2 updates by
+    @dependabot[bot] in #2250
+  * build(deps): Bump the go group with 11 updates by
+    @dependabot[bot] in #2261
+  * build(deps): Bump the ci group with 3 updates by
+    @dependabot[bot] in #2260
+  * build(deps): Bump the rust group in /functional-tests with 3
+    updates by @dependabot[bot] in #2259
+  * Update dependencies with 'go get -t -u ./...' by @felixfontein
+    in #2248
+  * Completion scripts: remove leading newline by @felixfontein in
+    #2253
+
+-------------------------------------------------------------------

Old:
----
  sops-3.13.2.obscpio

New:
----
  sops-3.13.3.obscpio

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ sops.spec ++++++
--- /var/tmp/diff_new_pack.R6LKNN/_old  2026-07-23 23:14:17.244588350 +0200
+++ /var/tmp/diff_new_pack.R6LKNN/_new  2026-07-23 23:14:17.244588350 +0200
@@ -17,7 +17,7 @@
 
 
 Name:           sops
-Version:        3.13.2
+Version:        3.13.3
 Release:        0
 Summary:        Simple and flexible tool for managing secrets
 License:        MPL-2.0

++++++ _service ++++++
--- /var/tmp/diff_new_pack.R6LKNN/_old  2026-07-23 23:14:17.280589616 +0200
+++ /var/tmp/diff_new_pack.R6LKNN/_new  2026-07-23 23:14:17.284589757 +0200
@@ -3,7 +3,7 @@
    <param name="url">https://github.com/mozilla/sops.git</param>
    <param name="scm">git</param>
    <param name="exclude">.git</param>
-   <param name="revision">refs/tags/v3.13.2</param>
+   <param name="revision">refs/tags/v3.13.3</param>
    <param name="versionformat">@PARENT_TAG@</param>
    <param name="versionrewrite-pattern">v(.*)</param>
    <param name="changesgenerate">enable</param>

++++++ _servicedata ++++++
--- /var/tmp/diff_new_pack.R6LKNN/_old  2026-07-23 23:14:17.308590601 +0200
+++ /var/tmp/diff_new_pack.R6LKNN/_new  2026-07-23 23:14:17.312590741 +0200
@@ -3,6 +3,6 @@
                 <param name="url">https://github.com/mozilla/sops</param>
               <param 
name="changesrevision">72e337c45c195e02394ee865f9ec2b794b6b74b4</param></service><service
 name="tar_scm">
                 <param name="url">https://github.com/mozilla/sops.git</param>
-              <param 
name="changesrevision">15e36f97a8641769712da76b64aec4ea566be81e</param></service></servicedata>
+              <param 
name="changesrevision">26e2f4784ca61353082c32dbd987c25eda086dc9</param></service></servicedata>
 (No newline at EOF)
 

++++++ sops-3.13.2.obscpio -> sops-3.13.3.obscpio ++++++
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/CHANGELOG.md new/sops-3.13.3/CHANGELOG.md
--- old/sops-3.13.2/CHANGELOG.md        2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/CHANGELOG.md        2026-07-23 06:56:08.000000000 +0200
@@ -1,17 +1,43 @@
 # Changelog
 
+## 3.13.3
+
+Improvements:
+
+* CLI help improvement ([#2239](https://github.com/getsops/sops/pull/2239)).
+* Dependency updates ([#2242](https://github.com/getsops/sops/pull/2242),
+  [#2251](https://github.com/getsops/sops/pull/2251),
+  [#2261](https://github.com/getsops/sops/pull/2261),
+  [#2248](https://github.com/getsops/sops/pull/2248)).
+
+Bugfixes:
+
+* Fix a bug introduced in 3.13.2 that computes a wrong MAC during decryption
+  for sequences (YAML lists) that contain a comment
+  ([#2245](https://github.com/getsops/sops/pull/2245)).
+* Fix ``completion`` subcommands so that they do not have an empty line before
+  the shebang ([#2253](https://github.com/getsops/sops/pull/2253)).
+
+Project changes:
+
+* CI dependency updates ([#2241](https://github.com/getsops/sops/pull/2241),
+  [#2250](https://github.com/getsops/sops/pull/2250),
+  [#2260](https://github.com/getsops/sops/pull/2260)).
+* Rust dependency updates for functional tests
+  ([#2259](https://github.com/getsops/sops/pull/2259)).
+
 ## 3.13.2
 
 Improvements:
 
-* Dependency updates ([#2185](https://github.com/getsops/sops/pull/2185)),
-  ([#2193](https://github.com/getsops/sops/pull/2193)),
-  ([#2197](https://github.com/getsops/sops/pull/2197)),
-  ([#2212](https://github.com/getsops/sops/pull/2212)),
-  ([#2218](https://github.com/getsops/sops/pull/2218)),
-  ([#2229](https://github.com/getsops/sops/pull/2229)),
-  ([#2231](https://github.com/getsops/sops/pull/2231)),
-  ([#2231](https://github.com/getsops/sops/pull/2233)).
+* Dependency updates ([#2185](https://github.com/getsops/sops/pull/2185),
+  [#2193](https://github.com/getsops/sops/pull/2193),
+  [#2197](https://github.com/getsops/sops/pull/2197),
+  [#2212](https://github.com/getsops/sops/pull/2212),
+  [#2218](https://github.com/getsops/sops/pull/2218),
+  [#2229](https://github.com/getsops/sops/pull/2229),
+  [#2231](https://github.com/getsops/sops/pull/2231),
+  [#2231](https://github.com/getsops/sops/pull/2233)).
 * Fix typos in documentation
   ([#2221](https://github.com/getsops/sops/pull/2221)).
 
@@ -36,12 +62,12 @@
 
 Project changes:
 
-* CI dependency updates ([#2184](https://github.com/getsops/sops/pull/2184)),
-  ([#2192](https://github.com/getsops/sops/pull/2192)),
-  ([#2196](https://github.com/getsops/sops/pull/2196)),
-  ([#2211](https://github.com/getsops/sops/pull/2211)),
-  ([#2228](https://github.com/getsops/sops/pull/2228)),
-  ([#2236](https://github.com/getsops/sops/pull/2236)).
+* CI dependency updates ([#2184](https://github.com/getsops/sops/pull/2184),
+  [#2192](https://github.com/getsops/sops/pull/2192),
+  [#2196](https://github.com/getsops/sops/pull/2196),
+  [#2211](https://github.com/getsops/sops/pull/2211),
+  [#2228](https://github.com/getsops/sops/pull/2228),
+  [#2236](https://github.com/getsops/sops/pull/2236)).
 * Rust dependency updates for functional tests
   ([#2191](https://github.com/getsops/sops/pull/2191)).
 * Build alpine container in CI
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/cmd/sops/completion.go 
new/sops-3.13.3/cmd/sops/completion.go
--- old/sops-3.13.2/cmd/sops/completion.go      2026-06-30 06:49:41.000000000 
+0200
+++ new/sops-3.13.3/cmd/sops/completion.go      2026-07-23 06:56:08.000000000 
+0200
@@ -3,8 +3,7 @@
 import "fmt"
 
 // https://github.com/urfave/cli/blob/v1-maint/autocomplete/zsh_autocomplete
-var Zshcompletion = `
-#compdef %s
+var Zshcompletion = `#compdef %s
 
 _cli_zsh_autocomplete() {
 
@@ -30,8 +29,7 @@
 `
 
 // https://github.com/urfave/cli/blob/v1-maint/autocomplete/bash_autocomplete
-var Bashcompletion = `
-#! /bin/bash
+var Bashcompletion = `#! /bin/bash
 
 _cli_bash_autocomplete() {
   if [[ "${COMP_WORDS[0]}" != "source" ]]; then
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/cmd/sops/main.go 
new/sops-3.13.3/cmd/sops/main.go
--- old/sops-3.13.2/cmd/sops/main.go    2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/cmd/sops/main.go    2026-07-23 06:56:08.000000000 +0200
@@ -801,11 +801,11 @@
                                },
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.BoolFlag{
                                        Name:  "ignore-mac",
@@ -972,11 +972,11 @@
                                },
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.StringFlag{
                                        Name:  "unencrypted-suffix",
@@ -1117,11 +1117,11 @@
                                },
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.StringFlag{
                                        Name:  "encryption-context",
@@ -1323,11 +1323,11 @@
                                },
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.StringFlag{
                                        Name:  "unencrypted-suffix",
@@ -1449,11 +1449,11 @@
                        Flags: append([]cli.Flag{
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.BoolFlag{
                                        Name:  "value-file",
@@ -1585,11 +1585,11 @@
                        Flags: append([]cli.Flag{
                                cli.StringFlag{
                                        Name:  "input-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the file's extension to 
determine the type",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the file's extension to 
determine the type",
                                },
                                cli.StringFlag{
                                        Name:  "output-type",
-                                       Usage: "currently json, yaml, dotenv 
and binary are supported. If not set, sops will use the input file's extension 
to determine the output format",
+                                       Usage: "currently json, yaml, dotenv, 
ini and binary are supported. If not set, sops will use the input file's 
extension to determine the output format",
                                },
                                cli.IntFlag{
                                        Name:  
"shamir-secret-sharing-threshold",
@@ -1744,11 +1744,11 @@
                },
                cli.StringFlag{
                        Name:  "input-type",
-                       Usage: "currently json, yaml, dotenv and binary are 
supported. If not set, sops will use the file's extension to determine the 
type",
+                       Usage: "currently json, yaml, dotenv, ini and binary 
are supported. If not set, sops will use the file's extension to determine the 
type",
                },
                cli.StringFlag{
                        Name:  "output-type",
-                       Usage: "currently json, yaml, dotenv and binary are 
supported. If not set, sops will use the input file's extension to determine 
the output format",
+                       Usage: "currently json, yaml, dotenv, ini and binary 
are supported. If not set, sops will use the input file's extension to 
determine the output format",
                },
                cli.BoolFlag{
                        Name:  "show-master-keys, s",
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/functional-tests/Cargo.lock 
new/sops-3.13.3/functional-tests/Cargo.lock
--- old/sops-3.13.2/functional-tests/Cargo.lock 2026-06-30 06:49:41.000000000 
+0200
+++ new/sops-3.13.3/functional-tests/Cargo.lock 2026-07-23 06:56:08.000000000 
+0200
@@ -114,9 +114,9 @@
 
 [[package]]
 name = "proc-macro2"
-version = "1.0.89"
+version = "1.0.107"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "f139b0662de085916d1fb67d2b4169d1addddda1919e696f3252b740b629986e"
+checksum = "985e7ec9bb745e6ce6535b544d84d6cd6f7ad8bd711c398938ae983b91a766d9"
 dependencies = [
  "unicode-ident",
 ]
@@ -151,27 +151,27 @@
 
 [[package]]
 name = "serde"
-version = "1.0.228"
+version = "1.0.229"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "9a8e94ea7f378bd32cbbd37198a4a91436180c5bb472411e48b5ec2e2124ae9e"
+checksum = "4148590afebada386688f18773da617792bf2ef03ffc1e4cbd2b1d45b023e0ba"
 dependencies = [
  "serde_core",
 ]
 
 [[package]]
 name = "serde_core"
-version = "1.0.228"
+version = "1.0.229"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "41d385c7d4ca58e59fc732af25c3983b67ac852c1a25000afe1175de458b67ad"
+checksum = "67dca2c9c51e58a4791a4b1ed58308b39c64224d349a935ab5039aa360942a48"
 dependencies = [
  "serde_derive",
 ]
 
 [[package]]
 name = "serde_derive"
-version = "1.0.228"
+version = "1.0.229"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "d540f220d3187173da220f885ab66608367b6574e925011a9353e4badda91d79"
+checksum = "e7a5d71263a5a7d47b41f6b3f06ba276f10cc18b0931f1799f710578e2309348"
 dependencies = [
  "proc-macro2",
  "quote",
@@ -180,9 +180,9 @@
 
 [[package]]
 name = "serde_json"
-version = "1.0.150"
+version = "1.0.151"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "e8014e44b4736ed0538adeecded0fce2a272f22dc9578a7eb6b2d9993c74cfb9"
+checksum = "c841b55ecdae098c80dcae9cf767f6f8a0c2cdb3416bbef72181df4d0fe73f14"
 dependencies = [
  "itoa",
  "memchr",
@@ -206,9 +206,9 @@
 
 [[package]]
 name = "syn"
-version = "2.0.85"
+version = "3.0.2"
 source = "registry+https://github.com/rust-lang/crates.io-index";
-checksum = "5023162dfcd14ef8f32034d8bcd4cc5ddc61ef7a247c024a33e24e1f24d21b56"
+checksum = "a207d6d6a2b7fc470b80443726053f18a2481b7e1eee970597051596567987a3"
 dependencies = [
  "proc-macro2",
  "quote",
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/go.mod new/sops-3.13.3/go.mod
--- old/sops-3.13.2/go.mod      2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/go.mod      2026-07-23 06:56:08.000000000 +0200
@@ -3,20 +3,20 @@
 go 1.25.8
 
 require (
-       cloud.google.com/go/kms v1.31.0
-       cloud.google.com/go/storage v1.63.0
+       cloud.google.com/go/kms v1.32.0
+       cloud.google.com/go/storage v1.63.1
        filippo.io/age v1.3.1
        github.com/Azure/azure-sdk-for-go/sdk/azcore v1.22.0
        github.com/Azure/azure-sdk-for-go/sdk/azidentity v1.14.0
        github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/azkeys v1.5.0
        github.com/ProtonMail/go-crypto v1.4.1
-       github.com/aws/aws-sdk-go-v2 v1.42.0
-       github.com/aws/aws-sdk-go-v2/config v1.32.25
-       github.com/aws/aws-sdk-go-v2/credentials v1.19.24
-       github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.28
-       github.com/aws/aws-sdk-go-v2/service/kms v1.53.4
-       github.com/aws/aws-sdk-go-v2/service/s3 v1.104.0
-       github.com/aws/aws-sdk-go-v2/service/sts v1.43.3
+       github.com/aws/aws-sdk-go-v2 v1.42.1
+       github.com/aws/aws-sdk-go-v2/config v1.32.30
+       github.com/aws/aws-sdk-go-v2/credentials v1.19.29
+       github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.34
+       github.com/aws/aws-sdk-go-v2/service/kms v1.54.1
+       github.com/aws/aws-sdk-go-v2/service/s3 v1.105.2
+       github.com/aws/aws-sdk-go-v2/service/sts v1.44.1
        github.com/blang/semver v3.5.1+incompatible
        github.com/fatih/color v1.19.0
        github.com/getsops/gopgagent v0.0.0-20241224165529-7044f28e491e
@@ -26,7 +26,7 @@
        github.com/goware/prefixer v0.0.0-20160118172347-395022866408
        github.com/hashicorp/go-cleanhttp v0.5.2
        github.com/hashicorp/vault/api v1.23.0
-       github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.202
+       github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.207
        github.com/lib/pq v1.12.3
        github.com/mitchellh/go-homedir v1.1.0
        github.com/mitchellh/go-wordwrap v1.0.1
@@ -36,14 +36,14 @@
        github.com/stretchr/testify v1.11.1
        github.com/urfave/cli v1.22.17
        go.yaml.in/yaml/v3 v3.0.4
-       golang.org/x/crypto v0.53.0
-       golang.org/x/net v0.56.0
+       golang.org/x/crypto v0.54.0
+       golang.org/x/net v0.57.0
        golang.org/x/oauth2 v0.36.0
-       golang.org/x/sys v0.46.0
-       golang.org/x/term v0.44.0
-       google.golang.org/api v0.286.0
-       google.golang.org/genproto/googleapis/rpc 
v0.0.0-20260622175928-b703f567277d
-       google.golang.org/grpc v1.81.1
+       golang.org/x/sys v0.47.0
+       golang.org/x/term v0.45.0
+       google.golang.org/api v0.289.0
+       google.golang.org/genproto/googleapis/rpc 
v0.0.0-20260720171339-e059f2f05d78
+       google.golang.org/grpc v1.82.1
        google.golang.org/protobuf v1.36.11
        gopkg.in/ini.v1 v1.67.3
 )
@@ -51,12 +51,12 @@
 require (
        cel.dev/expr v0.25.2 // indirect
        cloud.google.com/go v0.123.0 // indirect
-       cloud.google.com/go/auth v0.20.0 // indirect
+       cloud.google.com/go/auth v0.22.0 // indirect
        cloud.google.com/go/auth/oauth2adapt v0.2.8 // indirect
        cloud.google.com/go/compute/metadata v0.9.0 // indirect
-       cloud.google.com/go/iam v1.11.0 // indirect
-       cloud.google.com/go/longrunning v1.1.0 // indirect
-       cloud.google.com/go/monitoring v1.29.0 // indirect
+       cloud.google.com/go/iam v1.12.0 // indirect
+       cloud.google.com/go/longrunning v1.2.0 // indirect
+       cloud.google.com/go/monitoring v1.30.0 // indirect
        dario.cat/mergo v1.0.2 // indirect
        filippo.io/edwards25519 v1.2.0 // indirect
        filippo.io/hpke v0.4.0 // indirect
@@ -64,24 +64,24 @@
        github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/internal v1.2.0 
// indirect
        github.com/Azure/go-ansiterm v0.0.0-20250102033503-faa5f7b0171c // 
indirect
        github.com/AzureAD/microsoft-authentication-library-for-go v1.7.2 // 
indirect
-       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.33.0 // indirect
-       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.57.0 // indirect
-       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.57.0 // indirect
+       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.34.0 // indirect
+       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.58.0 // indirect
+       
github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.58.0 // indirect
        github.com/Microsoft/go-winio v0.6.2 // indirect
        github.com/Nvveen/Gotty v0.0.0-20120604004816-cd527374f1e5 // indirect
-       github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.13 // 
indirect
-       github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.29 // indirect
-       github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.29 // indirect
-       github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.29 // indirect
-       github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.30 // indirect
-       github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.12 
// indirect
-       github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.22 // 
indirect
-       github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.29 // 
indirect
-       github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.29 // 
indirect
-       github.com/aws/aws-sdk-go-v2/service/signin v1.2.0 // indirect
-       github.com/aws/aws-sdk-go-v2/service/sso v1.31.3 // indirect
-       github.com/aws/aws-sdk-go-v2/service/ssooidc v1.36.6 // indirect
-       github.com/aws/smithy-go v1.27.3 // indirect
+       github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.14 // 
indirect
+       github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.30 // indirect
+       github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.30 // indirect
+       github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.30 // indirect
+       github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.31 // indirect
+       github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.13 
// indirect
+       github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.23 // 
indirect
+       github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.30 // 
indirect
+       github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.31 // 
indirect
+       github.com/aws/aws-sdk-go-v2/service/signin v1.4.1 // indirect
+       github.com/aws/aws-sdk-go-v2/service/sso v1.32.1 // indirect
+       github.com/aws/aws-sdk-go-v2/service/ssooidc v1.37.1 // indirect
+       github.com/aws/smithy-go v1.27.4 // indirect
        github.com/cenkalti/backoff/v4 v4.3.0 // indirect
        github.com/cespare/xxhash/v2 v2.3.0 // indirect
        github.com/cloudflare/circl v1.6.4 // indirect
@@ -92,7 +92,7 @@
        github.com/cpuguy83/go-md2man/v2 v2.0.7 // indirect
        github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // 
indirect
        github.com/distribution/reference v0.6.0 // indirect
-       github.com/docker/cli v29.6.1+incompatible // indirect
+       github.com/docker/cli v29.6.2+incompatible // indirect
        github.com/docker/go-connections v0.7.0 // indirect
        github.com/docker/go-units v0.5.0 // indirect
        github.com/envoyproxy/go-control-plane/envoy v1.37.0 // indirect
@@ -105,8 +105,8 @@
        github.com/golang-jwt/jwt/v5 v5.3.1 // indirect
        github.com/google/s2a-go v0.1.9 // indirect
        github.com/google/uuid v1.6.0 // indirect
-       github.com/googleapis/enterprise-certificate-proxy v0.3.17 // indirect
-       github.com/googleapis/gax-go/v2 v2.22.0 // indirect
+       github.com/googleapis/enterprise-certificate-proxy v0.3.18 // indirect
+       github.com/googleapis/gax-go/v2 v2.23.0 // indirect
        github.com/hashicorp/errwrap v1.1.0 // indirect
        github.com/hashicorp/go-multierror v1.1.1 // indirect
        github.com/hashicorp/go-retryablehttp v0.7.8 // indirect
@@ -118,7 +118,7 @@
        github.com/json-iterator/go v1.1.13-0.20220915233716-71ac16282d12 // 
indirect
        github.com/kylelemons/godebug v1.1.0 // indirect
        github.com/mattn/go-colorable v0.1.15 // indirect
-       github.com/mattn/go-isatty v0.0.22 // indirect
+       github.com/mattn/go-isatty v0.0.23 // indirect
        github.com/mitchellh/mapstructure v1.5.0 // indirect
        github.com/moby/docker-image-spec v1.3.1 // indirect
        github.com/moby/moby/api v1.55.0 // indirect
@@ -150,10 +150,10 @@
        go.opentelemetry.io/otel/sdk v1.44.0 // indirect
        go.opentelemetry.io/otel/sdk/metric v1.44.0 // indirect
        go.opentelemetry.io/otel/trace v1.44.0 // indirect
-       golang.org/x/sync v0.21.0 // indirect
-       golang.org/x/text v0.38.0 // indirect
+       golang.org/x/sync v0.22.0 // indirect
+       golang.org/x/text v0.40.0 // indirect
        golang.org/x/time v0.15.0 // indirect
-       google.golang.org/genproto v0.0.0-20260622175928-b703f567277d // 
indirect
-       google.golang.org/genproto/googleapis/api 
v0.0.0-20260622175928-b703f567277d // indirect
+       google.golang.org/genproto v0.0.0-20260720171339-e059f2f05d78 // 
indirect
+       google.golang.org/genproto/googleapis/api 
v0.0.0-20260720171339-e059f2f05d78 // indirect
        gopkg.in/yaml.v3 v3.0.1 // indirect
 )
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/go.sum new/sops-3.13.3/go.sum
--- old/sops-3.13.2/go.sum      2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/go.sum      2026-07-23 06:56:08.000000000 +0200
@@ -5,24 +5,24 @@
 cloud.google.com/go v0.26.0/go.mod 
h1:aQUYkXzVsufM+DwF1aE+0xfcU+56JwCaLick0ClmMTw=
 cloud.google.com/go v0.123.0 h1:2NAUJwPR47q+E35uaJeYoNhuNEM9kM8SjgRgdeOJUSE=
 cloud.google.com/go v0.123.0/go.mod 
h1:xBoMV08QcqUGuPW65Qfm1o9Y4zKZBpGS+7bImXLTAZU=
-cloud.google.com/go/auth v0.20.0 
h1:kXTssoVb4azsVDoUiF8KvxAqrsQcQtB53DcSgta74CA=
-cloud.google.com/go/auth v0.20.0/go.mod 
h1:942/yi/itH1SsmpyrbnTMDgGfdy2BUqIKyd0cyYLc5Q=
+cloud.google.com/go/auth v0.22.0 
h1:Xp9wAKkLoeaYb5pYZZoQGz4E9sdPxIbzS3gywZE3ciQ=
+cloud.google.com/go/auth v0.22.0/go.mod 
h1:M9o2Oz+YI2jAfxewJgb1vyI3vceHF+eohmxyzmrl+9s=
 cloud.google.com/go/auth/oauth2adapt v0.2.8 
h1:keo8NaayQZ6wimpNSmW5OPc283g65QNIiLpZnkHRbnc=
 cloud.google.com/go/auth/oauth2adapt v0.2.8/go.mod 
h1:XQ9y31RkqZCcwJWNSx2Xvric3RrU88hAYYbjDWYDL+c=
 cloud.google.com/go/compute/metadata v0.9.0 
h1:pDUj4QMoPejqq20dK0Pg2N4yG9zIkYGdBtwLoEkH9Zs=
 cloud.google.com/go/compute/metadata v0.9.0/go.mod 
h1:E0bWwX5wTnLPedCKqk3pJmVgCBSM6qQI1yTBdEb3C10=
-cloud.google.com/go/iam v1.11.0 h1:KieQ9Pb+LLPak1O3Rv3GgCxhnmkYf7Xyh0P5HfF1jFM=
-cloud.google.com/go/iam v1.11.0/go.mod 
h1:KP+nKGugNJW4LcLx1uEZcq1ok5sQHFaQehQNl4QDgV4=
-cloud.google.com/go/kms v1.31.0 h1:LS8N92OxFDgOLg5NCo3OmbvjtQAIVT5gUHVLKIDHaFE=
-cloud.google.com/go/kms v1.31.0/go.mod 
h1:YIyXZym11R5uovJJt4oN5eUL3oPmirF3yKeIh6QAf4U=
-cloud.google.com/go/logging v1.18.0 
h1:KhzZq+1cSkPH9YUaKLLhLtQxIHitVayBmk0sGfoM9+k=
-cloud.google.com/go/logging v1.18.0/go.mod 
h1:ZGKnpBaURITh+g/uom2VhbiFoFWvejcrHPDhxFtU/gI=
-cloud.google.com/go/longrunning v1.1.0 
h1:qJ0R0IA8ONaRCNWTRPAS0iAmt1bj3TVgJ40z7ZGRslE=
-cloud.google.com/go/longrunning v1.1.0/go.mod 
h1:tH+A/6UvNypiPJWAQaKCsh+xiGbB23wUO8egwUXlD2E=
-cloud.google.com/go/monitoring v1.29.0 
h1:AHhDsFaSax1/4k+qlIDX/SDGe6hggnfXJ9dkgD9qBPY=
-cloud.google.com/go/monitoring v1.29.0/go.mod 
h1:72NOVjJXHY/HBfoLT0+qlCZBT059+9VXLeAnL2PeeVM=
-cloud.google.com/go/storage v1.63.0 
h1:hvXF2xfg9I32bjujggxgkEZn/Ej6sJ9pieFgeueBLrQ=
-cloud.google.com/go/storage v1.63.0/go.mod 
h1:tirWVptrFNo5GEX2DQ47JooF7yaweJdAJ1hYAVMvKzE=
+cloud.google.com/go/iam v1.12.0 h1:Aki3bX9aHUDKPHfnRJfDcTdVedvy6quGBQcTqx3DRXk=
+cloud.google.com/go/iam v1.12.0/go.mod 
h1:FEZ4lXpADAC2AIpQY7LANNjjwyQ2jK439CI2VaD+sLY=
+cloud.google.com/go/kms v1.32.0 h1:s+rEluaaZKhLVjrIWG7uNBsnWbiitElzNzFGyp6+nIg=
+cloud.google.com/go/kms v1.32.0/go.mod 
h1:CSGvW6GnMQbY+1nOHcIzhMtHSbExXlOmCKjWtYVjcpA=
+cloud.google.com/go/logging v1.19.0 
h1:NCqhdVUg3wQ8Cobdf16FDSuTGi3+6+hdSBHrY5TsR6Q=
+cloud.google.com/go/logging v1.19.0/go.mod 
h1:i40NZCHC9Gqvod4yE+yQfDWwlgwW/SrshkkGibCHxcA=
+cloud.google.com/go/longrunning v1.2.0 
h1:WjYH3YHBGCxGJP9M4dWGHBfXr/cFIjMkNgWcJj7/iMM=
+cloud.google.com/go/longrunning v1.2.0/go.mod 
h1:5KMQALFGOCtFoi2xSOA1u3H7WKlhmckgiyFw7+LGQp0=
+cloud.google.com/go/monitoring v1.30.0 
h1:r/d+JUbyKmJ8b07iznuKfzVzrIXTWxHQ3lBRm3x2LlY=
+cloud.google.com/go/monitoring v1.30.0/go.mod 
h1:htlUR0QWVMrjFzZmN4LGnMAve9xB/eduwjmINxVZ8RM=
+cloud.google.com/go/storage v1.63.1 
h1:CYXILV9G4CH0C18IQ9+V0h4XiqD2LhKnMLO0o7uJWNs=
+cloud.google.com/go/storage v1.63.1/go.mod 
h1:lWyAtwvDZHdL3k68WVKbESP6bmWaV23ZJJ/JEVw/ZaQ=
 cloud.google.com/go/trace v1.16.0 
h1:GmQovzFc5F0CNfl0VLgL64aoTtu7xsM0YajW2GlG9+E=
 cloud.google.com/go/trace v1.16.0/go.mod 
h1:r+bdAn16dKLSV1G2D5v3e58IlQlizfxWrUfjx7kM7X0=
 dario.cat/mergo v1.0.2 h1:85+piFYR1tMbRrLcDwR18y4UKJ3aH1Tbzi24VRW1TK8=
@@ -53,60 +53,60 @@
 github.com/AzureAD/microsoft-authentication-library-for-go v1.7.2/go.mod 
h1:HKpQxkWaGLJ+D/5H8QRpyQXA1eKjxkFlOMwck5+33Jk=
 github.com/BurntSushi/toml v0.3.1/go.mod 
h1:xHWCNGjB5oqiDr8zfno3MHue2Ht5sIBksp03qcyfWMU=
 github.com/BurntSushi/toml v1.5.0/go.mod 
h1:ukJfTF/6rtPPRCnwkur4qwRxa8vTRFBF0uk2lLoLwho=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.33.0 h1:l7+6kwRMJNwdCvYdDl7Eax+wzEYHSnNY7zrrfbhDdTA=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.33.0/go.mod h1:pJTkW8hEUIIi3Pf65lPZOnn4Y81yCllX6IWk2jNXdkM=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.57.0 h1:jLdiS1vO+XJFyDSWRHBx56r4s/NNtcl5J6KyCcWUX/w=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.57.0/go.mod h1:8lmpHY+1VRoteiOwyrQMDt1YGXOrFKCz+1wJW7n3ODY=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/cloudmock 
v0.57.0 h1:cSjUzZ7KU8hicTgzaSv9NmSyM9fTVK3y5lsBUl3wOis=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/cloudmock 
v0.57.0/go.mod h1:dzcEjy1WJ0Q4u9twNR3LcLhNoYMRCrMCMafpxa0TjPQ=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.57.0 h1:RoO5+d7uCmDqovLrHCr2/BuViUXvdcrNxyNM1pN9dDQ=
-github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.57.0/go.mod h1:YqwkQPrWSC7+byyc1VlKbWLBF5JsW5IoL6xUkemYSXk=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.34.0 h1:yzIYdwuro811Z27D3T80Wkd3rqZzb0K43nner7Eh1yE=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp 
v1.34.0/go.mod h1:pJTkW8hEUIIi3Pf65lPZOnn4Y81yCllX6IWk2jNXdkM=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.58.0 h1:ZYGajzJNcirVZpT1rltgf9iM+j9zZ4v8V9DrF+xKRJ8=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric 
v0.58.0/go.mod h1:PDQyYBOzGtQgvshQI//UiXyzuMHCz0ndyu+4W8X82vM=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/cloudmock 
v0.58.0 h1:IBF8BbhKJkMsON/eY+LMu3aF3XMiotCb9KvkUmEkOJo=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/cloudmock 
v0.58.0/go.mod h1:dzcEjy1WJ0Q4u9twNR3LcLhNoYMRCrMCMafpxa0TjPQ=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.58.0 h1:SBZzZCiPmDrUV7NSCWY54OnKikO/oTydPCvyEyYaDDE=
+github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping
 v0.58.0/go.mod h1:YqwkQPrWSC7+byyc1VlKbWLBF5JsW5IoL6xUkemYSXk=
 github.com/Microsoft/go-winio v0.6.2 
h1:F2VQgta7ecxGYO8k3ZZz3RS8fVIXVxONVUPlNERoyfY=
 github.com/Microsoft/go-winio v0.6.2/go.mod 
h1:yd8OoFMLzJbo9gZq8j5qaps8bJ9aShtEA8Ipt1oGCvU=
 github.com/Nvveen/Gotty v0.0.0-20120604004816-cd527374f1e5 
h1:TngWCqHvy9oXAN6lEVMRuU21PR1EtLVZJmdB18Gu3Rw=
 github.com/Nvveen/Gotty v0.0.0-20120604004816-cd527374f1e5/go.mod 
h1:lmUJ/7eu/Q8D7ML55dXQrVaamCz2vxCfdQBasLZfHKk=
 github.com/ProtonMail/go-crypto v1.4.1 
h1:9RfcZHqEQUvP8RzecWEUafnZVtEvrBVL9BiF67IQOfM=
 github.com/ProtonMail/go-crypto v1.4.1/go.mod 
h1:e1OaTyu5SYVrO9gKOEhTc+5UcXtTUa+P3uLudwcgPqo=
-github.com/aws/aws-sdk-go-v2 v1.42.0 
h1:XvXMJTkFQtpBKIWZnmr9ZEOc2InWM2yldjXEJ/bymhA=
-github.com/aws/aws-sdk-go-v2 v1.42.0/go.mod 
h1:27+ACypSLljLAEKsCYOmrjKh83vuTRkuAe9Uv/3A4bg=
-github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.13 
h1:p1BBrg/Hhp6uK7zpejeI8QFXHJeC/mynzi04Sl03k9g=
-github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.13/go.mod 
h1:8cIfkE9MDhkRZGpQ22aV6/lkYeYSozpz16Smrs5x4Ls=
-github.com/aws/aws-sdk-go-v2/config v1.32.25 
h1:ACCejvStYoilgwrfegSt5ZntCbPrk52qfwyNcnl3omM=
-github.com/aws/aws-sdk-go-v2/config v1.32.25/go.mod 
h1:LJyU8sDRbXUxFn8xMJIGP+v9QYYwveNLI8a/giAOiAs=
-github.com/aws/aws-sdk-go-v2/credentials v1.19.24 
h1:2hQqYCV9yqyePQ9o6dCrZc/zO8U3TwPr9mIKlZnPu/I=
-github.com/aws/aws-sdk-go-v2/credentials v1.19.24/go.mod 
h1:IDwpACtwqHLISdzfwUUNq4P9DsB/h5BLg4FwJPNfqFY=
-github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.29 
h1:r6qZHbT+wxgWO/e9vYNUEtg7lv5+UN3pRqKhLXvnArg=
-github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.29/go.mod 
h1:QRnaRcTVGKPGRy8w78HMQtKUGRYcnMZAANATkeVA6Mo=
-github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.28 
h1:ez4y5o7sa0uaRI8BquYOXtZpioUPhbQEh7Igm88oV9U=
-github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.28/go.mod 
h1:TpmZOrQA12XKEpVypgBGZSQBsm1WUTndCiSnbDsbvug=
-github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.29 
h1:f3vKqSo13fhTYb+JEcXwXefZQE26I1FB5eTSniU67ko=
-github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.29/go.mod 
h1:MzoLFUArKGpGD+ukmPiTPG1X5x4o6M2kq4v2dr1FiEc=
-github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.29 
h1:RdwIf/CuUsvJX3RgJagbOyotl/cxoLY4xviKuE7p2GY=
-github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.29/go.mod 
h1:71wt8W2EgswdZy9Mf9KNnzxZ3TiZlv4caKghPktDOkA=
-github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.30 
h1:VTGy885W5DKBxWRUJbym9hytNaYzsyaPkCHGRRMAOhU=
-github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.30/go.mod 
h1:AS0HycUvJRFvTt613AYDOgO2jzw+00cVSMny8XB3yMY=
-github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.12 
h1:ZD2+BSw9vFsNlKYIasSNt3uDbjqqXIBcM13UJv/Lx2k=
-github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.12/go.mod 
h1:Ms4zlcVBbXbiP7EVLhl+lgjvA/a7YphqQ3Ih3174EmI=
-github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.22 
h1:V51LGlOq/1VsDsHUdoklAQi7rMmx4qQubvFYAlP2254=
-github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.22/go.mod 
h1:4Pzhyz8hJOm2bepgl+NjvRx8vlUFAIIvJnZ/MkcNPpU=
-github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.29 
h1:DRebniUGZ2MqiiIVmQJ04vIXr918hubdHMnarSLEWyU=
-github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.29/go.mod 
h1:LfRkPCD8YHDM2E5eTkos2UpwYeZnBcVarTa8L59bJHA=
-github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.29 
h1:hiME6pBzC7OTl9LMtlyTWBuEl1f4QBcUmFDKC7MLXtc=
-github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.29/go.mod 
h1:G7RP+uhagpKtKhd1BM9N6JQqjCcGEU47K5lBVZQyRQw=
-github.com/aws/aws-sdk-go-v2/service/kms v1.53.4 
h1:PEgVSsWtR8NNxsDxFL2Ywisi7R+1EFQARGsT4q3mWwI=
-github.com/aws/aws-sdk-go-v2/service/kms v1.53.4/go.mod 
h1:3EeKyDGPGSCEphG2OolwNGNF45RvQIfm27AYYpfEWrw=
-github.com/aws/aws-sdk-go-v2/service/s3 v1.104.0 
h1:ta8csKy5vN91F3i5gGR85lFV0srBqySEji7Jroes6rE=
-github.com/aws/aws-sdk-go-v2/service/s3 v1.104.0/go.mod 
h1:77ZAgynvx1txMvDG8gGWoWkO1augYDxkp9JElWFgjQU=
-github.com/aws/aws-sdk-go-v2/service/signin v1.2.0 
h1:3nXpRcFwRCW8n7HgO2QGy0Dc20eQNfBuUemGQhpF8m8=
-github.com/aws/aws-sdk-go-v2/service/signin v1.2.0/go.mod 
h1:LxYujSTLPRlp2vTtcUO/+1ilrew8ytt6SvQyOgejzFQ=
-github.com/aws/aws-sdk-go-v2/service/sso v1.31.3 
h1:ey1XLTYXb9PcLt4535632o5kCGXNXEhNb620Dqwuylo=
-github.com/aws/aws-sdk-go-v2/service/sso v1.31.3/go.mod 
h1:Lk7PlmoTYryQmyBG0EXqj5BcUbj3whXdU2s3yGI3EAc=
-github.com/aws/aws-sdk-go-v2/service/ssooidc v1.36.6 
h1:yLr03zQE/5Eu5l3QU0Si+xMbLMbSDF2YXsigqXngs6g=
-github.com/aws/aws-sdk-go-v2/service/ssooidc v1.36.6/go.mod 
h1:Q5N6icH+KJZDLh+ESNwzdv6cZ6vLFF/egy3IOxWhmz4=
-github.com/aws/aws-sdk-go-v2/service/sts v1.43.3 
h1:VrIhKRCSK1umelSgB9RghvA9RTUYeQffyAS5ApXehNI=
-github.com/aws/aws-sdk-go-v2/service/sts v1.43.3/go.mod 
h1:r8wkDOuLaaMFqFiYAb8dGY2A3gJCOujMc6CFOVC4Zhc=
-github.com/aws/smithy-go v1.27.3 
h1:F3Zb497UhhskkfpJmfkXswyo+t0sh9OTBnIHjogWbVY=
-github.com/aws/smithy-go v1.27.3/go.mod 
h1:YE2RhdIuDbA5E5bTdciG9KrW3+TiEONeUWCqxX9i1Fc=
+github.com/aws/aws-sdk-go-v2 v1.42.1 
h1:9eOTgu1z/dVtYpNZ3/8/XbbaX0x/BqE3HUzAzs6K0ek=
+github.com/aws/aws-sdk-go-v2 v1.42.1/go.mod 
h1:5pKeft2eJj+gElQ38Jqg4ibCqh+/AK33/0X3hip7IjM=
+github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.14 
h1:3IZY0XAJquT3aHzbkHfPzy4ACPcEjVG0x87KOwtpqGY=
+github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.14/go.mod 
h1:zwM6veDkhGgQFqkBy+uT28AAYpLu+uFMlPl+rCg/73E=
+github.com/aws/aws-sdk-go-v2/config v1.32.30 
h1:XwsEzpTJfQYJbFicz/QMLwAZdyeNVVoOEkbF7R3gPJk=
+github.com/aws/aws-sdk-go-v2/config v1.32.30/go.mod 
h1:Ud32SuMc+/9BGxfpSVld7HrE2o05JwKmXY4M3jOQNZU=
+github.com/aws/aws-sdk-go-v2/credentials v1.19.29 
h1:WHZGssHH887cO0ox07SIQZsFx3MKD4ps6w0xUEmnKYQ=
+github.com/aws/aws-sdk-go-v2/credentials v1.19.29/go.mod 
h1:Mhl0xR6zjguiuj00XRx2wMx22sAltk7oya39sT7fdg8=
+github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.30 
h1:/hi1JADLEW9YYryEz1w4GQu0EtP23pP553Cf9KgsDV4=
+github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.30/go.mod 
h1:/3AOgy4K17Dm4ucMZVC/MJkzy5kmfKUcINRHZyo0koQ=
+github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.34 
h1:Pn7OsMwBLbkZ6OnCxWHAjf0L/22H8cnhxZC0uPwtMtg=
+github.com/aws/aws-sdk-go-v2/feature/s3/manager v1.22.34/go.mod 
h1:eToXR/Gk1uqpn04eSmdgVXwfS0WvH8aG4eBFr8ygbpU=
+github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.30 
h1:xM/Is9cKMHa8Jj8zkvWhvrFkZsXJV9E+BB4g0HW0duQ=
+github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.30/go.mod 
h1:WueJeNDZvK1fMYEWJIkcivBfEzUkTpBhzlrUKKY8EuA=
+github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.30 
h1:jn46zC9LdsVR/ZpMIJqMqb8hHv31BlLx3ulVqNspUOk=
+github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.30/go.mod 
h1:1hTMsAgbdS/AtUi4bw8+gUuh1pceo+eXRLfpSuSQj3M=
+github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.31 
h1:3GUprIsfmGcC5SACIyB0e7E0BM1O1b3Erl5CePYIAeQ=
+github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.31/go.mod 
h1:7PuV1yl5e2xnUbm+RqvVg5i2iBM8EyijZNoI9wsOoOc=
+github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.13 
h1:mbRIur/BiHK6SKPjoBIXSE/hJ6g6JGRLuxQy1jGjlN4=
+github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.13/go.mod 
h1:ITg9em2KbJx1s0y4aqRX5OYWG6HBZ5TVR//OdpEZ2CQ=
+github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.23 
h1:9Fjh6fi/U5JEStVZijmaMpUwE/gvBJj7x2B/PjbO9To=
+github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.23/go.mod 
h1:iMoT2f1tClxrWAAnKCXjZQ6LOmfLrMG14wmnWpM+F14=
+github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.30 
h1:/Z5jmNrKsSD7EmDjzAPsm/3L9IuOkzaynklJZ1qX7S4=
+github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.30/go.mod 
h1:lEzEZnOosE7zi8Z6royW1cFJTD9fpab4Ul1SBrllewk=
+github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.31 
h1:uao4A3QZ5UmB326V6KF+qRpv9Tjz7IlnlnTbbANntlU=
+github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.31/go.mod 
h1:I/1+z0VwL1GhQyLgkoHDlygpUZ+iTAwOQ/NsftiUL2I=
+github.com/aws/aws-sdk-go-v2/service/kms v1.54.1 
h1:aeJAJyvWS3gQ679pJbz8ZdOh3MViD1zvEdoZMVEawbg=
+github.com/aws/aws-sdk-go-v2/service/kms v1.54.1/go.mod 
h1:0RXNc6Yf3AvSMldGD6Lcch96Ojlw2TtGnHsqfD/L4u8=
+github.com/aws/aws-sdk-go-v2/service/s3 v1.105.2 
h1:5C00eQYpTrgQXnp6V3P6P7zPElna3AXvlukbANE6nJI=
+github.com/aws/aws-sdk-go-v2/service/s3 v1.105.2/go.mod 
h1:zdmCoFO/dSI7GlrwsPqFJI+WlFnSU4Tc8TJnlXrM1Do=
+github.com/aws/aws-sdk-go-v2/service/signin v1.4.1 
h1:V7ZZ300WPXGjvkyore5DGe0ljVPOxCXie/thWdtSBXE=
+github.com/aws/aws-sdk-go-v2/service/signin v1.4.1/go.mod 
h1:mxC0nT/C8wMMS97DemZPzvUZxvIt+2Iq+eS3JdFZGgg=
+github.com/aws/aws-sdk-go-v2/service/sso v1.32.1 
h1:gYFYh4iLLcAOJRLNPY2aD2g9DIhKn4eof8UkIrr1rTk=
+github.com/aws/aws-sdk-go-v2/service/sso v1.32.1/go.mod 
h1:u8af9Nqkmqnr96f7v9nHqzZT9XBwbXEkTiqT4ROuJSE=
+github.com/aws/aws-sdk-go-v2/service/ssooidc v1.37.1 
h1:arjT9Cm3/WYbGmD5TUZHk4UQn4Lle1fUNZs5FC6CtF0=
+github.com/aws/aws-sdk-go-v2/service/ssooidc v1.37.1/go.mod 
h1:DMPWJBjYs6+3+f/qhBFEFPPlQ6NlhWjai3dJNvipJ84=
+github.com/aws/aws-sdk-go-v2/service/sts v1.44.1 
h1:RvfHDg+xvAeZ+5741vUEjpOVtYSIm93W2zhx10Xtydw=
+github.com/aws/aws-sdk-go-v2/service/sts v1.44.1/go.mod 
h1:9gdl4RrflIdpDb2TlXshWgR1F9TeCkvqDx77Vpr4Z/Q=
+github.com/aws/smithy-go v1.27.4 
h1:JQcphmBN4f0q/sPqXqROIItRNV/hy10cgu7CsFy616M=
+github.com/aws/smithy-go v1.27.4/go.mod 
h1:YE2RhdIuDbA5E5bTdciG9KrW3+TiEONeUWCqxX9i1Fc=
 github.com/blang/semver v3.5.1+incompatible 
h1:cQNTCjp13qL8KC3Nbxr/y2Bqb63oX6wdnnjpJbkM4JQ=
 github.com/blang/semver v3.5.1+incompatible/go.mod 
h1:kRBLl5iJ+tD4TcOOxsy/0fnwebNt5EWlYSAyrTnjyyk=
 github.com/cenkalti/backoff/v4 v4.3.0 
h1:MyRJ/UdXutAwSAT+s3wNd7MfTIcy71VQueUuFK343L8=
@@ -136,8 +136,8 @@
 github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc/go.mod 
h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
 github.com/distribution/reference v0.6.0 
h1:0IXCQ5g4/QMHHkarYzh5l+u8T3t73zM5QvfrDyIgxBk=
 github.com/distribution/reference v0.6.0/go.mod 
h1:BbU0aIcezP1/5jX/8MP0YiH4SdvB5Y4f/wlDRiLyi3E=
-github.com/docker/cli v29.6.1+incompatible 
h1:oO7F4nn3Ovr/5TlfTUWFbMwBSS/B7Xs6Epv26gBrUP8=
-github.com/docker/cli v29.6.1+incompatible/go.mod 
h1:JLrzqnKDaYBop7H2jaqPtU4hHvMKP+vjCwu2uszcLI8=
+github.com/docker/cli v29.6.2+incompatible 
h1:/bjePvcbbFTnRrMfWJBY7AjfICdsiLVgHn6LwTVOcqw=
+github.com/docker/cli v29.6.2+incompatible/go.mod 
h1:JLrzqnKDaYBop7H2jaqPtU4hHvMKP+vjCwu2uszcLI8=
 github.com/docker/go-connections v0.7.0 
h1:6SsRfJddP22WMrCkj19x9WKjEDTB+ahsdiGYf0mN39c=
 github.com/docker/go-connections v0.7.0/go.mod 
h1:no1qkHdjq7kLMGUXYAduOhYPSJxxvgWBh7ogVvptn3Q=
 github.com/docker/go-units v0.5.0 
h1:69rxXcBk27SvSaaxTtLh/8llcHD8vYHT7WSdRZ/jvr4=
@@ -212,10 +212,10 @@
 github.com/google/shlex v0.0.0-20191202100458-e7afc7fbc510/go.mod 
h1:pupxD2MaaD3pAXIBCelhxNneeOaAeabZDe5s4K6zSpQ=
 github.com/google/uuid v1.6.0 h1:NIvaJDMOsjHA8n1jAhLSgzrAzy1Hgr+hNrb57e+94F0=
 github.com/google/uuid v1.6.0/go.mod 
h1:TIyPZe4MgqvfeYDBFedMoGGpEw/LqOeaOT+nhxU+yHo=
-github.com/googleapis/enterprise-certificate-proxy v0.3.17 
h1:73NfMHdiqo9JFU9+7a5ExpVa10/R29pXfZIaW559nrg=
-github.com/googleapis/enterprise-certificate-proxy v0.3.17/go.mod 
h1:rSEsBUemEBZEexP2y6jPp16LUmUbjmSbcPMQizR0o4k=
-github.com/googleapis/gax-go/v2 v2.22.0 
h1:PjIWBpgGIVKGoCXuiCoP64altEJCj3/Ei+kSU5vlZD4=
-github.com/googleapis/gax-go/v2 v2.22.0/go.mod 
h1:irWBbALSr0Sk3qlqb9SyJ1h68WjgeFuiOzI4Rqw5+aY=
+github.com/googleapis/enterprise-certificate-proxy v0.3.18 
h1:hvVi34VucdrV1IIsiWuqYM8kutw/92MxNEFxCJZEh0k=
+github.com/googleapis/enterprise-certificate-proxy v0.3.18/go.mod 
h1:rSEsBUemEBZEexP2y6jPp16LUmUbjmSbcPMQizR0o4k=
+github.com/googleapis/gax-go/v2 v2.23.0 
h1:Tchl7qkvE7Ip3y+ztvNufYFvkfqTe7NfLTYGIdJRLuE=
+github.com/googleapis/gax-go/v2 v2.23.0/go.mod 
h1:rBQKOVJCdb8IFEzg+FCwlt1LP/xMDGuqUXhUG+XMXEg=
 github.com/goware/prefixer v0.0.0-20160118172347-395022866408 
h1:Y9iQJfEqnN3/Nce9cOegemcy/9Ai5k3huT6E80F3zaw=
 github.com/goware/prefixer v0.0.0-20160118172347-395022866408/go.mod 
h1:PE1ycukgRPJ7bJ9a1fdfQ9j8i/cEcRAoLZzbxYpNB/s=
 github.com/hashicorp/errwrap v1.0.0/go.mod 
h1:YH+1FKiLXxHSkmPseP+kNlulaMuP3n2brvKWEqk/Jc4=
@@ -241,8 +241,8 @@
 github.com/hashicorp/hcl v1.0.1-vault-7/go.mod 
h1:XYhtn6ijBSAj6n4YqAaf7RBPS4I06AItNorpy+MoQNM=
 github.com/hashicorp/vault/api v1.23.0 
h1:gXgluBsSECfRWTSW9niY2jwg2e9mMJc4WoHNv4g3h6A=
 github.com/hashicorp/vault/api v1.23.0/go.mod 
h1:zransKiB9ftp+kgY8ydjnvCU7Wk8i9L0DYWpXeMj9ko=
-github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.202 
h1:GLG7UGUNWcZ65fFYFwi/tbC7IdTG4JAKwc9H+8H5VzE=
-github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.202/go.mod 
h1:M+yna96Fx9o5GbIUnF3OvVvQGjgfVSyeJbV9Yb1z/wI=
+github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.207 
h1:lgMtpjpIWPw0gbCAko23dRKl66ZPUmeAOidjKFkub2E=
+github.com/huaweicloud/huaweicloud-sdk-go-v3 v0.1.207/go.mod 
h1:M+yna96Fx9o5GbIUnF3OvVvQGjgfVSyeJbV9Yb1z/wI=
 github.com/json-iterator/go v1.1.13-0.20220915233716-71ac16282d12 
h1:9Nu54bhS/H/Kgo2/7xNSUuC5G28VR8ljfrLKU2G4IjU=
 github.com/json-iterator/go v1.1.13-0.20220915233716-71ac16282d12/go.mod 
h1:TBzl5BIHNXfS9+C35ZyJaklL7mLDbgUkcgXzSLa8Tk0=
 github.com/keybase/go-keychain v0.0.1 
h1:way+bWYa6lDppZoZcgMbYsvC7GxljxrskdNInRtuthU=
@@ -261,8 +261,8 @@
 github.com/mattn/go-colorable v0.1.15 
h1:+u9SLTRGnXv73cEsnsmoZBom+dMU88B2M0aDcWy0/jY=
 github.com/mattn/go-colorable v0.1.15/go.mod 
h1:6LmQG8QLFO4G5z1gPvYEzlUgJ2wF+stgPZH1UqBm1s8=
 github.com/mattn/go-isatty v0.0.12/go.mod 
h1:cbi8OIDigv2wuxKPP5vlRcQ1OAZbq2CE4Kysco4FUpU=
-github.com/mattn/go-isatty v0.0.22 
h1:j8l17JJ9i6VGPUFUYoTUKPSgKe/83EYU2zBC7YNKMw4=
-github.com/mattn/go-isatty v0.0.22/go.mod 
h1:ZXfXG4SQHsB/w3ZeOYbR0PrPwLy+n6xiMrJlRFqopa4=
+github.com/mattn/go-isatty v0.0.23 
h1:cYwCQTQf3HB6xUC+BtyCLZNr7IzbOmoZbmssVNzSyiQ=
+github.com/mattn/go-isatty v0.0.23/go.mod 
h1:nMCL3Zebbrt45jsMDgnfIwz6ydEQApk5oEI3HqDio6A=
 github.com/mitchellh/go-homedir v1.1.0 
h1:lukF9ziXFxDFPkA1vsr5zpc1XuPDn/wFntq5mG+4E0Y=
 github.com/mitchellh/go-homedir v1.1.0/go.mod 
h1:SfyaCUpYCn1Vlf4IUYiD9fPX4A5wJrkLzIz1N1q0pr0=
 github.com/mitchellh/go-wordwrap v1.0.1 
h1:TLuKupo69TCn6TQSyGxwI1EblZZEsQ0vMlAFQflz0v0=
@@ -375,8 +375,8 @@
 golang.org/x/crypto v0.0.0-20201012173705-84dcc777aaee/go.mod 
h1:LzIPMQfyMNhhGPhUkYOs5KpL4U8rLKemX1yGLhDgUto=
 golang.org/x/crypto v0.0.0-20210921155107-089bfa567519/go.mod 
h1:GvvjBRRGRdwPK5ydBHafDWAxML/pGHZbMvKqRZ5+Abc=
 golang.org/x/crypto v0.0.0-20220622213112-05595931fe9d/go.mod 
h1:IxCIyHEi3zRg3s0A5j5BB6A9Jmi73HwBIUl50j+osU4=
-golang.org/x/crypto v0.53.0 h1:QZ4Muo8THX6CizN2vPPd5fBGHyogrdK9fG4wLPFUsto=
-golang.org/x/crypto v0.53.0/go.mod 
h1:DNLU434OwVakk9PzuwV8w62mAJpRJL3vsgcfp4Qnsio=
+golang.org/x/crypto v0.54.0 h1:YLIA59K4fiNzHzjnZt2tUJQjQtUWfWbeHBqKtk3eScw=
+golang.org/x/crypto v0.54.0/go.mod 
h1:KWL8ny2AZdGR2cWmzeHrp2azQPGogOv+HeQaVEXC2dk=
 golang.org/x/exp v0.0.0-20190121172915-509febef88a4/go.mod 
h1:CJ0aWSM057203Lf6IL+f9T1iT9GByDxfZKAQTCR3kQA=
 golang.org/x/lint v0.0.0-20181026193005-c67002cb31c3/go.mod 
h1:UVdnD1Gm6xHRNCYTkRU2/jEulfH38KcIWyp/GAMgvoE=
 golang.org/x/lint v0.0.0-20190227174305-5b3e6a55c961/go.mod 
h1:wehouNa3lNwaWXcvxsM5YxQ5yQlVC4a0KAMCusXpPoU=
@@ -392,8 +392,8 @@
 golang.org/x/net v0.0.0-20210226172049-e18ecbb05110/go.mod 
h1:m0MpNAwzfU5UDzcl9v0D8zg8gWTRqZa9RBIspLL5mdg=
 golang.org/x/net v0.0.0-20211112202133-69e39bad7dc2/go.mod 
h1:9nx3DQGgdP8bBQD5qxJ1jj9UTztislL4KSBs9R2vV5Y=
 golang.org/x/net v0.0.0-20220722155237-a158d28d115b/go.mod 
h1:XRhObCWvk6IyKnWLug+ECip1KBveYUHfp+8e9klMJ9c=
-golang.org/x/net v0.56.0 h1:Rw8j/hFzGvJUZwNBXnAtf5sVDVt+65SK2C7IxCxZt5o=
-golang.org/x/net v0.56.0/go.mod h1:D3Ku6r+V6JROoZK144D2XfMHFcMq/0zSfLelVTCFKec=
+golang.org/x/net v0.57.0 h1:K5+3DljvIuDG9/Jv9rvyMywYNFCQ9RSUY6OOTTkT+tE=
+golang.org/x/net v0.57.0/go.mod h1:KpXc8iv+r3XplLAG/f7Jsf9RPszJzdR0f58q9vGOuEU=
 golang.org/x/oauth2 v0.0.0-20180821212333-d2e6202438be/go.mod 
h1:N/0e6XlmueqKjAGxoOufVs8QHGRruUQn6yWY3a++T0U=
 golang.org/x/oauth2 v0.36.0 h1:peZ/1z27fi9hUOFCAZaHyrpWG5lwe0RJEEEeH0ThlIs=
 golang.org/x/oauth2 v0.36.0/go.mod 
h1:YDBUJMTkDnJS+A4BP4eZBjCqtokkg1hODuPjwiGPO7Q=
@@ -401,8 +401,8 @@
 golang.org/x/sync v0.0.0-20181108010431-42b317875d0f/go.mod 
h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
 golang.org/x/sync v0.0.0-20190423024810-112230192c58/go.mod 
h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
 golang.org/x/sync v0.0.0-20220722155255-886fb9371eb4/go.mod 
h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
-golang.org/x/sync v0.21.0 h1:HLII4xRRTtCRkxYp4HNFF0Js/Og6q2i++KXbg0gHCwM=
-golang.org/x/sync v0.21.0/go.mod 
h1:9xrNwdLfx4jkKbNva9FpL6vEN7evnE43NNNJQ2LF3+0=
+golang.org/x/sync v0.22.0 h1:SZjpbeLmrCk4xhRSZFNZW5gFUeCeFgjekvI/+gfScek=
+golang.org/x/sync v0.22.0/go.mod 
h1:9xrNwdLfx4jkKbNva9FpL6vEN7evnE43NNNJQ2LF3+0=
 golang.org/x/sys v0.0.0-20180830151530-49385e6e1522/go.mod 
h1:STP8DvDyc/dI5b8T5hshtkjS+E42TnysNCUPdjciGhY=
 golang.org/x/sys v0.0.0-20190215142949-d0b11bdaac8a/go.mod 
h1:STP8DvDyc/dI5b8T5hshtkjS+E42TnysNCUPdjciGhY=
 golang.org/x/sys v0.0.0-20190412213103-97732733099d/go.mod 
h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
@@ -417,12 +417,12 @@
 golang.org/x/sys v0.0.0-20220520151302-bc2c85ada10a/go.mod 
h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
 golang.org/x/sys v0.0.0-20220722155257-8c9f86f7a55f/go.mod 
h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
 golang.org/x/sys v0.1.0/go.mod h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
-golang.org/x/sys v0.46.0 h1:noSf2Fq6F8DBgS+LysIkx7rIExoNHJsxOAtPp4rthXw=
-golang.org/x/sys v0.46.0/go.mod h1:4GL1E5IUh+htKOUEOaiffhrAeqysfVGipDYzABqnCmw=
+golang.org/x/sys v0.47.0 h1:o7XGOvZQCADBQQ4Y7VNq2dRWQR7JmOUW8Kxx4ZsNgWs=
+golang.org/x/sys v0.47.0/go.mod h1:4GL1E5IUh+htKOUEOaiffhrAeqysfVGipDYzABqnCmw=
 golang.org/x/term v0.0.0-20201126162022-7de9c90e9dd1/go.mod 
h1:bj7SfCRtBDWHUb9snDiAeCFNEtKQo2Wmx5Cou7ajbmo=
 golang.org/x/term v0.0.0-20210927222741-03fcf44c2211/go.mod 
h1:jbD1KX2456YbFQfuXm/mYQcufACuNUgVhRMnK/tPxf8=
-golang.org/x/term v0.44.0 h1:0rLvDRCtNj0gZkyIXhCyOb2OAzEhLVqc4B+hrsBhrmc=
-golang.org/x/term v0.44.0/go.mod 
h1:7ze4MdzUzLXpSAoFP1H0bOI9aXDqveSvatT5vKcFh2Y=
+golang.org/x/term v0.45.0 h1:NwWyBmoJCbfTHpxrWoZ9C6/VxOf7ic219I8xZZFdrf0=
+golang.org/x/term v0.45.0/go.mod 
h1:9aqxs0blBcrm/n0L9QW0aRVD+ktan8ssZromtqJC43w=
 golang.org/x/text v0.3.0/go.mod h1:NqM8EUOU14njkJ3fqMW+pc6Ldnwhi/IjpwHt7yyuwOQ=
 golang.org/x/text v0.3.2/go.mod h1:bEr9sfX3Q8Zfm5fL9x+3itogRgK3+ptLWKqgva+5dAk=
 golang.org/x/text v0.3.3/go.mod h1:5Zoc/QRtKVWzQhOtBMvqHzDpF6irO9z98xDceosuGiQ=
@@ -430,8 +430,8 @@
 golang.org/x/text v0.3.7/go.mod h1:u+2+/6zg+i71rQMx5EYifcz6MCKuco9NR6JIITiCfzQ=
 golang.org/x/text v0.3.8/go.mod h1:E6s5w1FMmriuDzIBO73fBruAKo1PCIq6d2Q6DHfQ8WQ=
 golang.org/x/text v0.7.0/go.mod h1:mrYo+phRRbMaCq/xk9113O4dZlRixOauAjOtrjsXDZ8=
-golang.org/x/text v0.38.0 h1:sXmwo9DwP3OK9EZ7PqAdaooSGozfl/3a6/xJcbzPRhE=
-golang.org/x/text v0.38.0/go.mod 
h1:YXZt3QhHUKYT53r2lLKFIVi6Ao1jdzrTR/KQ09qyxF4=
+golang.org/x/text v0.40.0 h1:Ub2Z6/xjgF1WrYQz2nuITOEegKFtiIy+rieRJ5lHZKs=
+golang.org/x/text v0.40.0/go.mod 
h1:hpnzDAfGV753zIKo+wk3u1bVKCGPbrnF7+7LBF/UHVY=
 golang.org/x/time v0.15.0 h1:bbrp8t3bGUeFOx08pvsMYRTCVSMk89u4tKbNOZbp88U=
 golang.org/x/time v0.15.0/go.mod 
h1:Y4YMaQmXwGQZoFaVFk4YpCt4FLQMYKZe9oeV/f4MSno=
 golang.org/x/tools v0.0.0-20180917221912-90fa682c2a6e/go.mod 
h1:n7NCudcB/nEzxVGmLbDWY5pfWTLqBcC2KZ6jyYvM4mQ=
@@ -446,24 +446,24 @@
 golang.org/x/xerrors v0.0.0-20200804184101-5ec99f83aff1/go.mod 
h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0=
 gonum.org/v1/gonum v0.17.0 h1:VbpOemQlsSMrYmn7T2OUvQ4dqxQXU+ouZFQsZOx50z4=
 gonum.org/v1/gonum v0.17.0/go.mod 
h1:El3tOrEuMpv2UdMrbNlKEh9vd86bmQ6vqIcDwxEOc1E=
-google.golang.org/api v0.286.0 h1:TdTXMvzYKnWV1/lPbCdbXRqBrkDqjPto22H2xeZZ8LI=
-google.golang.org/api v0.286.0/go.mod 
h1:NlOlUIr8MPoIhT9Bb/oUnRuHbJOLwxb6JSYJM8Yz+jQ=
+google.golang.org/api v0.289.0 h1:DmH0c6NigNFmsvsohM9bxv+MzVhag3aGHnojA5fFQjc=
+google.golang.org/api v0.289.0/go.mod 
h1:weJZ3lldHFYI0DBFNKpJelUDNnusTt5YaOEgxvt8ci8=
 google.golang.org/appengine v1.1.0/go.mod 
h1:EbEs0AVv82hx2wNQdGPgUI5lhzA/G0D9YwlJXL52JkM=
 google.golang.org/appengine v1.4.0/go.mod 
h1:xpcJRLb0r/rnEns0DIKYYv+WjYCduHsrkT7/EB5XEv4=
 google.golang.org/genproto v0.0.0-20180817151627-c66870c02cf8/go.mod 
h1:JiN7NxoALGmiZfu7CAH4rXhgtRTLTxftemlI0sWmxmc=
 google.golang.org/genproto v0.0.0-20190819201941-24fa4b261c55/go.mod 
h1:DMBHOl98Agz4BDEuKkezgsaosCRResVns1a3J2ZsMNc=
-google.golang.org/genproto v0.0.0-20260622175928-b703f567277d 
h1:CP5omUq8AJTiWMrPKM1WRLJ7zZeXd9OPcQD3TbBNAyY=
-google.golang.org/genproto v0.0.0-20260622175928-b703f567277d/go.mod 
h1:DrwuGJgFSEVNpv3S5Q5VxhRTvdnjauw9GtvwVOEARfA=
-google.golang.org/genproto/googleapis/api v0.0.0-20260622175928-b703f567277d 
h1:xr2lwHI91bn3UiXcnyzRMQjp2LRiM8wEHzwUaE0YhTs=
-google.golang.org/genproto/googleapis/api 
v0.0.0-20260622175928-b703f567277d/go.mod 
h1:O0ZOWSrfWfJ+Z5HbwZ+wNtHsg/vk1k2C/w67eww8PfQ=
-google.golang.org/genproto/googleapis/rpc v0.0.0-20260622175928-b703f567277d 
h1:mpAgMyM9vQHxycBlDq50y1VHpfSfVwzXvrQKtYbXuUY=
-google.golang.org/genproto/googleapis/rpc 
v0.0.0-20260622175928-b703f567277d/go.mod 
h1:4Hqkh8ycfw05ld/3BWL7rJOSfebL2Q+DVDeRgYgxUU8=
+google.golang.org/genproto v0.0.0-20260720171339-e059f2f05d78 
h1:NO3LCWyMAM/f/RDLvCC8B/NEvuYqOQAP12XWoyB4os8=
+google.golang.org/genproto v0.0.0-20260720171339-e059f2f05d78/go.mod 
h1:Wz2wFJntZFmLGo7pLDXZ3wYk5hyc0Mb+SkHhDDXT+lU=
+google.golang.org/genproto/googleapis/api v0.0.0-20260720171339-e059f2f05d78 
h1:A6tVI++lXZuQiRnz7E+iFluPQ+silVmlkbryjSO1z8c=
+google.golang.org/genproto/googleapis/api 
v0.0.0-20260720171339-e059f2f05d78/go.mod 
h1:WRrQ7/7N19PypuT0fxLOL5Lq0waoiRri4FbtHDEKrGE=
+google.golang.org/genproto/googleapis/rpc v0.0.0-20260720171339-e059f2f05d78 
h1:pRUrsnNVD/NpCD42WJ2AO3dQ2s1e2sqMxg8jOwdX2Ak=
+google.golang.org/genproto/googleapis/rpc 
v0.0.0-20260720171339-e059f2f05d78/go.mod 
h1:4Hqkh8ycfw05ld/3BWL7rJOSfebL2Q+DVDeRgYgxUU8=
 google.golang.org/grpc v1.19.0/go.mod 
h1:mqu4LbDTu4XGKhr4mRzUsmM4RtVoemTSY81AxZiDr8c=
 google.golang.org/grpc v1.23.0/go.mod 
h1:Y5yQAOtifL1yxbo5wqy6BxZv8vAUGQwXBOALyacEbxg=
 google.golang.org/grpc v1.25.1/go.mod 
h1:c3i+UQWmh7LiEpx4sFZnkU36qjEYZ0imhYfXVyQciAY=
 google.golang.org/grpc v1.31.0/go.mod 
h1:N36X2cJ7JwdamYAgDz+s+rVMFjt3numwzf/HckM8pak=
-google.golang.org/grpc v1.81.1 h1:VnnIIZ88UzOOKLukQi+ImGz8O1Wdp8nAGGnvOfEIWQQ=
-google.golang.org/grpc v1.81.1/go.mod 
h1:xGH9GfzOyMTGIOXBJmXt+BX/V0kcdQbdcuwQ/zNw42I=
+google.golang.org/grpc v1.82.1 h1:NnAxzGRA0677vCa4BUkOAnO5+FfQqVl9iUXeD0IqcGE=
+google.golang.org/grpc v1.82.1/go.mod 
h1:yzTZ1TB1Z3SG+LIYaI+WiE8D5+PZ3ArnrSp8zF3+/ZA=
 google.golang.org/protobuf v0.0.0-20200109180630-ec00e32a8dfd/go.mod 
h1:DFci5gLYBciE7Vtevhsrf46CRTquxDuWsQurQQe4oz8=
 google.golang.org/protobuf v0.0.0-20200221191635-4d8936d0db64/go.mod 
h1:kwYJMbMJ01Woi6D6+Kah6886xMZcty6N08ah7+eCXa0=
 google.golang.org/protobuf v0.0.0-20200228230310-ab0ca4ff8a60/go.mod 
h1:cfTl7dwQJ+fmap5saPgwCLgHXTUD7jkjRqWcaiX5VyM=
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/mac_comment_test.go 
new/sops-3.13.3/mac_comment_test.go
--- old/sops-3.13.2/mac_comment_test.go 1970-01-01 01:00:00.000000000 +0100
+++ new/sops-3.13.3/mac_comment_test.go 2026-07-23 06:56:08.000000000 +0200
@@ -0,0 +1,58 @@
+package sops_test
+
+import (
+       "bytes"
+       "testing"
+
+       "github.com/stretchr/testify/assert"
+
+       "github.com/getsops/sops/v3"
+       "github.com/getsops/sops/v3/aes"
+)
+
+// TestMACWithCommentInSequence is a regression test for getsops/sops#2243.
+//
+// A comment inside a sequence is a Comment node in the plaintext tree, but
+// Encrypt turns it into an ordinary (non-Comment) encrypted string whose
+// metadata records that it is a comment; Decrypt restores it to a Comment.
+// Encrypt excludes the comment from the MAC, so Decrypt must exclude it too,
+// which requires inspecting the decrypted result's type, not the input's.
+// Before the fix the MACs disagreed and decryption of any file with a comment
+// inside a sequence failed with "MAC mismatch".
+func TestMACWithCommentInSequence(t *testing.T) {
+       branches := sops.TreeBranches{
+               sops.TreeBranch{
+                       sops.TreeItem{
+                               Key: "list",
+                               Value: []interface{}{
+                                       sops.Comment{Value: "commented"},
+                                       "real",
+                               },
+                       },
+               },
+       }
+       tree := sops.Tree{Branches: branches, Metadata: sops.Metadata{}}
+       cipher := aes.NewCipher()
+       key := bytes.Repeat([]byte{'k'}, 32)
+
+       // Encrypt computes the MAC and mutates the tree in place.
+       encMAC, err := tree.Encrypt(key, cipher)
+       assert.NoError(t, err)
+
+       // The sequence comment is now an encrypted string, not a Comment node.
+       seq := tree.Branches[0][0].Value.([]interface{})
+       _, stillComment := seq[0].(sops.Comment)
+       assert.False(t, stillComment)
+       assert.IsType(t, "", seq[0])
+
+       // Decrypting the same tree must reproduce the MAC Encrypt computed...
+       decMAC, err := tree.Decrypt(key, cipher)
+       assert.NoError(t, err)
+       assert.Equal(t, encMAC, decMAC)
+
+       // ...and restore the sequence element to a Comment with its content.
+       seq = tree.Branches[0][0].Value.([]interface{})
+       comment, ok := seq[0].(sops.Comment)
+       assert.True(t, ok)
+       assert.Equal(t, "commented", comment.Value)
+}
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/sops.go new/sops-3.13.3/sops.go
--- old/sops-3.13.2/sops.go     2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/sops.go     2026-07-23 06:56:08.000000000 +0200
@@ -626,8 +626,10 @@
                                v = in
                        }
                        if !tree.Metadata.MACOnlyEncrypted || encrypted {
-                               // Only add to MAC if not a comment
-                               if !isComment {
+                               // Since non-Comment values can be decrypted to 
Comment
+                               // values if their metadata says they are 
comments, we cannot
+                               // use isComment here. This does happen for 
comments in slices.
+                               if _, resultIsComment := v.(Comment); 
!resultIsComment {
                                        bytes, err := ToBytes(v)
                                        if err != nil {
                                                return nil, fmt.Errorf("Could 
not convert %s to bytes: %s", in, err)
diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' 
'--exclude=.svnignore' old/sops-3.13.2/version/version.go 
new/sops-3.13.3/version/version.go
--- old/sops-3.13.2/version/version.go  2026-06-30 06:49:41.000000000 +0200
+++ new/sops-3.13.3/version/version.go  2026-07-23 06:56:08.000000000 +0200
@@ -12,7 +12,7 @@
 )
 
 // Version represents the value of the current semantic version.
-var Version = "3.13.2"
+var Version = "3.13.3"
 
 // PrintVersion prints the current version of sops. If the flag
 // `--disable-version-check` is set or if the environment variable

++++++ sops.obsinfo ++++++
--- /var/tmp/diff_new_pack.R6LKNN/_old  2026-07-23 23:14:17.680603683 +0200
+++ /var/tmp/diff_new_pack.R6LKNN/_new  2026-07-23 23:14:17.684603823 +0200
@@ -1,5 +1,5 @@
 name: sops
-version: 3.13.2
-mtime: 1782794981
-commit: 15e36f97a8641769712da76b64aec4ea566be81e
+version: 3.13.3
+mtime: 1784782568
+commit: 26e2f4784ca61353082c32dbd987c25eda086dc9
 

++++++ vendor.tar.gz ++++++
/work/SRC/openSUSE:Factory/sops/vendor.tar.gz 
/work/SRC/openSUSE:Factory/.sops.new.2004/vendor.tar.gz differ: char 130, line 2

Reply via email to