Skip to content

deps(go): bump module github.com/ProtonMail/go-crypto to v1.5.1 - #10701

Open
updateclibot[bot] wants to merge 2 commits into
mainfrom
updatecli_main_cbf61e1e0819a85491a2896dbcba21bf90c05451b5fc2515b8a41829ec60c41e
Open

updateclibot[bot] wants to merge 2 commits into
mainfrom
updatecli_main_cbf61e1e0819a85491a2896dbcba21bf90c05451b5fc2515b8a41829ec60c41e

Conversation

@updateclibot

@updateclibot updateclibot Bot commented Oct 1, 2026

Copy link
Copy Markdown
Contributor

deps(go): bump module github.com/ProtonMail/go-crypto

clean: go mod tidy

ran shell command "go mod tidy"

deps(go): bump module github.com/ProtonMail/go-crypto to v1.5.1

go.mod updated Module path "github.com/ProtonMail/go-crypto" version from "v1.4.1" to "v1.5.1"

v1.5.1
## What's Changed
* Harden handling of malformed OpenPGP input in https://github.com/ProtonMail/go-crypto/pull/332
* Ensure rsa key gen test works with go 1.27 in https://github.com/ProtonMail/go-crypto/pull/334


**Full Changelog**: https://github.com/ProtonMail/go-crypto/compare/v1.5.0...v1.5.1
v1.5.1-proton
This release is v1.5.1 with support for the following non-standardized features:

- Presistent symmetric keys experimental + latest draft [draft-ietf-openpgp-persistent-symmetric-keys-00](https://www.ietf.org/archive/id/draft-ietf-openpgp-persistent-symmetric-keys-00.html)
- Automatic forwarding [draft-wussler-openpgp-forwarding-00](https://www.ietf.org/archive/id/draft-wussler-openpgp-forwarding-00.html)
v1.5.0
## What's Changed

* Implement ML-KEM, ML-DSA, and SLH-DSA in https://github.com/ProtonMail/go-crypto/pull/316
* Bump github.com/cloudflare/circl to 1.6.3 in https://github.com/ProtonMail/go-crypto/pull/302
* Ensure generated RSA key primes satisfy P < Q constraint in https://github.com/ProtonMail/go-crypto/pull/305
* Add `Signature.IssuerKeyVersion` field in https://github.com/ProtonMail/go-crypto/pull/310
* Fix RSA precompute after prime swap in https://github.com/ProtonMail/go-crypto/pull/317
* openpgp: prevent panic when candidate identity has no self-signature in https://github.com/ProtonMail/go-crypto/pull/313
* guard nil issuer key id when checking trailing signature in https://github.com/ProtonMail/go-crypto/pull/320
* guard nil issuer key id on v2 message read path  in https://github.com/ProtonMail/go-crypto/pull/319
* Don't panic on unknown AEAD mode in v5/v6 SKESK packets in https://github.com/ProtonMail/go-crypto/pull/322
* restrict embedding to embeddable signature types in https://github.com/ProtonMail/go-crypto/pull/325
* fix: Malformed session key decoding in PKESK in https://github.com/ProtonMail/go-crypto/pull/330
* fix: Do not accept malformed ecdh sk input in https://github.com/ProtonMail/go-crypto/pull/329
* fix: Reduce risk of invalid slice access in https://github.com/ProtonMail/go-crypto/pull/331


**Full Changelog**: https://github.com/ProtonMail/go-crypto/compare/v1.4.1...v1.5.0
v1.4.1
## What's Changed
* Properly handle ECC keys with invalid points in https://github.com/ProtonMail/go-crypto/pull/304


**Full Changelog**: https://github.com/ProtonMail/go-crypto/compare/v1.4.0...v1.4.1
GitHub Action workflow link
Updatecli logo

Created automatically by Updatecli

Options:

Most of Updatecli configuration is done via its manifest(s).

  • If you close this pull request, Updatecli will automatically reopen it, the next time it runs.
  • If you close this pull request and delete the base branch, Updatecli will automatically recreate it, erasing all previous commits made.

Feel free to report any issues at github.com/updatecli/updatecli.
If you find this tool useful, do not hesitate to star our GitHub repository as a sign of appreciation, and/or to tell us directly on our chat!

updateclibot Bot added 2 commits October 1, 2026 12:18
Made with ❤️️ by updatecli
@updateclibot updateclibot Bot added the dependencies Pull requests that update a dependency file label Oct 1, 2026
@coderabbitai

coderabbitai Bot commented Oct 1, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Advanced

Run ID: 175892cb-07d7-4b4d-b8e3-d87865d58b24

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Autopilot is currently an internal CodeRabbit preview.


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants