Skip to content

chore: bump github.com/oasdiff/oasdiff from 1.32.1 to 1.33.0 in /tools/foas - #1536

Merged
wtrocki merged 1 commit into
mainfrom
dependabot/go_modules/tools/foas/github.com/oasdiff/oasdiff-1.33.0
Oct 7, 2026
Merged

wtrocki merged 1 commit into
mainfrom
dependabot/go_modules/tools/foas/github.com/oasdiff/oasdiff-1.33.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 6, 2026

Copy link
Copy Markdown
Contributor

Bumps github.com/oasdiff/oasdiff from 1.32.1 to 1.33.0.

Release notes

Sourced from github.com/oasdiff/oasdiff's releases.

v1.33.0

Recursive schemas: fast, deterministic, and no longer repeated per path

v1.32.0 could run for hours on a spec whose schemas reference each other in cycles, and v1.32.1 fixed that by returning to v1.31.0's cycle handling, which gave up the deterministic output v1.32.0 had introduced. This release reworks the handling so that both hold at once, on the two specs reported in #1252 and on everything else.

Thanks @​simonbility for the report and the specs, @​philippnagel for the second spec and for testing the release candidate against it, and @​BigMichi1 for the determinism report that started this.

CLI changes

Recursive schemas

  • Specs with cyclic schemas compare in about a second, with or without --flatten-allof (#1254, fixes #1252). The two specs reported there are the measure: one needed --flatten-allof and ran for hours, the other has 134 schemas referencing each other in a single cycle and never finished at all. Both now complete in about a second, including the combination v1.32.1 could not do.
  • Structured output for a schema in more than one reference cycle is deterministic again (fixes #1230). v1.32.0 fixed this, v1.32.1 had to revert it to get rid of the hang, and this release has both. Identical inputs produce identical bytes.
  • --flatten-allof keeps one copy of each schema. It used to copy a schema once for every place that referenced it: one reported spec grew from 5,195 schema objects to 3.5 million in memory. The flattened output is unchanged, and flattening it now takes milliseconds rather than seconds.
  • A change inside a recursive schema is reported once per entry into the cycle rather than once for every path through it. Every operation that reaches the change still reports it. On one reported spec a single added property produced 241,978 changelog lines before and 9,162 now.
  • A cycle edge no longer repeats one level of the diff, and a $ref-to-inline refactor inside a cycle is recognized as a refactor, the same as one outside a cycle.

Upgrading from v1.32.1

  • The circularRef field is removed from diff --format json|yaml output again, as in v1.32.0: cyclic-reference mismatches appear as ordinary field-level diffs, which say more. v1.32.1 had restored it along with v1.31.0's cycle handling.
  • Diffs of schemas that take part in more than one reference cycle change once, and then hold steady.

Go package changes

  • Breaking: diff.SchemaDiff.CircularRefDiff is removed again (#1254), together with the ref-string circular guard, as in v1.32.0. v1.32.1 had restored both.
  • flatten/allof.MergeSpec merges a document with one state (#1254), so a schema referenced from several places stays one object after the merge.

v1.33.0-rc.1

Release candidate: recursive schemas, fast and deterministic

This is a pre-release of the reworked handling of recursive schemas (#1254), published so that users with large or cyclic specs can try it before it becomes v1.33.0. Further release candidates may follow, depending on review and on your feedback. It is not published to Homebrew, and the GitHub Action stays on v1.32.1.

Please test it on your real comparisons and report on #1252, especially any change that v1.32.1 reports and this candidate does not.

Install

go install github.com/oasdiff/oasdiff@v1.33.0-rc.1
docker run --rm -t tufin/oasdiff:v1.33.0-rc.1 --help

Binaries for every platform are attached below.

CLI changes

Recursive schemas

  • Specs with cyclic schemas no longer hang, with or without --flatten-allof (#1254, fixes #1252). The two specs reported on #1252 take about a second each, including one where 134 schemas reference each other in a single cycle, which v1.32.1 can only compare without --flatten-allof.
  • Structured output for schemas in more than one reference cycle is deterministic again (fixes #1230 again). v1.32.0 fixed this, and v1.32.1 had to revert that fix to get rid of the hang; this candidate has both.
  • --flatten-allof keeps one copy of each schema. It used to copy a schema once for every place that referenced it, which on one reported spec grew 5,195 schema objects to 3.5 million in memory. The flattened output is unchanged.

... (truncated)

Commits
  • 322d7ae Merge pull request #1259 from oasdiff/chore/claude-config-to-docs
  • b5d38ef docs: fold the orientation into CONTRIB, drop the duplicate page
  • 8e2aa7b chore: move the repo guide into docs, drop the Claude skills
  • dadf86a Merge pull request #1258 from oasdiff/refactor/modified-subschemas-add
  • 1be4acd diff: one place appends a modified subschema
  • 970609a test: a cycle node is expanded once per walk
  • b72eed9 Merge pull request #1254 from oasdiff/fix-1252-graph
  • 7111b85 release: pre-release tags do not update the Homebrew cask
  • f7c8444 Merge main (v1.32.1 reverts) into the graph branch; the graph supersedes them
  • 860e00d diff: the wrapping comment sits where the wrapping is decided
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/oasdiff/oasdiff](https://github.com/oasdiff/oasdiff) from 1.32.1 to 1.33.0.
- [Release notes](https://github.com/oasdiff/oasdiff/releases)
- [Changelog](https://github.com/oasdiff/oasdiff/blob/main/docs/CHANGELOG-TEMPLATE.md)
- [Commits](oasdiff/oasdiff@v1.32.1...v1.33.0)

---
updated-dependencies:
- dependency-name: github.com/oasdiff/oasdiff
  dependency-version: 1.33.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 6, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner October 6, 2026 21:54
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 6, 2026
@wtrocki
wtrocki merged commit ffdde46 into main Oct 7, 2026
13 checks passed
@wtrocki
wtrocki deleted the dependabot/go_modules/tools/foas/github.com/oasdiff/oasdiff-1.33.0 branch October 7, 2026 11:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant