The branch pin on providers/openfeature-provider-flagd/openfeature/test-harness has been removed from .gitmodules twice: first in #347 (at v2.11.1), restored in #377, then removed again 8 days later in #386 (at v3.5.0). It reads as harmless — the exact SHA is still pinned — but it is the line Renovate uses to track testbed versions, and testbed updates here have been dead ever since.
The submodule sits at 7575a1d (v3.8.0) while the testbed has released v3.10.1. Exactly one manual bump has landed since, and a digest update is parked unactioned on the dependency dashboard in #126.
The PR restores the pin at v3.8.0, the tag it points at today.
#347 also dropped branch = protobuf-v0.6.1 from the schemas submodule, never restored. Across all four affected repos this is the only non-testbed submodule that lost a pin while still in use, so the PR covers it too.
That one needs a decision rather than a revert: schemas has since moved to 1daf5ff, tagged json/json-schema-v0.2.15 — a different tag series from the protobuf-* one it used to track. The PR pins it to the series it is actually on; flag it if tracking protobuf-* was deliberate.
Why this matters
Renovate's git-submodules manager reads branch from .gitmodules as the dependency's current version. With the pin present it resolves against the testbed's release tags and opens an ordinary version bump, rewriting the pin itself:
- branch = v2.10.1
+ branch = v2.10.2
Without it there is no version to compare against, so Renovate falls back to chasing the tip of the testbed default branch — a digest update. Those don't match the community-tooling preset's matchSourceUrls auto-create exemption, so they get parked behind a dashboard checkbox instead of becoming PRs. Net effect: no automated testbed updates in this repo since the removal.
The fix
The attached PR restores branch = <tag> on the testbed submodule, set to the tag it currently points at. That is the whole fix — no Renovate config change is needed, because the preset's existing exemption starts matching again as soon as the dependency resolves to a version.
Parent: open-feature/flagd-testbed#398
The
branchpin onproviders/openfeature-provider-flagd/openfeature/test-harnesshas been removed from.gitmodulestwice: first in #347 (atv2.11.1), restored in #377, then removed again 8 days later in #386 (atv3.5.0). It reads as harmless — the exact SHA is still pinned — but it is the line Renovate uses to track testbed versions, and testbed updates here have been dead ever since.The submodule sits at
7575a1d(v3.8.0) while the testbed has released v3.10.1. Exactly one manual bump has landed since, and a digest update is parked unactioned on the dependency dashboard in #126.The PR restores the pin at
v3.8.0, the tag it points at today.#347 also dropped
branch = protobuf-v0.6.1from theschemassubmodule, never restored. Across all four affected repos this is the only non-testbed submodule that lost a pin while still in use, so the PR covers it too.That one needs a decision rather than a revert:
schemashas since moved to1daf5ff, taggedjson/json-schema-v0.2.15— a different tag series from theprotobuf-*one it used to track. The PR pins it to the series it is actually on; flag it if trackingprotobuf-*was deliberate.Why this matters
Renovate's
git-submodulesmanager readsbranchfrom.gitmodulesas the dependency's current version. With the pin present it resolves against the testbed's release tags and opens an ordinary version bump, rewriting the pin itself:Without it there is no version to compare against, so Renovate falls back to chasing the tip of the testbed default branch — a digest update. Those don't match the
community-toolingpreset'smatchSourceUrlsauto-create exemption, so they get parked behind a dashboard checkbox instead of becoming PRs. Net effect: no automated testbed updates in this repo since the removal.The fix
The attached PR restores
branch = <tag>on the testbed submodule, set to the tag it currently points at. That is the whole fix — no Renovate config change is needed, because the preset's existing exemption starts matching again as soon as the dependency resolves to a version.Parent: open-feature/flagd-testbed#398