Skip to content

chore(deps): bump ash from 3.27.7 to 3.29.3 in the production-dependencies group#236

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/hex/production-dependencies-a84e96d968
Open

chore(deps): bump ash from 3.27.7 to 3.29.3 in the production-dependencies group#236
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/hex/production-dependencies-a84e96d968

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the production-dependencies group with 1 update: ash.

Updates ash from 3.27.7 to 3.29.3

Release notes

Sourced from ash's releases.

v3.29.3

Bug Fixes:

v3.29.0

Features:

  • add Ash.update_many/4 by Zach Daniel

Bug Fixes:

  • look up field policies by calc_name when authorizing calculation sorts (#2754) by Jesse Williams [(#2754)](ash-project/ash#2754)

  • ensure modules are loaded before optional callback checks (#2753) by Vasilis Spilka

  • relate_actor with field: raises BadMapError for belongs_to (#2751) by diogomrts [(#2751)](ash-project/ash#2751)

Improvements:

Changelog

Sourced from ash's changelog.

v3.29.3 (2026-06-23)

Bug Fixes:

Fixes CVE-2026-55736

v3.29.2 (2026-06-22)

Bug Fixes:

Improvements:

  • add explanatory comment on backwards compat config by @​zachdaniel

v3.29.1 (2026-06-14)

Bug Fixes:

v3.29.0 (2026-06-14)

Features:

... (truncated)

Commits
  • 1ae2cad chore: release version v3.29.3
  • d9b3100 fix: scrub private arguments w/ string values
  • d83c2e2 chore: update docs
  • 451d648 chore: release version v3.29.2
  • e52296e fix: properly retain override messages on list of errors
  • 1cb230b fix: narrow input/2 spec to no_return for resources without actions (#2758)
  • c2fb4f9 fix: respect actor from scope: in bulk actions under require_actor? (#2757)
  • 6b2e8a5 fix: support uuidv7 generation when Ecto isn't started
  • aaf10db fix: ensure calc context is added to m2m through query
  • 2d5e9ed improvement: add explanatory comment on backwards compat config
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the production-dependencies group with 1 update: [ash](https://github.com/ash-project/ash).


Updates `ash` from 3.27.7 to 3.29.3
- [Release notes](https://github.com/ash-project/ash/releases)
- [Changelog](https://github.com/ash-project/ash/blob/main/CHANGELOG.md)
- [Commits](ash-project/ash@v3.27.7...v3.29.3)

---
updated-dependencies:
- dependency-name: ash
  dependency-version: 3.29.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code labels Jul 1, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants