Skip to content

Update first-party Pulumi dependencies - #961

Open
pulumi-renovate[bot] wants to merge 2 commits into
mainfrom
renovate/pulumi
Open

Update first-party Pulumi dependencies#961
pulumi-renovate[bot] wants to merge 2 commits into
mainfrom
renovate/pulumi

Conversation

@pulumi-renovate

@pulumi-renovate pulumi-renovate Bot commented Dec 18, 2025

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence
@pulumi/pulumi (source) 3.213.03.259.0 age confidence
Pulumi (source) 3.*3.11* age confidence
Pulumi.ProviderBoilerplate (source) 0.0.*0.0.17* age confidence
github.com/pulumi/pulumi-provider-boilerplate/sdk/go/pulumi-provider-boilerplate v0.0.99v0.0.175 age confidence
github.com/pulumi/pulumi-random/sdk/v4 v4.18.4v4.21.1 age confidence
github.com/pulumi/pulumi/pkg/v3 v3.256.0v3.259.0 age confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

pulumi/pulumi (@​pulumi/pulumi)

v3.259.0

Compare Source

Features
  • [cli/new] Show a single confirmation of project, stack, and config defaults in interactive pulumi new instead of prompting for each value #​24223
  • [cli] Introduce PULUMI_DEFAULT_ORGANIZATION to be able to set the default org #​24384
Bug Fixes
  • [cli/stack] Announce Created stack when creating a stack against the Pulumi Cloud backend #​24280
  • [cli] Retry pulumi neo cancellation requests that the service rejects and keep Esc responsive instead of showing "Cancelling..." forever #​24267
  • [cli/import] Generate a component resource definition when importing local components #​24294
  • [auto/nodejs] Remove Node.js Automation API output buffer limit #​24333
  • [sdk/go] Always emit the value and environment keys when serializing esc.Value and esc.Range, matching the fields the ESC OpenAPI contract marks required #​24346
  • [engine] Fix the engine returning extension package refs for non-parameterised packages against the same base #​24347
  • [cli/neo] Fix approval replies and mode changes being silently dropped when the outbound event queue is full #​24370
  • [codegen/go] Fix nondeterministic Go program codegen for objects that mix null and typed properties #​24366
  • [cli/do] Keep snippets when delete fails, so delete can be retried #​24271
  • [cli/package] Report every schema validation error when pulumi package add fails to bind a package schema #​24367
  • [programgen/python] Fix casing of local component outputs #​24379
  • [cli/policy] Make policy group ls respect the default org #​24385
Improvements
  • [cli] Explain which state backend pulumi login failed against, where that backend was configured, and how to change it #​24322
  • [backend/diy] Report the state backend URL as configured when it cannot be opened, adding the resolved form when normalization changed it, and name a local path a state directory rather than a bucket #​24335
  • [sdkgen/python] Type constant properties as Literal[value] instead of their primitive type #​24358
  • [cli/plugin] Add --parallel flag to pulumi plugin install #​24369
  • [cli] Fix progress bar rendering for parallel plugin installs #​24372

v3.258.0

Compare Source

Features
  • [cli] Add opt-in encryption of stored credentials with a key protected by the operating system, selected with PULUMI_CREDENTIAL_STORE #​24212
  • [cli/new] Ask for a cloud provider and language in interactive pulumi new instead of listing every template #​24226
  • [sdk/go] Add policyx.NewStackValidationPolicy and wire up the analyzer's AnalyzeStack RPC so Go policy packs can validate the full stack #​24232
Bug Fixes
  • [sdkgen/go] Generate valid Go package clauses for schema modules whose names contain hyphens #​24288
  • [sdkgen/nodejs] Export schema modules whose names contain hyphens under a valid sanitized identifier, including their type namespaces #​24288
  • [cli/import] pulumi preview --import-file no longer emits unknown values, and pulumi import rejects files that contain them #​24261
  • [auto/python] Add missing program argument on preview_refresh and preview_destroy stack methods #​24274
  • [cli/new] Fix cloning templates and repositories into paths containing symlinks with absolute targets #​24329
  • [cli/do] Fix global project lookup #​24334
Improvements
  • [sdk/python] Use the resource monitor's advertised feature set consistently throughout the Python SDK #​24308
Miscellaneous
  • [cli] Rewrite the pulumi login and pulumi logout help text to cover all supported state backends and document PULUMI_ACCESS_TOKEN, --default-org, and --interactive #​24319

v3.257.0

Compare Source

Features
  • [cli] Offer to create a first project after logging in to an account with no stacks #​24133
  • [cli/do] Auto-assign identifiers to existing stack resources in pulumi do input expressions, and add pulumi do show-resources to list them #​24184
  • [cli/do] Make "pulumi do <pkg> <resource> patch <name> work in stateful mode, overlaying the supplied inputs onto the existing snippet" #​24295
  • [cli/state] Implement pulumi state get to show individual resources #​24191
  • [cli/do] Fall back to an auto-created project and stack under PULUMI_HOME when pulumi do is invoked outside of a Pulumi project #​24231
Bug Fixes
  • [sdkgen/go] Generated output-form invokes pass their arguments to the core SDK without resolving them first, so invoke dependencies can be inferred from arguments; generated SDKs now require pulumi SDK v3.255.0 or later #​24060
  • [cli] Make 'pulumi stack history events --summary report the program errors from the language host #​24111
  • [cli/cloud] pulumi api: repeated -H/--header values for the same header name now all reach the wire, instead of each one silently overwriting the last #​24180
  • [cli/package] Maintain --server when adding to the packages section of Pulumi.yaml #​24189
  • [sdk/go] Fix panics in hooks to not crash the entire process #​24218
  • [programgen/go] for expressions are now generated as Go loops #​24228
  • [programgen/go] Fix invalid _ := index statement emitted for resources with a numeric range whose value variable is unused #​24227
  • [sdk/python] Report an error instead of hanging when a Python resource depends on its own parent #​24230
  • [sdkgen/go] Generate the missing Go input types for resource input properties that are deeply nested collections of object types #​24236
  • [programgen/go] Rename properties that collide with reserved names (e.g. elementType) the same way SDK codegen does, instead of emitting uncompilable code #​24235
  • [cli/display] Show the value being added when a refresh or provider diff reports an added property #​24245
  • [cli/plugin] Track when a plugin was last run so pulumi plugin ls reports an accurate last-used time on all platforms #​24251
  • [engine] Show secrets in diff display when --show-secrets is passed #​24253
  • [cli] Exit promptly when a command is cancelled while an HTTP request is being retried #​24276
Improvements
  • [sdk/nodejs] Improve error message when resource registrations are still pending when pulumi exits #​24082
  • [cli] Pass the invoked command (e.g. pulumi new) to the browser-based login/signup flow so Pulumi Cloud can attribute signups to the command that triggered them #​24192
Miscellaneous
  • [sdkgen] Extension-parameterized packages now namespace their resource and function tokens under their own package name rather than the base provider's #​24143
  • [java] Upgrade java to v1.35.0 #​24202
  • [backend/diy] The deprecation warning is now an error. PULUMI_DIY_BACKEND_IGNORE_DEPRECATION_WARNING is now PULUMI_DIY_BACKEND_IGNORE_DEPRECATION_ERROR. #​24216
  • [java] Upgrade java to v1.36.0 #​24243
  • [sdk/dotnet] Upgrade dotnet to v3.111.1 #​24249

v3.256.0

Compare Source

Features
  • [cli] Add --ignore-protect flag to pulumi up, pulumi preview and pulumi destroy to allow deleting protected resources without unprotecting them in the state first #​24053
  • [cli/env] Add an optional --export-env-vars flag to the env provider {aws,azure,gcp}-login commands to also set the standard SDK environment variables referencing the login outputs #​24055
  • [cli] Add a --server flag to pulumi package add, publish, get-schema, get-mapping, gen-sdk, info and pulumi schema check that skips package resolution and uses the given URL as the plugin download URL #​24107
Bug Fixes
  • [backend/service] Fix pulumi login --insecure not being reflected in the stack's service secrets manager state, which caused TLS verification failures against self-hosted backends using self-signed certificates #​24134
  • [cli] Scope current stack selection to the active backend so switching backends no longer surfaces stale stack errors #​23974
  • [programgen/go] Parent an invoke written inside a component to that component, lower a component's outputs, and only import fmt when a component needs it #​24019
  • [programgen/python] Parent an invoke written inside a component to that component, so it resolves the component's providers #​24018
  • [sdk/nodejs] Defer output-form invokes that depend on a remote component whose resources are pending creation, by declaring invoke dependencies to the engine #​24042
  • [engine] Gate invokes on the created-ness of their declared dependencies, including the children of remote components, resolving them as unknown during previews that still have to create them #​24040
  • [sdk/go] Defer output-form invokes that depend on a remote component whose resources are pending creation, by declaring invoke dependencies to the engine #​24044
  • [pcl] Declare invoke dependencies to the engine so invokes that depend on pending resources, including remote components, resolve as unknown during previews #​24041
  • [sdk/python] Defer output-form invokes that depend on a remote component whose resources are pending creation, by declaring invoke dependencies to the engine #​24043
  • [cli/env] env provider no longer writes a new environment revision when the resulting definition is unchanged #​24055
  • [sdk/go] Output-form invokes now infer their resource dependencies from their arguments, so they are skipped during preview while a dependent resource is pending creation and their results carry those dependencies #​24054
  • [sdkgen/go] Fixes nested optional output conversions #​24096
  • [engine] Fix a plugin process leak in NewPolicyAnalyzer when ConfigureStack fails after the plugin has booted #​24106
  • [programgen/go] Avoid redundant applies when projecting properties from generated Go object outputs #​24112
  • [backend/diy] Fix 403 errors writing to third-party S3-compatible backends (e.g. IBM COS, MinIO) by defaulting request_checksum_calculation to when_required when the s3:// backend URL sets a custom endpoint #​24109
  • [programgen/nodejs] Avoid redundant applies when projecting properties from Node.js outputs #​24119
  • [programgen/python] Avoid redundant applies when projecting properties from Python outputs #​24120
  • [sdk] Fix apply erroring for skipped resources #​24108
  • [cli] Retry rate-limited (HTTP 429) API requests when they are safe to retry, honoring the server's Retry-After header #​24131
  • [cli] Exit non-zero from remote operations (pulumi up --remote, pulumi deployment run) when the deployment fails #​24155
  • [cli/new] Resolve and install packages required by the program during pulumi new, as pulumi install does #​24126
  • [cli] Make --remote not require a Pulumi.yaml file to be present #​24128
  • [cli/import] Generate explicit providers in the import file resources #​24135
  • [sdk/nodejs] Fix trustedDependencies parsing for bun #​24145
  • [auto/go] ImportResources no longer leaks --stack into the converter's arguments when converter args are passed #​24146
  • [auto/go] Fix ImportResources when GenerateCode(false) is set #​24147
  • [sdk/go] Fix hooks and transforms causing panics with mocks #​24161
  • [programgen/go] Fix plain invokes emitting nonexistent ...ArgsArgs argument types #​24172
Improvements
  • [cli/import] Error when running pulumi import --from terraform in a Pulumi HCL project #​23744
  • [programgen] Add ID type to PCL #​22702
  • [engine] Give the resource monitor's Invoke its own response message, separating it from the one a provider returns #​24100
  • [cli/do] Allow stateful resources to register their own provider resources based on provider inputs on the command line #​24098
  • [cli] Refresh the first-login welcome message to link your Pulumi Cloud console and the Pulumi changelog #​24122
  • [cli/do] Add support for the --provider argument for stateful operations #​24132
  • [programgen/go] Better typing for maps, using known types rather than map[string]interface{} #​24142
  • [cli/import] Serve the package-resolver service to state converters via resolver_target on ConvertStateRequest, so converters can resolve package specifications the same way the CLI does #​24174
Miscellaneous
  • [cli] Retire the Pulumi AI mode of pulumi new (interactive choice and --ai/--language flags). The backing service has been shut down; use pulumi neo instead. #​24116
  • [sdk/dotnet] Upgrade dotnet to v3.110.0 #​24175
  • [yaml] Upgrade yaml to v1.38.1 #​24175

v3.255.0

Compare Source

Features
  • [cli] Add an --extension flag to package commands for extension-parameterized packages, reinstalled from Pulumi.yaml on pulumi install
  • [cli] Project files to disk and surface their paths as environment variables for all output formats when opening an ESC environment #​23993
  • [engine] Resolve an invoke's provider from the providers option of the parent named on the request, matching the resolution applied to resource registrations #​24016
  • [cli/do] Add --resources to refer to existing resources in state in do input expressions #​24037
Bug Fixes
  • [programgen/nodejs] Parent an invoke written inside a component to that component, so it resolves the component's providers #​24017
  • [pcl] Apply the providers option of a component block to the resources and invokes it declares #​24016
  • [cli/import] Fix import file generation when parent resources share names #​24069
  • [cli] Fix parallel pulumi install processes sharing a PULUMI_HOME intermittently failing with a missing provider executable error #​24080
  • [sdk/python] Allow Construct and Call methods to run concurrently in provider servers #​24081
Improvements
  • [engine] Support strings containing non-UTF8 bytes flowing between providers, the engine, state, and languages that opt in (Go and PCL initially) #​23856
  • [cli] Add a --summary flag to pulumi stack history events that reduces a past update's events to the same summary shape as a live pulumi up --output json, extended with error diagnostics and failed-resource markers #​23960
  • [protobuf] Allow state converters to supply resource inputs and outputs in ConvertState responses #​23987
  • [engine] Allow policy packs to point to executable binaries, not just script folders #​24052
  • [cli/display] The Neo diagnostics link now suggests pulumi neo --debug-update or pulumi neo --debug-preview to investigate the failed operation #​24075
  • [sdk/python] Allow UV_PROJECT_ENVIRONMENT to override the virtualenv path if uv is used #​24077
  • [cli] Allow otel traces to be sent over https #​24078

v3.254.0

Compare Source

Features
  • [cli] Add pulumi logs share command for sharing logs with Pulumi #​22546
  • [cli] Add pulumi stack migrate to migrate a stack from another backend to the currently logged-in backend, including re-encrypting config secrets and stack state under the target secrets provider #​22902
  • [cli/config] Add an --override-env flag to up, preview, destroy, and refresh to substitute imported environments for a single run without editing the stack config #​23562
  • [cli] Add pulumi neo acp to run Neo as an Agent Client Protocol agent over stdio for ACP-capable editors, with read-only and plan mode exposed as session config options #​23886
  • [cli/neo] Retry transient pulumi neo stream and message-send failures, and add pulumi neo resume with chat history #​23835
  • [cli/neo] Make Ctrl+C clear typed text and preserve Ctrl+A/Ctrl+E line navigation in pulumi neo #​23932
  • [cli/do] Add upsert to do, allowing resources to be statefully created or updated in a stack #​23813
  • [sdk/python] Add pulumi.run for natively awaited Python program entrypoints that can return stack outputs #​23945
  • [cli/do] Allow expressions for number inputs #​23954
  • [cli/do] Allow expressions for boolean inputs #​23967
  • [cli/policy] Add --runtime-options to pulumi policy new #​23992
  • [cli/do] Add support for stateful create #​23996
  • [cli/do] Add support for stateful delete #​24000
Bug Fixes
  • [sdkgen/go] Fix Go codegen for plain properties nested inside non-plain objects #​22524
  • [cli/neo] Keep pulumi neo connected during quiet periods when the event stream only receives keep-alive heartbeats #​23935
  • [engine] Validate snippets before persisting them #​23920
  • [backend] Fix dangling ReplaceWith references in the journal replayer #​23927
  • [cli/do] Fix the converter plugin not being called if just attributes needed converting #​23948
  • [programgen/go] Generate compilable Go for programs that use discriminated union members as array/list elements #​23980
Improvements
  • [cli] Align commands with the CLI naming guidelines, adding ls, rm, delete, mv, update, modify, create and setup aliases to list/remove/move/edit/new commands and making state remove and package remove the canonical names with delete kept as an alias #​23903
  • [cli] Suggest closely-matching commands from the whole command tree when an unknown command is entered #​23848
  • [cli] Print help but exit with a non-zero code when pulumi is run without a command, matching the behavior of other group commands #​23848
  • [programgen] Support onError resource hooks in generated Go, NodeJS, and Python programs and in the PCL runtime, retrying the failed operation when the hook command exits successfully #​23839
  • [protobuf] Add parent and properties fields to ResourceImport so state converters can express resource hierarchy and property filters #​23929
  • [protobuf] Allow state converters to declare explicit providers as resources in ConvertState responses and attach imported resources to them via the new provider field #​23975
  • [cli] Redact secrets in property values in logs #​23931
  • [cli] Make -v<n> --logflow no longer produce separate log files for plugins #​23938
  • [protobuf] Pass a schema loader target to state converters in ConvertStateRequest #​23944
  • [cli/import] Allow explicit providers to be declared in the resources section of an import file and referenced by name #​23972
  • [cli] Remove the template count from pulumi new --help, which required a slow template listing before help could display #​23973
  • [cli/import] Support inputs and outputs on resources in import files, importing supplied state directly and skipping the provider read when outputs are given #​23984
Miscellaneous
  • [sdk] Move RetrieveGitFolder to the gitutil package #​23955
  • [sdk] Move template helpers from workspace to pkg/cmd/pulumi/templates #​23963

v3.253.0

Compare Source

Features
  • [auto/go] Support --import-pending-creates for refresh command in Go Automation API for preview refresh and refresh operations #​23833
Bug Fixes
  • [sdk] Precompose filenames to NFC on macOS when matching ignore patterns during archive creation, mirroring git's core.precomposeunicode so composed patterns match decomposed filenames #​23566
  • [cli] Respect the -v log level again so that without -v only warnings and errors are written to stderr #​23910
  • [codegen] Correctly generate provider resources declared inside PCL components for Node.js, Python and Go #​23904
Improvements
  • [cli] Add a --version flag to the pulumi command that prints the version, same as pulumi version #​23898
  • [cli] Align env commands with the CLI naming guidelines, making list, remove and move the canonical names with ls, rm, delete and mv kept as aliases #​23901

v3.252.0

Compare Source

Features
  • [auto] Add import to the generated automation APIs for NodeJS, Python and Go #​23876
Bug Fixes
  • [cli] Exit with a non-zero code when a command group such as pulumi env is given an unknown subcommand or no subcommand at all #​23814
  • [cli] Fix a panic when displaying a stack-level policy violation #​23692
  • [cli] Make reading non-secret stack outputs and running pulumi about no longer require the passphrase for passphrase-encrypted stacks #​23820
  • [cli] Avoid pulumi logs <command> showing the log for the currently running command #​23887
Improvements
  • [cli] Improve the error message when using Pulumi ESC with a DIY backend to suggest logging into Pulumi Cloud #​23811
  • [cli] Show command name for cli commands when running any command that lists logs #​23889
  • [cli/display] Render strings containing non-UTF8 bytes as b"" in diffs and JSON output #​23870
Bug Fixes
  • [cli/do] Fix calling delete on PF resources that need read called first #​23837
  • [cli/env] Submit the change request created by pulumi env open-request so it is pending approval instead of being left as an unsubmitted draft #​23802
Improvements
  • [cli/env] Add a --reason flag to pulumi env open-request to explain the request to approvers #​23802
Bug Fixes
  • [cli/neo] Fix the initial prompt sometimes rendering above the welcome banner in pulumi neo #​23831
Improvements
  • [cli/state] Improve the error message when a resource URN is not found in the state for pulumi state commands, suggesting close-matching URNs and how to list the URNs in the stack #​23812
Bug Fixes
  • [engine] Fix importing a resource whose import identifier differs from its canonical ID causes the resource to be deleted on a subsequent update #​23834
Improvements
  • [pcl] Allow binding hooks to a resource's onError option #​23838
Bug Fixes
  • [programgen] Deduplicate identical apply arguments to avoid unnecessary Promise.all/pulumi.all/Output.All in generated code #​22293
  • [sdk] Failed resource registrations will return faulted outputs, not unknown outputs #​23844
Features
  • [sdk/nodejs] Add a production runtime option for Node.js projects. When set to true in Pulumi.yaml, pulumi install skips devDependencies (npm --production, pnpm --production, yarn --production). #​23849
Bug Fixes
  • [sdk/nodejs] Fix empty node_modules folders in serialized function archives when using pnpm or symlinked workspace packages #​23866
Miscellaneous
  • [sdk/nodejs] Report the TypeScript version in pulumi about #​23850
  • [sdk/nodejs] Update OpenTelemetry dependencies #​23855

v3.251.0

Compare Source

Bug Fixes
  • [cli] Show a retain marker for retain-on-delete resources in --diff output #​23754
  • [cli] Don't miscopy out archives #​23798
Miscellaneous
  • [cli] Add pulumi neo --debug-update and pulumi neo --debug-preview flags to investigate a failed update or preview, suggested in the failure output #​23499
Improvements
  • [cli/convert] Add an ecosystem field to converter mapping requests so a converter can request mappings for the ecosystem it consumes rather than its own name #​23804
  • [cli/deployment] pulumi deployment settings no longer writes the local Pulumi.<stack>.deploy.yaml file: the experimental init, pull, configure, and env subcommands have been removed, and the CLI no longer calls the deployment-settings encrypt endpoint. get/edit/destroy continue to manage settings directly in Pulumi Cloud #​23480
  • [cli/deployment] The deployment settings file (Pulumi.<stack>.deploy.yaml) has been removed entirely. The experimental pulumi deployment settings push (update/up) command, the --config-file flag, and the SDK helpers that read the file have been removed. Manage deployment settings directly in Pulumi Cloud with pulumi deployment settings get, edit, and destroy #​23480
Bug Fixes
  • [cli/display] Prevent plugin debug logs from appearing as raw JSON in the CLI's output when logging with --logtostderr #​23633
Improvements
  • [cli/env] Report the new revision number when an environment definition is updated (e.g. pulumi env edit, pulumi env provider, pulumi env version rollback) #​23799
Miscellaneous
  • [cli/env] Fold the Pulumi ESC engine and CLI into the pulumi/pulumi monorepo, removing the sdk↔esc Go module cycle. Internal refactor with no user-facing behavior change; pulumi env/pulumi esc are unaffected. #​23746
Improvements
  • [cli/import] Support importing resources under parameterized providers from a converter or import file #​23763
  • [cli/import] Support importing resources under extension-parameterized providers #​23779
Features
  • [engine] Add TargetSnippets to deployment options to target snippets by UUID. #​23745
Improvements
  • [engine] Add OpenTelemetry spans to the StackReference read path so performance traces can pinpoint slow snapshot fetches, deserialization, or secret decryption #​23787
Features
  • [programgen/pcl] Invoke functions declared with multi-argument inputs using positional arguments in PCL #​23571
Bug Fixes
  • [sdk/nodejs] Don't include the version in module paths when serializing functions when using pnpm #​23767
  • [sdk/nodejs] Support pnpm 11 #​23815
Features
  • [sdkgen] Generate SDKs and programs for extension-parameterized packages #​23579

v3.250.0

Compare Source

Bug Fixes
  • [cli/engine] Fix recursive property log marshaling #​23773

v3.249.0

Compare Source

Bug Fixes
  • [backend/diy] Fix pulumi stack tag rm not removing the last tag on self-managed (diy) backends #​23702
  • [backend/service] Don't fail a operation due to a logging failure #​23704
Features
  • [cli] Add --skip-config-validation flag to preview, up, refresh, and destroy to skip validation of stack config against the project config schema #​23691
  • [cli] Enable automatic logging for every command by default #​23731
Bug Fixes
  • [cli] Don't ignore diffs in Output values #​23703
  • [cli] Use display resource type names in policy violation output #​23705
Improvements
  • [cli] Add --output $format flag to pulumi stack {list,history,tag list} #​23686
  • [cli] Add --output $format to pulumi policy list and pulumi policy group list #​23698
  • [cli] Add --output $format to pulumi project list #​23699
  • [cli] Add --output $format flag to pulumi config env list #​23706
  • [cli] pulumi login will warn if the given login differs from PULUMI_BACKEND_URL #​23716
  • [cli/convert] Error when converting a Terraform program to the hcl language #​23742
  • [cli/engine] Fix TestDebuggerAttach for dlv@​1.27 #​23693
  • [cli/plugin] Add --output $format to pulumi plugin list #​23688
Features
  • [cli/policy] Add a --file flag to pulumi policy analyze to analyze a state file (as produced by pulumi stack export) without requiring a stack or backend login #​23664
Miscellaneous
  • [pkg/testing] Allow ProgramTest to use npm for Node.js tests #​23675
Bug Fixes
  • [programgen] Generate numeric range loops in NodeJS with a per-iteration binding so deferred applies in the loop body observe the correct index
Improvements
  • [sdk] Update the dotnet and java language runtimes #​23755
Bug Fixes
  • [sdk/go] Fix FileArchive nested in an AssetArchive producing zip/tar entries with backslashes on Windows #​23750
Improvements
  • [sdk/go] Move provider RPC setup code to the sdk module #​23695
  • [sdk/nodejs] Use npm as the package manager for the Node.js SDK #​23655
  • [sdk/nodejs] Remove the fdir and picomatch dependencies; the Node.js SDK now requires Node.js 22 or later #​23722
Bug Fixes
  • [sdk/python] Fix deletedWith and replaceWith resource options in Python component resource providers #​23710
  • [sdkgen/python] Cache package references per-deployment in generated SDKs #​22459

v3.248.0

Compare Source

Bug Fixes
  • [cli] Fix a panic in pulumi package get-schema when binding a schema that references an uninstalled plugin #​23647
Improvements
  • [cli] Add options to pulumi stack get for parity with bare pulumi stack #​23623
  • [cli] Add --output flag to about and whoami commands #​23651
Features
  • [engine] Add support for 'snippets', blocks of PCL kept in state to track ad-hoc resources #​23286
  • [engine] Send the address of a schema loader service to resource providers as part of the provider handshake #​23645
  • [engine] Send the address of a package resolver service to resource providers as part of the provider handshake #​23654
Bug Fixes
  • [programgen] Guard references to conditionally-created (boolean range) resources in generated Python and NodeJS programs so they type-check #​23634
  • [programgen] Generate map range resource collections as key-indexed maps in Python and NodeJS so they can be indexed by key #​23639
Features
  • [sdk/nodejs] Add Output.recover to catch and recover from exceptions in outputs #​23642
Bug Fixes
  • [sdkgen] Fix extra trailing new lines in comments #​23619
Improvements
  • [sdkgen] Require callers to pass an explicit schema loader when binding PCL programs and package schemas #​23672

v3.247.0

Compare Source

Bug Fixes
  • [cli] Ensure pulumi logout clears the current tokenless backend in coding agent environments #​23540
  • [cli] Read Git metadata correctly in repositories that enable the worktreeConfig extension, such as those hosted on Azure DevOps #​23535
Improvements
  • [cli] Respect PULUMI_SKIP_CONFIRMATIONS whenever we ask for confirmation #​23607
  • [cli] Use list and remove as the canonical names for list/remove commands, with ls and rm as aliases #​23608
Features
  • [cli/config] Add --raw flag to pulumi config set to avoid stripping newlines when input is piped through stdin #​23593
Bug Fixes
  • [cli/display] Show interrupted steps as interrupted instead of as finished #​23510
Features
  • [cli/do] Add --provider flag to pull provider config to use from existing provider state #​23560
  • [cli/engine] Resource providers now receive the active login's API address and access token through PULUMI_API and PULUMI_ACCESS_TOKEN #​23589
  • [cli/neo] Add a --disable-integrations flag to pulumi neo that runs the task with no integration credentials #​23531
Bug Fixes
  • [cli/plugin] Allow plugin tarballs containing symlinks #​23587
Miscellaneous
  • [cli/plugin] Document the pulumi plugin run command by including it in the generated CLI docs #​23559
Improvements
  • [docs] Generate redirects for command aliases #​23610
Features
  • [engine] Send the address of a mapper service to resource providers as part of the provider handshake
Improvements
  • [engine] Serve raw schema bytes from the engine's schema loader service instead of binding and re-marshaling the full schema on every request #​23551
Features
  • [programgen/go] Support functions with multiArgumentInputs #​23554
  • [programgen/python] Support functions with multiArgumentInputs #​23574
Improvements
  • [sdk/go] The plugin.Host interface is now stateless with respect to workspaces; host methods that boot or resolve plugins take a plugin.Context carrying the workspace state, and closing a plugin.Context no longer closes a host that was passed in to its constructor #​23508
Features
  • [sdk/nodejs] Registered resources can now be retrieved from the mock monitor for test assertions #​20539
Bug Fixes
  • [sdk/nodejs] Fix pulumi package add failing with pnpm when the generated SDK has a scoped package name (@-prefix), caused by pnpm's pkg set rejecting @ in dot-notation property paths #​23365
Improvements
  • [sdk/nodejs] Allow running the postinstall script for local SDKs under npm 12 #​23568
Features
  • [sdk/python] Add Output.recover to catch and recover from exceptions in outputs #​23591
Improvements
  • [sdk/python] Add register_package helper to cache package references per deployment #​22459
Features
  • [sdkgen] Adds support for language agnostic cross references in schemas. Use the form {{% ref <target> %}} to reference other schema components in markdown descriptions. Such as `{{% ref #​21369
  • [sdkgen] Add extension parameterization to the package schema model #​23536
Miscellaneous
  • [sdkgen] Modules can no longer be nested under the index module, this was never well supported and is now a strict bind error #​23436
Features
  • [sdkgen/go] Support functions with multiArgumentInputs #​23554
  • [sdkgen/python] Support functions with multiArgumentInputs #​23574
  • [cli/auth] When credentials.json carries an OAuth refresh token, the CLI now auto-refreshes the access token on 401 and retries the request once, instead of returning a "login required" error #​23430
Bug Fixes

v3.246.0

Compare Source

Features
  • [cli] Add pulumi logs ls to list automatic log files #​23449
  • [cli] Add pulumi logs rm to remove automatic log files
  • [cli] Include the list of affected resources (urn, type, name, op, parent) in --output json for preview, up, destroy, and refresh
  • [cli] Support Pulumi projects without a runtime across CLI operations and Automation API project settings #​23489
  • [cli/do] Add a --stateless flag to pulumi do. create, patch, and delete now require --stateless for the existing direct-provider behavior; the default will switch to a stateful (engine-driven) implementation in a future release
  • [cli/env] Support ephemeral agent auth instructions for ESC API unauthorized errors in detected agent sessions #​23402
  • [sdk] Add a read field to customTimeouts so users can configure a timeout for resource read operations #​23459
Bug Fixes
  • [backend/diy] Fix backwards incompatible gocloud.dev changes #​23525
  • [cli/neo] The pulumi neo TUI now adapts its colors to the terminal background instead of hardcoding a dark scheme #​23333
  • [cli/neo] Increase the pulumi neo task-creation timeout so backend cold starts no longer fail #​23444
  • [cli/neo] Ensure pulumi neo resolves the same Pulumi access token as pulumi preview when running in-process preview and up operations #​23452
  • [pcl] Recursively fill schema-declared output fields on resources, so PCL programs that traverse into an optional inner field of a nested output object no longer fail at runtime with an "unsupported attribute" error #​23458
  • [pcl] Resolve config variables whose default value is derived from an invoke to the invoke's result instead of an unknown value #​23494
  • [programgen/go] double-wrapping of plain values passed to input types when generating Go programs #​23418
  • [programgen/go] Fix Go program generation to no longer produce **T when an output traversal lands on an optional struct field, and to emit the correct pulumi.<T>ArrayOutput cast for traversals to slice-typed fields #​23458
  • [sdk] Reject tar entries with path traversal components when extracting archives #​23485
  • [sdk/go] Applying a transformation to a resource no longer drops the resource's parent in the RegisterResource call #​14826
  • [sdk/nodejs] Fix local SDKs added with pulumi package add not being built when using pnpm 10.34.2 or newer
  • [sdkgen] Validate schema names to not contain whitespace or control characters [#​23460](https://redirect

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • Monday through Friday (* * * * 1-5)

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@pulumi-renovate pulumi-renovate Bot added dependencies Pull requests that update a dependency file impact/no-changelog-required This issue doesn't require a CHANGELOG update labels Dec 18, 2025
@pulumi-renovate
pulumi-renovate Bot enabled auto-merge (squash) December 18, 2025 18:47
@pulumi-renovate

pulumi-renovate Bot commented Dec 18, 2025

Copy link
Copy Markdown
Contributor Author

ℹ Artifact update notice

File name: examples/go/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 15 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.0 -> 1.25.8
github.com/pulumi/pulumi/sdk/v3 v3.212.0 -> v3.243.0
github.com/charmbracelet/bubbles v0.16.1 -> v1.0.0
github.com/cloudflare/circl v1.6.3 -> v1.6.3
github.com/hashicorp/hcl/v2 v2.22.0 -> v2.24.0
github.com/lucasb-eyer/go-colorful v1.2.0 -> v1.4.0
github.com/mattn/go-isatty v0.0.20 -> v0.0.22
github.com/mattn/go-runewidth v0.0.15 -> v0.0.23
github.com/muesli/termenv v0.15.2 -> v0.16.0
github.com/pgavlin/fx/v2 v2.0.10 -> v2.0.12
github.com/rivo/uniseg v0.4.4 -> v0.4.7
github.com/spf13/cobra v1.10.1 -> v1.10.2
google.golang.org/genproto/googleapis/rpc v0.0.0-20251202230838-ff82c1b0f217 -> v0.0.0-20260522204824-7f3bc5b78da9
google.golang.org/grpc v1.79.3 -> v1.81.1
google.golang.org/protobuf v1.36.10 -> v1.36.11
lukechampine.com/frand v1.4.2 -> v1.5.1
File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 28 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.0 -> 1.25.11
github.com/pulumi/pulumi/sdk/v3 v3.212.0 -> v3.252.0
github.com/ProtonMail/go-crypto v1.1.6 -> v1.4.1
github.com/charmbracelet/bubbles v0.16.1 -> v1.0.0
github.com/cloudflare/circl v1.6.3 -> v1.6.3
github.com/davecgh/go-spew v1.1.1 -> v1.1.2-0.20180830191138-d8f796af33cc
github.com/hashicorp/hcl/v2 v2.22.0 -> v2.24.0
github.com/kevinburke/ssh_config v1.2.0 -> v1.6.0
github.com/lucasb-eyer/go-colorful v1.2.0 -> v1.4.0
github.com/mattn/go-isatty v0.0.20 -> v0.0.22
github.com/mattn/go-runewidth v0.0.15 -> v0.0.24
github.com/muesli/termenv v0.15.2 -> v0.16.0
github.com/pgavlin/fx/v2 v2.0.10 -> v2.0.12
github.com/pmezard/go-difflib v1.0.0 -> v1.0.1-0.20181226105442-5d4384ee4fb2
github.com/rivo/uniseg v0.4.4 -> v0.4.7
github.com/spf13/cobra v1.10.1 -> v1.10.2
github.com/zclconf/go-cty v1.14.0 -> v1.16.3
golang.org/x/crypto v0.52.0 -> v0.54.0
golang.org/x/mod v0.35.0 -> v0.37.0
golang.org/x/net v0.55.0 -> v0.57.0
golang.org/x/sync v0.20.0 -> v0.22.0
golang.org/x/sys v0.45.0 -> v0.47.0
golang.org/x/term v0.43.0 -> v0.45.0
golang.org/x/text v0.37.0 -> v0.40.0
golang.org/x/tools v0.44.0 -> v0.47.0
google.golang.org/genproto/googleapis/rpc v0.0.0-20251202230838-ff82c1b0f217 -> v0.0.0-20260706201446-f0a921348800
google.golang.org/grpc v1.79.3 -> v1.82.0
google.golang.org/protobuf v1.36.10 -> v1.36.11
lukechampine.com/frand v1.4.2 -> v1.5.1

@github-actions

github-actions Bot commented Dec 18, 2025

Copy link
Copy Markdown

Does the PR have any schema changes?

Generated by schema-tools v0.8.1.

Looking good! No breaking changes found.
No new resources/functions/types.

@pulumi-renovate pulumi-renovate Bot changed the title Update module github.com/pulumi/pulumi/pkg/v3 to v3.213.0 Update first-party Pulumi dependencies Dec 26, 2025
@codecov

codecov Bot commented Dec 26, 2025

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 55.76%. Comparing base (e3130da) to head (1677477).

Additional details and impacted files
@@           Coverage Diff           @@
##             main     #961   +/-   ##
=======================================
  Coverage   55.76%   55.76%           
=======================================
  Files           4        4           
  Lines          52       52           
=======================================
  Hits           29       29           
  Misses         22       22           
  Partials        1        1           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 4 times, most recently from cdea9cd to b5026c8 Compare January 3, 2026 21:40
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 2 times, most recently from b0fee5b to aeaa4f9 Compare January 7, 2026 20:59
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 5 times, most recently from a84b69c to 8fb9478 Compare January 29, 2026 18:55
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 5 times, most recently from 24bb864 to 810f901 Compare February 11, 2026 13:46
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 4 times, most recently from 9690a99 to 11311d9 Compare February 19, 2026 17:23
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 3 times, most recently from 880f1f1 to c1798a4 Compare March 30, 2026 22:47
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 3 times, most recently from bfc13ab to 2bf174b Compare April 9, 2026 01:37
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 17 times, most recently from ff53dca to db1202c Compare April 16, 2026 19:11
@pulumi-renovate
pulumi-renovate Bot force-pushed the renovate/pulumi branch 4 times, most recently from 2af8bc6 to cef6117 Compare April 17, 2026 21:15
@pulumi-renovate

pulumi-renovate Bot commented Jul 16, 2026

Copy link
Copy Markdown
Contributor Author

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 16 additional dependencies were updated

Details:

Package Change
github.com/pulumi/pulumi/sdk/v3 v3.256.0 -> v3.259.0
github.com/charmbracelet/x/ansi v0.11.7 -> v0.11.8
github.com/grpc-ecosystem/grpc-gateway/v2 v2.29.0 -> v2.30.0
github.com/mattn/go-runewidth v0.0.27 -> v0.0.28
github.com/xo/terminfo v0.0.0-20220910002029-abceb7e1c41e -> v1.0.0
go.opentelemetry.io/collector/featuregate v1.64.0 -> v1.65.0
go.opentelemetry.io/collector/pdata v1.64.0 -> v1.65.0
golang.org/x/crypto v0.54.0 -> v0.55.0
golang.org/x/mod v0.37.0 -> v0.38.0
golang.org/x/net v0.57.0 -> v0.58.0
golang.org/x/text v0.40.0 -> v0.41.0
golang.org/x/tools v0.47.0 -> v0.48.0
google.golang.org/genproto/googleapis/api v0.0.0-20260803160001-6ac0973c030d -> v0.0.0-20260819154853-08b0e4226688
google.golang.org/genproto/googleapis/rpc v0.0.0-20260803160001-6ac0973c030d -> v0.0.0-20260819154853-08b0e4226688
google.golang.org/grpc v1.83.0 -> v1.83.1
google.golang.org/protobuf v1.36.11 -> v1.36.12

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file impact/no-changelog-required This issue doesn't require a CHANGELOG update

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants