Skip to content

composer: update igor-php/igor-php requirement from ^0.9.7 to ^0.10.1 - #8

Merged
HecFranco merged 1 commit into
mainfrom
dependabot/composer/igor-php/igor-php-tw-0.10.1
Oct 7, 2026
Merged

HecFranco merged 1 commit into
mainfrom
dependabot/composer/igor-php/igor-php-tw-0.10.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 7, 2026

Copy link
Copy Markdown
Contributor

Updates the requirements on igor-php/igor-php to permit the latest version.

Release notes

Sourced from igor-php/igor-php's releases.

v0.10.1

🧟‍♂️⚡ Igor-PHP — Release Notes (v0.10.1)

This patch release fixes a regression introduced in v0.10.0: injected dependencies type-hinted with an interface were no longer recognized as resettable.


⚠️ Upgrade notes

  • Clear your Symfony cache after upgrading (php bin/console cache:clear) so that IgorPhpBundle regenerates igor_service_map.json with the interface aliases restored.

🐛 Bug Fixes

1. Interface aliases are back in the service map (#91)

  • What: Since v0.10.0 (#88), IgorDiscoveryPass runs after Symfony's removing passes. By then, RemovePrivateAliasesPass has already dropped every private alias, including the autowiring aliases such as App\CacheInterface => App\RedisCache. Without them, Igor could no longer resolve an interface type hint to the service behind it. A service injecting an interface whose implementation implements ResetInterface was flagged again for mutating that dependency, and interface-based reachability ranking (#80) was affected too.
  • How it works:
    • A new IgorAliasSnapshotPass records the container aliases in PassConfig::TYPE_BEFORE_REMOVING, right before they are removed. IgorDiscoveryPass merges this snapshot with the aliases still in the compiled container.
    • When the target of an alias was inlined by Symfony, the alias points to the target's class, so it still matches the inlined.<Class>.<id> definition.
    • Aliases to services pruned as unused are not exported, so the service map keeps matching the compiled container.

🧪 Quality

  • The real Symfony container compilation test now covers private interface aliases, including aliases to inlined and pruned services.
  • A new end-to-end Go test checks that a mutation through an interface alias to a resettable service is allowed, and flagged when the alias is missing.

📦 Contributors

Thanks to @​KevinMartinsDev for spotting the regression and testing the fix!

Commits
  • a4f9153 fix(bundle): keep private interface aliases in the service map (#91)
  • 56ceca2 fix(wrapper): send bootstrapper messages to stderr and exit 1 on errors (#90)
  • ffc52d5 Fix/issue 87 unused and inlined definitions (#88)
  • a68afcc Feat/ide plugin support (#89)
  • eb34a4e Feat/add twig to safe namespaces (#86)
  • f93c28c Feat/detect dangerous process state functions (#85)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Updates the requirements on [igor-php/igor-php](https://github.com/igor-php/igor-php) to permit the latest version.
- [Release notes](https://github.com/igor-php/igor-php/releases)
- [Commits](igor-php/igor-php@v0.9.7...v0.10.1)

---
updated-dependencies:
- dependency-name: igor-php/igor-php
  dependency-version: 0.10.1
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file php Pull requests that update php code labels Oct 7, 2026
@dependabot
dependabot Bot requested a review from HecFranco as a code owner October 7, 2026 06:44
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file php Pull requests that update php code labels Oct 7, 2026
@github-actions

github-actions Bot commented Oct 7, 2026

Copy link
Copy Markdown

@coderabbitai review

@HecFranco
HecFranco merged commit f675425 into main Oct 7, 2026
14 of 15 checks passed
@dependabot
dependabot Bot deleted the dependabot/composer/igor-php/igor-php-tw-0.10.1 branch October 7, 2026 08:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file php Pull requests that update php code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant