> ## Documentation Index
> Fetch the complete documentation index at: https://docs.getbifrost.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# v1.5.12

> v1.5.12 changelog - 2026-08-19

<Update label="Bifrost Enterprise" description="v1.5.12">
  ## Changelog

  This release keeps the OSS transports base at `v1.6.11` and moves the OSS core to `v1.7.13`. The enterprise work is a rework of identity provisioning: a new provider-wide "provisioning source" mode that makes SCIM the single owner of user identity, protection for SCIM-owned and admin-owned rows across OIDC login, token refresh, and periodic sync, and a fix for quota and virtual key APIs that were reading stale in-memory values instead of the config store.

  ## ✨ Features

  * **Provisioning Source Mode (SCIM Only or SCIM Plus Login Claims)** - A new provider-wide `claims_sync_mode` setting replaces the old per-user provenance checks. In "SCIM only" mode, IdP login claims never create or modify a user: an unknown user hitting the OIDC callback or a token refresh gets a 403 with a "provision via SCIM" message, and role, team, and business unit sync is skipped entirely. The wizard's attribute-mapping step exposes this as a "Provisioning source" dropdown. [Docs](https://docs.getbifrost.ai/enterprise/user-provisioning)
  * **Single Claims Sync Funnel** - Role, team, and business unit sync from IdP claims now runs through one `syncUserInfoFromClaims` entry point used by login, dashboard token refresh, and the periodic sweep, instead of three near-identical code paths. Memberships are applied before the role so a role-driven auto-assignment sees the final team set, and the periodic sweep refreshes each session once instead of twice. [Docs](https://docs.getbifrost.ai/enterprise/user-provisioning)
  * **Manual Provenance for Team to Business Unit Edges** - A team to business unit edge assigned through the business unit API or a config reconcile is now stamped `source=manual`. The OIDC claims sync can no longer clear or overwrite it on a truncated groups claim, while an authoritative SCIM push may still adopt it and take over its lifecycle. [Docs](https://docs.getbifrost.ai/enterprise/user-provisioning)

  ## 🌎 Open Source Features

  * **Gemini Server-Side Tool Calls with Thought Signature Fidelity** - When `includeServerSideToolInvocations` is on, the `toolCall` and `toolResponse` parts Gemini returns for built-in tools such as Google Search are now mapped to `web_search_call` items with Gemini's own call IDs and queries, instead of being dropped silently. Unmapped built-in tool types survive the native round trip, and each `thoughtSignature` appears exactly once across the reconstructed parts so a replayed turn is accepted. [Docs](https://docs.getbifrost.ai/providers/supported-providers/gemini)
  * **Per Model Family URL Resolution on Vertex** - A `gs://` URI is now forwarded to Gemini and Gemma as `fileData.fileUri`, which Vertex resolves under the caller's own project IAM and which is the only form that keeps multi-hundred-megabyte video inputs viable. For Claude on Vertex, which accepts base64 sources only, the object is read from Cloud Storage using the request key's own Google credentials. `http(s)` sources are still always fetched. [Docs](https://docs.getbifrost.ai/providers/supported-providers/vertex)

  ## 🐞 Fixed

  * **Quota and Virtual Key APIs Returned Stale Values** - `QuotaGovernanceForVK` read budgets and rate limits from the in-memory local store instead of the config store, so the quota API and the get-virtual-keys API could report stale numbers. Lookups now go to the config store and errors are propagated instead of being swallowed.
  * **SCIM Group List Included Non-SCIM Memberships** - The SCIM list-group response no longer includes manually assigned or OIDC-owned memberships. Some IdPs treat a "Push now" on an existing client as a reconcile and send a patch based on what the list returned, which silently adopted those memberships as SCIM-owned.
  * **SCIM Profile Wiped by an OIDC Login** - `CreateOrUpdateUserFromOAuth` overwrote `ParsedProfile` wholesale, so a thin login ID token erased SCIM-imported attributes. The upsert now takes a `PreserveProfile` option decided by the existing user's provenance, and the provenance lookup also covers soft-deleted rows so reactivating a SCIM user keeps their profile. A provenance lookup error fails closed.
  * **SCIM-Owned Rows Not Reclaimed in Both Mode** - In "both" mode with SCIM disabled, claims are authoritative again: a SCIM-owned team membership not matched by the current claims is reclaimed rather than spared forever. In SCIM-only mode those rows stay foreign-preserved and an OIDC login is a no-op for memberships.
  * **OIDC Login Mutated a SCIM-Synced Identity** - Login gated only the role on SCIM ownership while team and business unit sync ran unconditionally. The whole identity is now gated, on login, on refresh, and on the periodic sweep.
  * **Identity Not Re-Synced on Dashboard Token Refresh** - `oauthRefresh` rotated the token and cookie but never re-synced role, team, or business unit, so an IdP change only took effect after a full re-login.
  * **Keycloak Auth Cookie Used the Wrong Token** - The Keycloak auth cookie stores the access token again, not the ID token. Keycloak's native role claims (`realm_access.roles` and `resource_access.{client}.roles`) live in the access token, so the earlier switch dropped them. This reverses the ID-token change shipped in v1.5.11.
  * **Virtual Keys Dropped When a Role Profile Was Applied** - `applyRoleProfile` now passes `preserveVirtualKeys=true` for existing users on every entry point (SCIM, OIDC, refresh, sweep, and import), which was previously inconsistent per path.
  * **Manual Memberships Not Adopted by SCIM Pushes** - A manually assigned team membership is now adopted and re-stamped as SCIM-owned by `SyncUserTeamMemberships` and `RelabelTeamMembersAsScimGroup`, not only by the live SCIM user PUT, so the bulk sync and group-push paths behave the same way.
  * **Racing Role Sync on Token Refresh** - `RefreshToken` no longer spawns its own role-sync goroutine. All three callers already sync after it, so the extra goroutine only raced them.
  * **OIDC Session Floor Not Applied on Refresh** - `OIDCSessionMinTTL` moved to `core/scim` and is now applied in `TokenRefresher.RefreshToken` as well, matching the dashboard refresh and session-create paths.
  * **Bedrock Rejected Non-PDF Documents** - Document format was resolved only from the Bifrost-specific `file_type` field, which OpenAI-compatible clients never send, so XLSX, DOCX, CSV, and Markdown all fell through to a hardcoded `pdf` default and were rejected. Format now resolves in priority order: `file_type`, data URL media type, filename extension, then `pdf`. Data URL parsing also handles media type parameters and uppercase headers, and the Responses path fetches `file_url` instead of emitting an empty document block. [Docs](https://docs.getbifrost.ai/providers/supported-providers/bedrock)
  * **Bedrock Rerank Rejected Bare Model IDs** - Rerank is the one Bedrock surface that names its model by ARN, so a bare ID such as `amazon.rerank-v1:0` returned a 400. The foundation-model ARN is now synthesized from the resolved region, with the partition derived from it (`aws`, `aws-cn`, `aws-us-gov`), and an explicit ARN still passes through untouched. [Docs](https://docs.getbifrost.ai/providers/supported-providers/bedrock)
  * **Gemini 3 Tools Advertised but Never Invoked** - Reasoning depth on Gemini 3 is selected per model, not per family. Bifrost branched only on whether the name contained "pro", so an unsupported `thinkingLevel` was rejected and `thinkingBudget: 0` suppressed the internal reasoning Gemini 3 needs for function selection. A per-model support table now clamps a requested level to the nearest supported rung, and "none" effort floors at the model's lowest level instead of zeroing the budget. [Docs](https://docs.getbifrost.ai/providers/supported-providers/gemini)
  * **Gemini Response With No Candidates** - A thinking model that spends its whole output budget before emitting a token is a successful 200 with an empty answer, but the candidate was dropped, leaving a body with no `candidates` key that Gemini-shaped clients dereference blind. A candidate carrying its finish reason is now always emitted, and payload-free parts that marshal to `{}` are dropped when assembling it.
  * **Reasoning Blocks Opened as Redacted** - A reasoning stream item carrying both an encrypted payload and a visible summary was opened as a `redacted_thinking` block, so Anthropic SDK clients threw "Content block is not a thinking block" on the signature delta or silently dropped the summary text. `redacted_thinking` is now used only when the encrypted payload is the sole content.
  * **JSON Schema Key Order Re-Sorted** - Structured Outputs generates fields in the order the schema declares them, so re-sorting a caller's schema changes model behavior. Declared key order is now preserved through `response_format` handling across the shared schema layer and the provider paths that rewrite it.
  * **URL Sources Failed Instead of Passing Through** - A `gs://`, `s3://`, or scheme-less source that Bifrost cannot download is no longer treated as a failure on the OpenAI and native Anthropic paths. Only `http(s)` is fetched; other schemes travel as `{"type":"url"}` so the provider decides whether it can resolve them. `file_url` is also no longer stripped from OpenAI-shaped chat file blocks on marshal, which used to produce `{"type":"file","file":{}}` and an unrelated "missing file\_id" complaint.

  ## 🗄️ Database Migrations

  No new database migrations in this release, in either the OSS layer or the enterprise repo.

  ## 📀 Base OSS version

  `transports/v1.6.11`

  ## 🔌 If you are compiling plugin against this release - use following deps

  ```
  module github.com/maximhq/bifrost-enterprise

  go 1.26.5

  require (
  	cloud.google.com/go/bigquery v1.74.0
  	cloud.google.com/go/pubsub/v2 v2.4.0
  	cloud.google.com/go/secretmanager v1.20.0
  	github.com/Azure/azure-sdk-for-go/sdk/azcore v1.20.0
  	github.com/Azure/azure-sdk-for-go/sdk/azidentity v1.13.1
  	github.com/DataDog/datadog-go/v5 v5.6.0
  	github.com/DataDog/dd-trace-go/v2 v2.4.0
  	github.com/aws/aws-sdk-go-v2 v1.42.0
  	github.com/aws/aws-sdk-go-v2/config v1.32.14
  	github.com/aws/aws-sdk-go-v2/credentials v1.19.14
  	github.com/aws/aws-sdk-go-v2/service/bedrockruntime v1.50.6
  	github.com/aws/aws-sdk-go-v2/service/secretsmanager v1.42.2
  	github.com/aws/aws-sdk-go-v2/service/sts v1.41.10
  	github.com/bytedance/sonic v1.15.2
  	github.com/coreos/go-oidc/v3 v3.12.0
  	github.com/fasthttp/router v1.5.4
  	github.com/golang-jwt/jwt/v5 v5.3.1
  	github.com/google/cel-go v0.29.0
  	github.com/google/uuid v1.6.0
  	github.com/gorilla/websocket v1.5.4-0.20250319132907-e064f32e3674
  	github.com/grandcat/zeroconf v1.0.0
  	github.com/hashicorp/consul/api v1.28.2
  	github.com/hashicorp/memberlist v0.5.4
  	github.com/hashicorp/vault/api v1.23.0
  	github.com/klauspost/compress v1.18.6
  	github.com/maximhq/bifrost/core v1.7.13
  	github.com/maximhq/bifrost/framework v1.5.10
  	github.com/maximhq/bifrost/plugins/governance v1.6.14
  	github.com/maximhq/bifrost/plugins/logging v1.6.10
  	github.com/maximhq/bifrost/plugins/prompts v1.0.37
  	github.com/maximhq/bifrost/plugins/semanticcache v1.5.37
  	github.com/maximhq/bifrost/transports v1.6.11
  	github.com/nakabonne/tstorage v0.3.6
  	github.com/segmentio/kafka-go v0.4.47
  	github.com/stretchr/testify v1.11.1
  	github.com/testcontainers/testcontainers-go v0.42.0
  	github.com/tetratelabs/wazero v1.11.0
  	github.com/valyala/fasthttp v1.71.0
  	github.com/zricethezav/gitleaks/v8 v8.30.1
  	go.etcd.io/etcd/client/v3 v3.6.6
  	golang.org/x/crypto v0.53.0
  	golang.org/x/oauth2 v0.36.0
  	golang.org/x/sync v0.21.0
  	google.golang.org/api v0.282.0
  	google.golang.org/genproto/googleapis/rpc v0.0.0-20260523011958-0a33c5d7ca68
  	google.golang.org/grpc v1.82.1
  	google.golang.org/protobuf v1.36.12-0.20260120151049-f2248ac996af
  	gorm.io/driver/sqlite v1.6.0
  	gorm.io/gorm v1.31.1
  	k8s.io/api v0.34.1
  	k8s.io/apimachinery v0.34.1
  	k8s.io/client-go v0.34.1
  )

  require (
  	cel.dev/expr v0.25.1 // indirect
  	cloud.google.com/go v0.123.0 // indirect
  	cloud.google.com/go/auth v0.20.0 // indirect
  	cloud.google.com/go/auth/oauth2adapt v0.2.8 // indirect
  	cloud.google.com/go/compute/metadata v0.9.0 // indirect
  	cloud.google.com/go/iam v1.7.0 // indirect
  	cloud.google.com/go/monitoring v1.24.3 // indirect
  	cloud.google.com/go/storage v1.62.1 // indirect
  	dario.cat/mergo v1.0.2 // indirect
  	github.com/Azure/azure-sdk-for-go/sdk/internal v1.11.2 // indirect
  	github.com/Azure/go-ansiterm v0.0.0-20250102033503-faa5f7b0171c // indirect
  	github.com/AzureAD/microsoft-authentication-library-for-go v1.6.0 // indirect
  	github.com/BobuSumisu/aho-corasick v1.0.3 // indirect
  	github.com/ClickHouse/ch-go v0.65.0 // indirect
  	github.com/ClickHouse/clickhouse-go/v2 v2.32.0 // indirect
  	github.com/DataDog/datadog-agent/comp/core/tagger/origindetection v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/obfuscate v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/opentelemetry-mapping-go/otlp/attributes v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/proto v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/remoteconfig/state v0.73.0-rc.1 // indirect
  	github.com/DataDog/datadog-agent/pkg/trace v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/util/log v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/util/scrubber v0.71.0 // indirect
  	github.com/DataDog/datadog-agent/pkg/version v0.71.0 // indirect
  	github.com/DataDog/go-libddwaf/v4 v4.6.1 // indirect
  	github.com/DataDog/go-runtime-metrics-internal v0.0.4-0.20250721125240-fdf1ef85b633 // indirect
  	github.com/DataDog/go-sqllexer v0.1.8 // indirect
  	github.com/DataDog/go-tuf v1.1.1-0.5.2 // indirect
  	github.com/DataDog/sketches-go v1.4.7 // indirect
  	github.com/GoogleCloudPlatform/opentelemetry-operations-go/detectors/gcp v1.32.0 // indirect
  	github.com/GoogleCloudPlatform/opentelemetry-operations-go/exporter/metric v0.55.0 // indirect
  	github.com/GoogleCloudPlatform/opentelemetry-operations-go/internal/resourcemapping v0.55.0 // indirect
  	github.com/Masterminds/goutils v1.1.1 // indirect
  	github.com/Masterminds/semver/v3 v3.4.0 // indirect
  	github.com/Masterminds/sprig/v3 v3.3.0 // indirect
  	github.com/Microsoft/go-winio v0.6.2 // indirect
  	github.com/ProtonMail/go-crypto v1.1.6 // indirect
  	github.com/STARRY-S/zip v0.2.1 // indirect
  	github.com/andybalholm/brotli v1.2.2 // indirect
  	github.com/antlr4-go/antlr/v4 v4.13.1 // indirect
  	github.com/apache/arrow/go/v15 v15.0.2 // indirect
  	github.com/apapsch/go-jsonmerge/v2 v2.0.0 // indirect
  	github.com/armon/go-metrics v0.4.1 // indirect
  	github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.10 // indirect
  	github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.18.21 // indirect
  	github.com/aws/aws-sdk-go-v2/internal/configsources v1.4.29 // indirect
  	github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.7.29 // indirect
  	github.com/aws/aws-sdk-go-v2/internal/ini v1.8.6 // indirect
  	github.com/aws/aws-sdk-go-v2/internal/v4a v1.4.22 // indirect
  	github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.13.7 // indirect
  	github.com/aws/aws-sdk-go-v2/service/internal/checksum v1.9.13 // indirect
  	github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.13.21 // indirect
  	github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.19.21 // indirect
  	github.com/aws/aws-sdk-go-v2/service/s3 v1.99.0 // indirect
  	github.com/aws/aws-sdk-go-v2/service/signin v1.0.9 // indirect
  	github.com/aws/aws-sdk-go-v2/service/sso v1.30.15 // indirect
  	github.com/aws/aws-sdk-go-v2/service/ssooidc v1.35.19 // indirect
  	github.com/aws/smithy-go v1.27.1 // indirect
  	github.com/aymanbagabas/go-osc52/v2 v2.0.1 // indirect
  	github.com/bahlo/generic-list-go v0.2.0 // indirect
  	github.com/beorn7/perks v1.0.1 // indirect
  	github.com/blevesearch/go-porterstemmer v1.0.3 // indirect
  	github.com/bodgit/plumbing v1.3.0 // indirect
  	github.com/bodgit/sevenzip v1.6.0 // indirect
  	github.com/bodgit/windows v1.0.1 // indirect
  	github.com/buger/jsonparser v1.2.0 // indirect
  	github.com/bytedance/gopkg v0.1.3 // indirect
  	github.com/bytedance/sonic/loader v0.5.1 // indirect
  	github.com/cenkalti/backoff v2.2.1+incompatible // indirect
  	github.com/cenkalti/backoff/v4 v4.3.0 // indirect
  	github.com/cenkalti/backoff/v5 v5.0.3 // indirect
  	github.com/cespare/xxhash/v2 v2.3.0 // indirect
  	github.com/charmbracelet/lipgloss v0.5.0 // indirect
  	github.com/cihub/seelog v0.0.0-20170130134532-f561c5e57575 // indirect
  	github.com/cloudflare/circl v1.6.3 // indirect
  	github.com/cloudwego/base64x v0.1.6 // indirect
  	github.com/cncf/xds/go v0.0.0-20260202195803-dba9d589def2 // indirect
  	github.com/containerd/errdefs v1.0.0 // indirect
  	github.com/containerd/errdefs/pkg v0.3.0 // indirect
  	github.com/containerd/log v0.1.0 // indirect
  	github.com/containerd/platforms v0.2.1 // indirect
  	github.com/coreos/go-semver v0.3.1 // indirect
  	github.com/coreos/go-systemd/v22 v22.5.0 // indirect
  	github.com/cpuguy83/dockercfg v0.3.2 // indirect
  	github.com/cyphar/filepath-securejoin v0.6.1 // indirect
  	github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // indirect
  	github.com/dgryski/go-rendezvous v0.0.0-20200823014737-9f7001d12a5f // indirect
  	github.com/distribution/reference v0.6.0 // indirect
  	github.com/docker/go-connections v0.6.0 // indirect
  	github.com/docker/go-units v0.5.0 // indirect
  	github.com/dsnet/compress v0.0.2-0.20230904184137-39efe44ab707 // indirect
  	github.com/dustin/go-humanize v1.0.1 // indirect
  	github.com/ebitengine/purego v0.10.0 // indirect
  	github.com/emicklei/go-restful/v3 v3.12.2 // indirect
  	github.com/emirpasic/gods v1.18.1 // indirect
  	github.com/envoyproxy/go-control-plane/envoy v1.37.0 // indirect
  	github.com/envoyproxy/protoc-gen-validate v1.3.3 // indirect
  	github.com/fasthttp/websocket v1.5.12 // indirect
  	github.com/fatih/color v1.18.0 // indirect
  	github.com/fatih/semgroup v1.2.0 // indirect
  	github.com/felixge/httpsnoop v1.0.4 // indirect
  	github.com/fsnotify/fsnotify v1.8.0 // indirect
  	github.com/fxamacker/cbor/v2 v2.9.0 // indirect
  	github.com/gitleaks/go-gitdiff v0.9.1 // indirect
  	github.com/go-faster/city v1.0.1 // indirect
  	github.com/go-faster/errors v0.7.1 // indirect
  	github.com/go-git/gcfg v1.5.1-0.20230307220236-3a3c6141e376 // indirect
  	github.com/go-git/go-billy/v5 v5.9.0 // indirect
  	github.com/go-git/go-git/v5 v5.19.1 // indirect
  	github.com/go-jose/go-jose/v4 v4.1.4 // indirect
  	github.com/go-logr/logr v1.4.3 // indirect
  	github.com/go-logr/stdr v1.2.2 // indirect
  	github.com/go-ole/go-ole v1.3.0 // indirect
  	github.com/go-openapi/analysis v0.24.2 // indirect
  	github.com/go-openapi/errors v0.22.5 // indirect
  	github.com/go-openapi/jsonpointer v0.22.4 // indirect
  	github.com/go-openapi/jsonreference v0.21.4 // indirect
  	github.com/go-openapi/loads v0.23.2 // indirect
  	github.com/go-openapi/runtime v0.29.2 // indirect
  	github.com/go-openapi/spec v0.22.3 // indirect
  	github.com/go-openapi/strfmt v0.25.0 // indirect
  	github.com/go-openapi/swag v0.25.4 // indirect
  	github.com/go-openapi/swag/cmdutils v0.25.4 // indirect
  	github.com/go-openapi/swag/conv v0.25.4 // indirect
  	github.com/go-openapi/swag/fileutils v0.25.4 // indirect
  	github.com/go-openapi/swag/jsonname v0.25.4 // indirect
  	github.com/go-openapi/swag/jsonutils v0.25.4 // indirect
  	github.com/go-openapi/swag/loading v0.25.4 // indirect
  	github.com/go-openapi/swag/mangling v0.25.4 // indirect
  	github.com/go-openapi/swag/netutils v0.25.4 // indirect
  	github.com/go-openapi/swag/stringutils v0.25.4 // indirect
  	github.com/go-openapi/swag/typeutils v0.25.4 // indirect
  	github.com/go-openapi/swag/yamlutils v0.25.4 // indirect
  	github.com/go-openapi/validate v0.25.1 // indirect
  	github.com/go-viper/mapstructure/v2 v2.5.0 // indirect
  	github.com/goccy/go-json v0.10.5 // indirect
  	github.com/gogo/protobuf v1.3.2 // indirect
  	github.com/golang/groupcache v0.0.0-20241129210726-2c02b8208cf8 // indirect
  	github.com/golang/protobuf v1.5.4 // indirect
  	github.com/google/btree v1.1.3 // indirect
  	github.com/google/flatbuffers v23.5.26+incompatible // indirect
  	github.com/google/gnostic-models v0.7.0 // indirect
  	github.com/google/pprof v0.0.0-20251213031049-b05bdaca462f // indirect
  	github.com/google/s2a-go v0.1.9 // indirect
  	github.com/googleapis/enterprise-certificate-proxy v0.3.16 // indirect
  	github.com/googleapis/gax-go/v2 v2.22.0 // indirect
  	github.com/grpc-ecosystem/grpc-gateway/v2 v2.28.0 // indirect
  	github.com/h2non/filetype v1.1.3 // indirect
  	github.com/hashicorp/errwrap v1.1.0 // indirect
  	github.com/hashicorp/go-cleanhttp v0.5.2 // indirect
  	github.com/hashicorp/go-hclog v1.6.3 // indirect
  	github.com/hashicorp/go-immutable-radix v1.3.1 // indirect
  	github.com/hashicorp/go-metrics v0.5.4 // indirect
  	github.com/hashicorp/go-msgpack/v2 v2.1.5 // indirect
  	github.com/hashicorp/go-multierror v1.1.1 // indirect
  	github.com/hashicorp/go-retryablehttp v0.7.8 // indirect
  	github.com/hashicorp/go-rootcerts v1.0.2 // indirect
  	github.com/hashicorp/go-secure-stdlib/parseutil v0.2.0 // indirect
  	github.com/hashicorp/go-secure-stdlib/strutil v0.1.2 // indirect
  	github.com/hashicorp/go-sockaddr v1.0.7 // indirect
  	github.com/hashicorp/go-version v1.8.0 // indirect
  	github.com/hashicorp/golang-lru v1.0.2 // indirect
  	github.com/hashicorp/golang-lru/v2 v2.0.7 // indirect
  	github.com/hashicorp/hcl v1.0.1-vault-7 // indirect
  	github.com/hashicorp/serf v0.10.1 // indirect
  	github.com/huandu/xstrings v1.5.0 // indirect
  	github.com/invopop/jsonschema v0.13.0 // indirect
  	github.com/jackc/pgpassfile v1.0.0 // indirect
  	github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761 // indirect
  	github.com/jackc/pgx/v5 v5.9.2 // indirect
  	github.com/jackc/puddle/v2 v2.2.2 // indirect
  	github.com/jaswdr/faker/v2 v2.8.0 // indirect
  	github.com/jbenet/go-context v0.0.0-20150711004518-d14ea06fba99 // indirect
  	github.com/jinzhu/inflection v1.0.0 // indirect
  	github.com/jinzhu/now v1.1.5 // indirect
  	github.com/json-iterator/go v1.1.12 // indirect
  	github.com/kevinburke/ssh_config v1.2.0 // indirect
  	github.com/klauspost/cpuid/v2 v2.3.0 // indirect
  	github.com/klauspost/pgzip v1.2.6 // indirect
  	github.com/kylelemons/godebug v1.1.0 // indirect
  	github.com/lucasb-eyer/go-colorful v1.2.0 // indirect
  	github.com/lufia/plan9stats v0.0.0-20251013123823-9fd1530e3ec3 // indirect
  	github.com/magiconair/properties v1.8.10 // indirect
  	github.com/mailru/easyjson v0.9.1 // indirect
  	github.com/mark3labs/mcp-go v0.43.2 // indirect
  	github.com/mattn/go-colorable v0.1.14 // indirect
  	github.com/mattn/go-isatty v0.0.20 // indirect
  	github.com/mattn/go-runewidth v0.0.15 // indirect
  	github.com/mattn/go-sqlite3 v1.14.32 // indirect
  	github.com/maximhq/bifrost/plugins/compat v0.1.36 // indirect
  	github.com/maximhq/bifrost/plugins/maxim v1.6.37 // indirect
  	github.com/maximhq/bifrost/plugins/mocker v1.5.37 // indirect
  	github.com/maximhq/bifrost/plugins/modelcatalogresolver v1.0.18 // indirect
  	github.com/maximhq/bifrost/plugins/otel v1.4.9 // indirect
  	github.com/maximhq/bifrost/plugins/telemetry v1.5.37 // indirect
  	github.com/maximhq/maxim-go v0.2.1 // indirect
  	github.com/mholt/archives v0.1.2 // indirect
  	github.com/miekg/dns v1.1.68 // indirect
  	github.com/minio/minlz v1.0.0 // indirect
  	github.com/minio/simdjson-go v0.4.5 // indirect
  	github.com/mitchellh/copystructure v1.2.0 // indirect
  	github.com/mitchellh/go-homedir v1.1.0 // indirect
  	github.com/mitchellh/mapstructure v1.5.0 // indirect
  	github.com/mitchellh/reflectwalk v1.0.2 // indirect
  	github.com/moby/docker-image-spec v1.3.1 // indirect
  	github.com/moby/go-archive v0.2.0 // indirect
  	github.com/moby/moby/api v1.54.1 // indirect
  	github.com/moby/moby/client v0.4.0 // indirect
  	github.com/moby/patternmatcher v0.6.1 // indirect
  	github.com/moby/sys/sequential v0.6.0 // indirect
  	github.com/moby/sys/user v0.4.0 // indirect
  	github.com/moby/sys/userns v0.1.0 // indirect
  	github.com/moby/term v0.5.2 // indirect
  	github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
  	github.com/modern-go/reflect2 v1.0.3-0.20250322232337-35a7c28c31ee // indirect
  	github.com/muesli/reflow v0.2.1-0.20210115123740-9e1d0d53df68 // indirect
  	github.com/muesli/termenv v0.15.1 // indirect
  	github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
  	github.com/nwaples/rardecode/v2 v2.2.2 // indirect
  	github.com/oapi-codegen/runtime v1.1.1 // indirect
  	github.com/oklog/ulid v1.3.1 // indirect
  	github.com/onsi/ginkgo/v2 v2.25.1 // indirect
  	github.com/opencontainers/go-digest v1.0.0 // indirect
  	github.com/opencontainers/image-spec v1.1.1 // indirect
  	github.com/outcaste-io/ristretto v0.2.3 // indirect
  	github.com/paulmach/orb v0.11.1 // indirect
  	github.com/pelletier/go-toml/v2 v2.2.3 // indirect
  	github.com/philhofer/fwd v1.2.0 // indirect
  	github.com/pierrec/lz4/v4 v4.1.22 // indirect
  	github.com/pinecone-io/go-pinecone/v5 v5.3.0 // indirect
  	github.com/pion/datachannel v1.6.0 // indirect
  	github.com/pion/dtls/v3 v3.1.5 // indirect
  	github.com/pion/ice/v4 v4.2.1 // indirect
  	github.com/pion/interceptor v0.1.44 // indirect
  	github.com/pion/logging v0.2.4 // indirect
  	github.com/pion/mdns/v2 v2.1.0 // indirect
  	github.com/pion/randutil v0.1.0 // indirect
  	github.com/pion/rtcp v1.2.16 // indirect
  	github.com/pion/rtp v1.10.1 // indirect
  	github.com/pion/sctp v1.9.2 // indirect
  	github.com/pion/sdp/v3 v3.0.18 // indirect
  	github.com/pion/srtp/v3 v3.0.10 // indirect
  	github.com/pion/stun/v3 v3.1.6 // indirect
  	github.com/pion/transport/v4 v4.0.2 // indirect
  	github.com/pion/turn/v4 v4.1.4 // indirect
  	github.com/pion/webrtc/v4 v4.2.9 // indirect
  	github.com/pjbgf/sha1cd v0.6.0 // indirect
  	github.com/pkg/browser v0.0.0-20240102092130-5ac0b6a4141c // indirect
  	github.com/pkg/errors v0.9.1 // indirect
  	github.com/planetscale/vtprotobuf v0.6.1-0.20240319094008-0393e58bdf10 // indirect
  	github.com/pmezard/go-difflib v1.0.1-0.20181226105442-5d4384ee4fb2 // indirect
  	github.com/power-devops/perfstat v0.0.0-20240221224432-82ca36839d55 // indirect
  	github.com/prometheus/client_golang v1.23.2 // indirect
  	github.com/prometheus/client_model v0.6.2 // indirect
  	github.com/prometheus/common v0.67.5 // indirect
  	github.com/prometheus/procfs v0.19.2 // indirect
  	github.com/puzpuzpuz/xsync/v3 v3.5.1 // indirect
  	github.com/qdrant/go-client v1.16.2 // indirect
  	github.com/redis/go-redis/v9 v9.17.2 // indirect
  	github.com/rivo/uniseg v0.2.0 // indirect
  	github.com/rs/zerolog v1.34.0 // indirect
  	github.com/ryanuber/go-glob v1.0.0 // indirect
  	github.com/sagikazarmark/locafero v0.7.0 // indirect
  	github.com/sagikazarmark/slog-shim v0.1.0 // indirect
  	github.com/santhosh-tekuri/jsonschema/v6 v6.0.2 // indirect
  	github.com/savsgio/gotils v0.0.0-20250408102913-196191ec6287 // indirect
  	github.com/sean-/seed v0.0.0-20170313163322-e2103e2c3529 // indirect
  	github.com/secure-systems-lab/go-securesystemslib v0.9.0 // indirect
  	github.com/segmentio/asm v1.2.0 // indirect
  	github.com/sergi/go-diff v1.4.0 // indirect
  	github.com/shirou/gopsutil/v4 v4.26.3 // indirect
  	github.com/shopspring/decimal v1.4.0 // indirect
  	github.com/sirupsen/logrus v1.9.4 // indirect
  	github.com/skeema/knownhosts v1.3.1 // indirect
  	github.com/sorairolake/lzip-go v0.3.5 // indirect
  	github.com/sourcegraph/conc v0.3.0 // indirect
  	github.com/spf13/afero v1.15.0 // indirect
  	github.com/spf13/cast v1.10.0 // indirect
  	github.com/spf13/pflag v1.0.6 // indirect
  	github.com/spf13/viper v1.19.0 // indirect
  	github.com/spiffe/go-spiffe/v2 v2.6.0 // indirect
  	github.com/stretchr/objx v0.5.3 // indirect
  	github.com/subosito/gotenv v1.6.0 // indirect
  	github.com/theckman/httpforwarded v0.4.0 // indirect
  	github.com/therootcompany/xz v1.0.1 // indirect
  	github.com/tidwall/gjson v1.18.0 // indirect
  	github.com/tidwall/match v1.1.1 // indirect
  	github.com/tidwall/pretty v1.2.1 // indirect
  	github.com/tidwall/sjson v1.2.5 // indirect
  	github.com/tinylib/msgp v1.3.0 // indirect
  	github.com/tklauser/go-sysconf v0.3.16 // indirect
  	github.com/tklauser/numcpus v0.11.0 // indirect
  	github.com/twitchyliquid64/golang-asm v0.15.1 // indirect
  	github.com/ulikunitz/xz v0.5.15 // indirect
  	github.com/valyala/bytebufferpool v1.0.0 // indirect
  	github.com/wasilibs/go-re2 v1.9.0 // indirect
  	github.com/wasilibs/wazero-helpers v0.0.0-20240620070341-3dff1577cd52 // indirect
  	github.com/weaviate/weaviate v1.38.0 // indirect
  	github.com/weaviate/weaviate-go-client/v5 v5.7.1 // indirect
  	github.com/wk8/go-ordered-map/v2 v2.1.8 // indirect
  	github.com/wlynxg/anet v0.0.5 // indirect
  	github.com/x448/float16 v0.8.4 // indirect
  	github.com/xanzy/ssh-agent v0.3.3 // indirect
  	github.com/xdg-go/pbkdf2 v1.0.0 // indirect
  	github.com/xdg-go/scram v1.1.2 // indirect
  	github.com/xdg-go/stringprep v1.0.4 // indirect
  	github.com/yosida95/uritemplate/v3 v3.0.2 // indirect
  	github.com/yusufpapurcu/wmi v1.2.4 // indirect
  	github.com/zeebo/xxh3 v1.1.0 // indirect
  	go.einride.tech/aip v0.83.0 // indirect
  	go.etcd.io/etcd/api/v3 v3.6.6 // indirect
  	go.etcd.io/etcd/client/pkg/v3 v3.6.6 // indirect
  	go.mongodb.org/mongo-driver v1.17.7 // indirect
  	go.opencensus.io v0.24.0 // indirect
  	go.opentelemetry.io/auto/sdk v1.2.1 // indirect
  	go.opentelemetry.io/collector/component v1.39.0 // indirect
  	go.opentelemetry.io/collector/featuregate v1.39.0 // indirect
  	go.opentelemetry.io/collector/internal/telemetry v0.133.0 // indirect
  	go.opentelemetry.io/collector/pdata v1.39.0 // indirect
  	go.opentelemetry.io/contrib/bridges/otelzap v0.12.0 // indirect
  	go.opentelemetry.io/contrib/detectors/gcp v1.43.0 // indirect
  	go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.67.0 // indirect
  	go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.67.0 // indirect
  	go.opentelemetry.io/otel v1.43.0 // indirect
  	go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc v1.43.0 // indirect
  	go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp v1.43.0 // indirect
  	go.opentelemetry.io/otel/log v0.14.0 // indirect
  	go.opentelemetry.io/otel/metric v1.43.0 // indirect
  	go.opentelemetry.io/otel/sdk v1.43.0 // indirect
  	go.opentelemetry.io/otel/sdk/metric v1.43.0 // indirect
  	go.opentelemetry.io/otel/trace v1.43.0 // indirect
  	go.opentelemetry.io/proto/otlp v1.10.0 // indirect
  	go.starlark.net v0.0.0-20260102030733-3fee463870c9 // indirect
  	go.uber.org/atomic v1.11.0 // indirect
  	go.uber.org/multierr v1.11.0 // indirect
  	go.uber.org/zap v1.27.0 // indirect
  	go.yaml.in/yaml/v2 v2.4.3 // indirect
  	go.yaml.in/yaml/v3 v3.0.4 // indirect
  	go4.org v0.0.0-20230225012048-214862532bf5 // indirect
  	golang.org/x/arch v0.23.0 // indirect
  	golang.org/x/exp v0.0.0-20260410095643-746e56fc9e2f // indirect
  	golang.org/x/mod v0.37.0 // indirect
  	golang.org/x/net v0.56.0 // indirect
  	golang.org/x/sys v0.46.0 // indirect
  	golang.org/x/telemetry v0.0.0-20260625142307-59b4966ccb57 // indirect
  	golang.org/x/term v0.44.0 // indirect
  	golang.org/x/text v0.39.0 // indirect
  	golang.org/x/time v0.15.0 // indirect
  	golang.org/x/tools v0.47.0 // indirect
  	golang.org/x/xerrors v0.0.0-20240903120638-7835f813f4da // indirect
  	google.golang.org/genproto v0.0.0-20260319201613-d00831a3d3e7 // indirect
  	google.golang.org/genproto/googleapis/api v0.0.0-20260414002931-afd174a4e478 // indirect
  	gopkg.in/evanphx/json-patch.v4 v4.12.0 // indirect
  	gopkg.in/inf.v0 v0.9.1 // indirect
  	gopkg.in/ini.v1 v1.67.0 // indirect
  	gopkg.in/warnings.v0 v0.1.2 // indirect
  	gopkg.in/yaml.v3 v3.0.1 // indirect
  	gorm.io/driver/clickhouse v0.7.0 // indirect
  	gorm.io/driver/postgres v1.6.0 // indirect
  	k8s.io/klog/v2 v2.130.1 // indirect
  	k8s.io/kube-openapi v0.0.0-20250710124328-f3f2b991d03b // indirect
  	k8s.io/utils v0.0.0-20250604170112-4c0f3b243397 // indirect
  	sigs.k8s.io/json v0.0.0-20241014173422-cfa47c3a1cc8 // indirect
  	sigs.k8s.io/randfill v1.0.0 // indirect
  	sigs.k8s.io/structured-merge-diff/v6 v6.3.0 // indirect
  	sigs.k8s.io/yaml v1.6.0 // indirect
  )
  ```
</Update>
