Recordsgolanggoogle.golang.org/protobuffailure issue
Failure signature
UNKNOWN exit 1 ERROR Evidence gap ×4
verifying go.opentelemetry.io/otel/metric@v1.43.0: checksum mismatch · downloaded: h1:<token> · go.sum: h1:<token> · SECURITY ERROR
Evidence quality: complete · go · unclassified-diagnostic · outer go mod · gap stage-unknown · First recorded: 2026-09-01 · Last seen: 2026-09-07
sha256:49d326dffb26…
Where it was measured
PASS means the release recorded a passing observation at UNKNOWN and no record of this failure. That is the nearest thing to absence this network can report, not a proof of it.
Where it reproduced
- os=linux · runtime=go@1.26 ×4 2026-09-01 → 2026-09-07
Nearest known PASS/FAIL boundaries
No release either side of this failure recorded a passing observation at this stage, so where it starts and stops is not established.
Dependency versions across releases
What each release of this package resolved its children to. A child whose version moved is listed first: that is where an upgrade changed something underneath you.
| Library | v1.36.12 | v1.36.11 | v1.36.10 | v1.36.6 |
|---|---|---|---|---|
| github.com/golang/protobuf | v1.5.2 | v1.5.3 | v1.5.0 | v1.5.0 |
| github.com/google/go-cmp | v0.7.0 | v0.7.0 | v0.7.0 | v0.5.5 |
Moved: 2 · unchanged at every release: 0
An edge records that a resolver placed one release beside another on a real machine. It is not a claim that the two work together; that question is answered by samples and contracts, not by presence here.
Evidence gaps
- The evidence for this failure was not preserved, so it has no established cause. Its stored hash is provenance, not an identity.
- The captured output could not establish: stage-unknown.
- No release in this window recorded a passing observation at UNKNOWN.
- Releases in this window never measured at UNKNOWN: 4
- No failure domain was inferred for this failure.
Published answers for the affected releases
- google.golang.org/protobuf v1.36.11: prototext.Marshal This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. HOWprototext.Marshalgo MIT-0 · 2026-09-02
- google.golang.org/protobuf v1.36.11: prototext.Unmarshal This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. HOWprototext.Unmarshalgo MIT-0 · 2026-09-02
- google.golang.org/protobuf v1.36.11: protojson.Unmarshal This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. HOWprotojson.Unmarshal MIT-0 · 2026-09-02