-
Notifications
You must be signed in to change notification settings - Fork 2k
Bump the actions group across 1 directory with 8 updates #5548
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the actions group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [google-github-actions/auth](https://github.com/google-github-actions/auth) | `2.1.2` | `2.1.3` | | [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) | `0.19.0` | `0.20.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.25.3` | `3.25.5` | | [codecov/codecov-action](https://github.com/codecov/codecov-action) | `4.3.1` | `4.4.0` | | [goreleaser/goreleaser-action](https://github.com/goreleaser/goreleaser-action) | `5.0.0` | `5.1.0` | | [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action) | `6.0.0` | `6.0.1` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.45.0` | `1.46.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.3.1` | `2.3.3` | Updates `google-github-actions/auth` from 2.1.2 to 2.1.3 - [Release notes](https://github.com/google-github-actions/auth/releases) - [Changelog](https://github.com/google-github-actions/auth/blob/main/CHANGELOG.md) - [Commits](google-github-actions/auth@55bd3a7...71fee32) Updates `aquasecurity/trivy-action` from 0.19.0 to 0.20.0 - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](aquasecurity/trivy-action@d710430...b2933f5) Updates `github/codeql-action` from 3.25.3 to 3.25.5 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@d39d31e...b7cec75) Updates `codecov/codecov-action` from 4.3.1 to 4.4.0 - [Release notes](https://github.com/codecov/codecov-action/releases) - [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md) - [Commits](codecov/codecov-action@5ecb98a...6d79887) Updates `goreleaser/goreleaser-action` from 5.0.0 to 5.1.0 - [Release notes](https://github.com/goreleaser/goreleaser-action/releases) - [Commits](goreleaser/goreleaser-action@7ec5c2b...5742e2a) Updates `golangci/golangci-lint-action` from 6.0.0 to 6.0.1 - [Release notes](https://github.com/golangci/golangci-lint-action/releases) - [Commits](golangci/golangci-lint-action@23faadf...a4f60bb) Updates `reviewdog/action-actionlint` from 1.45.0 to 1.46.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@51bfb04...89a03f6) Updates `ossf/scorecard-action` from 2.3.1 to 2.3.3 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@0864cf1...dc50aa9) --- updated-dependencies: - dependency-name: google-github-actions/auth dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: aquasecurity/trivy-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: codecov/codecov-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: goreleaser/goreleaser-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: golangci/golangci-lint-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: reviewdog/action-actionlint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: ossf/scorecard-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions ... Signed-off-by: dependabot[bot] <[email protected]>
jjngx
approved these changes
May 15, 2024
oseoin
approved these changes
May 15, 2024
ssrahul96
pushed a commit
to ssrahul96/kubernetes-ingress
that referenced
this pull request
Jun 20, 2024
Bumps the actions group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [google-github-actions/auth](https://github.com/google-github-actions/auth) | `2.1.2` | `2.1.3` | | [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) | `0.19.0` | `0.20.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.25.3` | `3.25.5` | | [codecov/codecov-action](https://github.com/codecov/codecov-action) | `4.3.1` | `4.4.0` | | [goreleaser/goreleaser-action](https://github.com/goreleaser/goreleaser-action) | `5.0.0` | `5.1.0` | | [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action) | `6.0.0` | `6.0.1` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.45.0` | `1.46.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.3.1` | `2.3.3` | Updates `google-github-actions/auth` from 2.1.2 to 2.1.3 - [Release notes](https://github.com/google-github-actions/auth/releases) - [Changelog](https://github.com/google-github-actions/auth/blob/main/CHANGELOG.md) - [Commits](google-github-actions/auth@55bd3a7...71fee32) Updates `aquasecurity/trivy-action` from 0.19.0 to 0.20.0 - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](aquasecurity/trivy-action@d710430...b2933f5) Updates `github/codeql-action` from 3.25.3 to 3.25.5 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@d39d31e...b7cec75) Updates `codecov/codecov-action` from 4.3.1 to 4.4.0 - [Release notes](https://github.com/codecov/codecov-action/releases) - [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md) - [Commits](codecov/codecov-action@5ecb98a...6d79887) Updates `goreleaser/goreleaser-action` from 5.0.0 to 5.1.0 - [Release notes](https://github.com/goreleaser/goreleaser-action/releases) - [Commits](goreleaser/goreleaser-action@7ec5c2b...5742e2a) Updates `golangci/golangci-lint-action` from 6.0.0 to 6.0.1 - [Release notes](https://github.com/golangci/golangci-lint-action/releases) - [Commits](golangci/golangci-lint-action@23faadf...a4f60bb) Updates `reviewdog/action-actionlint` from 1.45.0 to 1.46.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@51bfb04...89a03f6) Updates `ossf/scorecard-action` from 2.3.1 to 2.3.3 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@0864cf1...dc50aa9) --- updated-dependencies: - dependency-name: google-github-actions/auth dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: aquasecurity/trivy-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: codecov/codecov-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: goreleaser/goreleaser-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: golangci/golangci-lint-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: reviewdog/action-actionlint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: ossf/scorecard-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Jakub Jarosz <[email protected]>
This was referenced Jul 1, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
chore
Pull requests for routine tasks
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github_actions code
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the actions group with 8 updates in the / directory:
2.1.22.1.30.19.00.20.03.25.33.25.54.3.14.4.05.0.05.1.06.0.06.0.11.45.01.46.02.3.12.3.3Updates
google-github-actions/authfrom 2.1.2 to 2.1.3Release notes
Sourced from google-github-actions/auth's releases.
Commits
71fee32Release: v2.1.3 (#414)e0122d6Add request_reason for plumbing though user-supplied audit information (#413)34baaecSwitch to using universe helpers (#410)8d44d59Fix typo (#408)d176447security: bump undici from 5.28.3 to 5.28.4 (#405)33e827cSecurity considerations: ids are strings, not integers (#400)Updates
aquasecurity/trivy-actionfrom 0.19.0 to 0.20.0Release notes
Sourced from aquasecurity/trivy-action's releases.
Commits
b2933f5bump trivy version to v0.51.1 (#353)b2cd5ffUpdate bump-trivy.yaml6f8c237update tests (#334)7088d18Revert "fix: 🐛 allow trivy-config and other options to be used together (#338)"ee6a4f5fix: 🐛 allow trivy-config and other options to be used together (#338)b5f4977Bump trivy version to v0.50.2 (#341)207cd40Fix docker host bug (#329)840deb4Browse scan reports without GitHub Advanced Security license (#328)0f287dbfeat(image): add--docker-hostoption for GH Action users (#267)f72b7e8Make 'hide-progress' input working again (#323)Updates
github/codeql-actionfrom 3.25.3 to 3.25.5Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
b7cec75Merge pull request #2287 from github/update-v3.25.5-4a51972476778fe4Update changelog for v3.25.54a51972Merge pull request #2280 from github/henrymercer/on-demand-ffsa8c32fdMerge pull request #2283 from github/henrymercer/disable-fail-fastf73b0b7Disable fail fast for non-generated workflowsc59e052Disable fail fast in generated workflows33e416cComment thatlegacyApiis false by default67f8a36Merge branch 'main' into henrymercer/on-demand-ffs4995c49Merge pull request #2282 from github/henrymercer/no-build-mode-tracing-improv...def4d2cMerge pull request #2273 from github/aeisenberg/specify-versionsUpdates
codecov/codecov-actionfrom 4.3.1 to 4.4.0Release notes
Sourced from codecov/codecov-action's releases.
Commits
6d79887chore(release): 4.4.0 (#1430)37364fabuild(deps-dev): bump@typescript-eslint/parserfrom 7.8.0 to 7.9.0 (#1428)2791a5cfix: remove GPG and run on spawn (#1426)b71af43build(deps): bump ossf/scorecard-action from 2.3.1 to 2.3.3 (#1420)29f97fcbuild(deps): bump github/codeql-action from 3.25.3 to 3.25.4 (#1421)645d2a5build(deps): bump actions/checkout from 4.1.4 to 4.1.5 (#1423)f691d46chore: Clarify isPullRequestFromFork (#1411)Updates
goreleaser/goreleaser-actionfrom 5.0.0 to 5.1.0Release notes
Sourced from goreleaser/goreleaser-action's releases.
Commits
5742e2achore: re-generate70ccc5dchore(deps): bump@actions/http-clientfrom 2.2.0 to 2.2.1 (#451)d55bec7chore(deps): bump semver from 7.6.0 to 7.6.2 (#462)f1dbd53feat: lock this major version of the action to use '~> v1' as 'latest' (#461)2953d07chore(deps): update http-client62d4b8achore: use corepack to install yarn (#458)f09f1a7chore(deps): bump tar from 6.1.14 to 6.2.1 (#456)9937f9bRevert "docs: Upgrade setup-go action version in README (#455)"b7f6f16docs: Upgrade setup-go action version in README (#455)c21f56adocs: update readmeUpdates
golangci/golangci-lint-actionfrom 6.0.0 to 6.0.1Release notes
Sourced from golangci/golangci-lint-action's releases.
Commits
a4f60bbfix: use 3-dots syntax for diff on push (#1040)5815a4bdoc: improve readmeUpdates
reviewdog/action-actionlintfrom 1.45.0 to 1.46.0Release notes
Sourced from reviewdog/action-actionlint's releases.
Commits
89a03f6bump v1.46.06a477ccMerge branch 'main' into releases/v14b4eed5Merge pull request #126 from reviewdog/javierjulio-patch-1964f67cBump actionlint to 1.7.0Updates
ossf/scorecard-actionfrom 2.3.1 to 2.3.3Release notes
Sourced from ossf/scorecard-action's releases.
Commits
dc50aa9🌱 Bump docker tag for v2.3.3 release (#1368)8ff5700🌱 Bump github.com/ossf/scorecard/v5 from v5.0.0-rc2 to v5.0.0-rc2.0....8ba5e73update api links to new scorecard.dev site (#1376)92ddde3Bump github.com/ossf/scorecard/v5 from v5.0.0-rc1 to v5.0.0-rc2 (#1374)6c55905🌱 Bump golang.org/x/net from 0.24.0 to 0.25.0 (#1373)09bb953🌱 Bump distroless/base in the docker-images group (#1372)1511e13🌱 Bump the github-actions group across 1 directory with 6 updates (#...df66cd8🌱 Bump the docker-images group with 2 updates (#1370)fad9a3c🌱 Bump distroless/base in the docker-images group (#1364)1e01a30🌱 Bump the github-actions group with 3 updates (#1365)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions