Bump the actions group with 2 updates - #32341
Conversation
Bumps the actions group with 2 updates: [scientific-python/upload-nightly-action](https://github.com/scientific-python/upload-nightly-action) and [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action). Updates `scientific-python/upload-nightly-action` from 0.6.4 to 0.6.5 - [Release notes](https://github.com/scientific-python/upload-nightly-action/releases) - [Commits](scientific-python/upload-nightly-action@e76cfec...16fa02e) Updates `zizmorcore/zizmor-action` from 0.6.2 to 0.6.3 - [Release notes](https://github.com/zizmorcore/zizmor-action/releases) - [Commits](zizmorcore/zizmor-action@3dc1ecc...70fb788) --- updated-dependencies: - dependency-name: scientific-python/upload-nightly-action dependency-version: 0.6.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: zizmorcore/zizmor-action dependency-version: 0.6.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions ... Signed-off-by: dependabot[bot] <[email protected]>
|
Owee, I'm MrMeeseeks, Look at me. There seem to be a conflict, please backport manually. Here are approximate instructions:
And apply the correct labels and milestones. Congratulations — you did some good work! Hopefully your backport PR will be tested by the continuous integration and merged soon! Remember to remove the If these instructions are inaccurate, feel free to suggest an improvement. |
|
@QuLogic - Is the Still Needs Manual Backport label on this and other PRs something that we need to worry about? There have been 4 in the past few weeks. |
Bumps the actions group with 2 updates: scientific-python/upload-nightly-action and zizmorcore/zizmor-action.
Updates
scientific-python/upload-nightly-actionfrom 0.6.4 to 0.6.5Release notes
Sourced from scientific-python/upload-nightly-action's releases.
Commits
16fa02eMNT: Update to pixi lock spec v7 and project version v0.6.5 (#183)fd44fdechore: Move requirements file under tools/ (#182)1dbb7f3Build(deps): Bump pygithub from 2.9.1 to 2.10.0 in the python group (#180)2ca17bdBuild(deps): Bump prefix-dev/setup-pixi in the actions group (#179)1a97ddfBuild(deps): Bump the actions group with 3 updates (#177)c88d30eAdd issue-opener when wheels are almost dead (#175)d770301Build(deps): Bump the actions group with 4 updates (#174)33e7342Add details about the consequences of not regularly uploading wheels (#173)64f2a45Build(deps): Bump the actions group with 3 updates (#170)9aaae99Build(deps): Bump the actions group with 4 updates (#168)Updates
zizmorcore/zizmor-actionfrom 0.6.2 to 0.6.3Release notes
Sourced from zizmorcore/zizmor-action's releases.
Commits
70fb788Sync zizmor versions (#162)7999d8cchore(deps): bump github/codeql-action/upload-sarif from 4.37.6 to 4.37.7 in ...2ae1ce9chore(deps): bump github/codeql-action/upload-sarif (#160)951a5eeSkip prerelease versions in sync-zizmor-versions workflow (#158)79f0191chore(deps): bump github/codeql-action/upload-sarif (#156)26a3ae6sync-zizmor-versions: retry up to 5 times (#155)435cb31chore(deps): bump github/codeql-action/upload-sarif (#151)d6cec10Try the new self-referencing syntax (#148)edd9b84README: bump pins (#150)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions