chore(deps): bump the github-actions group across 1 directory with 8 updates #172
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 8 updates in the / directory:
4.1.44.1.65.0.05.0.13.1.03.2.00.7.30.9.04.3.24.3.32.3.12.3.33.25.33.25.81.1.21.2.0Updates
actions/checkoutfrom 4.1.4 to 4.1.6Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
a5ac7e5Update for 4.1.6 release (#1733)24ed1a3Check platform for extension (#1732)44c2b7aREADME: Suggestuser.emailto be `41898282+github-actions[bot]@users.norepl...8459bc0Bump actions/upload-artifact from 2 to 4 (#1695)3f603f6Bump actions/setup-node from 1 to 4 (#1696)fd084cdBump github/codeql-action from 2 to 3 (#1694)9c1e94eUpdate NPM dependencies (#1703)Updates
actions/setup-gofrom 5.0.0 to 5.0.1Release notes
Sourced from actions/setup-go's releases.
Commits
cdcb360Remove the description of the old go.mod specification (#458)99176a8Update README.md with V5 release notes (#459)be1aa11Bump undici from 5.28.2 to 5.28.3 (#465)6c1fd22docs: bumpactions/setup-goto v5 (#449)Updates
docker/login-actionfrom 3.1.0 to 3.2.0Release notes
Sourced from docker/login-action's releases.
Commits
0d4c9c5Merge pull request #722 from crazy-max/update-readmeb29e14fadd contributing section to README218a70cMerge pull request #721 from docker/dependabot/npm_and_yarn/docker/actions-to...b820080build(deps): bump@docker/actions-toolkitfrom 0.23.0 to 0.24.027530a9Merge pull request #720 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...d072a60chore: update generated content7c627b5build(deps): bump the aws-sdk-dependencies group across 1 directory with 2 up...787cfc6Merge pull request #694 from docker/dependabot/npm_and_yarn/undici-5.28.48e66e91chore: update generated content5ba5e97build(deps): bump undici from 5.28.3 to 5.28.4Updates
smlx/ccvfrom 0.7.3 to 0.9.0Release notes
Sourced from smlx/ccv's releases.
Commits
d3de774Merge pull request #151 from smlx/slog1a8a13efeat: drop dependency on zap in favour of slogc46fccfMerge pull request #150 from smlx/dependabot/github_actions/github-actions-95...93514d1chore(deps): bump the github-actions group with 3 updates73cf78aMerge pull request #149 from smlx/readme0c10862chore: add branding to actiona745435fix: remove redundant snippet from build workflow5b6a8c4chore: update readme with links to examplesbbf6b0fMerge pull request #148 from smlx/dogfoodff1e5eachore: minor formatting update in action.yamlUpdates
actions/dependency-review-actionfrom 4.3.2 to 4.3.3Release notes
Sourced from actions/dependency-review-action's releases.
Commits
72eb03dMerge pull request #781 from actions/release-v4.3.3137d8b4bump to version v4.3.3e6b618eMerge pull request #767 from actions/max-comment-length3c42649fix ws for linter8e6ea8dupdate packaging1b3d277post-review: add PR comment full summary test case220872cUpdate src/main.ts087d0f8repackage to update dist4531204whitespacedf1ca89appease linterUpdates
ossf/scorecard-actionfrom 2.3.1 to 2.3.3Release notes
Sourced from ossf/scorecard-action's releases.
Commits
dc50aa9🌱 Bump docker tag for v2.3.3 release (#1368)8ff5700🌱 Bump github.com/ossf/scorecard/v5 from v5.0.0-rc2 to v5.0.0-rc2.0....8ba5e73update api links to new scorecard.dev site (#1376)92ddde3Bump github.com/ossf/scorecard/v5 from v5.0.0-rc1 to v5.0.0-rc2 (#1374)6c55905🌱 Bump golang.org/x/net from 0.24.0 to 0.25.0 (#1373)09bb953🌱 Bump distroless/base in the docker-images group (#1372)1511e13🌱 Bump the github-actions group across 1 directory with 6 updates (#...df66cd8🌱 Bump the docker-images group with 2 updates (#1370)fad9a3c🌱 Bump distroless/base in the docker-images group (#1364)1e01a30🌱 Bump the github-actions group with 3 updates (#1365)Updates
github/codeql-actionfrom 3.25.3 to 3.25.8Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
2e230e8Merge pull request #2323 from github/update-v3.25.8-18b06dd1d66ad891Update changelog for v3.25.818b06ddMerge pull request #2322 from github/dependabot/npm_and_yarn/npm-10d82c2911200dd0cUpdate checked-in dependencies2bb35eabump the npm group with 4 updates9c15e42Merge pull request #2321 from github/update-bundle/codeql-bundle-v2.17.498e7922Merge branch 'main' into update-bundle/codeql-bundle-v2.17.4440350bAdd changelog noted4fcc8bUpdate default bundle to codeql-bundle-v2.17.4add199bMerge pull request #2320 from github/angelapwen/use-linked-in-testsUpdates
actions/attest-build-provenancefrom 1.1.2 to 1.2.0Release notes
Sourced from actions/attest-build-provenance's releases.
Commits
49df96ebump actions attest from 1.1.2 to 1.2.0 (#101)132fcc7Bump the npm-development group with 5 updates (#100)923ac69Bump the npm-development group with 5 updates (#93)70c1bd1Bump the npm-development group with 3 updates (#81)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions