-
Notifications
You must be signed in to change notification settings - Fork 462
Bump the github-actions-dependency group across 1 directory with 10 updates #4617
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Closed
dependabot
wants to merge
1
commit into
develop
from
dependabot/github_actions/github-actions-dependency-ebe0d648f2
Closed
Bump the github-actions-dependency group across 1 directory with 10 updates #4617
dependabot
wants to merge
1
commit into
develop
from
dependabot/github_actions/github-actions-dependency-ebe0d648f2
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Docker Image Sizes
|
273678e to
d8f20dc
Compare
…pdates Bumps the github-actions-dependency group with 10 updates in the / directory: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `4.1.1` | `5.0.0` | | [tj-actions/changed-files](https://github.com/tj-actions/changed-files) | `8cdfb7636d150253dee416a80f11c67f5ba7e9be` | `3b04099b21072562f07469c10deb182b24236ca9` | | [docker/metadata-action](https://github.com/docker/metadata-action) | `5.7.0` | `5.8.0` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.3.1` | `4.6.2` | | [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) | `0.32.0` | `0.33.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.29.7` | `3.29.11` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `4.3.0` | `5.0.0` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.7.1` | `4.7.3` | | [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv) | `6.0.1` | `6.6.0` | | [actions/setup-node](https://github.com/actions/setup-node) | `4.0.2` | `4.4.0` | Updates `actions/checkout` from 4.1.1 to 5.0.0 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4.1.1...08c6903) Updates `tj-actions/changed-files` from 8cdfb7636d150253dee416a80f11c67f5ba7e9be to 3b04099b21072562f07469c10deb182b24236ca9 - [Release notes](https://github.com/tj-actions/changed-files/releases) - [Changelog](https://github.com/tj-actions/changed-files/blob/main/HISTORY.md) - [Commits](tj-actions/changed-files@8cdfb76...3b04099) Updates `docker/metadata-action` from 5.7.0 to 5.8.0 - [Release notes](https://github.com/docker/metadata-action/releases) - [Commits](docker/metadata-action@902fa8e...c1e5197) Updates `actions/upload-artifact` from 4.3.1 to 4.6.2 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@v4.3.1...ea165f8) Updates `aquasecurity/trivy-action` from 0.32.0 to 0.33.0 - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](aquasecurity/trivy-action@dc5a429...f9424c1) Updates `github/codeql-action` from 3.29.7 to 3.29.11 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@51f7732...3c3833e) Updates `actions/download-artifact` from 4.3.0 to 5.0.0 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@v4.3.0...634f93c) Updates `actions/dependency-review-action` from 4.7.1 to 4.7.3 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@da24556...595b5ae) Updates `astral-sh/setup-uv` from 6.0.1 to 6.6.0 - [Release notes](https://github.com/astral-sh/setup-uv/releases) - [Commits](astral-sh/setup-uv@v6.0.1...4959332) Updates `actions/setup-node` from 4.0.2 to 4.4.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@60edb5d...49933ea) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions-dependency - dependency-name: tj-actions/changed-files dependency-version: 3b04099b21072562f07469c10deb182b24236ca9 dependency-type: direct:production dependency-group: github-actions-dependency - dependency-name: docker/metadata-action dependency-version: 5.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependency - dependency-name: actions/upload-artifact dependency-version: 4.6.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependency - dependency-name: aquasecurity/trivy-action dependency-version: 0.33.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependency - dependency-name: github/codeql-action dependency-version: 3.29.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions-dependency - dependency-name: actions/download-artifact dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions-dependency - dependency-name: actions/dependency-review-action dependency-version: 4.7.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions-dependency - dependency-name: astral-sh/setup-uv dependency-version: 6.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependency - dependency-name: actions/setup-node dependency-version: 4.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependency ... Signed-off-by: dependabot[bot] <support@github.com>
d8f20dc to
d1b61d6
Compare
Contributor
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
BUILD
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions-dependency group with 10 updates in the / directory:
4.1.15.0.08cdfb7636d150253dee416a80f11c67f5ba7e9be3b04099b21072562f07469c10deb182b24236ca95.7.05.8.04.3.14.6.20.32.00.33.03.29.73.29.114.3.05.0.04.7.14.7.36.0.16.6.04.0.24.4.0Updates
actions/checkoutfrom 4.1.1 to 5.0.0Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
08c6903Prepare v5.0.0 release (#2238)9f26565Update actions checkout to use node 24 (#2226)08eba0bPrepare release v4.3.0 (#2237)631c7dcUpdate package dependencies (#2236)8edcb1bUpdate CODEOWNERS for actions (#2224)09d2acaUpdate README.md (#2194)85e6279Adjust positioning of user email note and permissions heading (#2044)009b9aeDocumentation update - add recommended permissions to Readme (#2043)cbb7224Update README.md (#1977)3b9b8c8docs: update README.md (#1971)Updates
tj-actions/changed-filesfrom 8cdfb7636d150253dee416a80f11c67f5ba7e9be to 3b04099b21072562f07469c10deb182b24236ca9Changelog
Sourced from tj-actions/changed-files's changelog.
... (truncated)
Commits
3b04099chore(deps-dev): bump@types/nodefrom 24.2.1 to 24.3.0 (#2649)e7b6c97chore(deps): bump github/codeql-action from 3.29.9 to 3.29.11 (#2651)765d62bchore(deps): bump tj-actions/git-cliff from 2.0.2 to 2.1.0 (#2648)2036da1chore(deps): bump github/codeql-action from 3.29.8 to 3.29.9 (#2647)239aef8chore(deps): bump github/codeql-action from 3.29.7 to 3.29.8 (#2644)a7d5f5fchore(deps-dev): bump@types/nodefrom 24.2.0 to 24.2.1 (#2645)5107f3achore(deps): bump actions/checkout from 4.2.2 to 5.0.0 (#2646)f963b3fchore(deps-dev): bump@types/nodefrom 24.1.0 to 24.2.0 (#2640)f956744chore(deps): bump actions/download-artifact from 4.3.0 to 5.0.0 (#2641)9009babchore(deps): bump yaml from 2.8.0 to 2.8.1 (#2642)Updates
docker/metadata-actionfrom 5.7.0 to 5.8.0Release notes
Sourced from docker/metadata-action's releases.
Commits
c1e5197Merge pull request #537 from crazy-max/pep440-match89dd65achore: update generated content699ee45allow to match part of the git tag or value for pep440 typee0542a6Merge pull request #536 from crazy-max/semver-matchb7facdfchore: update generated content81c60dfallow to match part of the git tag or value for semver typede11195Merge pull request #535 from crazy-max/not_def_branch2f9c64bMerge pull request #533 from docker/dependabot/npm_and_yarn/form-data-2.5.5510f746chore: update generated content2bc3f4eis_not_default_branch global expressionUpdates
actions/upload-artifactfrom 4.3.1 to 4.6.2Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
ea165f8Merge pull request #685 from salmanmkc/salmanmkc/3-new-upload-artifacts-release0839620Prepare for new release of actions/upload-artifact with new toolkit cache ver...4cec3d8Merge pull request #673 from actions/yacaovsnc/artifact_2.2.2e9fad96license cache update for artifactb26fd06Update to use artifact 2.2.2 package65c4c4aMerge pull request #662 from actions/yacaovsnc/add_variable_for_concurrency_a...0207619move files back to satisfy licensed ci1ecca81licensed cache updates9742269Expose env vars to controll concurrency and timeout6f51ac0Merge pull request #656 from bdehamer/bdehamer/artifact-digestUpdates
aquasecurity/trivy-actionfrom 0.32.0 to 0.33.0Release notes
Sourced from aquasecurity/trivy-action's releases.
Commits
f9424c1Merge pull request #481 from aquasecurity/bump-trivy-175589825185abccbdev: delete fanal.db before testsa169870ci: update golden files on Trivy bump71f6a8fdev: add update-golden goalbf330b1test: update golden files644762eMerge pull request #482 from aquasecurity/fix-gh-actionsf2e2851chore(ci): Add oras to correctly setup sync jobs636fd3cfix: update tests7c0244bchore(deps): Update trivy to v0.65.0c26e17bPin actions/cache by SHA (#480)Updates
github/codeql-actionfrom 3.29.7 to 3.29.11Release notes
Sourced from github/codeql-action's releases.
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
3c3833eMerge pull request #3052 from github/update-v3.29.11-14148a4338c4bfbdUpdate changelog for v3.29.1114148a4Merge pull request #3044 from github/update-bundle/codeql-bundle-v2.22.471b2cb3Add changelog note2bf7825Update default bundle to codeql-bundle-v2.22.4db69a51Merge pull request #3049 from github/update-supported-enterprise-server-versionsa68d47bMerge pull request #3050 from github/henrymercer/init-not-called-config-errore496ff9Make "init not called" a configuration errorfd2ea72Update supported GitHub Enterprise Server versions6dee5bcMerge pull request #3045 from github/dependabot/npm_and_yarn/npm-5b4171dd16Updates
actions/download-artifactfrom 4.3.0 to 5.0.0Release notes
Sourced from actions/download-artifact's releases.
... (truncated)
Commits
634f93cMerge pull request #416 from actions/single-artifact-id-download-pathb19ff43refactor: resolve download path correctly in artifact download tests (mainly ...e262cbebundle distbff23f9update docsfff8c14fix download path logic when downloading a single artifact by id448e3f8Merge pull request #407 from actions/nebuk89-patch-147225c4Update README.mdUpdates
actions/dependency-review-actionfrom 4.7.1 to 4.7.3Release notes
Sourced from actions/dependency-review-action's releases.
Commits
595b5aeUpdate package version (#975)fc5fd66Claire153/fix spamming mentioned issue (#974)d38d1a4Merge pull request #965 from actions/dependabot/npm_and_yarn/multi-c22e25d29b8d420b8Merge branch 'main' into dependabot/npm_and_yarn/multi-c22e25d29bbde0129Merge pull request #966 from actions/ashelytc/add-permissionsab52490remove rubyef00a0aadd permissions to workflows74c8179Bump brace-expansionbc41886Cut 4.7.2 version release (#964)1c73553Merge pull request #960 from ahpook/ahpook/address-docs-dashesUpdates
astral-sh/setup-uvfrom 6.0.1 to 6.6.0Release notes
Sourced from astral-sh/setup-uv's releases.
... (truncated)
Commits
4959332Bump dependencies (#532)adeb286Add support for .tools-versions (#531)fce199eAdd log message before long API calls to GitHub (#530)f758a4achore: update known versions for 0.8.12 (#529)c0e7e93chore: update known versions for 0.8.11 (#526)fda2399chore: update known versions for 0.8.10 (#525)d9e0f98Improve error messages on GitHub API errors (#518)e5d42a2Add input add-problem-matchers (#517)d664c2aBump actions/checkout from 4 to 5 (#514)c35b8eabump dependencies (#516)Updates
actions/setup-nodefrom 4.0.2 to 4.4.0Release notes
Sourced from actions/setup-node's releases.