deps: bump the actions group across 1 directory with 8 updates#275
Open
dependabot[bot] wants to merge 1 commit into
Open
deps: bump the actions group across 1 directory with 8 updates#275dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the actions group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.14.0` | `2.19.0` | | [actions/checkout](https://github.com/actions/checkout) | `6.0.1` | `6.0.2` | | [ruby/setup-ruby](https://github.com/ruby/setup-ruby) | `1.275.0` | `1.305.0` | | [KineticCafe/actions-dco](https://github.com/kineticcafe/actions-dco) | `2.0.0` | `2.1.1` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.8.2` | `4.9.0` | | [rubygems/release-gem](https://github.com/rubygems/release-gem) | `1.1.2` | `1.2.0` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.69.1` | `1.72.0` | | [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action) | `0.3.0` | `0.5.3` | Updates `step-security/harden-runner` from 2.14.0 to 2.19.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@20cf305...8d3c67d) Updates `actions/checkout` from 6.0.1 to 6.0.2 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@8e8c483...de0fac2) Updates `ruby/setup-ruby` from 1.275.0 to 1.305.0 - [Release notes](https://github.com/ruby/setup-ruby/releases) - [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb) - [Commits](ruby/setup-ruby@d354de1...0cb964f) Updates `KineticCafe/actions-dco` from 2.0.0 to 2.1.1 - [Release notes](https://github.com/kineticcafe/actions-dco/releases) - [Changelog](https://github.com/KineticCafe/actions-dco/blob/main/Changelog.md) - [Commits](KineticCafe/actions-dco@cd9508e...6e1652e) Updates `actions/dependency-review-action` from 4.8.2 to 4.9.0 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@3c4e3dc...2031cfc) Updates `rubygems/release-gem` from 1.1.2 to 1.2.0 - [Release notes](https://github.com/rubygems/release-gem/releases) - [Commits](rubygems/release-gem@1c162a7...6317d8d) Updates `reviewdog/action-actionlint` from 1.69.1 to 1.72.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@83e4ed2...6fb7acc) Updates `zizmorcore/zizmor-action` from 0.3.0 to 0.5.3 - [Release notes](https://github.com/zizmorcore/zizmor-action/releases) - [Commits](zizmorcore/zizmor-action@e639db9...b1d7e1f) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.19.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: actions/checkout dependency-version: 6.0.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: ruby/setup-ruby dependency-version: 1.305.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: KineticCafe/actions-dco dependency-version: 2.1.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: actions/dependency-review-action dependency-version: 4.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: rubygems/release-gem dependency-version: 1.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: reviewdog/action-actionlint dependency-version: 1.72.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: zizmorcore/zizmor-action dependency-version: 0.5.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the actions group with 8 updates in the / directory:
2.14.02.19.06.0.16.0.21.275.01.305.02.0.02.1.14.8.24.9.01.1.21.2.01.69.11.72.00.3.00.5.3Updates
step-security/harden-runnerfrom 2.14.0 to 2.19.0Release notes
Sourced from step-security/harden-runner's releases.
... (truncated)
Commits
8d3c67dRelease v2.19.0 (#661)6c3c2f2Feature/deploy on self hosted vm (#658)f808768Feature/policy store (#656)fe10465v2.16.1 (#654)fa2e9d6Release v2.16.0 (#646)58077d3Release v2.15.1 (#641)a90bcbcUpdate readme (#637)f0a59d8Release v2.15.0 (#639)5ef0c07Merge pull request #635 from step-security/rc-34eb43c7bupdate agentUpdates
actions/checkoutfrom 6.0.1 to 6.0.2Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
de0fac2Fix tag handling: preserve annotations and explicit fetch-tags (#2356)064fe7fAdd orchestration_id to git user-agent when ACTIONS_ORCHESTRATION_ID is set (...Updates
ruby/setup-rubyfrom 1.275.0 to 1.305.0Release notes
Sourced from ruby/setup-ruby's releases.
... (truncated)
Commits
0cb964fUpdate CRuby releases on Windows94e4d89Add jruby-10.1.0.060ecfbaAdd ruby-4.0.37372622Give a better error for TruffleRuby 34+ on macOS Intel4c56a21Darwin-x86_64 is no longer supported on TruffleRuby 34+5d9c71dAdd truffleruby-34.0.0,truffleruby+graalvm-34.0.0e65c17dAdd jruby-10.0.5.0ba696adRefactor matrix script2327de0TruffleRuby 34+ does not support macOS Intel3ff19f5Update CRuby releases on WindowsUpdates
KineticCafe/actions-dcofrom 2.0.0 to 2.1.1Release notes
Sourced from KineticCafe/actions-dco's releases.
Changelog
Sourced from KineticCafe/actions-dco's changelog.
... (truncated)
Commits
6e1652echore: Update dependenciescd037dfdeps: bump actions/setup-node in the actions group across 1 directory07b1acechore: Update dist to try to fix a token issueb256b18deps: bump actions/checkout from 5.0.0 to 6.0.076b7fc3fix: Escape thereasonin the summary tablebc076f2deps: Update dist/ after dependabot update3899b64deps: Add autofix capability to Dependabot PRsdc1cf81deps: bump js-yaml from 4.1.0 to 4.1.128c71a1deps: bump the bundler group with 2 updates7fc90a9deps: bump actions/setup-node from 5.0.0 to 6.0.0Updates
actions/dependency-review-actionfrom 4.8.2 to 4.9.0Release notes
Sourced from actions/dependency-review-action's releases.
Commits
2031cfcMerge pull request #1064 from actions/ahpook/release-4.9.0d02fa39Updates for release 4.9.04038a34Merge pull request #1021 from actions/dependabot/github_actions/actions/check...a632b83Merge pull request #1058 from actions/dependabot/github_actions/actions/stale...57a3d46Merge pull request #1060 from jantiebot/main5ecdc4bMerge pull request #1045 from forks-felickz/maine8c2f9afix: remove inferrable type annotation to pass eslint0e129e1Prettier - Refactor summary table rendering for improved readabilityaa60746Add 'show-patched-versions' option to configuration and update summary handlinge404798Merge upstream actions/dependency-review-action mainUpdates
rubygems/release-gemfrom 1.1.2 to 1.2.0Release notes
Sourced from rubygems/release-gem's releases.
Commits
6317d8dRemove unnecessary working-directory from composite action uses step and git ...d549c96Allow specifying the working directory to run the release task indcd378aAuthenticate with provided token176dbd3Pinrubygems/configure-rubygems-credentialsto a commit SHAe9a6361fix: use --force flag with git fetch --tags to avoid tag clobber error (#27)2cceab0Bump sigstore-cli to 0.2.394250bfupdate: fetch git tags before running gem release (#17)Updates
reviewdog/action-actionlintfrom 1.69.1 to 1.72.0Release notes
Sourced from reviewdog/action-actionlint's releases.
Commits
6fb7accbump v1.72.0b2a904aMerge branch 'main' into releases/v15eaffa1Merge pull request #196 from reviewdog/depup/actionlint39a6754chore(deps): update actionlint to 1.7.12d39025cMerge pull request #195 from reviewdog/renovate/docker-setup-buildx-action-4.x2e8272dMerge pull request #194 from reviewdog/renovate/docker-setup-qemu-action-4.x128d9b7Merge pull request #190 from reviewdog/renovate/shogo82148-actions-create-rel...1674e4fchore(deps): update docker/setup-buildx-action action to v48fdb9d2Merge pull request #189 from reviewdog/renovate/docker-setup-buildx-action-3.xa518ce8Merge pull request #188 from reviewdog/renovate/peter-evans-create-pull-reque...Updates
zizmorcore/zizmor-actionfrom 0.3.0 to 0.5.3Release notes
Sourced from zizmorcore/zizmor-action's releases.
... (truncated)
Commits
b1d7e1fSync zizmor versions (#102)a195b57Sync zizmor versions (#100)629d5d0chore(deps): bump github/codeql-action in the github-actions group (#99)453d591chore(deps): bump the github-actions group with 2 updates (#98)ea2c18bBump pins (#97)71321a2Sync zizmor versions (#96)5ed31dbBump pins (#95)195d10aSync zizmor versions (#94)c65bc88chore(deps): bump github/codeql-action in the github-actions group (#93)c2c887fchore(deps): bump zizmorcore/zizmor-action in the github-actions group (#91)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions