-
Notifications
You must be signed in to change notification settings - Fork 0
⬆️ gha: Bump the github-actions group across 1 directory with 18 updates #41
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/github_actions/github-actions-49dcd1949a
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
⬆️ gha: Bump the github-actions group across 1 directory with 18 updates #41
dependabot
wants to merge
1
commit into
main
from
dependabot/github_actions/github-actions-49dcd1949a
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the github-actions group with 18 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.9.1` | `2.13.0` | | [actions/checkout](https://github.com/actions/checkout) | `4.1.7` | `5.0.0` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.3.4` | `4.7.3` | | [reviewdog/action-tflint](https://github.com/reviewdog/action-tflint) | `1.23.2` | `1.25.0` | | [reviewdog/action-trivy](https://github.com/reviewdog/action-trivy) | `1.11.3` | `1.14.0` | | [reviewdog/action-golangci-lint](https://github.com/reviewdog/action-golangci-lint) | `2.6.2` | `2.8.0` | | [reviewdog/action-misspell](https://github.com/reviewdog/action-misspell) | `1.23.0` | `1.26.3` | | [reviewdog/action-alex](https://github.com/reviewdog/action-alex) | `1.13.0` | `1.16.0` | | [reviewdog/action-markdownlint](https://github.com/reviewdog/action-markdownlint) | `0.24.0` | `0.26.2` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.54.0` | `1.67.0` | | [actions/labeler](https://github.com/actions/labeler) | `5.0.0` | `6.0.1` | | [mikepenz/release-changelog-builder-action](https://github.com/mikepenz/release-changelog-builder-action) | `5.0.0.pre.rc02` | `5.4.1` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.0.8` | `2.3.3` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.4.0` | `2.4.2` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.4.0` | `4.6.2` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.26.6` | `3.30.1` | | [actions/setup-go](https://github.com/actions/setup-go) | `5.0.2` | `6.0.0` | | [aws-actions/configure-aws-credentials](https://github.com/aws-actions/configure-aws-credentials) | `4.0.2` | `5.0.0` | Updates `step-security/harden-runner` from 2.9.1 to 2.13.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@5c7944e...ec9f2d5) Updates `actions/checkout` from 4.1.7 to 5.0.0 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...08c6903) Updates `actions/dependency-review-action` from 4.3.4 to 4.7.3 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@5a2ce3f...595b5ae) Updates `reviewdog/action-tflint` from 1.23.2 to 1.25.0 - [Release notes](https://github.com/reviewdog/action-tflint/releases) - [Commits](reviewdog/action-tflint@0a8c6a4...54a5e5a) Updates `reviewdog/action-trivy` from 1.11.3 to 1.14.0 - [Release notes](https://github.com/reviewdog/action-trivy/releases) - [Commits](reviewdog/action-trivy@0e0d85c...a1e6d7d) Updates `reviewdog/action-golangci-lint` from 2.6.2 to 2.8.0 - [Release notes](https://github.com/reviewdog/action-golangci-lint/releases) - [Commits](reviewdog/action-golangci-lint@7708105...f9bba13) Updates `reviewdog/action-misspell` from 1.23.0 to 1.26.3 - [Release notes](https://github.com/reviewdog/action-misspell/releases) - [Commits](reviewdog/action-misspell@ef8b22c...9daa94a) Updates `reviewdog/action-alex` from 1.13.0 to 1.16.0 - [Release notes](https://github.com/reviewdog/action-alex/releases) - [Commits](reviewdog/action-alex@f95df9e...6083b8c) Updates `reviewdog/action-markdownlint` from 0.24.0 to 0.26.2 - [Release notes](https://github.com/reviewdog/action-markdownlint/releases) - [Commits](reviewdog/action-markdownlint@e9f3ab4...3667398) Updates `reviewdog/action-actionlint` from 1.54.0 to 1.67.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@4f8f996...95395aa) Updates `actions/labeler` from 5.0.0 to 6.0.1 - [Release notes](https://github.com/actions/labeler/releases) - [Commits](actions/labeler@8558fd7...634933e) Updates `mikepenz/release-changelog-builder-action` from 5.0.0.pre.rc02 to 5.4.1 - [Release notes](https://github.com/mikepenz/release-changelog-builder-action/releases) - [Commits](mikepenz/release-changelog-builder-action@f3fc77b...c9dc836) Updates `softprops/action-gh-release` from 2.0.8 to 2.3.3 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@c062e08...6cbd405) Updates `ossf/scorecard-action` from 2.4.0 to 2.4.2 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@62b2cac...05b42c6) Updates `actions/upload-artifact` from 4.4.0 to 4.6.2 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@5076954...ea165f8) Updates `github/codeql-action` from 3.26.6 to 3.30.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4dd1613...f1f6e5f) Updates `actions/setup-go` from 5.0.2 to 6.0.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@0a12ed9...4469467) Updates `aws-actions/configure-aws-credentials` from 4.0.2 to 5.0.0 - [Release notes](https://github.com/aws-actions/configure-aws-credentials/releases) - [Changelog](https://github.com/aws-actions/configure-aws-credentials/blob/main/CHANGELOG.md) - [Commits](aws-actions/configure-aws-credentials@e3dd6a4...a03048d) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/checkout dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/dependency-review-action dependency-version: 4.7.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-tflint dependency-version: 1.25.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-trivy dependency-version: 1.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-golangci-lint dependency-version: 2.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-misspell dependency-version: 1.26.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-alex dependency-version: 1.16.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-markdownlint dependency-version: 0.26.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-actionlint dependency-version: 1.67.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/labeler dependency-version: 6.0.1 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: mikepenz/release-changelog-builder-action dependency-version: 5.4.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: softprops/action-gh-release dependency-version: 2.3.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: ossf/scorecard-action dependency-version: 2.4.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: 4.6.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: github/codeql-action dependency-version: 3.30.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-go dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: aws-actions/configure-aws-credentials dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]>
|
Important Review skippedBot user detected. To trigger a single review, invoke the You can disable this status message by setting the Comment |
💰 Infracost reportMonthly estimate generatedThis comment will be updated when code changes. |
Dependency Review✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.OpenSSF ScorecardScorecard details
Scanned Files
|
|
Here's the code health analysis summary for commits Analysis Summary
|
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 18 updates in the / directory:
2.9.12.13.04.1.75.0.04.3.44.7.31.23.21.25.01.11.31.14.02.6.22.8.01.23.01.26.31.13.01.16.00.24.00.26.21.54.01.67.05.0.06.0.15.0.0.pre.rc025.4.12.0.82.3.32.4.02.4.24.4.04.6.23.26.63.30.15.0.26.0.04.0.25.0.0Updates
step-security/harden-runnerfrom 2.9.1 to 2.13.0Release notes
Sourced from step-security/harden-runner's releases.
... (truncated)
Commits
ec9f2d5Merge pull request #565 from step-security/rc-2404bcbc3update agent7c7a56ffeat: get job summary from API6c439dcMerge pull request #562 from step-security/rc-22bf56886update agent5436dacupdate agent88d305aupdate agentb976878update agent875cc92Update agent002fdceMerge pull request #544 from step-security/rc-21Updates
actions/checkoutfrom 4.1.7 to 5.0.0Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
08c6903Prepare v5.0.0 release (#2238)9f26565Update actions checkout to use node 24 (#2226)08eba0bPrepare release v4.3.0 (#2237)631c7dcUpdate package dependencies (#2236)8edcb1bUpdate CODEOWNERS for actions (#2224)09d2acaUpdate README.md (#2194)85e6279Adjust positioning of user email note and permissions heading (#2044)009b9aeDocumentation update - add recommended permissions to Readme (#2043)cbb7224Update README.md (#1977)3b9b8c8docs: update README.md (#1971)Updates
actions/dependency-review-actionfrom 4.3.4 to 4.7.3Release notes
Sourced from actions/dependency-review-action's releases.
... (truncated)
Commits
595b5aeUpdate package version (#975)fc5fd66Claire153/fix spamming mentioned issue (#974)d38d1a4Merge pull request #965 from actions/dependabot/npm_and_yarn/multi-c22e25d29b8d420b8Merge branch 'main' into dependabot/npm_and_yarn/multi-c22e25d29bbde0129Merge pull request #966 from actions/ashelytc/add-permissionsab52490remove rubyef00a0aadd permissions to workflows74c8179Bump brace-expansionbc41886Cut 4.7.2 version release (#964)1c73553Merge pull request #960 from ahpook/ahpook/address-docs-dashesUpdates
reviewdog/action-tflintfrom 1.23.2 to 1.25.0Release notes
Sourced from reviewdog/action-tflint's releases.
Commits
54a5e5achore(deps): update reviewdog/reviewdog to 0.21.0 (#101)92ecd5bREADME: Pin GitHub Actions with commit SHA using pinact (#108)4e022bbchore(deps): update reviewdog/action-misspell action to v1.26.3 (#106)1848510chore(deps): update reviewdog/action-depup action to v1.6.4 (#104)f1101e4chore(deps): update reviewdog/action-misspell action to v1.26.2 (#105)41b4770Pin reviewdog install script version with commit SHA (#103)7b57187Pin GitHub Actions with commit SHA using pinact (#102)f17a66aUpdate reviewdog and add fail_level and deduplicate fail_on_error (#100)f9cb738README: Fix CI status badges (#92)b61e666docs(README): add documents about input parameters (#98)Updates
reviewdog/action-trivyfrom 1.11.3 to 1.14.0Release notes
Sourced from reviewdog/action-trivy's releases.
... (truncated)
Commits
a1e6d7dMerge pull request #104 from reviewdog/depup/reviewdog20b6816chore(deps): update reviewdog to 0.21.0a1a479dMerge pull request #94 from reviewdog/renovate/azurerm-4.x7a02290chore(deps): update terraform azurerm to ~> 4.26.0590ac69Merge pull request #93 from reviewdog/renovate/aws-5.xf895ad5chore(deps): update terraform aws to ~> 5.94.05392bccMerge pull request #92 from reviewdog/renovate/azurerm-4.x0e5f775chore(deps): update terraform azurerm to ~> 4.25.090be6baMerge pull request #91 from reviewdog/renovate/aws-5.x536d9aachore(deps): update terraform aws to ~> 5.93.0Updates
reviewdog/action-golangci-lintfrom 2.6.2 to 2.8.0Release notes
Sourced from reviewdog/action-golangci-lint's releases.
Commits
f9bba13Merge pull request #779 from pranc1ngpegasus/fix/migrate-to-golangci-lint-v25a4f816fix: github actions110d7c1chore: generate source-mapcbecd11feat: add test44ac2b8fix: migrate to golangci-lint v2c6764e1Merge pull request #778 from reviewdog/renovate/node-20.x-lockfileb96f60dchore(deps): update dependency@types/nodeto v20.17.27adbc694Merge pull request #777 from reviewdog/bump-actions-in-readme0d87359pinact run --update README.md3dfdce2Merge pull request #776 from reviewdog/dependabot/npm_and_yarn/undici-5.29.0Updates
reviewdog/action-misspellfrom 1.23.0 to 1.26.3Release notes
Sourced from reviewdog/action-misspell's releases.
Commits
9daa94aMerge pull request #79 from reviewdog/pin-install-script-ver21691a4Pin reviewdog install script version with commit SHA8494bbcMerge pull request #78 from reviewdog/pinact-action-misspell53419dbPin GitHub Actions with commit SHA using pinact18ffb61Merge pull request #73 from reviewdog/renovate/peter-evans-create-pull-reques...b277a94Merge pull request #76 from reviewdog/depup/reviewdog364a050chore(deps): update reviewdog to 0.20.36dbb2a0Merge pull request #75 from reviewdog/add_fail_levelc60dcb0Add line breakbb00978Merge branch 'master' into add_fail_levelUpdates
reviewdog/action-alexfrom 1.13.0 to 1.16.0Release notes
Sourced from reviewdog/action-alex's releases.
... (truncated)
Commits
6083b8cMerge pull request #45 from reviewdog/depup/reviewdogc0ca67bchore(deps): update reviewdog to 0.20.3d623036Merge pull request #44 from reviewdog/renovate/reviewdog-action-shellcheck-1.xab7cc67Merge pull request