build(deps): bump the github-actions group across 1 directory with 6 updates #3
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 6 updates in the / directory:
3.6.04.1.63.13.04.2.12.25.83.25.82.5.14.3.33.1.34.3.32.0.62.3.3Updates
actions/checkoutfrom 3.6.0 to 4.1.6Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
a5ac7e5Update for 4.1.6 release (#1733)24ed1a3Check platform for extension (#1732)44c2b7aREADME: Suggestuser.emailto be `41898282+github-actions[bot]@users.norepl...8459bc0Bump actions/upload-artifact from 2 to 4 (#1695)3f603f6Bump actions/setup-node from 1 to 4 (#1696)fd084cdBump github/codeql-action from 2 to 3 (#1694)9c1e94eUpdate NPM dependencies (#1703)0ad4b8fPrep Release v4.1.4 (#1704)43045aeDisableextensions.worktreeConfigwhen disablingsparse-checkout(#1692)37b0821Bump the minor-actions-dependencies group with 2 updates (#1693)Updates
actions/setup-javafrom 3.13.0 to 4.2.1Release notes
Sourced from actions/setup-java's releases.
... (truncated)
Commits
99b8673Patch for java version file (#610)5896cecAdded .tool-versions file support (#606)80ae3c2Update httpclient version and other dependencies (#607)9704b39Added Windows Arm64 Support for Windows Arm64 Runners (#595)7a445eeFix typo in configuration example (#572)3232623Oracle JDK 21 support (#538)c0660d8docs: add note about maven-gpg-plugin version (#570)2f7af1bmake it clear that Java 21 is supported (#566)16ef37fHTTP errors when the token is undefined (#556)a237454feat: bump actions/checkout and actions/setup-java to v4 (#533)Updates
github/codeql-actionfrom 2.25.8 to 3.25.8Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
9ab5d16Merge pull request #2312 from github/update-bundle/codeql-bundle-v2.17.4028346eAdd changelog note5fe0847Update default bundle to codeql-bundle-v2.17.49550da9Merge pull request #2311 from github/henrymercer/pack-missing-auth-config-error6548a4dAdd configuration error for missing auth to package registry7927df0Bump micromatch from 4.0.5 to 4.0.7 in the npm group (#2310)8c4bc43Merge pull request #2296 from github/dbartol/bundle-pr-description584871bMerge pull request #2306 from github/henrymercer/trap-cache-space-efficiencyf629cb3Add some comments to explain test case9983853Add changelog noteUpdates
actions/dependency-review-actionfrom 2.5.1 to 4.3.3Release notes
Sourced from actions/dependency-review-action's releases.
... (truncated)
Commits
72eb03dMerge pull request #781 from actions/release-v4.3.3137d8b4bump to version v4.3.3e6b618eMerge pull request #767 from actions/max-comment-length3c42649fix ws for linter8e6ea8dupdate packaging1b3d277post-review: add PR comment full summary test case220872cUpdate src/main.ts087d0f8repackage to update dist4531204whitespacedf1ca89appease linterUpdates
actions/upload-artifactfrom 3.1.3 to 4.3.3Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
6546280updating package versionc004fb4Merge branch 'main' into eggyhead/use-artifact-v2.1.690aba49updating toolkit artifact dependency to 2.1.6b06cde3Merge pull request #563 from actions/eggyhead/release-4.3.21746f4aRevert "updating to release 4.3.2"31685d0updating to release 4.3.218bf333Merge pull request #562 from actions/eggyhead/update-artifact-v215dac413bupdate package lock versionbb3b4a3updating package version3e3da83updating artifact and core dependenciesUpdates
ossf/scorecard-actionfrom 2.0.6 to 2.3.3Release notes
Sourced from ossf/scorecard-action's releases.
... (truncated)
Commits
dc50aa9🌱 Bump docker tag for v2.3.3 release (#1368)8ff5700🌱 Bump github.com/ossf/scorecard/v5 from v5.0.0-rc2 to v5.0.0-rc2.0....8ba5e73update api links to new scorecard.dev site (#1376)92ddde3Bump github.com/ossf/scorecard/v5 from v5.0.0-rc1 to v5.0.0-rc2 (#1374)6c55905🌱 Bump golang.org/x/net from 0.24.0 to 0.25.0 (#1373)09bb953🌱 Bump distroless/base in the docker-images group (#1372)1511e13🌱 Bump the github-actions group across 1 directory with 6 updates (#...df66cd8🌱 Bump the docker-images group with 2 updates (#1370)fad9a3c🌱 Bump distroless/base in the docker-images group (#1364)1e01a30🌱 Bump the github-actions group with 3 updates (#1365)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions