-
Notifications
You must be signed in to change notification settings - Fork 88
build(deps): bump the minor-and-patch-actions-weekly group across 1 directory with 12 updates #4462
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
…irectory with 12 updates Bumps the minor-and-patch-actions-weekly group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.13.0` | `2.13.1` | | [step-security/publish-unit-test-result-action](https://github.com/step-security/publish-unit-test-result-action) | `2.20.2` | `2.20.4` | | [step-security/gh-docker-logs](https://github.com/step-security/gh-docker-logs) | `2.2.5` | `2.2.6` | | [step-security/conventional-pr-title-action](https://github.com/step-security/conventional-pr-title-action) | `3.2.3` | `3.2.4` | | [step-security/foundry-toolchain](https://github.com/step-security/foundry-toolchain) | `1.4.0` | `1.4.1` | | [step-security/ghaction-import-gpg](https://github.com/step-security/ghaction-import-gpg) | `6.3.0` | `6.3.1` | | [step-security/semver-utils](https://github.com/step-security/semver-utils) | `4.3.1` | `4.3.2` | | [step-security/close-milestone](https://github.com/step-security/close-milestone) | `2.2.0` | `2.2.1` | | [step-security/release-notes-generator-action](https://github.com/step-security/release-notes-generator-action) | `3.1.8` | `3.1.9` | | [ncipollo/release-action](https://github.com/ncipollo/release-action) | `1.18.0` | `1.20.0` | | [docker/login-action](https://github.com/docker/login-action) | `3.5.0` | `3.6.0` | | [step-security/helm-gh-pages](https://github.com/step-security/helm-gh-pages) | `1.7.3` | `1.7.4` | Updates `step-security/harden-runner` from 2.13.0 to 2.13.1 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@ec9f2d5...f4a75cf) Updates `step-security/publish-unit-test-result-action` from 2.20.2 to 2.20.4 - [Release notes](https://github.com/step-security/publish-unit-test-result-action/releases) - [Commits](step-security/publish-unit-test-result-action@43e0c96...5d195d4) Updates `step-security/gh-docker-logs` from 2.2.5 to 2.2.6 - [Release notes](https://github.com/step-security/gh-docker-logs/releases) - [Commits](step-security/gh-docker-logs@fabd93e...2ffe2e0) Updates `step-security/conventional-pr-title-action` from 3.2.3 to 3.2.4 - [Release notes](https://github.com/step-security/conventional-pr-title-action/releases) - [Changelog](https://github.com/step-security/conventional-pr-title-action/blob/main/release.config.js) - [Commits](step-security/conventional-pr-title-action@d47e881...e2a9b8d) Updates `step-security/foundry-toolchain` from 1.4.0 to 1.4.1 - [Release notes](https://github.com/step-security/foundry-toolchain/releases) - [Changelog](https://github.com/step-security/foundry-toolchain/blob/main/RELEASE.md) - [Commits](step-security/foundry-toolchain@ced99da...0f33b42) Updates `step-security/ghaction-import-gpg` from 6.3.0 to 6.3.1 - [Release notes](https://github.com/step-security/ghaction-import-gpg/releases) - [Commits](step-security/ghaction-import-gpg@c86c374...69c854a) Updates `step-security/semver-utils` from 4.3.1 to 4.3.2 - [Release notes](https://github.com/step-security/semver-utils/releases) - [Commits](step-security/semver-utils@b6c7716...4ae9c1f) Updates `step-security/close-milestone` from 2.2.0 to 2.2.1 - [Release notes](https://github.com/step-security/close-milestone/releases) - [Commits](step-security/close-milestone@fcc24c9...b097272) Updates `step-security/release-notes-generator-action` from 3.1.8 to 3.1.9 - [Release notes](https://github.com/step-security/release-notes-generator-action/releases) - [Commits](step-security/release-notes-generator-action@1142226...192a937) Updates `ncipollo/release-action` from 1.18.0 to 1.20.0 - [Release notes](https://github.com/ncipollo/release-action/releases) - [Commits](ncipollo/release-action@bcfe547...b7eabc9) Updates `docker/login-action` from 3.5.0 to 3.6.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@184bdaa...5e57cd1) Updates `step-security/helm-gh-pages` from 1.7.3 to 1.7.4 - [Release notes](https://github.com/step-security/helm-gh-pages/releases) - [Commits](step-security/helm-gh-pages@193f06c...7e699aa) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/publish-unit-test-result-action dependency-version: 2.20.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/gh-docker-logs dependency-version: 2.2.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/conventional-pr-title-action dependency-version: 3.2.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/foundry-toolchain dependency-version: 1.4.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/ghaction-import-gpg dependency-version: 6.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/semver-utils dependency-version: 4.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/close-milestone dependency-version: 2.2.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/release-notes-generator-action dependency-version: 3.1.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: ncipollo/release-action dependency-version: 1.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch-actions-weekly - dependency-name: docker/login-action dependency-version: 3.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/helm-gh-pages dependency-version: 1.7.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly ... Signed-off-by: dependabot[bot] <[email protected]>
f06fbeb to
a33534b
Compare
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Codecov Report✅ All modified and coverable lines are covered by tests. ❌ Your project status has failed because the head coverage (69.04%) is below the target coverage (80.00%). You can increase the head coverage or adjust the target coverage.
@@ Coverage Diff @@
## main #4462 +/- ##
===========================================
- Coverage 96.23% 69.04% -27.19%
===========================================
Files 121 121
Lines 20001 20001
Branches 1755 568 -1187
===========================================
- Hits 19247 13810 -5437
- Misses 735 6179 +5444
+ Partials 19 12 -7
Flags with carried forward coverage won't be shown. Click here to find out more. 🚀 New features to boost your workflow:
|
Bumps the minor-and-patch-actions-weekly group with 12 updates in the / directory:
2.13.02.13.12.20.22.20.42.2.52.2.63.2.33.2.41.4.01.4.16.3.06.3.14.3.14.3.22.2.02.2.13.1.83.1.91.18.01.20.03.5.03.6.01.7.31.7.4Updates
step-security/harden-runnerfrom 2.13.0 to 2.13.1Release notes
Sourced from step-security/harden-runner's releases.
Commits
f4a75cfMerge pull request #588 from step-security/rc-2695503d0ci: remove code-review workflow4b250a0ci: add job to confirm dist is as expected5b0ab6aupdate dependenciesd11f2c1fix bug where status code was not being preservedb3fc98eimprove error handling for policy store sceanrio92fc5d4update error messageb61b0a4policy store improvementse3d3f2buse GitHub release instead of packages646ac01update agentUpdates
step-security/publish-unit-test-result-actionfrom 2.20.2 to 2.20.4Release notes
Sourced from step-security/publish-unit-test-result-action's releases.
Commits
5d195d4Merge pull request #129 from step-security/Raj-StepSecurity-patch-1629cc9d2Update action.ymlea21df0Merge pull request #128 from step-security/Raj-StepSecurity-patch-154847439Update action.yml230f6e8Merge pull request #127 from step-security/Raj-StepSecurity-patch-14e4fde32Update action.yml738e9dcMerge pull request #126 from step-security/Raj-StepSecurity-patch-131c392e5Update action.ymlc59c519Merge pull request #125 from step-security/Raj-StepSecurity-patch-126f634c8Update action.ymlUpdates
step-security/gh-docker-logsfrom 2.2.5 to 2.2.6Release notes
Sourced from step-security/gh-docker-logs's releases.
Commits
2ffe2e0Merge pull request #129 from step-security/fix/subscription73b6893fix: fixed validate subscription check code3a0e624Merge pull request #128 from step-security/npm-audit-fixd233573fix: apply audit fixes7d94487fix: apply audit fixes31365cffix: apply audit fixesf7ed209Merge pull request #126 from step-security/npm-audit-fixd8437dcfix: apply audit fixese410c2ffix: apply audit fixes0830413fix: apply audit fixesUpdates
step-security/conventional-pr-title-actionfrom 3.2.3 to 3.2.4Release notes
Sourced from step-security/conventional-pr-title-action's releases.
Commits
e2a9b8dMerge pull request #122 from step-security/Raj-StepSecurity-patch-7688663aUpdate action.yml122a073Merge pull request #121 from step-security/Raj-StepSecurity-patch-675d1e4eUpdate index.jsc6735daMerge pull request #119 from step-security/npm-audit-fixcc9169afix: apply audit fixes3dec774Merge pull request #112 from step-security/npm-audit-fix2d11c74fix: apply audit fixesUpdates
step-security/foundry-toolchainfrom 1.4.0 to 1.4.1Release notes
Sourced from step-security/foundry-toolchain's releases.
Commits
0f33b42Merge pull request #117 from step-security/fix/subscription534dd0efix: fixed validate subscription codefc0b68aMerge pull request #115 from step-security/npm-audit-fixce786fbfix: apply audit fixes7a8af5cfix: apply audit fixes18e3636fix: apply audit fixese4e72b3fix: apply audit fixes82be6fafix: apply audit fixes4bd4629Merge pull request #114 from step-security/npm-audit-fixea21368fix: apply audit fixesUpdates
step-security/ghaction-import-gpgfrom 6.3.0 to 6.3.1Release notes
Sourced from step-security/ghaction-import-gpg's releases.
Commits
69c854aMerge pull request #175 from step-security/fix/subscription347e30afix: fixed subscription check code4d3430aMerge pull request #149 from step-security/dependabot/npm_and_yarn/brace-expa...2798f24Bump brace-expansion from 1.1.11 to 1.1.12e702cb5Merge pull request #151 from step-security/yarn-audit-fix5800c46fix: apply audit fixesa58f931Merge pull request #145 from step-security/Raj-StepSecurity-patch-2d638834Merge branch 'main' into Raj-StepSecurity-patch-29948152Merge pull request #146 from step-security/Raj-StepSecurity-patch-3b93ede7Update auto_cherry_pick.ymlUpdates
step-security/semver-utilsfrom 4.3.1 to 4.3.2Release notes
Sourced from step-security/semver-utils's releases.
Commits
4ae9c1ffeat: Validate Updated Subscription Flow (#196)e5db328chore: dist updated86044a1Update main.tsa48fbb7Merge pull request #189 from step-security/npm-audit-fixdb54cc4fix: apply audit fixes2898593fix: apply audit fixes701989efix: apply audit fixesUpdates
step-security/close-milestonefrom 2.2.0 to 2.2.1Release notes
Sourced from step-security/close-milestone's releases.
Commits
b097272feat: Update main.ts (#99)d0c3c89Merge pull request #100 from step-security/npm-audit-fixb013a00Update main.tsab8a244Merge pull request #78 from step-security/Raj-StepSecurity-patch-395c6220Merge branch 'main' into Raj-StepSecurity-patch-38867439Merge pull request #91 from step-security/npm-audit-fix2483b18fix: apply audit fixes4b2a8acfix: apply audit fixes9f35898fix: apply audit fixes7c316d3Merge pull request #83 from step-security/npm-audit-fixUpdates
step-security/release-notes-generator-actionfrom 3.1.8 to 3.1.9Release notes
Sourced from step-security/release-notes-generator-action's releases.
Commits
192a937Merge pull request #51 from step-security/Raj-StepSecurity-patch-6f3c2d9ffeat: Update action.yml With Latest Docker Image7640f8bMerge pull request #50 from step-security/Raj-StepSecurity-patch-5ba0e6bdUpdate entrypoint.shUpdates
ncipollo/release-actionfrom 1.18.0 to 1.20.0Release notes
Sourced from ncipollo/release-action's releases.
Commits
b7eabc9preparing release 1.20.0e87de4cFixes #542 Add previous tag option (#550)98d25d4preparing release 1.19.2d360126Fixes #548 Add support body + generated release notes (#549)571fe81UpdateimmutableCreate's default in the documentation (#547)1c89adfpreparing release 1.19.136bf8ddReferences #545 Default immutable builds to falseb12185dpreparing release 1.19.0defcf13Fixes #540 Add support for immutable releases (#544)05013d5Standardize on separate call to generate release notesUpdates
docker/login-actionfrom 3.5.0 to 3.6.0Release notes
Sourced from docker/login-action's releases.
Commits
5e57cd1Merge pull request #890 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...97e3143chore: update generated content3a0796bbuild(deps): bump the aws-sdk-dependencies group with 2 updates5b7b28bMerge pull request #882 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...abc9fb3chore: update generated contentd468688build(deps): bump the aws-sdk-dependencies group with 2 updatesa99b2f8Merge pull request #883 from docker/dependabot/npm_and_yarn/docker/actions-to...0d7fae8chore: update generated content9832253build(deps): bump@docker/actions-toolkitfrom 0.62.1 to 0.63.009e05bbMerge pull request #881 from docker/dependabot/npm_and_yarn/tmp-0.2.4Updates
step-security/helm-gh-pagesfrom 1.7.3 to 1.7.4Release notes
Sourced from step-security/helm-gh-pages's releases.
Commits
7e699aaMerge pull request #98 from step-security/Raj-StepSecurity-patch-115c0a80eUpdate action.ymlb858836Merge pull request #97 from step-security/Raj-StepSecurity-patch-10fce9bf5Update action.ymlcfb2ddbMerge pull request #96 from step-security/Raj-StepSecurity-patch-968f3c05Update entrypoint.shDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions