-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
⬆️ gha: Bump the github-actions group across 1 directory with 14 updates #35
base: main
Are you sure you want to change the base?
⬆️ gha: Bump the github-actions group across 1 directory with 14 updates #35
Conversation
Bumps the github-actions group with 14 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.9.1` | `2.10.2` | | [actions/checkout](https://github.com/actions/checkout) | `4.1.7` | `4.2.2` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.3.4` | `4.5.0` | | [reviewdog/action-tflint](https://github.com/reviewdog/action-tflint) | `1.23.2` | `1.24.0` | | [reviewdog/action-trivy](https://github.com/reviewdog/action-trivy) | `1.11.3` | `1.13.0` | | [reviewdog/action-golangci-lint](https://github.com/reviewdog/action-golangci-lint) | `2.6.2` | `2.7.0` | | [reviewdog/action-misspell](https://github.com/reviewdog/action-misspell) | `1.23.0` | `1.26.1` | | [reviewdog/action-alex](https://github.com/reviewdog/action-alex) | `1.13.0` | `1.15.0` | | [reviewdog/action-markdownlint](https://github.com/reviewdog/action-markdownlint) | `0.24.0` | `0.26.0` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.54.0` | `1.60.0` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.0.8` | `2.1.0` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.4.0` | `4.4.3` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.26.6` | `3.27.6` | | [actions/setup-go](https://github.com/actions/setup-go) | `5.0.2` | `5.1.0` | Updates `step-security/harden-runner` from 2.9.1 to 2.10.2 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@5c7944e...0080882) Updates `actions/checkout` from 4.1.7 to 4.2.2 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...11bd719) Updates `actions/dependency-review-action` from 4.3.4 to 4.5.0 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@5a2ce3f...3b139cf) Updates `reviewdog/action-tflint` from 1.23.2 to 1.24.0 - [Release notes](https://github.com/reviewdog/action-tflint/releases) - [Commits](reviewdog/action-tflint@0a8c6a4...f17a66a) Updates `reviewdog/action-trivy` from 1.11.3 to 1.13.0 - [Release notes](https://github.com/reviewdog/action-trivy/releases) - [Commits](reviewdog/action-trivy@0e0d85c...f6878b5) Updates `reviewdog/action-golangci-lint` from 2.6.2 to 2.7.0 - [Release notes](https://github.com/reviewdog/action-golangci-lint/releases) - [Commits](reviewdog/action-golangci-lint@7708105...dd3fda9) Updates `reviewdog/action-misspell` from 1.23.0 to 1.26.1 - [Release notes](https://github.com/reviewdog/action-misspell/releases) - [Commits](reviewdog/action-misspell@ef8b22c...18ffb61) Updates `reviewdog/action-alex` from 1.13.0 to 1.15.0 - [Release notes](https://github.com/reviewdog/action-alex/releases) - [Commits](reviewdog/action-alex@f95df9e...986cf7d) Updates `reviewdog/action-markdownlint` from 0.24.0 to 0.26.0 - [Release notes](https://github.com/reviewdog/action-markdownlint/releases) - [Commits](reviewdog/action-markdownlint@e9f3ab4...f901468) Updates `reviewdog/action-actionlint` from 1.54.0 to 1.60.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@4f8f996...08ef4af) Updates `softprops/action-gh-release` from 2.0.8 to 2.1.0 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@c062e08...01570a1) Updates `actions/upload-artifact` from 4.4.0 to 4.4.3 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@5076954...b4b15b8) Updates `github/codeql-action` from 3.26.6 to 3.27.6 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4dd1613...aa57810) Updates `actions/setup-go` from 5.0.2 to 5.1.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@0a12ed9...41dfa10) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/dependency-review-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-tflint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-trivy dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-golangci-lint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-misspell dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-alex dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-markdownlint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-actionlint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: softprops/action-gh-release dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-go dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]>
Important Review skippedBot user detected. To trigger a single review, invoke the You can disable this status message by setting the 🪧 TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (Invoked using PR comments)
Other keywords and placeholders
CodeRabbit Configuration File (
|
Here's the code health analysis summary for commits Analysis Summary
|
💰 Infracost reportMonthly estimate generatedThis comment will be updated when code changes. |
Dependency Review✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.OpenSSF ScorecardScorecard details
Scanned Files
|
Bumps the github-actions group with 14 updates in the / directory:
2.9.1
2.10.2
4.1.7
4.2.2
4.3.4
4.5.0
1.23.2
1.24.0
1.11.3
1.13.0
2.6.2
2.7.0
1.23.0
1.26.1
1.13.0
1.15.0
0.24.0
0.26.0
1.54.0
1.60.0
2.0.8
2.1.0
4.4.0
4.4.3
3.26.6
3.27.6
5.0.2
5.1.0
Updates
step-security/harden-runner
from 2.9.1 to 2.10.2Release notes
Sourced from step-security/harden-runner's releases.
Commits
0080882
Merge pull request #476 from step-security/rc-164a3a88b
Update dist556aae6
Merge pull request #480 from h0x0er/jatin/cleanup6c39b84
chore: clean the code40401cf
Update for isdocker806ab1c
Update check for isdocker2846811
update distdf8a07c
Merge pull request #475 from h0x0er/fix-execSync30636fb
bug fixes91182cc
Merge pull request #463 from step-security/rc-14Updates
actions/checkout
from 4.1.7 to 4.2.2Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
11bd719
Prepare 4.2.2 Release (#1953)e3d2460
Expand unit test coverage (#1946)163217d
url-helper.ts
now leverages well-known environment variables. (#1941)eef6144
Prepare 4.2.1 release (#1925)6b42224
Add workflow file for publishing releases to immutable action package (#1919)de5a000
Check out other refs/* by commit if provided, fall back to ref (#1924)d632683
Prepare 4.2.0 release (#1878)6d193bf
Bump braces from 3.0.2 to 3.0.3 (#1777)db0cee9
Bump the minor-npm-dependencies group across 1 directory with 4 updates (#1872)b684943
Add Ref and Commit outputs (#1180)Updates
actions/dependency-review-action
from 4.3.4 to 4.5.0Release notes
Sourced from actions/dependency-review-action's releases.
Commits
3b139cf
Merge pull request #851 from actions/ahmed3lmallah/prepare-for-4.5.0-released6807b6
updating generated codec89b41f
addressing lint issueseee97d8
incrementing project version9d10182
Merge pull request #827 from ebickle/fix/comment-warn-only9192be9
Merge pull request #850 from actions/ahmed3lmallah/adressing-CVE-2024-215382fc8e23
Using cross-spawn safe versionfb86db2
fix: resolve race conditions in async core.group calls0a198ab
fix: replace integer failureCount with booleanfc499fc
Merge branch 'main' into fix/comment-warn-onlyUpdates
reviewdog/action-tflint
from 1.23.2 to 1.24.0Release notes
Sourced from reviewdog/action-tflint's releases.
Commits
f17a66a
Update reviewdog and add fail_level and deduplicate fail_on_error (#100)f9cb738
README: Fix CI status badges (#92)b61e666
docs(README): add documents about input parameters (#98)Updates
reviewdog/action-trivy
from 1.11.3 to 1.13.0Release notes
Sourced from reviewdog/action-trivy's releases.
Commits
f6878b5
Merge pull request #67 from reviewdog/depup/reviewdogb751208
Merge pull request #68 from reviewdog/renovate/aws-5.x57992eb
chore(deps): update terraform aws to ~> 5.80.0c115507
chore(deps): update reviewdog to 0.20.3c3db866
Merge pull request #66 from reviewdog/renovate/aws-5.x63d3d37
chore(deps): update terraform aws to ~> 5.79.05964cd6
Merge pull request #65 from reviewdog/renovate/aws-5.x346c7b1
chore(deps): update terraform aws to ~> 5.78.05f1fa7b
Merge pull request #62 from reviewdog/renovate/aws-5.xc8947de
chore(deps): update terraform aws to ~> 5.77.0Updates
reviewdog/action-golangci-lint
from 2.6.2 to 2.7.0Release notes
Sourced from reviewdog/action-golangci-lint's releases.
Commits
dd3fda9
Merge pull request #754 from reviewdog/add_fail_leveldb279af
Add line break60e46cf
Merge branch 'master' into add_fail_level745cf59
Merge pull request #751 from reviewdog/renovate/vercel-ncc-0.xd50adff
Merge pull request #753 from reviewdog/renovate/prettier-3.xd287723
Merge pull request #750 from reviewdog/renovate/@typescript-eslintparser-and
-...8c7710d
Merge pull request #747 from reviewdog/renovate/node-20.x-lockfile3d229c8
Update distac3d3ec
Add fail_level and deduplicate fail_on_errore5ca0bb
chore(deps): update dependency@types/node
to v20.17.9Updates
reviewdog/action-misspell
from 1.23.0 to 1.26.1Release notes
Sourced from reviewdog/action-misspell's releases.
Commits
18ffb61
Merge pull request #73 from reviewdog/renovate/peter-evans-create-pull-reques...b277a94
Merge pull request #76 from reviewdog/depup/reviewdog364a050
chore(deps): update reviewdog to 0.20.36dbb2a0
Merge pull request #75 from reviewdog/add_fail_levelc60dcb0
Add line breakbb00978
Merge branch 'master' into add_fail_level8bc2cae
Merge pull request #74 from reviewdog/depup/reviewdog9a8c4db
Add fail_level and deduplicate fail_on_errorfcb6dfd
chore(deps): update reviewdog to 0.20.265e0ad4
chore(deps): update peter-evans/create-pull-request action to v7Updates
reviewdog/action-alex
from 1.13.0 to 1.15.0Release notes
Sourced from reviewdog/action-alex's releases.
Commits
986cf7d
Merge pull request #34 from reviewdog/add_fail_leveldbddc92
Add line break871b9b5
Disable SC20868a1cbbe
Add fail_level and deduplicate fail_on_error73756e0
Merge pull request #33 from reviewdog/depup/reviewdogc099d35
chore(deps): update reviewdog to 0.20.2Updates
reviewdog/action-markdownlint
from 0.24.0 to 0.26.0Release notes
Sourced from reviewdog/action-markdownlint's releases.
Commits
f901468
Merge pull request #68 from reviewdog/add_fail_leveladf21b3
Add disable comment95d9d62
Add line break450f900
Add fail_level and deduplicate fail_on_error28fb422
Merge pull request #65 from reviewdog/depup/reviewdog0daa209
chore(deps): update reviewdog to 0.20.2Updates
reviewdog/action-actionlint
from 1.54.0 to 1.60.0Release notes
Sourced from reviewdog/action-actionlint's releases.
Commits
08ef4af
bump v1.60.02e2ccc7
Merge branch 'main' into releases/v16612efe
Merge pull request #148 from reviewdog/depup/reviewdog5fb0077
chore(deps): update reviewdog to 0.20.3053c5cf
bump v1.59.06f4af2f
Merge branch 'main' into releases/v18256770
Merge pull request #146 from reviewdog/depup/actionlintd1992cd
bump v1.58.03d5dd35
Merge branch 'main' into releases/v1a6d11f2
Merge pull request #147 from reviewdog/add_fail_levelUpdates
softprops/action-gh-release
from 2.0.8 to 2.1.0Release notes
Sourced from softprops/action-gh-release's releases.
Changelog
Sourced from softprops/action-gh-release's changelog.
... (truncated)
Commits
01570a1
chore: release 2.1.0d5f028c
feature: preserve upload order (#500)98daca2
feat: add support for release assets with multiple spaces within the name (#518)b019a5b
chore: bump@types/node
to 22.9.073e673b
chore(deps): bump@types/node
from 22.8.2 to 22.8.7 (#539)e7a8f85
chore: release 2.0.904afa13
chore(deps): bump actions/setup-node from 4.0.4 to 4.1.0 (#535)894468a
chore(deps): bump actions/checkout from 4.2.1 to 4.2.2 (#534)3bd23aa
chore(deps): bump@types/node
from 22.7.5 to 22.8.2 (#533)21eb2f9
chore(deps): bump@types/jest
from 29.5.13 to 29.5.14 (#532)Updates
actions/upload-artifact
from 4.4.0 to 4.4.3Release notes
Sourced from actions/upload-artifact's releases.
Commits
b4b15b8
Merge pull request #632 from actions/joshmgross/undo-dependency-changes92b01eb
Undo indirect dependency updates from #6278448086
Merge pull request #627 from actions/robherley/v4.4.2b1d4642
add explicit relative and absolute symlinks to workflowd50e660
bump versionaabe6f8
build with@actions/artifact
v2.1.11604373d
Merge pull request #625 from actions/robherley/artifact-2.1.100150148
paste right core versiona009b25
update licenses9f6f6f4
update@actions/core
and@actions/artifact
to latest versionsUpdates
github/codeql-action
from 3.26.6 to 3.27.6Release notes
Sourced from github/codeql-action's releases.