-
Notifications
You must be signed in to change notification settings - Fork 1
⬆️ gha: Bump the github-actions group across 1 directory with 15 updates #176
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
⬆️ gha: Bump the github-actions group across 1 directory with 15 updates #176
Conversation
Bumps the github-actions group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.9.1` | `2.13.0` | | [actions/checkout](https://github.com/actions/checkout) | `4.1.7` | `5.0.0` | | [actions/setup-go](https://github.com/actions/setup-go) | `5.0.2` | `5.5.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.26.6` | `3.29.8` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.3.4` | `4.7.1` | | [reviewdog/action-tflint](https://github.com/reviewdog/action-tflint) | `1.23.2` | `1.24.2` | | [reviewdog/action-trivy](https://github.com/reviewdog/action-trivy) | `1.11.3` | `1.13.10` | | [reviewdog/action-golangci-lint](https://github.com/reviewdog/action-golangci-lint) | `2.6.2` | `2.8.0` | | [reviewdog/action-misspell](https://github.com/reviewdog/action-misspell) | `1.23.0` | `1.26.3` | | [reviewdog/action-alex](https://github.com/reviewdog/action-alex) | `1.13.0` | `1.16.0` | | [reviewdog/action-markdownlint](https://github.com/reviewdog/action-markdownlint) | `0.24.0` | `0.26.2` | | [reviewdog/action-actionlint](https://github.com/reviewdog/action-actionlint) | `1.54.0` | `1.66.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.4.0` | `2.4.2` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.4.0` | `4.6.2` | | [aws-actions/configure-aws-credentials](https://github.com/aws-actions/configure-aws-credentials) | `4.0.2` | `4.3.1` | Updates `step-security/harden-runner` from 2.9.1 to 2.13.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@5c7944e...ec9f2d5) Updates `actions/checkout` from 4.1.7 to 5.0.0 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...08c6903) Updates `actions/setup-go` from 5.0.2 to 5.5.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@0a12ed9...d35c59a) Updates `github/codeql-action` from 3.26.6 to 3.29.8 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4dd1613...76621b6) Updates `actions/dependency-review-action` from 4.3.4 to 4.7.1 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@5a2ce3f...da24556) Updates `reviewdog/action-tflint` from 1.23.2 to 1.24.2 - [Release notes](https://github.com/reviewdog/action-tflint/releases) - [Commits](reviewdog/action-tflint@0a8c6a4...41b4770) Updates `reviewdog/action-trivy` from 1.11.3 to 1.13.10 - [Release notes](https://github.com/reviewdog/action-trivy/releases) - [Commits](reviewdog/action-trivy@0e0d85c...0cab87b) Updates `reviewdog/action-golangci-lint` from 2.6.2 to 2.8.0 - [Release notes](https://github.com/reviewdog/action-golangci-lint/releases) - [Commits](reviewdog/action-golangci-lint@7708105...f9bba13) Updates `reviewdog/action-misspell` from 1.23.0 to 1.26.3 - [Release notes](https://github.com/reviewdog/action-misspell/releases) - [Commits](reviewdog/action-misspell@ef8b22c...9daa94a) Updates `reviewdog/action-alex` from 1.13.0 to 1.16.0 - [Release notes](https://github.com/reviewdog/action-alex/releases) - [Commits](reviewdog/action-alex@f95df9e...6083b8c) Updates `reviewdog/action-markdownlint` from 0.24.0 to 0.26.2 - [Release notes](https://github.com/reviewdog/action-markdownlint/releases) - [Commits](reviewdog/action-markdownlint@e9f3ab4...3667398) Updates `reviewdog/action-actionlint` from 1.54.0 to 1.66.0 - [Release notes](https://github.com/reviewdog/action-actionlint/releases) - [Commits](reviewdog/action-actionlint@4f8f996...50b75b9) Updates `ossf/scorecard-action` from 2.4.0 to 2.4.2 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@62b2cac...05b42c6) Updates `actions/upload-artifact` from 4.4.0 to 4.6.2 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@5076954...ea165f8) Updates `aws-actions/configure-aws-credentials` from 4.0.2 to 4.3.1 - [Release notes](https://github.com/aws-actions/configure-aws-credentials/releases) - [Changelog](https://github.com/aws-actions/configure-aws-credentials/blob/main/CHANGELOG.md) - [Commits](aws-actions/configure-aws-credentials@e3dd6a4...7474bc4) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/checkout dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-go dependency-version: 5.5.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: github/codeql-action dependency-version: 3.29.8 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/dependency-review-action dependency-version: 4.7.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-tflint dependency-version: 1.24.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-trivy dependency-version: 1.13.10 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-golangci-lint dependency-version: 2.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-misspell dependency-version: 1.26.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-alex dependency-version: 1.16.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-markdownlint dependency-version: 0.26.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: reviewdog/action-actionlint dependency-version: 1.66.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: ossf/scorecard-action dependency-version: 2.4.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: 4.6.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: aws-actions/configure-aws-credentials dependency-version: 4.3.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]>
Important Review skippedBot user detected. To trigger a single review, invoke the You can disable this status message by setting the 🪧 TipsChatThere are 3 ways to chat with CodeRabbit:
SupportNeed help? Join our Discord community for assistance with any issues or questions. CodeRabbit Commands (Invoked using PR comments)
Other keywords and placeholders
CodeRabbit Configuration File (
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
simply
may be insensitive, try not to use it simple retext-equality
# For most projects, this workflow file will not need changing; you simply need |
Bumps the github-actions group with 15 updates in the / directory:
2.9.1
2.13.0
4.1.7
5.0.0
5.0.2
5.5.0
3.26.6
3.29.8
4.3.4
4.7.1
1.23.2
1.24.2
1.11.3
1.13.10
2.6.2
2.8.0
1.23.0
1.26.3
1.13.0
1.16.0
0.24.0
0.26.2
1.54.0
1.66.0
2.4.0
2.4.2
4.4.0
4.6.2
4.0.2
4.3.1
Updates
step-security/harden-runner
from 2.9.1 to 2.13.0Release notes
Sourced from step-security/harden-runner's releases.
... (truncated)
Commits
ec9f2d5
Merge pull request #565 from step-security/rc-2404bcbc3
update agent7c7a56f
feat: get job summary from API6c439dc
Merge pull request #562 from step-security/rc-22bf56886
update agent5436dac
update agent88d305a
update agentb976878
update agent875cc92
Update agent002fdce
Merge pull request #544 from step-security/rc-21Updates
actions/checkout
from 4.1.7 to 5.0.0Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
08c6903
Prepare v5.0.0 release (#2238)9f26565
Update actions checkout to use node 24 (#2226)08eba0b
Prepare release v4.3.0 (#2237)631c7dc
Update package dependencies (#2236)8edcb1b
Update CODEOWNERS for actions (#2224)09d2aca
Update README.md (#2194)85e6279
Adjust positioning of user email note and permissions heading (#2044)009b9ae
Documentation update - add recommended permissions to Readme (#2043)cbb7224
Update README.md (#1977)3b9b8c8
docs: update README.md (#1971)Updates
actions/setup-go
from 5.0.2 to 5.5.0Release notes
Sourced from actions/setup-go's releases.
... (truncated)
Commits
d35c59a
chore: update discussions url (#527)29694d7
Add manifest validation and improve error handling (#586)78535dd
Bump eslint-plugin-jest from 27.9.0 to 28.11.0 (#537)bb65d88
Bump ts-jest from 29.1.2 to 29.3.2 (#582)7f17e83
Bump@actions/glob
from 0.4.0 to 0.5.0 (#573)dca8468
Update self-hosted environment validation and bump undici version (#556)691cc35
upgrade actions/cache to 4.0.3 (#574)0aaccfd
Bump undici from 5.28.4 to 5.28.5 (#541)c4c1141
upgrade actions/cache to 4.0.2 (#568)5a083d0
Bump eslint-config-prettier from 8.10.0 to 10.0.1 (#536)Updates
github/codeql-action
from 3.26.6 to 3.29.8Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
76621b6
Merge pull request #3019 from github/update-v3.29.8-679a40d3329ac3ce
Add release notes for 3.29.7737cfde
Update changelog for v3.29.8679a40d
Merge pull request #3014 from github/henrymercer/rebuild-dispatch6fe50b2
Merge pull request #3015 from github/henrymercer/language-autodetection-worka...6bc91d6
Add changelog note6b4fedc
Bump Action patch version5794ffc
Fix auto-detection of extractors that aren't languagesbd62bf4
Finish in-progress merges2afb4e6
Avoid specifying branch unnecessarilyUpdates
actions/dependency-review-action
from 4.3.4 to 4.7.1Release notes
Sourced from actions/dependency-review-action's releases.
... (truncated)
Commits
da24556
Merge pull request #933 from actions/dangoor/471-release9af0caf
Bump version number for 4.7.1d8f2df2
Merge pull request #932 from actions/907-disallow-expression6e9307a
Discard allow list entries that are not SPDX IDs8805179
Merge pull request #930 from actions/889-allow-no-license014300b
Update build34486f3
Check namespaces when excluding license checks9b155d6
Update buildf199659
Allowing dependencies works with no licenses38ecb5b
Merge pull request #929 from actions/dangoor/4.7-releaseUpdates
reviewdog/action-tflint
from 1.23.2 to 1.24.2Release notes
Sourced from reviewdog/action-tflint's releases.
Commits
41b4770
Pin reviewdog install script version with commit SHA (#103)7b57187
Pin GitHub Actions with commit SHA using pinact (#102)f17a66a
Update reviewdog and add fail_level and deduplicate fail_on_error (#100)f9cb738
README: Fix CI status badges (#92)b61e666
docs(README): add documents about input parameters (#98)Updates
reviewdog/action-trivy
from 1.11.3 to 1.13.10Release notes
Sourced from reviewdog/action-trivy's releases.
... (truncated)
Commits
0cab87b
Merge pull request #82 from reviewdog/pin-install-script-verec495db
Pin reviewdog install script version with commit SHAd50b38c
Merge pull request #81 from reviewdog/pinact-action-trivya236ab9
Pin GitHub Actions with commit SHA using pinact5a2ff86
Merge pull request #79 from reviewdog/renovate/aws-5.x9d73cf6
chore(deps): update terraform aws to ~> 5.90.009f7df7
Merge pull request #78 from reviewdog/renovate/aws-5.x98170e1
chore(deps): update terraform aws to ~> 5.89.0e6cd771
Merge pull request #77 from reviewdog/renovate/aws-5.x840ef8a
chore(deps): update terraform aws to ~> 5.84.0Updates
reviewdog/action-golangci-lint
from 2.6.2 to 2.8.0Release notes
Sourced from reviewdog/action-golangci-lint's releases.
Commits
f9bba13
Merge pull request #779 from pranc1ngpegasus/fix/migrate-to-golangci-lint-v2