From 5bc807699371c098a8568693811583b398717e17 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 2 May 2025 10:40:12 +0000 Subject: [PATCH 1/8] build(deps): bump the github-actions group across 4 directories with 2 updates Bumps the github-actions group with 1 update in the / directory: [tj-actions/changed-files](https://github.com/tj-actions/changed-files). Bumps the github-actions group with 1 update in the /.github/workflows directory: [tj-actions/changed-files](https://github.com/tj-actions/changed-files). Bumps the github-actions group with 1 update in the /.github/workflows/prepare-release directory: [elastic/oblt-actions](https://github.com/elastic/oblt-actions). Bumps the github-actions group with 1 update in the /.github/workflows/smoke-test-ess-action directory: [elastic/oblt-actions](https://github.com/elastic/oblt-actions). Updates `tj-actions/changed-files` from 9934ab3fdf63239da75d9e0fbd339c48620c72c4 to 4168bb487d5b82227665ab4ec90b67ce02691741 - [Release notes](https://github.com/tj-actions/changed-files/releases) - [Changelog](https://github.com/tj-actions/changed-files/blob/main/HISTORY.md) - [Commits](https://github.com/tj-actions/changed-files/compare/9934ab3fdf63239da75d9e0fbd339c48620c72c4...4168bb487d5b82227665ab4ec90b67ce02691741) Updates `tj-actions/changed-files` from 9934ab3fdf63239da75d9e0fbd339c48620c72c4 to 4168bb487d5b82227665ab4ec90b67ce02691741 - [Release notes](https://github.com/tj-actions/changed-files/releases) - [Changelog](https://github.com/tj-actions/changed-files/blob/main/HISTORY.md) - [Commits](https://github.com/tj-actions/changed-files/compare/9934ab3fdf63239da75d9e0fbd339c48620c72c4...4168bb487d5b82227665ab4ec90b67ce02691741) Updates `elastic/oblt-actions` from 1.25.0 to 1.27.1 - [Release notes](https://github.com/elastic/oblt-actions/releases) - [Changelog](https://github.com/elastic/oblt-actions/blob/main/docs/RELEASE.md) - [Commits](https://github.com/elastic/oblt-actions/compare/31e93d1dfb82adc106fc7820f505db1afefe43b1...476391c0e6815110ce488b8b09c80ed61848a28a) Updates `elastic/oblt-actions` from 1.25.0 to 1.27.1 - [Release notes](https://github.com/elastic/oblt-actions/releases) - [Changelog](https://github.com/elastic/oblt-actions/blob/main/docs/RELEASE.md) - [Commits](https://github.com/elastic/oblt-actions/compare/31e93d1dfb82adc106fc7820f505db1afefe43b1...476391c0e6815110ce488b8b09c80ed61848a28a) --- updated-dependencies: - dependency-name: tj-actions/changed-files dependency-version: 4168bb487d5b82227665ab4ec90b67ce02691741 dependency-type: direct:production dependency-group: github-actions - dependency-name: tj-actions/changed-files dependency-version: 4168bb487d5b82227665ab4ec90b67ce02691741 dependency-type: direct:production dependency-group: github-actions - dependency-name: elastic/oblt-actions dependency-version: 1.27.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: elastic/oblt-actions dependency-version: 1.27.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] --- .github/workflows/ci.yml | 2 +- .github/workflows/prepare-release/action.yml | 4 ++-- .github/workflows/smoke-test-ess-action/action.yml | 4 ++-- 3 files changed, 5 insertions(+), 5 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 480ccfdfdc5..60a76003b67 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -172,7 +172,7 @@ jobs: - uses: actions/checkout@v4 - name: Get changed files id: changed-files - uses: tj-actions/changed-files@9934ab3fdf63239da75d9e0fbd339c48620c72c4 # v45.0.7 + uses: tj-actions/changed-files@4168bb487d5b82227665ab4ec90b67ce02691741 # v45.0.7 with: files: .go-version diff --git a/.github/workflows/prepare-release/action.yml b/.github/workflows/prepare-release/action.yml index b895d22599d..17db8dbb831 100644 --- a/.github/workflows/prepare-release/action.yml +++ b/.github/workflows/prepare-release/action.yml @@ -32,7 +32,7 @@ runs: steps: - name: Send slack message when started id: slack-thread - uses: elastic/oblt-actions/slack/send@31e93d1dfb82adc106fc7820f505db1afefe43b1 # v1 + uses: elastic/oblt-actions/slack/send@476391c0e6815110ce488b8b09c80ed61848a28a # v1 with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} @@ -109,7 +109,7 @@ runs: TAG: 'refs/tags/v${{ steps.generate.outputs.release-version }}' - if: failure() - uses: elastic/oblt-actions/slack/send@31e93d1dfb82adc106fc7820f505db1afefe43b1 # v1 + uses: elastic/oblt-actions/slack/send@476391c0e6815110ce488b8b09c80ed61848a28a # v1 with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} diff --git a/.github/workflows/smoke-test-ess-action/action.yml b/.github/workflows/smoke-test-ess-action/action.yml index 0aab8c2781d..2cf883cce18 100644 --- a/.github/workflows/smoke-test-ess-action/action.yml +++ b/.github/workflows/smoke-test-ess-action/action.yml @@ -24,9 +24,9 @@ runs: - name: Setup cluster env uses: ./.github/workflows/setup-cluster-env - - uses: elastic/oblt-actions/aws/auth@31e93d1dfb82adc106fc7820f505db1afefe43b1 # v1 + - uses: elastic/oblt-actions/aws/auth@476391c0e6815110ce488b8b09c80ed61848a28a # v1 - - uses: elastic/oblt-actions/google/auth@31e93d1dfb82adc106fc7820f505db1afefe43b1 # v1 + - uses: elastic/oblt-actions/google/auth@476391c0e6815110ce488b8b09c80ed61848a28a # v1 - uses: google-github-actions/get-secretmanager-secrets@a8440875e1c2892062aef9061228d4f1af8f919b # v2.2.3 with: From 8eca782c81e0a1a4d4207b635377aecc47fc003e Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Fri, 2 May 2025 13:59:19 +0200 Subject: [PATCH 2/8] Update ci.yml --- .github/workflows/ci.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 60a76003b67..c9a9a517483 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -172,7 +172,7 @@ jobs: - uses: actions/checkout@v4 - name: Get changed files id: changed-files - uses: tj-actions/changed-files@4168bb487d5b82227665ab4ec90b67ce02691741 # v45.0.7 + uses: tj-actions/changed-files@ed68ef82c095e0d48ec87eccea555d944a631a4c # v46.0.5 with: files: .go-version From 066451603a6e5f04f1a7d41a6844a32786df7b86 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Fri, 2 May 2025 14:01:46 +0200 Subject: [PATCH 3/8] Update action.yml --- .github/workflows/prepare-release/action.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/prepare-release/action.yml b/.github/workflows/prepare-release/action.yml index 17db8dbb831..bd59dcd29ab 100644 --- a/.github/workflows/prepare-release/action.yml +++ b/.github/workflows/prepare-release/action.yml @@ -32,7 +32,7 @@ runs: steps: - name: Send slack message when started id: slack-thread - uses: elastic/oblt-actions/slack/send@476391c0e6815110ce488b8b09c80ed61848a28a # v1 + uses: elastic/oblt-actions/slack/send@main with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} @@ -109,7 +109,7 @@ runs: TAG: 'refs/tags/v${{ steps.generate.outputs.release-version }}' - if: failure() - uses: elastic/oblt-actions/slack/send@476391c0e6815110ce488b8b09c80ed61848a28a # v1 + uses: elastic/oblt-actions/slack/send@main with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} From 1a11c75e92a15dd3bf72769a3efda3e91ad4b635 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Fri, 2 May 2025 14:02:11 +0200 Subject: [PATCH 4/8] Update action.yml --- .github/workflows/smoke-test-ess-action/action.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/smoke-test-ess-action/action.yml b/.github/workflows/smoke-test-ess-action/action.yml index 2cf883cce18..3f54bc88f64 100644 --- a/.github/workflows/smoke-test-ess-action/action.yml +++ b/.github/workflows/smoke-test-ess-action/action.yml @@ -24,9 +24,9 @@ runs: - name: Setup cluster env uses: ./.github/workflows/setup-cluster-env - - uses: elastic/oblt-actions/aws/auth@476391c0e6815110ce488b8b09c80ed61848a28a # v1 + - uses: elastic/oblt-actions/aws/auth@main - - uses: elastic/oblt-actions/google/auth@476391c0e6815110ce488b8b09c80ed61848a28a # v1 + - uses: elastic/oblt-actions/google/auth@main - uses: google-github-actions/get-secretmanager-secrets@a8440875e1c2892062aef9061228d4f1af8f919b # v2.2.3 with: From e20eb69add5298a0142134b7bac9796901fc1c49 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Fri, 2 May 2025 21:46:47 +0200 Subject: [PATCH 5/8] do not pin github action to a digest --- .github/workflows/ci.yml | 26 +++++++++++++------------- 1 file changed, 13 insertions(+), 13 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index c9a9a517483..b2592c0bb73 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -28,8 +28,8 @@ jobs: lint: runs-on: ubuntu-latest steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: go.mod cache: true @@ -43,13 +43,13 @@ jobs: os: ['macos-latest', 'ubuntu-latest', 'windows-latest'] runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + - uses: actions/checkout@v4.2.2 - uses: antontroshin/setup-go@bda02de8887c9946189f81e7e59512914aeb9ea4 # bda02de8887c9946189f81e7e59512914aeb9ea4 if: runner.os == 'Windows' with: go-version-file: go.mod cache: true - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/setup-go@v5.4.0 if: runner.os != 'Windows' with: go-version-file: go.mod @@ -78,8 +78,8 @@ jobs: test-fips: runs-on: ubuntu-latest steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: go.mod cache: true @@ -91,8 +91,8 @@ jobs: system-test: runs-on: ubuntu-latest steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: systemtest/go.mod cache: true @@ -108,8 +108,8 @@ jobs: system-test-fips: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v4 - - uses: actions/setup-go@v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: systemtest/go.mod cache: true @@ -127,8 +127,8 @@ jobs: test-package: runs-on: ubuntu-latest steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: go.mod cache: false @@ -169,7 +169,7 @@ jobs: runs-on: ubuntu-latest if: ( github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork == true ) || github.actor == 'dependabot[bot]' steps: - - uses: actions/checkout@v4 + - uses: actions/checkout@v4.2.2 - name: Get changed files id: changed-files uses: tj-actions/changed-files@ed68ef82c095e0d48ec87eccea555d944a631a4c # v46.0.5 From 8072aa93b71addf6006c0ec53d7b6452dbfdd677 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Mon, 5 May 2025 08:01:11 +0200 Subject: [PATCH 6/8] Apply suggestions from code review Co-authored-by: Victor Martinez --- .github/workflows/prepare-release/action.yml | 2 +- .github/workflows/smoke-test-ess-action/action.yml | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/prepare-release/action.yml b/.github/workflows/prepare-release/action.yml index bd59dcd29ab..1bfa120ccd7 100644 --- a/.github/workflows/prepare-release/action.yml +++ b/.github/workflows/prepare-release/action.yml @@ -109,7 +109,7 @@ runs: TAG: 'refs/tags/v${{ steps.generate.outputs.release-version }}' - if: failure() - uses: elastic/oblt-actions/slack/send@main + uses: elastic/oblt-actions/slack/send@v1 with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} diff --git a/.github/workflows/smoke-test-ess-action/action.yml b/.github/workflows/smoke-test-ess-action/action.yml index 3f54bc88f64..90893ddca19 100644 --- a/.github/workflows/smoke-test-ess-action/action.yml +++ b/.github/workflows/smoke-test-ess-action/action.yml @@ -24,9 +24,9 @@ runs: - name: Setup cluster env uses: ./.github/workflows/setup-cluster-env - - uses: elastic/oblt-actions/aws/auth@main + - uses: elastic/oblt-actions/aws/auth@v1 - - uses: elastic/oblt-actions/google/auth@main + - uses: elastic/oblt-actions/google/auth@v1 - uses: google-github-actions/get-secretmanager-secrets@a8440875e1c2892062aef9061228d4f1af8f919b # v2.2.3 with: From 6887ee68fa75bb5961160c9002c3278665345194 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Mon, 5 May 2025 08:01:24 +0200 Subject: [PATCH 7/8] Update .github/workflows/prepare-release/action.yml Co-authored-by: Victor Martinez --- .github/workflows/prepare-release/action.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/prepare-release/action.yml b/.github/workflows/prepare-release/action.yml index 1bfa120ccd7..6cb48c188b5 100644 --- a/.github/workflows/prepare-release/action.yml +++ b/.github/workflows/prepare-release/action.yml @@ -32,7 +32,7 @@ runs: steps: - name: Send slack message when started id: slack-thread - uses: elastic/oblt-actions/slack/send@main + uses: elastic/oblt-actions/slack/send@v1 with: bot-token: ${{ inputs.slack-bot-token }} channel-id: ${{ env.SLACK_CHANNEL }} From 4616b65dc2ac011a21f8c691d98bdd0493d48845 Mon Sep 17 00:00:00 2001 From: kruskall <99559985+kruskall@users.noreply.github.com> Date: Mon, 5 May 2025 08:02:35 +0200 Subject: [PATCH 8/8] Update ci.yml --- .github/workflows/ci.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index b419cd542de..f469bbb2d91 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -48,8 +48,8 @@ jobs: os: ['macos-latest', 'ubuntu-latest', 'windows-latest'] runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - - uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5 + - uses: actions/checkout@v4.2.2 + - uses: actions/setup-go@v5.4.0 with: go-version-file: go.mod cache: false