Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 7, 2025

Bumps deriv-com/shared-actions from 1 to 4.

Release notes

Sourced from deriv-com/shared-actions's releases.

Add AI dashboard action

What's Changed

New Contributors

Full Changelog: deriv-com/shared-actions@v3...v4

v3

No release notes provided.

v2

No release notes provided.

Commits
  • c279ff9 Merge pull request #30 from deriv-com/shiftai-workflows
  • 52137c9 Security: Move permissions to job level and prevent script injection
  • 577f2df chore: added shiftai workflow
  • 85d8397 Merge pull request #19 from adrienne-deriv/update-cache
  • a160b70 chore: update cache to v4
  • 393c752 Merge pull request #18 from nada-deriv/nada/add-deployment-file
  • ba25caa chore: add deployment txt file
  • abcf870 Merge pull request #17 from amam-deriv/amam/shared-actions
  • 3dfa73b Chore: change ownership to deriv-com org
  • 50379da Merge pull request #16 from amam-deriv/master
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [deriv-com/shared-actions](https://github.com/deriv-com/shared-actions) from 1 to 4.
- [Release notes](https://github.com/deriv-com/shared-actions/releases)
- [Commits](deriv-com/shared-actions@v1...v4)

---
updated-dependencies:
- dependency-name: deriv-com/shared-actions
  dependency-version: '4'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 7, 2025
@dependabot dependabot bot requested a review from a team as a code owner August 7, 2025 01:49
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 7, 2025
Copy link

github-actions bot commented Aug 7, 2025

Dependency Review

The following issues were found:
  • ✅ 0 vulnerable package(s)
  • ✅ 0 package(s) with incompatible licenses
  • ✅ 0 package(s) with invalid SPDX license definitions
  • ⚠️ 4 package(s) with unknown licenses.
See the Details below.

License Issues

.github/workflows/generate_preview_link.yml

PackageVersionLicenseIssue Type
deriv-com/shared-actions/.github/actions/post_preview_build_comment4.*.*NullUnknown License
deriv-com/shared-actions/.github/actions/post_preview_link_comment4.*.*NullUnknown License
deriv-com/shared-actions/.github/actions/publish_to_pages_branch4.*.*NullUnknown License
deriv-com/shared-actions/.github/actions/verify_user_in_organization4.*.*NullUnknown License

OpenSSF Scorecard

PackageVersionScoreDetails
actions/deriv-com/shared-actions/.github/actions/post_preview_build_comment 4.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/post_preview_link_comment 4.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/publish_to_pages_branch 4.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/verify_user_in_organization 4.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/post_preview_build_comment 1.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/post_preview_link_comment 1.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/publish_to_pages_branch 1.*.* UnknownUnknown
actions/deriv-com/shared-actions/.github/actions/verify_user_in_organization 1.*.* UnknownUnknown

Scanned Manifest Files

.github/workflows/generate_preview_link.yml
  • deriv-com/shared-actions/.github/actions/post_preview_build_comment@4.*.*
  • deriv-com/shared-actions/.github/actions/post_preview_link_comment@4.*.*
  • deriv-com/shared-actions/.github/actions/publish_to_pages_branch@4.*.*
  • deriv-com/shared-actions/.github/actions/verify_user_in_organization@4.*.*
  • deriv-com/shared-actions/.github/actions/post_preview_build_comment@1.*.*
  • deriv-com/shared-actions/.github/actions/post_preview_link_comment@1.*.*
  • deriv-com/shared-actions/.github/actions/publish_to_pages_branch@1.*.*
  • deriv-com/shared-actions/.github/actions/verify_user_in_organization@1.*.*

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants