-
Notifications
You must be signed in to change notification settings - Fork 85
build(deps): bump the minor-and-patch-actions-weekly group across 1 directory with 11 updates #4425
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
dependabot
wants to merge
1
commit into
main
Choose a base branch
from
dependabot/github_actions/minor-and-patch-actions-weekly-1168d3f3e8
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
…irectory with 11 updates Bumps the minor-and-patch-actions-weekly group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.13.0` | `2.13.1` | | [step-security/publish-unit-test-result-action](https://github.com/step-security/publish-unit-test-result-action) | `2.20.2` | `2.20.4` | | [step-security/gh-docker-logs](https://github.com/step-security/gh-docker-logs) | `2.2.5` | `2.2.6` | | [step-security/conventional-pr-title-action](https://github.com/step-security/conventional-pr-title-action) | `3.2.3` | `3.2.4` | | [step-security/foundry-toolchain](https://github.com/step-security/foundry-toolchain) | `1.4.0` | `1.4.1` | | [step-security/ghaction-import-gpg](https://github.com/step-security/ghaction-import-gpg) | `6.3.0` | `6.3.1` | | [step-security/semver-utils](https://github.com/step-security/semver-utils) | `4.3.1` | `4.3.2` | | [step-security/close-milestone](https://github.com/step-security/close-milestone) | `2.2.0` | `2.2.1` | | [step-security/release-notes-generator-action](https://github.com/step-security/release-notes-generator-action) | `3.1.8` | `3.1.9` | | [ncipollo/release-action](https://github.com/ncipollo/release-action) | `1.18.0` | `1.20.0` | | [docker/login-action](https://github.com/docker/login-action) | `3.5.0` | `3.6.0` | Updates `step-security/harden-runner` from 2.13.0 to 2.13.1 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@ec9f2d5...f4a75cf) Updates `step-security/publish-unit-test-result-action` from 2.20.2 to 2.20.4 - [Release notes](https://github.com/step-security/publish-unit-test-result-action/releases) - [Commits](step-security/publish-unit-test-result-action@43e0c96...5d195d4) Updates `step-security/gh-docker-logs` from 2.2.5 to 2.2.6 - [Release notes](https://github.com/step-security/gh-docker-logs/releases) - [Commits](step-security/gh-docker-logs@fabd93e...2ffe2e0) Updates `step-security/conventional-pr-title-action` from 3.2.3 to 3.2.4 - [Release notes](https://github.com/step-security/conventional-pr-title-action/releases) - [Changelog](https://github.com/step-security/conventional-pr-title-action/blob/main/release.config.js) - [Commits](step-security/conventional-pr-title-action@d47e881...e2a9b8d) Updates `step-security/foundry-toolchain` from 1.4.0 to 1.4.1 - [Release notes](https://github.com/step-security/foundry-toolchain/releases) - [Changelog](https://github.com/step-security/foundry-toolchain/blob/main/RELEASE.md) - [Commits](step-security/foundry-toolchain@ced99da...0f33b42) Updates `step-security/ghaction-import-gpg` from 6.3.0 to 6.3.1 - [Release notes](https://github.com/step-security/ghaction-import-gpg/releases) - [Commits](step-security/ghaction-import-gpg@c86c374...69c854a) Updates `step-security/semver-utils` from 4.3.1 to 4.3.2 - [Release notes](https://github.com/step-security/semver-utils/releases) - [Commits](step-security/semver-utils@b6c7716...4ae9c1f) Updates `step-security/close-milestone` from 2.2.0 to 2.2.1 - [Release notes](https://github.com/step-security/close-milestone/releases) - [Commits](step-security/close-milestone@fcc24c9...b097272) Updates `step-security/release-notes-generator-action` from 3.1.8 to 3.1.9 - [Release notes](https://github.com/step-security/release-notes-generator-action/releases) - [Commits](step-security/release-notes-generator-action@1142226...192a937) Updates `ncipollo/release-action` from 1.18.0 to 1.20.0 - [Release notes](https://github.com/ncipollo/release-action/releases) - [Commits](ncipollo/release-action@bcfe547...b7eabc9) Updates `docker/login-action` from 3.5.0 to 3.6.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@184bdaa...5e57cd1) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/publish-unit-test-result-action dependency-version: 2.20.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/gh-docker-logs dependency-version: 2.2.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/conventional-pr-title-action dependency-version: 3.2.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/foundry-toolchain dependency-version: 1.4.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/ghaction-import-gpg dependency-version: 6.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/semver-utils dependency-version: 4.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/close-milestone dependency-version: 2.2.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/release-notes-generator-action dependency-version: 3.1.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: ncipollo/release-action dependency-version: 1.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch-actions-weekly - dependency-name: docker/login-action dependency-version: 3.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch-actions-weekly ... Signed-off-by: dependabot[bot] <[email protected]>
4be3c62
to
ed1b671
Compare
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github Actions code.
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the minor-and-patch-actions-weekly group with 11 updates in the / directory:
2.13.0
2.13.1
2.20.2
2.20.4
2.2.5
2.2.6
3.2.3
3.2.4
1.4.0
1.4.1
6.3.0
6.3.1
4.3.1
4.3.2
2.2.0
2.2.1
3.1.8
3.1.9
1.18.0
1.20.0
3.5.0
3.6.0
Updates
step-security/harden-runner
from 2.13.0 to 2.13.1Release notes
Sourced from step-security/harden-runner's releases.
Commits
f4a75cf
Merge pull request #588 from step-security/rc-2695503d0
ci: remove code-review workflow4b250a0
ci: add job to confirm dist is as expected5b0ab6a
update dependenciesd11f2c1
fix bug where status code was not being preservedb3fc98e
improve error handling for policy store sceanrio92fc5d4
update error messageb61b0a4
policy store improvementse3d3f2b
use GitHub release instead of packages646ac01
update agentUpdates
step-security/publish-unit-test-result-action
from 2.20.2 to 2.20.4Release notes
Sourced from step-security/publish-unit-test-result-action's releases.
Commits
5d195d4
Merge pull request #129 from step-security/Raj-StepSecurity-patch-1629cc9d2
Update action.ymlea21df0
Merge pull request #128 from step-security/Raj-StepSecurity-patch-154847439
Update action.yml230f6e8
Merge pull request #127 from step-security/Raj-StepSecurity-patch-14e4fde32
Update action.yml738e9dc
Merge pull request #126 from step-security/Raj-StepSecurity-patch-131c392e5
Update action.ymlc59c519
Merge pull request #125 from step-security/Raj-StepSecurity-patch-126f634c8
Update action.ymlUpdates
step-security/gh-docker-logs
from 2.2.5 to 2.2.6Release notes
Sourced from step-security/gh-docker-logs's releases.
Commits
2ffe2e0
Merge pull request #129 from step-security/fix/subscription73b6893
fix: fixed validate subscription check code3a0e624
Merge pull request #128 from step-security/npm-audit-fixd233573
fix: apply audit fixes7d94487
fix: apply audit fixes31365cf
fix: apply audit fixesf7ed209
Merge pull request #126 from step-security/npm-audit-fixd8437dc
fix: apply audit fixese410c2f
fix: apply audit fixes0830413
fix: apply audit fixesUpdates
step-security/conventional-pr-title-action
from 3.2.3 to 3.2.4Release notes
Sourced from step-security/conventional-pr-title-action's releases.
Commits
e2a9b8d
Merge pull request #122 from step-security/Raj-StepSecurity-patch-7688663a
Update action.yml122a073
Merge pull request #121 from step-security/Raj-StepSecurity-patch-675d1e4e
Update index.jsc6735da
Merge pull request #119 from step-security/npm-audit-fixcc9169a
fix: apply audit fixes3dec774
Merge pull request #112 from step-security/npm-audit-fix2d11c74
fix: apply audit fixesUpdates
step-security/foundry-toolchain
from 1.4.0 to 1.4.1Release notes
Sourced from step-security/foundry-toolchain's releases.
Commits
0f33b42
Merge pull request #117 from step-security/fix/subscription534dd0e
fix: fixed validate subscription codefc0b68a
Merge pull request #115 from step-security/npm-audit-fixce786fb
fix: apply audit fixes7a8af5c
fix: apply audit fixes18e3636
fix: apply audit fixese4e72b3
fix: apply audit fixes82be6fa
fix: apply audit fixes4bd4629
Merge pull request #114 from step-security/npm-audit-fixea21368
fix: apply audit fixesUpdates
step-security/ghaction-import-gpg
from 6.3.0 to 6.3.1Release notes
Sourced from step-security/ghaction-import-gpg's releases.
Commits
69c854a
Merge pull request #175 from step-security/fix/subscription347e30a
fix: fixed subscription check code4d3430a
Merge pull request #149 from step-security/dependabot/npm_and_yarn/brace-expa...2798f24
Bump brace-expansion from 1.1.11 to 1.1.12e702cb5
Merge pull request #151 from step-security/yarn-audit-fix5800c46
fix: apply audit fixesa58f931
Merge pull request #145 from step-security/Raj-StepSecurity-patch-2d638834
Merge branch 'main' into Raj-StepSecurity-patch-29948152
Merge pull request #146 from step-security/Raj-StepSecurity-patch-3b93ede7
Update auto_cherry_pick.ymlUpdates
step-security/semver-utils
from 4.3.1 to 4.3.2Release notes
Sourced from step-security/semver-utils's releases.
Commits
4ae9c1f
feat: Validate Updated Subscription Flow (#196)e5db328
chore: dist updated86044a1
Update main.tsa48fbb7
Merge pull request #189 from step-security/npm-audit-fixdb54cc4
fix: apply audit fixes2898593
fix: apply audit fixes701989e
fix: apply audit fixesUpdates
step-security/close-milestone
from 2.2.0 to 2.2.1Release notes
Sourced from step-security/close-milestone's releases.
Commits
b097272
feat: Update main.ts (#99)d0c3c89
Merge pull request #100 from step-security/npm-audit-fixb013a00
Update main.tsab8a244
Merge pull request #78 from step-security/Raj-StepSecurity-patch-395c6220
Merge branch 'main' into Raj-StepSecurity-patch-38867439
Merge pull request #91 from step-security/npm-audit-fix2483b18
fix: apply audit fixes4b2a8ac
fix: apply audit fixes9f35898
fix: apply audit fixes7c316d3
Merge pull request #83 from step-security/npm-audit-fixUpdates
step-security/release-notes-generator-action
from 3.1.8 to 3.1.9Release notes
Sourced from step-security/release-notes-generator-action's releases.
Commits
192a937
Merge pull request #51 from step-security/Raj-StepSecurity-patch-6f3c2d9f
feat: Update action.yml With Latest Docker Image7640f8b
Merge pull request #50 from step-security/Raj-StepSecurity-patch-5ba0e6bd
Update entrypoint.shUpdates
ncipollo/release-action
from 1.18.0 to 1.20.0Release notes
Sourced from ncipollo/release-action's releases.
Commits
b7eabc9
preparing release 1.20.0e87de4c
Fixes #542 Add previous tag option (#550)98d25d4
preparing release 1.19.2d360126
Fixes #548 Add support body + generated release notes (#549)571fe81
UpdateimmutableCreate
's default in the documentation (#547)1c89adf
preparing release 1.19.136bf8dd
References #545 Default immutable builds to falseb12185d
preparing release 1.19.0defcf13
Fixes #540 Add support for immutable releases (#544)05013d5
Standardize on separate call to generate release notesUpdates
docker/login-action
from 3.5.0 to 3.6.0Release notes
Sourced from docker/login-action's releases.
Commits
5e57cd1
Merge pull request #890 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...97e3143
chore: update generated content3a0796b
build(deps): bump the aws-sdk-dependencies group with 2 updates5b7b28b
Merge pull request #882 from docker/dependabot/npm_and_yarn/aws-sdk-dependenc...abc9fb3
chore: update generated contentd468688
build(deps): bump the aws-sdk-dependencies group with 2 updatesa99b2f8
Merge pull request #883 from docker/dependabot/npm_and_yarn/docker/actions-to...0d7fae8
chore: update generated content9832253
build(deps): bump@docker/actions-toolkit
from 0.62.1 to 0.63.009e05bb
Merge pull request #881 from docker/dependabot/npm_and_yarn/tmp-0.2.4Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions