Bump the actions-minor group across 1 directory with 8 updates #145
+17
−17
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the actions-minor group with 8 updates in the / directory:
4.1.0
4.2.0
4.4.3
4.6.1
3.27.6
3.28.10
7.2.0
7.2.1
2.4.0
2.4.1
3.7.0
3.8.1
2.0.0
2.1.0
2.1.0
2.2.1
Updates
actions/setup-node
from 4.1.0 to 4.2.0Release notes
Sourced from actions/setup-node's releases.
Commits
1d0ff46
Bump undici from 5.28.4 to 5.28.5 (#1205)574f09a
Bump@types/jest
from 29.5.12 to 29.5.14 (#1201)260f870
Bump semver from 7.6.0 to 7.6.3 (#1196)111c4be
Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 (#1195)0bc26de
Bump pnpm/action-setup from 2 to 4 (#1194)8f9cc17
Use the new cache service: upgrade@actions/cache
to^4.0.0
(#1191)5eef37b
Create dependabot.yml (#1192)fbeca22
Update README.md (#1193)48b9067
Add macos-13 to the workflows and upgrade publish-actions from 0.2.2 to 0.3.0...Updates
actions/upload-artifact
from 4.4.3 to 4.6.1Release notes
Sourced from actions/upload-artifact's releases.
Commits
4cec3d8
Merge pull request #673 from actions/yacaovsnc/artifact_2.2.2e9fad96
license cache update for artifactb26fd06
Update to use artifact 2.2.2 package65c4c4a
Merge pull request #662 from actions/yacaovsnc/add_variable_for_concurrency_a...0207619
move files back to satisfy licensed ci1ecca81
licensed cache updates9742269
Expose env vars to controll concurrency and timeout6f51ac0
Merge pull request #656 from bdehamer/bdehamer/artifact-digestc40c16d
add new artifact-digest output735efb4
bump@actions/artifact
from 2.1.11 to 2.2.0Updates
github/codeql-action
from 3.27.6 to 3.28.10Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
b56ba49
Merge pull request #2778 from github/update-v3.28.10-9856c48b160c9c77
Update changelog for v3.28.109856c48
Merge pull request #2773 from github/redsun82/rust9572e09
Rust: fix log string1a52936
Rust: special case default setupcf7e909
Merge pull request #2772 from github/update-bundle/codeql-bundle-v2.20.5b7006aa
Merge branch 'main' into update-bundle/codeql-bundle-v2.20.5cfedae7
Rust: throw configuration errors if requested and not correctly enabled3971ed2
Merge branch 'main' into redsun82/rustd38c6e6
Merge pull request #2775 from github/angelapwen/bump-octokitUpdates
super-linter/super-linter
from 7.2.0 to 7.2.1Release notes
Sourced from super-linter/super-linter's releases.
Changelog
Sourced from super-linter/super-linter's changelog.
... (truncated)
Commits
85f7611
chore(main): release 7.2.1 (#6404)ec05515
fix: ensure setting /github/workdir as Git safe directory works always (#6242)24a53df
deps(php): bump phpstan/phpstan (#6419)71cc525
deps(npm): bump renovate from 39.31.3 to 39.58.1 in /dependencies (#6432)d929d04
fix: make git conflict markers check more precise (#6379)6b60f4c
fix: define command options function before use (#6375)de5f8a4
deps(php): bump the composer group across 1 directory with 2 updates (#6365)0fe8b07
deps(docker): bump the docker group across 1 directory with 4 updates (#6381)6776692
deps(bundler): bump standard from 1.42.0 to 1.42.1 in /dependencies (#6383)39b1577
deps(npm): bump@stoplight/spectral-cli
in /dependencies (#6389)Updates
ossf/scorecard-action
from 2.4.0 to 2.4.1Release notes
Sourced from ossf/scorecard-action's releases.
Commits
f49aabe
bump docker to ghcr v2.4.1 (#1478)30a595b
🌱 Bump github.com/sigstore/cosign/v2 from 2.4.2 to 2.4.3 (#1515)69ae593
omit vcs info from build (#1514)6a62a1c
add input for specifying--file-mode
(#1509)2722664
🌱 Bump the github-actions group with 2 updates (#1510)ae0ef31
🌱 Bump github.com/spf13/cobra from 1.8.1 to 1.9.1 (#1512)3676bbc
🌱 Bump golang from 1.23.6 to 1.24.0 in the docker-images group (#1513)ae7548a
Limit codeQL push trigger to main branch (#1507)9165624
upgrade scorecard to v5.1.0 (#1508)620fd28
🌱 Bump the github-actions group with 2 updates (#1505)Updates
sigstore/cosign-installer
from 3.7.0 to 3.8.1Release notes
Sourced from sigstore/cosign-installer's releases.
Commits
d7d6bc7
use cosign 2.4.3 and other updates (#182)c56c2d3
Bump actions/setup-go from 5.2.0 to 5.3.0 (#180)02e36b8
bump for cosign v2.4.2 release (#181)789d288
test action against all non-rc releases, verify entry in rekor log (#179)e11c089
Bump actions/setup-go from 5.1.0 to 5.2.0 (#178)718228a
Bump actions/setup-go from 5.0.2 to 5.1.0 (#176)325063e
Bump actions/checkout from 4.2.1 to 4.2.2 (#177)b929758
Bump actions/checkout from 4.2.0 to 4.2.1 (#175)Updates
slsa-framework/slsa-github-generator
from 2.0.0 to 2.1.0Release notes
Sourced from slsa-framework/slsa-github-generator's releases.
... (truncated)
Changelog
Sourced from slsa-framework/slsa-github-generator's changelog.
Commits
fbeecf0
update docsf701310
update workflows3618598
v2.1.0-rc.346f81fc
chore: update refs to v2.1.0-rc.1 (#4120)5d20c93
chore: use builder tag v2.1.0-rc.0 (#4118)e27b237
chore: braces and ejs vulns (#4116)8967e1c
chore: Update CODEOWNERS (#4115)47d1954
chore: update octokit deps (#4114)f51d60a
chore(deps): bump the npm_and_yarn group across 8 directories with 2 updates ...4011345
chore(deps): update npm dev (#4113)Updates
softprops/action-gh-release
from 2.1.0 to 2.2.1Release notes
Sourced from softprops/action-gh-release's releases.
Changelog
Sourced from softprops/action-gh-release's changelog.