Bump the github-actions group across 1 directory with 7 updates #120
+9
−9
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 7 updates in the / directory:
2.10.4
2.12.0
4.5.0
4.6.0
d6e91a2266cdb9d62096cebf1e8546899c6aa18f
4168bb487d5b82227665ab4ec90b67ce02691741
0.46.0
1.5.3
5.4.0
5.6.0
2.4.0
2.4.1
3.2.1.pre.node20
4.6.2
Updates
step-security/harden-runner
from 2.10.4 to 2.12.0Release notes
Sourced from step-security/harden-runner's releases.
Commits
0634a26
Merge pull request #541 from step-security/rc-202e3c511
Update action.yml40873e6
Update README.md484c279
Update README.md4c8582f
Update agent versionse8d595c
fix disable_sudo_and_containers bug5d277fc
fix journalctl related bugff2ab22
Merge pull request #536 from rohan-stepsecurity/feat/flag/disable-sudo-and-co...b81d650
fix: run sudo command only when both disable-sudo and disable-sudo-and-docker...769df4e
Update agentUpdates
actions/dependency-review-action
from 4.5.0 to 4.6.0Release notes
Sourced from actions/dependency-review-action's releases.
Commits
ce3cf95
Merge pull request #910 from actions/brrygrdn/4.6.0-release-candidate479b697
Prepare 4.6.0aee9590
Merge pull request #902 from Pantelis-Santorinios/patch-1080ada6
Merge pull request #883 from fabasoad/fix/ci430e5f0
Merge pull request #884 from fabasoad/fix/86351699b6
Merge pull request #855 from ailox/ailox/fix/invalid-new-licensesac9b193
Merge pull request #899 from actions/dependabot/npm_and_yarn/octokit/plugin-p...d630451
Pin@octokit/types
version for compatibilityc8dafca
Add dist for@octokit/plugin-paginate-rest
version bumpbc858b5
Bump@octokit/plugin-paginate-rest
from 9.1.5 to 9.2.2Updates
tj-actions/changed-files
from d6e91a2266cdb9d62096cebf1e8546899c6aa18f to 4168bb487d5b82227665ab4ec90b67ce02691741Changelog
Sourced from tj-actions/changed-files's changelog.
... (truncated)
Commits
4168bb4
chore(deps-dev): bump@types/node
from 22.15.0 to 22.15.3 (#2548)5426ecc
chore(deps): bump actions/download-artifact from 4.2.1 to 4.3.0 (#2545)513a44e
chore(deps-dev): bump@types/node
from 22.14.1 to 22.15.0 (#2544)46e217d
chore(deps): bump github/codeql-action from 3.28.15 to 3.28.16 (#2542)c34c1c1
chore(deps): bump actions/setup-node from 4.3.0 to 4.4.0 (#2539)52c3beb
chore(deps-dev): bump ts-jest from 29.3.1 to 29.3.2 (#2536)ea3010b
chore(deps-dev): bump@types/node
from 22.14.0 to 22.14.1 (#2537)be393a9
remove: commit and push step from build job (#2538)9b4bb2b
chore(deps): bump tj-actions/branch-names from 8.1.0 to 8.2.1 (#2535)9934ab3
chore(deps-dev): bump eslint-config-prettier from 10.1.1 to 10.1.2 (#2532)Updates
aminya/setup-cpp
from 0.46.0 to 1.5.3Release notes
Sourced from aminya/setup-cpp's releases.
... (truncated)
Commits
6370aaa
fix: remove exports map from package95a7de4
fix: fix CLI shabang not working - independent libd6447bb
fix: build cli independent of lib71c0122
chore(release): v1.5.0 [skip test]ad7d44b
Merge pull request #388 from aminya/llvm7e66da1
fix: do not add LLVM libraries to dyld by defaultf37a612
Merge pull request #389 from aminya/alpine-vcpkg-arm64d60a917
fix: pin vcpkg on Alpine Arm64a5ee5b0
Merge pull request #386 from aminya/librarydc7c474
fix: set the exit error code correctlyUpdates
actions/setup-python
from 5.4.0 to 5.6.0Release notes
Sourced from actions/setup-python's releases.
Commits
a26af69
Bump ts-jest from 29.1.2 to 29.3.2 (#1081)30eafe9
Bump prettier from 2.8.8 to 3.5.3 (#1046)5d95bc1
Bump semver and@types/semver
(#1091)6ed2c67
Fix for Candidate Not Iterable Error (#1082)e348410
Remove Ubuntu 20.04 from workflows due to deprecation from 2025-04-15 (#1065)8d9ed9a
Add e2e Testing for free threaded and Bump@action/cache
from 4.0.0 to 4.0.3 ...19e4675
Add support for .tool-versions file in setup-python (#1043)6fd11e1
Bump@actions/glob
from 0.4.0 to 0.5.0 (#1015)9e62be8
Support free threaded Python versions like '3.13t' (#973)6ca8e85
Bump@vercel/ncc
from 0.38.1 to 0.38.3 (#1016)Updates
ossf/scorecard-action
from 2.4.0 to 2.4.1Release notes
Sourced from ossf/scorecard-action's releases.
Commits
f49aabe
bump docker to ghcr v2.4.1 (#1478)30a595b
🌱 Bump github.com/sigstore/cosign/v2 from 2.4.2 to 2.4.3 (#1515)69ae593
omit vcs info from build (#1514)6a62a1c
add input for specifying--file-mode
(#1509)2722664
🌱 Bump the github-actions group with 2 updates (#1510)ae0ef31
🌱 Bump github.com/spf13/cobra from 1.8.1 to 1.9.1 (#1512)3676bbc
🌱 Bump golang from 1.23.6 to 1.24.0 in the docker-images group (#1513)ae7548a
Limit codeQL push trigger to main branch (#1507)9165624
upgrade scorecard to v5.1.0 (#1508)620fd28
🌱 Bump the github-actions group with 2 updates (#1505)Updates
actions/upload-artifact
from 3.2.1.pre.node20 to 4.6.2Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
ea165f8
Merge pull request #685 from salmanmkc/salmanmkc/3-new-upload-artifacts-release0839620
Prepare for new release of actions/upload-artifact with new toolkit cache ver...4cec3d8
Merge pull request #673 from actions/yacaovsnc/artifact_2.2.2e9fad96
license cache update for artifactb26fd06
Update to use artifact 2.2.2 package65c4c4a
Merge pull request #662 from actions/yacaovsnc/add_variable_for_concurrency_a...0207619
move files back to satisfy licensed ci1ecca81
licensed cache updates9742269
Expose env vars to controll concurrency and timeout6f51ac0
Merge pull request #656 from bdehamer/bdehamer/artifact-digestDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions