chore(deps): update github-actions - #479
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
dd3be19 to
f7576f7
Compare
f7576f7 to
427b140
Compare
427b140 to
49f9f82
Compare
49f9f82 to
c559a6e
Compare
c559a6e to
c1c407f
Compare
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
📝 WalkthroughWalkthroughChangesUpdates pinned GitHub Actions commit SHAs across CI/CD workflow files: Related PRs: none identified. Suggested labels: dependencies, ci, github-actions Suggested reviewers: none identified. No source code logic reviewed here—just SHA bumps. Verify each new SHA actually resolves to the claimed tag before merge; a mismatched SHA-to-tag comment is a silent supply-chain risk, not a typo. Confirm output SHA matches the pinned hash in every file before approving. 🚥 Pre-merge checks | ✅ 2✅ Passed checks (2 passed)
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
aeefc98 to
efff2a0
Compare
efff2a0 to
727e9b6
Compare
Edited/Blocked NotificationRenovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR. You can manually request rebase by checking the rebase/retry box above. |
This PR contains the following updates:
v4.1.0→v4.1.1v4.2.0v4.1.0→v4.1.1v7.2.0→v7.3.0v4.2.0→v4.4.0v4.5.1(+1)v6.1.0→v6.2.0v4.1.0→v4.2.0v4.1.0→v4.2.0v4.0.1→v4.0.2v4.36.3→v4.37.0v4.37.3(+2)v2.2.1→v2.3.0v2.19.4→v2.20.0Release Notes
actions/attest (actions/attest)
v4.1.1Compare Source
What's Changed
Full Changelog: actions/attest@v4.1.0...v4.1.1
actions/attest-build-provenance (actions/attest-build-provenance)
v4.1.1Compare Source
What's Changed
Full Changelog: actions/attest-build-provenance@v4.1.0...v4.1.1
docker/build-push-action (docker/build-push-action)
v7.3.0Compare Source
docker/login-action (docker/login-action)
v4.4.0Compare Source
v4.3.0Compare Source
Full Changelog: docker/login-action@v4.2.0...v4.3.0
docker/metadata-action (docker/metadata-action)
v6.2.0Compare Source
docker/setup-buildx-action (docker/setup-buildx-action)
v4.2.0Compare Source
Full Changelog: docker/setup-buildx-action@v4.1.0...v4.2.0
docker/setup-qemu-action (docker/setup-qemu-action)
v4.2.0Compare Source
dorny/paths-filter (dorny/paths-filter)
v4.0.2Compare Source
github/codeql-action (github/codeql-action)
v4.37.0Compare Source
config-fileinput for thecodeql-action/initstep will soon support a new[owner/]repo[@​ref][:path]format. All components except the repository name are optional. If omitted,ownerdefaults to the same owner as the repository the analysis is running for,reftomain, andpathto.github/codeql-action.yaml. Support for this format ships in this version of the CodeQL Action, but will only be enabled over the coming weeks. #3973qltysh/qlty-action (qltysh/qlty-action)
v2.3.0Compare Source
New
selectedinput to the coverage action for marking an upload as covering a selected subset of the test suite, which contributes to diff coverage only and is excluded from total coverage (#200)v2.2.3Compare Source
v2.2.2Compare Source
Fixed
step-security/harden-runner (step-security/harden-runner)
v2.20.0Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.19.4...v2.20.0
Configuration
📅 Schedule: (in timezone America/New_York)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.