-
Notifications
You must be signed in to change notification settings - Fork 85
build(deps): bump the minor-and-patch-actions-weekly group across 1 directory with 6 updates #4400
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Closed
dependabot
wants to merge
1
commit into
main
from
dependabot/github_actions/minor-and-patch-actions-weekly-68ce3b5a78
Closed
+39
−39
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
…irectory with 6 updates Bumps the minor-and-patch-actions-weekly group with 6 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.13.0` | `2.13.1` | | [step-security/publish-unit-test-result-action](https://github.com/step-security/publish-unit-test-result-action) | `2.20.2` | `2.20.4` | | [step-security/foundry-toolchain](https://github.com/step-security/foundry-toolchain) | `1.4.0` | `1.4.1` | | [step-security/ghaction-import-gpg](https://github.com/step-security/ghaction-import-gpg) | `6.3.0` | `6.3.1` | | [step-security/close-milestone](https://github.com/step-security/close-milestone) | `2.2.0` | `2.2.1` | | [ncipollo/release-action](https://github.com/ncipollo/release-action) | `1.18.0` | `1.20.0` | Updates `step-security/harden-runner` from 2.13.0 to 2.13.1 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@ec9f2d5...f4a75cf) Updates `step-security/publish-unit-test-result-action` from 2.20.2 to 2.20.4 - [Release notes](https://github.com/step-security/publish-unit-test-result-action/releases) - [Commits](step-security/publish-unit-test-result-action@43e0c96...5d195d4) Updates `step-security/foundry-toolchain` from 1.4.0 to 1.4.1 - [Release notes](https://github.com/step-security/foundry-toolchain/releases) - [Changelog](https://github.com/step-security/foundry-toolchain/blob/main/RELEASE.md) - [Commits](step-security/foundry-toolchain@ced99da...0f33b42) Updates `step-security/ghaction-import-gpg` from 6.3.0 to 6.3.1 - [Release notes](https://github.com/step-security/ghaction-import-gpg/releases) - [Commits](step-security/ghaction-import-gpg@c86c374...69c854a) Updates `step-security/close-milestone` from 2.2.0 to 2.2.1 - [Release notes](https://github.com/step-security/close-milestone/releases) - [Commits](step-security/close-milestone@fcc24c9...b097272) Updates `ncipollo/release-action` from 1.18.0 to 1.20.0 - [Release notes](https://github.com/ncipollo/release-action/releases) - [Commits](ncipollo/release-action@bcfe547...b7eabc9) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/publish-unit-test-result-action dependency-version: 2.20.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/foundry-toolchain dependency-version: 1.4.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/ghaction-import-gpg dependency-version: 6.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: step-security/close-milestone dependency-version: 2.2.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: minor-and-patch-actions-weekly - dependency-name: ncipollo/release-action dependency-version: 1.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: minor-and-patch-actions-weekly ... Signed-off-by: dependabot[bot] <support@github.com>
andrewb1269hg
approved these changes
Sep 22, 2025
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Codecov Report✅ All modified and coverable lines are covered by tests.
@@ Coverage Diff @@
## main #4400 +/- ##
===========================================
- Coverage 96.10% 68.84% -27.27%
===========================================
Files 121 121
Lines 19940 19940
Branches 1755 512 -1243
===========================================
- Hits 19164 13728 -5436
- Misses 751 6200 +5449
+ Partials 25 12 -13
Flags with carried forward coverage won't be shown. Click here to find out more. 🚀 New features to boost your workflow:
|
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github Actions code.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the minor-and-patch-actions-weekly group with 6 updates in the / directory:
2.13.0
2.13.1
2.20.2
2.20.4
1.4.0
1.4.1
6.3.0
6.3.1
2.2.0
2.2.1
1.18.0
1.20.0
Updates
step-security/harden-runner
from 2.13.0 to 2.13.1Release notes
Sourced from step-security/harden-runner's releases.
Commits
f4a75cf
Merge pull request #588 from step-security/rc-2695503d0
ci: remove code-review workflow4b250a0
ci: add job to confirm dist is as expected5b0ab6a
update dependenciesd11f2c1
fix bug where status code was not being preservedb3fc98e
improve error handling for policy store sceanrio92fc5d4
update error messageb61b0a4
policy store improvementse3d3f2b
use GitHub release instead of packages646ac01
update agentUpdates
step-security/publish-unit-test-result-action
from 2.20.2 to 2.20.4Release notes
Sourced from step-security/publish-unit-test-result-action's releases.
Commits
5d195d4
Merge pull request #129 from step-security/Raj-StepSecurity-patch-1629cc9d2
Update action.ymlea21df0
Merge pull request #128 from step-security/Raj-StepSecurity-patch-154847439
Update action.yml230f6e8
Merge pull request #127 from step-security/Raj-StepSecurity-patch-14e4fde32
Update action.yml738e9dc
Merge pull request #126 from step-security/Raj-StepSecurity-patch-131c392e5
Update action.ymlc59c519
Merge pull request #125 from step-security/Raj-StepSecurity-patch-126f634c8
Update action.ymlUpdates
step-security/foundry-toolchain
from 1.4.0 to 1.4.1Release notes
Sourced from step-security/foundry-toolchain's releases.
Commits
0f33b42
Merge pull request #117 from step-security/fix/subscription534dd0e
fix: fixed validate subscription codefc0b68a
Merge pull request #115 from step-security/npm-audit-fixce786fb
fix: apply audit fixes7a8af5c
fix: apply audit fixes18e3636
fix: apply audit fixese4e72b3
fix: apply audit fixes82be6fa
fix: apply audit fixes4bd4629
Merge pull request #114 from step-security/npm-audit-fixea21368
fix: apply audit fixesUpdates
step-security/ghaction-import-gpg
from 6.3.0 to 6.3.1Release notes
Sourced from step-security/ghaction-import-gpg's releases.
Commits
69c854a
Merge pull request #175 from step-security/fix/subscription347e30a
fix: fixed subscription check code4d3430a
Merge pull request #149 from step-security/dependabot/npm_and_yarn/brace-expa...2798f24
Bump brace-expansion from 1.1.11 to 1.1.12e702cb5
Merge pull request #151 from step-security/yarn-audit-fix5800c46
fix: apply audit fixesa58f931
Merge pull request #145 from step-security/Raj-StepSecurity-patch-2d638834
Merge branch 'main' into Raj-StepSecurity-patch-29948152
Merge pull request #146 from step-security/Raj-StepSecurity-patch-3b93ede7
Update auto_cherry_pick.ymlUpdates
step-security/close-milestone
from 2.2.0 to 2.2.1Release notes
Sourced from step-security/close-milestone's releases.
Commits
b097272
feat: Update main.ts (#99)d0c3c89
Merge pull request #100 from step-security/npm-audit-fixb013a00
Update main.tsab8a244
Merge pull request #78 from step-security/Raj-StepSecurity-patch-395c6220
Merge branch 'main' into Raj-StepSecurity-patch-38867439
Merge pull request #91 from step-security/npm-audit-fix2483b18
fix: apply audit fixes4b2a8ac
fix: apply audit fixes9f35898
fix: apply audit fixes7c316d3
Merge pull request #83 from step-security/npm-audit-fixUpdates
ncipollo/release-action
from 1.18.0 to 1.20.0Release notes
Sourced from ncipollo/release-action's releases.
Commits
b7eabc9
preparing release 1.20.0e87de4c
Fixes #542 Add previous tag option (#550)98d25d4
preparing release 1.19.2d360126
Fixes #548 Add support body + generated release notes (#549)571fe81
UpdateimmutableCreate
's default in the documentation (#547)1c89adf
preparing release 1.19.136bf8dd
References #545 Default immutable builds to falseb12185d
preparing release 1.19.0defcf13
Fixes #540 Add support for immutable releases (#544)05013d5
Standardize on separate call to generate release notesDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions