-
Notifications
You must be signed in to change notification settings - Fork 2
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the github-actions group with 8 updates #126
Bump the github-actions group with 8 updates #126
Conversation
Bumps the github-actions group with 8 updates: | Package | From | To | | --- | --- | --- | | [dessant/lock-threads](https://github.com/dessant/lock-threads) | `4.0.1` | `5.0.1` | | [actions/checkout](https://github.com/actions/checkout) | `3.3.0` | `4.1.1` | | [actions/setup-python](https://github.com/actions/setup-python) | `4.4.0` | `5.0.0` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `3.1.2` | `4.0.0` | | [slsa-framework/slsa-github-generator](https://github.com/slsa-framework/slsa-github-generator) | `1.7.0` | `1.9.0` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `3.0.2` | `4.1.0` | | [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) | `1.8.4` | `1.8.11` | | [actions/cache](https://github.com/actions/cache) | `3.2.3` | `3.3.2` | Updates `dessant/lock-threads` from 4.0.1 to 5.0.1 - [Release notes](https://github.com/dessant/lock-threads/releases) - [Changelog](https://github.com/dessant/lock-threads/blob/main/CHANGELOG.md) - [Commits](dessant/lock-threads@be8aa5b...1bf7ec2) Updates `actions/checkout` from 3.3.0 to 4.1.1 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v3.3.0...b4ffde6) Updates `actions/setup-python` from 4.4.0 to 5.0.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@v4.4.0...0a5c615) Updates `actions/upload-artifact` from 3.1.2 to 4.0.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@0b7f8ab...c7d193f) Updates `slsa-framework/slsa-github-generator` from 1.7.0 to 1.9.0 - [Release notes](https://github.com/slsa-framework/slsa-github-generator/releases) - [Changelog](https://github.com/slsa-framework/slsa-github-generator/blob/main/CHANGELOG.md) - [Commits](slsa-framework/slsa-github-generator@v1.7.0...v1.9.0) Updates `actions/download-artifact` from 3.0.2 to 4.1.0 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@9bc31d5...f44cd7b) Updates `pypa/gh-action-pypi-publish` from 1.8.4 to 1.8.11 - [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases) - [Commits](pypa/gh-action-pypi-publish@29930c9...2f6f737) Updates `actions/cache` from 3.2.3 to 3.3.2 - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](actions/cache@58c146c...704facf) --- updated-dependencies: - dependency-name: dessant/lock-threads dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-python dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: slsa-framework/slsa-github-generator dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/download-artifact dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: pypa/gh-action-pypi-publish dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/cache dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions ... Signed-off-by: dependabot[bot] <[email protected]>
Dependabot can't parse your publish.yaml. Because of this, Dependabot cannot update this pull request. |
3 similar comments
Dependabot can't parse your publish.yaml. Because of this, Dependabot cannot update this pull request. |
Dependabot can't parse your publish.yaml. Because of this, Dependabot cannot update this pull request. |
Dependabot can't parse your publish.yaml. Because of this, Dependabot cannot update this pull request. |
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Bumps the github-actions group with 8 updates:
4.0.1
5.0.1
3.3.0
4.1.1
4.4.0
5.0.0
3.1.2
4.0.0
1.7.0
1.9.0
3.0.2
4.1.0
1.8.4
1.8.11
3.2.3
3.3.2
Updates
dessant/lock-threads
from 4.0.1 to 5.0.1Release notes
Sourced from dessant/lock-threads's releases.
Changelog
Sourced from dessant/lock-threads's changelog.
... (truncated)
Commits
1bf7ec2
chore(release): 5.0.1adf4aa5
chore: update package0a63678
fix: support filtering threads by labels with spacesd42e5f4
chore(release): 5.0.0d8da6c1
chore: update packagec1eab4b
chore: update workflow0a0976f
feat: lock discussions53f3f0c
chore: migrate package to ESM5a25b54
fix: update dependenciesUpdates
actions/checkout
from 3.3.0 to 4.1.1Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
b4ffde6
Link to release page from what's new section (#1514)8530928
Correct link to GitHub Docs (#1511)7cdaf2f
Update CODEOWNERS to Launch team (#1510)8ade135
Prepare 4.1.0 release (#1496)c533a0a
Add support for partial checkout filters (#1396)72f2cec
Update README.md for V4 (#1452)3df4ab1
Release 4.0.0 (#1447)8b5e8b7
Support fetching without the --progress option (#1067)97a652b
Update default runtime to node20 (#1436)f43a0e5
Release 3.6.0 (#1437)Updates
actions/setup-python
from 4.4.0 to 5.0.0Release notes
Sourced from actions/setup-python's releases.
... (truncated)
Commits
0a5c615
Update action to node20 (#772)0ae5836
Add example of GraalPy to docs (#773)b64ffca
update actions/checkout to v4 (#761)8d28961
Examples now use checkout@v4 (#738)7bc6abb
advanced-usage.md: Encourage the use actions/checkout@v4 (#729)e8111ce
Bump@babel/traverse
from 7.9.0 to 7.23.2 (#743)a00ea43
add fix for graalpy ci (#741)8635b1c
Change deprecation comment to past tense (#723)f6cc428
Use non-deprecated versions in examples (#724)5f2af21
Add GraalPy support (#694)Updates
actions/upload-artifact
from 3.1.2 to 4.0.0Release notes
Sourced from actions/upload-artifact's releases.
Commits
c7d193f
Merge pull request #466 from actions/v4-beta13131bb
licensed cache4a6c273
Merge branch 'main' into v4-betaf391bb9
Merge pull request #465 from actions/robherley/v4-documentation9653d03
Apply suggestions from code review875b630
add limitations sectionecb2146
add compression example5e7604f
trim some repeated infod6437d0
naming1b56155
s/v4-beta/v4/gUpdates
slsa-framework/slsa-github-generator
from 1.7.0 to 1.9.0Release notes
Sourced from slsa-framework/slsa-github-generator's releases.
Changelog
Sourced from slsa-framework/slsa-github-generator's changelog.
Commits
07e64b6
chore: v1.9.0 ref updates (#2673)9bc0d59
chore: v1.9.0-rc.0 (#2669)72aeffd
fix: typo in maven builder (#2668)b6d7cbf
chore: make build dirs of java builders unique (#2665)7e31fad
docs: v1.9.0-rc.0 changelogs (#2648)5952cf4
docs: Update BYOB versions in docs (#2647)da5bdc7
chore: fix wrong output in gradle builder (#2646)180a89c
chore: fix nits in Gradle builder (#2645)f89a0f4
feat: update Gradle builder to accomodate for e2e test (#2636)324ff12
feat: Add directory input to Maven builder (#2538)Updates
actions/download-artifact
from 3.0.2 to 4.1.0Release notes
Sourced from actions/download-artifact's releases.
Commits
f44cd7b
Merge pull request #259 from actions/robherley/glob-downloads3181fe8
add some migration docsaaaac7b
licensed cache7c9182f
update readmeb94e701
licensed cache0b55470
add test case for globbed downloads to same directory0b51c2e
update prettier/eslint versionsc4c6db7
support globbing artifact list & merging download directory1bd0606
Merge pull request #252 from stchr/patch-1eff4d42
fix default for run-idUpdates
pypa/gh-action-pypi-publish
from 1.8.4 to 1.8.11Release notes
Sourced from pypa/gh-action-pypi-publish's releases.
... (truncated)
Commits
2f6f737
Merge commit PR #184 into unstable/v12fa448a
Merge PRs #190, #184, #185, #189 and #194 into unstable/v1824ad31
Revert flake8 to v4.0.1 for WPS41f3f53
Bump cryptography from 41.0.3 to 41.0.6 in /requirements2319287
twine-upload: ::error, switch nudge order254a0d4
twine-upload: add a nudge for password auth70a33ca
Bump pip from 22.3.1 to 23.3 in /requirements102f507
Bump urllib3 from 2.0.6 to 2.0.7 in /requirements79739dc
Merge pull request #183 from pypa/dependabot/pip/requirements/urllib3-2.0.69a3f9ad
[pre-commit.ci] pre-commit autoupdateUpdates
actions/cache
from 3.2.3 to 3.3.2Release notes
Sourced from actions/cache's releases.
... (truncated)
Changelog
Sourced from actions/cache's changelog.
... (truncated)
Commits
704facf
Merge pull request #1236 from actions/bethanyj28/bump-version17e2888
Add to RELEASES.md667d8fd
bump action version to 3.3.2f7ebb81
Consume latest toolkit and fix dangling promise bug (#1217)67b839e
Merge pull request #1187 from jorendorff/jorendorff/rm-add-to-project57f0e3f
Remove actions to add new PRs and issues to a project board04f198b
Merge pull request #1132 from vorburger/bazel-examplebd9b49b
Merge branch 'main' into bazel-exampleea05037
Merge pull request #1122 from actions/pdotl-patch-16a1a45d
Merge branch 'main' into pdotl-patch-1You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions