build(deps): bump the github-actions group across 1 directory with 12 updates - #112
Open
dependabot[bot] wants to merge 1 commit into
Open
build(deps): bump the github-actions group across 1 directory with 12 updates#112dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
… updates Bumps the github-actions group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `4` | `7` | | [cloudflare/wrangler-action](https://github.com/cloudflare/wrangler-action) | `3` | `4` | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.19.4` | `2.20.0` | | [fallow-rs/fallow](https://github.com/fallow-rs/fallow) | `2.89.0` | `3.9.1` | | [The-PR-Agent/pr-agent](https://github.com/the-pr-agent/pr-agent) | `0.36.0` | `0.40.0` | | [Raftersecurity/rafter-cli](https://github.com/raftersecurity/rafter-cli) | `0.8.4` | `0.9.1` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `3.0.0` | `3.0.2` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.4.3` | `2.4.4` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4` | `7` | | [github/codeql-action](https://github.com/github/codeql-action) | `4.36.2` | `4.37.3` | | [actions/setup-python](https://github.com/actions/setup-python) | `5` | `7` | | [actions/cache](https://github.com/actions/cache) | `4` | `6` | Updates `actions/checkout` from 4 to 7 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v7) Updates `cloudflare/wrangler-action` from 3 to 4 - [Release notes](https://github.com/cloudflare/wrangler-action/releases) - [Changelog](https://github.com/cloudflare/wrangler-action/blob/main/CHANGELOG.md) - [Commits](cloudflare/wrangler-action@v3...v4) Updates `step-security/harden-runner` from 2.19.4 to 2.20.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@v2.19.4...v2.20.0) Updates `fallow-rs/fallow` from 2.89.0 to 3.9.1 - [Release notes](https://github.com/fallow-rs/fallow/releases) - [Changelog](https://github.com/fallow-rs/fallow/blob/main/CHANGELOG.md) - [Commits](fallow-rs/fallow@v2.89.0...v3.9.1) Updates `The-PR-Agent/pr-agent` from 0.36.0 to 0.40.0 - [Release notes](https://github.com/the-pr-agent/pr-agent/releases) - [Changelog](https://github.com/The-PR-Agent/pr-agent/blob/main/CHANGELOG.md) - [Commits](The-PR-Agent/pr-agent@v0.36.0...v0.40.0) Updates `Raftersecurity/rafter-cli` from 0.8.4 to 0.9.1 - [Release notes](https://github.com/raftersecurity/rafter-cli/releases) - [Changelog](https://github.com/Raftersecurity/rafter-cli/blob/main/CHANGELOG.md) - [Commits](Raftersecurity/rafter-cli@v0.8.4...v0.9.1) Updates `softprops/action-gh-release` from 3.0.0 to 3.0.2 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@v3.0.0...v3.0.2) Updates `ossf/scorecard-action` from 2.4.3 to 2.4.4 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@v2.4.3...v2.4.4) Updates `actions/upload-artifact` from 4 to 7 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@v4...v7) Updates `github/codeql-action` from 4.36.2 to 4.37.3 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@v4.36.2...v4.37.3) Updates `actions/setup-python` from 5 to 7 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@v5...v7) Updates `actions/cache` from 4 to 6 - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](actions/cache@v4...v6) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: cloudflare/wrangler-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: step-security/harden-runner dependency-version: 2.20.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: fallow-rs/fallow dependency-version: 3.9.1 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: The-PR-Agent/pr-agent dependency-version: 0.40.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: Raftersecurity/rafter-cli dependency-version: 0.9.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: softprops/action-gh-release dependency-version: 3.0.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: ossf/scorecard-action dependency-version: 2.4.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: github/codeql-action dependency-version: 4.37.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: actions/setup-python dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/cache dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 12 updates in the / directory:
47342.19.42.20.02.89.03.9.10.36.00.40.00.8.40.9.13.0.03.0.22.4.32.4.4474.36.24.37.35746Updates
actions/checkoutfrom 4 to 7Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
3d3c42eprep v7.0.1 release (#2531)2880268escape values passed to --unset (#2530)12cd223trim only ascii whitespace for branch (#2521)62661c4skip running unsafe pr check if input is default (#2518)e8d4307Bump the minor-actions-dependencies group with 2 updates (#2499)631c942eslint 9 (#2474)4f1f4aeBump actions/upload-artifact from 4 to 7 (#2476)ba09753Bump actions/checkout from 6 to 7 (#2488)b9e0990Bump docker/login-action from 3.3.0 to 4.2.0 (#2479)e8cb398Bump docker/build-push-action from 6.5.0 to 7.2.0 (#2478)Updates
cloudflare/wrangler-actionfrom 3 to 4Release notes
Sourced from cloudflare/wrangler-action's releases.
... (truncated)
Changelog
Sourced from cloudflare/wrangler-action's changelog.
... (truncated)
Commits
ebbaa15Automatic compilationa61fbeaMerge pull request #429 from cloudflare/changeset-release/maine804ea3Version Packages8d0324afix: update release workflow to v5 actions and regenerate lockfile2f18b18Merge pull request #431 from cloudflare/fix/semgrep-blocking-findings622ff0dfix: upgrade checkout and setup-node to v5 for Node 24 runtimef501f05fix: force GitHub actions to run on Node 24 via env varf990691fix: resolve npm audit vulnerabilities via undici override and vitest v3652762dfix: migrate action runtime from node20 to node24bd3f4f0fix: add retry support to worker health check using better-resultUpdates
step-security/harden-runnerfrom 2.19.4 to 2.20.0Release notes
Sourced from step-security/harden-runner's releases.
Commits
bf7454dMerge pull request #673 from step-security/fix/aggregate-error-startup-hang1188420Update non-TLS agent to v0.16.2162cfeaUpdate non-TLS agent to v0.16.1eb9e1f4Bring macOS runner updates from PR 6741a10b01Update Windows agent to v1.0.78b4a105Apply npm audit fixes with release-age cooldown3626e03Default TLS status check failures to enabled100e08bUpdate agent-ebpf to v1.8.12774f75fUpdate agent to v1.8.9f312657Extend missing-agent-dir guard to Linux and macOS cleanup pathsUpdates
fallow-rs/fallowfrom 2.89.0 to 3.9.1Release notes
Sourced from fallow-rs/fallow's releases.
... (truncated)
Changelog
Sourced from fallow-rs/fallow's changelog.
... (truncated)
Commits
3f6d4a5chore: release v3.9.1b9f6515chore: release v3.9.03925887docs: complete unreleased changelog77d56bbfix: keep Impact statusline epilogue-free88f297adocs: expose Impact statusline to agentsfad562dfeat: add Impact statusline output27ab1fcchore: open impact statusline implementation branchddbdaa9docs: harden maintainer knowledge architecturefbe63e3docs: establish portable knowledge architecture46297d2chore: refresh vendored Fallow skillUpdates
The-PR-Agent/pr-agentfrom 0.36.0 to 0.40.0Release notes
Sourced from The-PR-Agent/pr-agent's releases.
... (truncated)
Commits
6ad7cf7fix(litellm): flush deferred callbacks before the event loop closes (#2551)8da311dfix(gerrit): prevent path traversal in publish_code_suggestions (#2314)5bde2e3fix(litellm): stop the placeholder key from shadowing provider env vars (#2548)4d5b6eefix(servers): cap gunicorn workers and preload the app to stop OOMKills (#2550)8792c48fix(gitlab): preserve user-added labels (#2484)6065794test(github): fix build-and-test failure from _dedup_code_fp payload key (#2549)c390d6cdocs(tools): add consolidated usage examples for all tools (#2547)f09a8f1feat(config): update default model to OpenAI's GPT-5.6 (#2535)e6429e6feat: persistent inline comments to prevent cross-run duplicates (#2424)2ab06dffix(litellm): raise on empty content from non-streaming models (#2542)Updates
Raftersecurity/rafter-clifrom 0.8.4 to 0.9.1Release notes
Sourced from Raftersecurity/rafter-cli's releases.
... (truncated)
Changelog
Sourced from Raftersecurity/rafter-cli's changelog.