chore(actions): bump the actions-minor-patch group with 4 updates#465
Conversation
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
|
Bumps the actions-minor-patch group with 4 updates: [github/codeql-action](https://github.com/github/codeql-action), [google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml](https://github.com/google/osv-scanner-action), [pnpm/action-setup](https://github.com/pnpm/action-setup) and [changesets/action](https://github.com/changesets/action). Updates `github/codeql-action` from 4 to 4.35.4 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@v4...v4.35.4) Updates `google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml` from 2.3.5 to 2.3.8 - [Release notes](https://github.com/google/osv-scanner-action/releases) - [Commits](google/osv-scanner-action@v2.3.5...v2.3.8) Updates `pnpm/action-setup` from 6 to 6.0.7 - [Release notes](https://github.com/pnpm/action-setup/releases) - [Commits](pnpm/action-setup@v6...v6.0.7) Updates `changesets/action` from 1.7.0 to 1.8.0 - [Release notes](https://github.com/changesets/action/releases) - [Changelog](https://github.com/changesets/action/blob/main/CHANGELOG.md) - [Commits](changesets/action@v1.7.0...v1.8.0) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: 4.35.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-minor-patch - dependency-name: google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml dependency-version: 2.3.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-minor-patch - dependency-name: pnpm/action-setup dependency-version: 6.0.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-minor-patch - dependency-name: changesets/action dependency-version: 1.8.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-minor-patch ... Signed-off-by: dependabot[bot] <support@github.com>
3206ce9 to
c854dab
Compare
auxesis
left a comment
There was a problem hiding this comment.
There's no need to specify patch versions when the major version number covers us automatically.
I'm also too tired to fight the computers on this.
Bumps the actions-minor-patch group with 4 updates: github/codeql-action, google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml, pnpm/action-setup and changesets/action.
Updates
github/codeql-actionfrom 4 to 4.35.4Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
68bde55Merge pull request #3885 from github/update-v4.35.4-803d9e8c39739ad2Update changelog for v4.35.4803d9e8Merge pull request #3883 from github/mbg/test/macro-wrapper0fd9c7dMerge pull request #3882 from github/dependabot/github_actions/dot-github/wor...922d6fbUsemakeMacroinstead oftest.macrodf77e87Update test macro snippet6e3f985Add wrapper fortest.macroe7a347dMerge pull request #3881 from github/update-bundle/codeql-bundle-v2.25.417eabb2Rebuildaaef09cBump ruby/setup-rubyUpdates
google/osv-scanner-action/.github/workflows/osv-scanner-reusable.ymlfrom 2.3.5 to 2.3.8Release notes
Sourced from google/osv-scanner-action/.github/workflows/osv-scanner-reusable.yml's releases.
Commits
9a49870Update unified workflow example to point to v2.3.8 reusable workflows3adb4b1Update reusable workflows to point to v2.3.8 actions8dc0919"Update actions to use v2.3.8 osv-scanner image"43f380bMerge pull request #125 from google/update-to-v2.3.6dcf4dddUpdate unified workflow example to point to v2.3.6 reusable workflowsb9dbb7eUpdate reusable workflows to point to v2.3.6 actionsfe54858"Update actions to use v2.3.6 osv-scanner image"eb5b619Merge pull request #100 from thomasleplus/main9517144feat: output results in reusable workflowf17cd09Merge branch 'main' into mainUpdates
pnpm/action-setupfrom 6 to 6.0.7Release notes
Sourced from pnpm/action-setup's releases.
Commits
1e1c8eaci: pin github actions (#199)b9e1dbcfix(ci): exclude macos (#197)61bc82crefactor: remove star imports (#196)Updates
changesets/actionfrom 1.7.0 to 1.8.0Release notes
Sourced from changesets/action's releases.
Changelog
Sourced from changesets/action's changelog.
Commits
63a615bv1.8.084c2432Version Packages (#598)f5dbf72Add draft mode support (#258)91b9111Protect publishes with env gate (#610)d4c53c2FixCODEOWNERSpattern2ae596fTweak CI setup (#599)0784b0eAddCODEOWNERS81b3f61Fixed.changesetstate being picked for the version command whencwdpara...6002dbdFix reading.changesetdirectory from path provided incwdparameter (#502)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions