Skip to content

chore(deps): update all non-major github action dependencies#23

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/all-non-major-github-action
Open

chore(deps): update all non-major github action dependencies#23
renovate[bot] wants to merge 1 commit intomainfrom
renovate/all-non-major-github-action

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate bot commented Oct 18, 2025

This PR contains the following updates:

Package Type Update Change
actions/checkout action patch v4.3.0v4.3.1
actions/create-github-app-token action minor v2.1.4v2.2.2
actions/dependency-review-action action minor v4.8.0v4.9.0
cds-snc/dns-proxy-action action digest a0d4428bbde31a
cds-snc/terraform-plan action minor v3.4.3v3.7.0
cds-snc/terraform-tools-setup action minor v1v1.2.0
googleapis/release-please-action action minor v4.3.0v4.4.0

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.

Review

  • Updates have been tested and work
  • If updates are AWS related, versions match the infrastructure (e.g. Lambda runtime, database, etc.)

Release Notes

actions/checkout (actions/checkout)

v4.3.1

Compare Source

What's Changed

Full Changelog: actions/checkout@v4...v4.3.1

actions/create-github-app-token (actions/create-github-app-token)

v2.2.2

Compare Source

Bug Fixes

v2.2.1

Compare Source

Bug Fixes
  • deps: bump the production-dependencies group with 2 updates (#​311) (b212e6a)

v2.2.0

Compare Source

Bug Fixes
Features
actions/dependency-review-action (actions/dependency-review-action)

v4.9.0: Dependency Review Action 4.9.0

Compare Source

This feature release contains a couple of notable changes:

  • There is a new configuration option show_patched_versions which will add a column to the output, showing the fix version of each vulnerable dependency. Thanks @​felickz!
  • Runs which do not display OpenSSF scorecards no longer fetch scorecard information; previously it was fetched regardless of whether or not it was displayed, causing unneccessary slowness. Great catch @​jantiebot!
  • There are a couple of fixes to purl parsing which should improve match accuracy for allow-package-dependency lists, including case (in)sensitivity and url-encoded namespaces Thanks @​juxtin!

What's Changed

New Contributors

Full Changelog: actions/dependency-review-action@v4.8.3...v4.9.0

v4.8.3: 4.8.3

Compare Source

Dependency Review Action v4.8.3

This is a bugfix release that updates a number of upstream dependencies and includes a fix for the earlier feature that detected oversized summaries and upload them as artifacts, which could occasionally crash the action.

We have also updated the release process to use a long-lived v4 branch for the action, instead of a force-pushed tag, which aligns better with git branching strategies; the change should be transparent to end users.

What's Changed

Full Changelog: https://github.com/actions/dependency-review-action/compare/v4.8.2..v4.8.3

v4.8.2

Compare Source

Minor fixes:

v4.8.1: Dependency Review Action v4.8.1

Compare Source

What's Changed

Full Changelog: actions/dependency-review-action@v4...v4.8.1

cds-snc/terraform-plan (cds-snc/terraform-plan)

v3.7.0: Add Drift Detection feature

Compare Source

What's Changed

Full Changelog: cds-snc/terraform-plan@v3.6.1...v3.7.0

v3.6.1

Compare Source

What's Changed

Full Changelog: cds-snc/terraform-plan@v3...v3.6.1

v3.6.0

Compare Source

What's Changed

Full Changelog: cds-snc/terraform-plan@v3...v3.6.0

cds-snc/terraform-tools-setup (cds-snc/terraform-tools-setup)

v1.2.0

Compare Source

What's Changed

Full Changelog: cds-snc/terraform-tools-setup@v1.1.0...v1.2.0

googleapis/release-please-action (googleapis/release-please-action)

v4.4.0

Compare Source

Features
  • add ability to select versioning-strategy and release-as (#​1121) (ee0f5ba)
Bug Fixes
  • changelog-host parameter ignored when using manifest configuration (#​1151) (535c413)
  • bump mocha from 11.7.1 to 11.7.2 in the npm_and_yarn group across 1 directory (#​1149) (3612a99)
  • bump release-please from 17.1.2 to 17.1.3 (#​1158) (66fbfe9)

Configuration

📅 Schedule: Branch creation - "every weekend" in timezone America/Montreal, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from d176028 to 98bcd17 Compare October 30, 2025 19:31
@renovate renovate bot changed the title chore(deps): update actions/dependency-review-action action to v4.8.1 chore(deps): update all non-major github action dependencies Oct 30, 2025
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 98bcd17 to 6166e23 Compare November 3, 2025 13:32
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 2006061 to 8df04a0 Compare November 11, 2025 18:44
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 96ceac8 to 3ab403d Compare November 21, 2025 03:04
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 3ab403d to 7f58b95 Compare November 29, 2025 03:05
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 4 times, most recently from 6b7f8ac to 1a180fb Compare December 15, 2025 15:14
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 1a180fb to 0e8cfbc Compare December 26, 2025 18:40
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 0e8cfbc to ebf924b Compare January 5, 2026 16:45
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from ebf924b to 2c93ed6 Compare January 14, 2026 19:48
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 5989f4e to 6f721a0 Compare February 2, 2026 16:14
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 8925a89 to 8f33b03 Compare February 9, 2026 15:45
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 1c9573e to 40fe1e2 Compare February 19, 2026 19:24
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 9a4fec5 to 62856dc Compare March 4, 2026 23:56
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 62856dc to 1d96ecf Compare March 11, 2026 02:05
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 2 times, most recently from 097bfef to b188731 Compare March 21, 2026 02:41
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch 13 times, most recently from fed863f to 302923a Compare March 30, 2026 15:47
@renovate renovate bot force-pushed the renovate/all-non-major-github-action branch from 302923a to 907583e Compare March 30, 2026 23:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants