Skip to content

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Jul 15, 2025

This PR contains the following updates:

Package Type Update Change Pending
actions/attest-build-provenance action minor v2.3.0 -> v2.4.0
hynek/build-and-inspect-python-package action minor v2.12.0 -> v2.13.0
prefix-dev/setup-pixi action patch v0.8.8 -> v0.8.10 v0.8.11

Release Notes

actions/attest-build-provenance (actions/attest-build-provenance)

v2.4.0

Compare Source

What's Changed

Full Changelog: actions/attest-build-provenance@v2.3.0...v2.4.0

hynek/build-and-inspect-python-package (hynek/build-and-inspect-python-package)

v2.13.0

Compare Source

Added
  • New output: package_name is the name of the built package as stored in metadata.
    #​162

  • The package name is now part of the action summary which is helpful when you build more than one package from a repository.
    #​169

Changed
  • All GitHub actions are now pinned to exact hashes for better reproducibility and mild security improvements.

    Since chosen prefix SHA-1 hash collision attacks exist, this is but security theater against serious attackers.

prefix-dev/setup-pixi (prefix-dev/setup-pixi)

v0.8.10

Compare Source

What's Changed
🐛 Bug fixes

Full Changelog: prefix-dev/setup-pixi@v0.8.9...v0.8.10

v0.8.9

Compare Source

What's Changed
🐛 Bug fixes
⬆️ Dependency updates
🤷🏻 Other changes
New Contributors

Full Changelog: prefix-dev/setup-pixi@v0.8.8...v0.8.9


Configuration

📅 Schedule: Branch creation - On day 15 of the month ( * * 15 * * ) (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Jul 15, 2025
@renovate renovate bot merged commit cbbb302 into main Jul 15, 2025
12 checks passed
@renovate renovate bot deleted the renovate/gha branch July 15, 2025 05:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants