From 5fd21caf756075330dc47c7b41345153feebba8e Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 14 Feb 2025 04:04:46 +0000 Subject: [PATCH] chore(deps): bump the github-actions-dependencies group across 1 directory with 2 updates Bumps the github-actions-dependencies group with 2 updates in the / directory: [hoverkraft-tech/ci-github-common](https://github.com/hoverkraft-tech/ci-github-common) and [github/codeql-action](https://github.com/github/codeql-action). Updates `hoverkraft-tech/ci-github-common` from 0.16.1 to 0.17.0 - [Release notes](https://github.com/hoverkraft-tech/ci-github-common/releases) - [Commits](https://github.com/hoverkraft-tech/ci-github-common/compare/0.16.1...0.17.0) Updates `github/codeql-action` from 3.28.8 to 3.28.9 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/v3.28.8...v3.28.9) --- updated-dependencies: - dependency-name: hoverkraft-tech/ci-github-common dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependencies - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions-dependencies ... Signed-off-by: dependabot[bot] --- .github/workflows/__greetings.yml | 2 +- .github/workflows/__need-fix-to-issue.yml | 2 +- .github/workflows/__shared-ci.yml | 2 +- .github/workflows/__stale.yml | 2 +- .github/workflows/continuous-integration.yml | 16 ++++++++-------- 5 files changed, 12 insertions(+), 12 deletions(-) diff --git a/.github/workflows/__greetings.yml b/.github/workflows/__greetings.yml index 4e29810..0dc14b4 100644 --- a/.github/workflows/__greetings.yml +++ b/.github/workflows/__greetings.yml @@ -13,4 +13,4 @@ permissions: jobs: greetings: - uses: hoverkraft-tech/ci-github-common/.github/workflows/greetings.yml@0.16.1 + uses: hoverkraft-tech/ci-github-common/.github/workflows/greetings.yml@0.17.0 diff --git a/.github/workflows/__need-fix-to-issue.yml b/.github/workflows/__need-fix-to-issue.yml index 21b984b..5144740 100644 --- a/.github/workflows/__need-fix-to-issue.yml +++ b/.github/workflows/__need-fix-to-issue.yml @@ -20,7 +20,7 @@ permissions: jobs: main: - uses: hoverkraft-tech/ci-github-common/.github/workflows/need-fix-to-issue.yml@0.16.1 + uses: hoverkraft-tech/ci-github-common/.github/workflows/need-fix-to-issue.yml@0.17.0 with: manual-commit-ref: ${{ inputs.manual-commit-ref }} manual-base-ref: ${{ inputs.manual-base-ref }} diff --git a/.github/workflows/__shared-ci.yml b/.github/workflows/__shared-ci.yml index 5a861a2..3d3cd77 100644 --- a/.github/workflows/__shared-ci.yml +++ b/.github/workflows/__shared-ci.yml @@ -12,7 +12,7 @@ permissions: jobs: linter: - uses: hoverkraft-tech/ci-github-common/.github/workflows/linter.yml@0.16.1 + uses: hoverkraft-tech/ci-github-common/.github/workflows/linter.yml@0.17.0 test-action-get-package-manager: name: Test action "get-package-manager" diff --git a/.github/workflows/__stale.yml b/.github/workflows/__stale.yml index f7920e2..4eb0984 100644 --- a/.github/workflows/__stale.yml +++ b/.github/workflows/__stale.yml @@ -10,4 +10,4 @@ permissions: jobs: main: - uses: hoverkraft-tech/ci-github-common/.github/workflows/stale.yml@0.16.1 + uses: hoverkraft-tech/ci-github-common/.github/workflows/stale.yml@0.17.0 diff --git a/.github/workflows/continuous-integration.yml b/.github/workflows/continuous-integration.yml index 7e5ec2d..3c71e6d 100644 --- a/.github/workflows/continuous-integration.yml +++ b/.github/workflows/continuous-integration.yml @@ -61,11 +61,11 @@ jobs: security-events: write runs-on: "ubuntu-latest" steps: - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 - - uses: github/codeql-action/init@v3.28.8 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 + - uses: github/codeql-action/init@v3.28.9 with: languages: ${{ inputs.code-ql }} - - uses: github/codeql-action/analyze@v3.28.8 + - uses: github/codeql-action/analyze@v3.28.9 dependency-review: name: 🛡️ Dependency Review @@ -74,7 +74,7 @@ jobs: contents: read runs-on: "ubuntu-latest" steps: - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 - uses: actions/dependency-review-action@v4 setup: @@ -90,7 +90,7 @@ jobs: steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 # jscpd:ignore-start - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 - id: oidc uses: ChristopherHX/oidc@v3 @@ -162,7 +162,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 - id: oidc uses: ChristopherHX/oidc@v3 @@ -196,7 +196,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 if: needs.setup.outputs.build-commands - id: oidc @@ -257,7 +257,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.16.1 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.17.0 - if: needs.setup.outputs.build-artifact uses: actions/download-artifact@v4