Skip to content

Commit 419bfe4

Browse files
Bump the github-actions group across 1 directory with 5 updates (#15565)
Bumps the github-actions group with 5 updates in the / directory: | Package | From | To | | --- | --- | --- | | [tj-actions/changed-files](https://github.com/tj-actions/changed-files) | `44` | `45` | | [actions/attest-build-provenance](https://github.com/actions/attest-build-provenance) | `1.0.0` | `1.4.3` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.3.3` | `2.4.0` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.25.11` | `3.26.10` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.0.6` | `2.0.8` | Updates `tj-actions/changed-files` from 44 to 45 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/tj-actions/changed-files/releases">tj-actions/changed-files's releases</a>.</em></p> <blockquote> <h2>v45</h2> <h1>Changes in v45.0.2</h1> <h2>What's Changed</h2> <ul> <li>chore(deps): lock file maintenance by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2259">tj-actions/changed-files#2259</a></li> <li>chore(deps): update dependency eslint-plugin-jest to v28.8.2 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2260">tj-actions/changed-files#2260</a></li> <li>Upgraded to v45.0.1 by <a href="https://github.com/tj-actions-bot"><code>@​tj-actions-bot</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2258">tj-actions/changed-files#2258</a></li> <li>chore(deps): update dependency <code>@​types/node</code> to v22.5.3 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2263">tj-actions/changed-files#2263</a></li> <li>chore(deps): update peter-evans/create-pull-request action to v7 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2261">tj-actions/changed-files#2261</a></li> <li>fix(deps): update dependency yaml to v2.5.1 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2264">tj-actions/changed-files#2264</a></li> <li>chore(deps): update dependency <code>@​types/node</code> to v22.5.4 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2266">tj-actions/changed-files#2266</a></li> <li>chore(deps): update dependency eslint-plugin-jest to v28.8.3 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2267">tj-actions/changed-files#2267</a></li> <li>chore(deps): update peter-evans/create-pull-request action to v7.0.1 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2269">tj-actions/changed-files#2269</a></li> <li>chore(deps): lock file maintenance by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2270">tj-actions/changed-files#2270</a></li> <li>chore(deps): lock file maintenance by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2271">tj-actions/changed-files#2271</a></li> <li>chore(deps): update dependency typescript to v5.6.2 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2272">tj-actions/changed-files#2272</a></li> <li>chore(deps): update dependency eslint-plugin-github to v5.0.2 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2275">tj-actions/changed-files#2275</a></li> <li>chore(deps): update peter-evans/create-pull-request action to v7.0.2 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2277">tj-actions/changed-files#2277</a></li> <li>chore(deps): update dependency <code>@​types/jest</code> to v29.5.13 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2278">tj-actions/changed-files#2278</a></li> <li>chore(deps): update dependency <code>@​types/node</code> to v22.5.5 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2279">tj-actions/changed-files#2279</a></li> <li>chore(deps): lock file maintenance by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2280">tj-actions/changed-files#2280</a></li> <li>chore(deps): update peter-evans/create-pull-request action to v7.0.3 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2281">tj-actions/changed-files#2281</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/tj-actions/changed-files/compare/v45...v45.0.2">https://github.com/tj-actions/changed-files/compare/v45...v45.0.2</a></p> <hr /> <h1>Changes in v45.0.1</h1> <h2>What's Changed</h2> <ul> <li>Upgraded to v45 by <a href="https://github.com/tj-actions-bot"><code>@​tj-actions-bot</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2244">tj-actions/changed-files#2244</a></li> <li>chore(deps): update dependency <code>@​types/node</code> to v22.5.0 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2246">tj-actions/changed-files#2246</a></li> <li>chore(deps): update dependency ts-jest to v29.2.5 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2248">tj-actions/changed-files#2248</a></li> <li>fix(deps): update dependency micromatch to v4.0.8 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2249">tj-actions/changed-files#2249</a></li> <li>chore(deps): lock file maintenance by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2251">tj-actions/changed-files#2251</a></li> <li>chore(deps-dev): bump <code>@​types/node</code> from 22.5.0 to 22.5.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2252">tj-actions/changed-files#2252</a></li> <li>chore(deps): update dependency eslint-plugin-jest to v28.8.1 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2255">tj-actions/changed-files#2255</a></li> <li>chore(deps): update dependency <code>@​types/node</code> to v22.5.2 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2257">tj-actions/changed-files#2257</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/tj-actions/changed-files/compare/v45...v45.0.1">https://github.com/tj-actions/changed-files/compare/v45...v45.0.1</a></p> <hr /> <h1>Changes in v45.0.0</h1> <h2>🔥🔥 BREAKING CHANGE 🔥🔥</h2> <ul> <li>With changes detected using GitHub's API setting <code>output_renamed_files_as_deleted_and_added</code> to <code>true</code>, would now include the previous file name in the list of deleted files.</li> </ul> <h2>What's Changed</h2> <ul> <li>chore(deps): update dependency <code>@​types/node</code> to v22.0.1 by <a href="https://github.com/renovate"><code>@​renovate</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2219">tj-actions/changed-files#2219</a></li> <li>Upgraded to v44.5.7 by <a href="https://github.com/tj-actions-bot"><code>@​tj-actions-bot</code></a> in <a href="https://redirect.github.com/tj-actions/changed-files/pull/2218">tj-actions/changed-files#2218</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/tj-actions/changed-files/blob/main/HISTORY.md">tj-actions/changed-files's changelog</a>.</em></p> <blockquote> <h1>Changelog</h1> <h1><a href="https://github.com/tj-actions/changed-files/compare/v45.0.1...v45.0.2">45.0.2</a> - (2024-09-16)</h1> <h2><!-- raw HTML omitted -->🐛 Bug Fixes</h2> <ul> <li><strong>deps:</strong> Update dependency yaml to v2.5.1 (<a href="https://github.com/tj-actions/changed-files/commit/c7114f61a18a89477ae75bf8f896d395bc8b76ea">c7114f6</a>) - (renovate[bot])</li> </ul> <h2><!-- raw HTML omitted -->➕ Add</h2> <ul> <li>Added missing changes and modified dist assets. (<a href="https://github.com/tj-actions/changed-files/commit/e73bb10d965c52e7b2e7b5b0d93bfbf9e8ae5d34">e73bb10</a>) - (GitHub Action)</li> </ul> <h2><!-- raw HTML omitted -->⚙️ Miscellaneous Tasks</h2> <ul> <li><strong>deps:</strong> Update peter-evans/create-pull-request action to v7.0.3 (<a href="https://github.com/tj-actions/changed-files/commit/48d8f15b2aaa3d255ca5af3eba4870f807ce6b3c">48d8f15</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Lock file maintenance (<a href="https://github.com/tj-actions/changed-files/commit/f4e06529f19b1626df5c1083eee9140820d0c7c6">f4e0652</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency <code>@​types/node</code> to v22.5.5 (<a href="https://github.com/tj-actions/changed-files/commit/9b5f7d7ff59e28c77b62c2091733ea658c695293">9b5f7d7</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency <code>@​types/jest</code> to v29.5.13 (<a href="https://github.com/tj-actions/changed-files/commit/80dc58425e90c26fbbeac2d09067f0989dcdae7f">80dc584</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update peter-evans/create-pull-request action to v7.0.2 (<a href="https://github.com/tj-actions/changed-files/commit/f9216b6d972c29698d917e21341f2e9c6d37f97b">f9216b6</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency eslint-plugin-github to v5.0.2 (<a href="https://github.com/tj-actions/changed-files/commit/fef272dc404c435b95e1afa1cc506e5082c9b6b0">fef272d</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency typescript to v5.6.2 (<a href="https://github.com/tj-actions/changed-files/commit/a236bf57ea511b6dd5450da8c6ea3988a0320142">a236bf5</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Lock file maintenance (<a href="https://github.com/tj-actions/changed-files/commit/0cb58dec12dc9b3638ed02bb3e7dc0ba179bd3d5">0cb58de</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Lock file maintenance (<a href="https://github.com/tj-actions/changed-files/commit/44f335629614fb45bd4bd15fee8daf049cba956b">44f3356</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update peter-evans/create-pull-request action to v7.0.1 (<a href="https://github.com/tj-actions/changed-files/commit/1d9fdda44c9da3604e9be858b3edb3e0501302af">1d9fdda</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency eslint-plugin-jest to v28.8.3 (<a href="https://github.com/tj-actions/changed-files/commit/ca746c1dbed9fbac2942967158c8ec335aa21a85">ca746c1</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency <code>@​types/node</code> to v22.5.4 (<a href="https://github.com/tj-actions/changed-files/commit/2414c5b0011abed79c1ab7e29209e64086d1b378">2414c5b</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update peter-evans/create-pull-request action to v7 (<a href="https://redirect.github.com/tj-actions/changed-files/issues/2261">#2261</a>) (<a href="https://github.com/tj-actions/changed-files/commit/38cc85fd7951de4c0caf6ecff32f43cea1dc27c2">38cc85f</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency <code>@​types/node</code> to v22.5.3 (<a href="https://github.com/tj-actions/changed-files/commit/834406f3618603966f05a31836c786991bfa37ab">834406f</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Update dependency eslint-plugin-jest to v28.8.2 (<a href="https://github.com/tj-actions/changed-files/commit/a78c1f5db417f9986ba46981f060877995312d9b">a78c1f5</a>) - (renovate[bot])</li> <li><strong>deps:</strong> Lock file maintenance (<a href="https://github.com/tj-actions/changed-files/commit/5977012387b5164ebae4e4b71f76b108056ed114">5977012</a>) - (renovate[bot])</li> </ul> <h2><!-- raw HTML omitted -->⬆️ Upgrades</h2> <ul> <li>Upgraded to v45.0.1 (<a href="https://redirect.github.com/tj-actions/changed-files/issues/2258">#2258</a>)</li> </ul> <p>Co-authored-by: jackton1 <a href="mailto:[email protected]">[email protected]</a> (<a href="https://github.com/tj-actions/changed-files/commit/5d8e41f17cbfc2f796554bcc23314b0d769f14d3">5d8e41f</a>) - (tj-actions[bot])</p> <h1><a href="https://github.com/tj-actions/changed-files/compare/v45.0.0...v45.0.1">45.0.1</a> - (2024-09-01)</h1> <h2><!-- raw HTML omitted -->🐛 Bug Fixes</h2> <ul> <li><strong>deps:</strong> Update dependency micromatch to v4.0.8 (<a href="https://github.com/tj-actions/changed-files/commit/17107f43d742d4faa6ecb0e261fb75250c89a7f8">17107f4</a>) - (renovate[bot])</li> </ul> <h2><!-- raw HTML omitted -->➕ Add</h2> <ul> <li>Added missing changes and modified dist assets. (<a href="https://github.com/tj-actions/changed-files/commit/696bea0addf7f44a8d99e728a204a3b0b8e49472">696bea0</a>) - (GitHub Action)</li> <li>Added missing changes and modified dist assets. (<a href="https://github.com/tj-actions/changed-files/commit/305db886e7f6c5d1a4515c3376074243a228b52f">305db88</a>) - (GitHub Action)</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/tj-actions/changed-files/commit/48d8f15b2aaa3d255ca5af3eba4870f807ce6b3c"><code>48d8f15</code></a> chore(deps): update peter-evans/create-pull-request action to v7.0.3</li> <li><a href="https://github.com/tj-actions/changed-files/commit/f4e06529f19b1626df5c1083eee9140820d0c7c6"><code>f4e0652</code></a> chore(deps): lock file maintenance</li> <li><a href="https://github.com/tj-actions/changed-files/commit/9b5f7d7ff59e28c77b62c2091733ea658c695293"><code>9b5f7d7</code></a> chore(deps): update dependency <code>@​types/node</code> to v22.5.5</li> <li><a href="https://github.com/tj-actions/changed-files/commit/80dc58425e90c26fbbeac2d09067f0989dcdae7f"><code>80dc584</code></a> chore(deps): update dependency <code>@​types/jest</code> to v29.5.13</li> <li><a href="https://github.com/tj-actions/changed-files/commit/f9216b6d972c29698d917e21341f2e9c6d37f97b"><code>f9216b6</code></a> chore(deps): update peter-evans/create-pull-request action to v7.0.2</li> <li><a href="https://github.com/tj-actions/changed-files/commit/fef272dc404c435b95e1afa1cc506e5082c9b6b0"><code>fef272d</code></a> chore(deps): update dependency eslint-plugin-github to v5.0.2</li> <li><a href="https://github.com/tj-actions/changed-files/commit/a236bf57ea511b6dd5450da8c6ea3988a0320142"><code>a236bf5</code></a> chore(deps): update dependency typescript to v5.6.2</li> <li><a href="https://github.com/tj-actions/changed-files/commit/0cb58dec12dc9b3638ed02bb3e7dc0ba179bd3d5"><code>0cb58de</code></a> chore(deps): lock file maintenance</li> <li><a href="https://github.com/tj-actions/changed-files/commit/44f335629614fb45bd4bd15fee8daf049cba956b"><code>44f3356</code></a> chore(deps): lock file maintenance</li> <li><a href="https://github.com/tj-actions/changed-files/commit/1d9fdda44c9da3604e9be858b3edb3e0501302af"><code>1d9fdda</code></a> chore(deps): update peter-evans/create-pull-request action to v7.0.1</li> <li>Additional commits viewable in <a href="https://github.com/tj-actions/changed-files/compare/v44...v45">compare view</a></li> </ul> </details> <br /> Updates `actions/attest-build-provenance` from 1.0.0 to 1.4.3 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/attest-build-provenance/releases">actions/attest-build-provenance's releases</a>.</em></p> <blockquote> <h2>v1.4.3</h2> <h2>What's Changed</h2> <ul> <li>Bump predicate from 1.1.2 to 1.1.3 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/226">actions/attest-build-provenance#226</a> <ul> <li>Bump <code>@​actions/attest</code> from 1.3.1 to 1.4.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/212">actions/attest-build-provenance#212</a></li> <li>Bump <code>@​actions/attest</code> from 1.4.1 to 1.4.2 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/225">actions/attest-build-provenance#225</a></li> <li>Fix bug w/ customized OIDC issuer URL for enterprise accounts (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/222">#222</a>)</li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.4.2...v1.4.3">https://github.com/actions/attest-build-provenance/compare/v1.4.2...v1.4.3</a></p> <h2>v1.4.2</h2> <h2>What's Changed</h2> <ul> <li>Bump actions/attest from 1.4.0 to 1.4.1 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/209">actions/attest-build-provenance#209</a> <ul> <li>Includes bug fix for issue with authenticated proxies (<a href="https://redirect.github.com/actions/toolkit/issues/1798">actions/toolkit#1798</a>)</li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.4.1...v1.4.2">https://github.com/actions/attest-build-provenance/compare/v1.4.1...v1.4.2</a></p> <h2>v1.4.1</h2> <h2>What's Changed</h2> <ul> <li>Update predicate action to 1.1.2 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/197">actions/attest-build-provenance#197</a> <ul> <li>Dynamic construction of oidc issuer by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/195">actions/attest-build-provenance#195</a></li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.4.0...v1.4.1">https://github.com/actions/attest-build-provenance/compare/v1.4.0...v1.4.1</a></p> <h2>v1.4.0</h2> <h2>What's Changed</h2> <ul> <li>Bump predicate action from 1.1.0 to 1.1.1 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/182">actions/attest-build-provenance#182</a> <ul> <li>Fix for JWKS proxy bug</li> </ul> </li> <li>Bump actions/attest from 1.3.3 to 1.4.0 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/183">actions/attest-build-provenance#183</a> <ul> <li>Add <code>show-summary</code> input</li> <li>Format summary output as list</li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.3.3...v1.4.0">https://github.com/actions/attest-build-provenance/compare/v1.3.3...v1.4.0</a></p> <h2>v1.3.3</h2> <h2>What's Changed</h2> <ul> <li>Bump actions/attest from 1.3.2 to 1.3.3 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/152">actions/attest-build-provenance#152</a> <ul> <li>Bugfix for properly handling glob exclusion patterns in <code>subject-path</code> input</li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.3.2...v1.3.3">https://github.com/actions/attest-build-provenance/compare/v1.3.2...v1.3.3</a></p> <h2>v1.3.2</h2> <h2>What's Changed</h2> <ul> <li>Bump actions/attest from 1.3.1 to 1.3.2 by <a href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a href="https://redirect.github.com/actions/attest-build-provenance/pull/123">actions/attest-build-provenance#123</a> <ul> <li>Increase timeout for OCI operations</li> </ul> </li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/attest-build-provenance/compare/v1.3.1...v1.3.2">https://github.com/actions/attest-build-provenance/compare/v1.3.1...v1.3.2</a></p> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/attest-build-provenance/commit/1c608d11d69870c2092266b3f9a6f3abbf17002c"><code>1c608d1</code></a> bump predicate from 1.1.2 to 1.1.3 (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/226">#226</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/f1185f1959cdaeda41a7f5a7b43cbe6b58a7a793"><code>f1185f1</code></a> bump <code>@​actions/attest</code> from 1.4.1 to 1.4.2 (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/225">#225</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/d438876305805f716474ac39821bb8e0fc2bbcf3"><code>d438876</code></a> add sigstore prober (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/224">#224</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/8f30a5c8b75bd4463fbb4ccc1d08acacb5d90ae8"><code>8f30a5c</code></a> Bump the npm-development group with 3 updates (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/218">#218</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/13f0f0dbc538ab425876cb63ebfe4b7f3d080cbd"><code>13f0f0d</code></a> Bump <code>@​actions/attest</code> from 1.3.1 to 1.4.1 (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/212">#212</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/a950611d9512c7e7e964b5561eca26a6e8a945a0"><code>a950611</code></a> Bump the npm-development group with 2 updates (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/211">#211</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/814a77831567c96580f4f1973278a53094929736"><code>814a778</code></a> Bump the npm-development group with 3 updates (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/206">#206</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/6149ea5740be74af77f260b9db67e633f6b0a9a1"><code>6149ea5</code></a> bump actions/attest from 1.4.0 to 1.4.1 (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/209">#209</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/3eb3242bd75d68179b1daa927b4b54dd729d583c"><code>3eb3242</code></a> Bump super-linter/super-linter from 6 to 7 (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/205">#205</a>)</li> <li><a href="https://github.com/actions/attest-build-provenance/commit/399bb1773848c2be739fa67b4c4a953b2ed891d8"><code>399bb17</code></a> Bump <code>@​types/node</code> from 22.2.0 to 22.4.0 in the npm-development group (<a href="https://redirect.github.com/actions/attest-build-provenance/issues/203">#203</a>)</li> <li>Additional commits viewable in <a href="https://github.com/actions/attest-build-provenance/compare/897ed5eab6ed058a474202017ada7f40bfa52940...1c608d11d69870c2092266b3f9a6f3abbf17002c">compare view</a></li> </ul> </details> <br /> Updates `ossf/scorecard-action` from 2.3.3 to 2.4.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/ossf/scorecard-action/releases">ossf/scorecard-action's releases</a>.</em></p> <blockquote> <h2>v2.4.0</h2> <h2>What's Changed</h2> <p>This update bumps the Scorecard version to the v5 release. For a complete list of changes, please refer to the <a href="https://github.com/ossf/scorecard/releases/tag/v5.0.0">v5.0.0 release notes</a>. Of special note to Scorecard Action is the Maintainer Annotation feature, which can be used to suppress some Code Scanning false positives. Alerts will not be generated for any Scorecard Check with an annotation.</p> <ul> <li>:seedling: Bump github.com/ossf/scorecard/v5 from v5.0.0-rc2 to v5.0.0 by <a href="https://github.com/spencerschrock"><code>@​spencerschrock</code></a> in <a href="https://redirect.github.com/ossf/scorecard-action/pull/1410">ossf/scorecard-action#1410</a></li> <li>:bug: lower license sarif alert threshold to 9 by <a href="https://github.com/spencerschrock"><code>@​spencerschrock</code></a> in <a href="https://redirect.github.com/ossf/scorecard-action/pull/1411">ossf/scorecard-action#1411</a></li> </ul> <h3>Documentation</h3> <ul> <li>docs: dogfooding badge by <a href="https://github.com/jkowalleck"><code>@​jkowalleck</code></a> in <a href="https://redirect.github.com/ossf/scorecard-action/pull/1399">ossf/scorecard-action#1399</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/jkowalleck"><code>@​jkowalleck</code></a> made their first contribution in <a href="https://redirect.github.com/ossf/scorecard-action/pull/1399">ossf/scorecard-action#1399</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/ossf/scorecard-action/compare/v2.3.3...v2.4.0">https://github.com/ossf/scorecard-action/compare/v2.3.3...v2.4.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/ossf/scorecard-action/commit/62b2cac7ed8198b15735ed49ab1e5cf35480ba46"><code>62b2cac</code></a> bump docker tag to v2.4.0 for release (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1414">#1414</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/c09630c42e97d04c7cd8f69735ddf0ec53f0e189"><code>c09630c</code></a> lower license score alert threshold to 9 (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1411">#1411</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/cf8594c5485256008de4ec57c936bd4a1a381a0b"><code>cf8594c</code></a> :seedling: Bump github.com/sigstore/cosign/v2 from 2.2.4 to 2.3.0 (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1413">#1413</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/de5fcb95b9d8f899bc5dc11b4e202eb6a2fd67e9"><code>de5fcb9</code></a> :seedling: Bump the github-actions group with 2 updates (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1412">#1412</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/a46b90b4caca61e2298cc4a9bd4c90d3dfe7f09d"><code>a46b90b</code></a> bump scorecard to v5.0.0 release (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1410">#1410</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/9fc518d5249b2564cbeb11d029b87d7d1ba55396"><code>9fc518d</code></a> :seedling: Bump golang in the docker-images group (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1407">#1407</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/a8eaa1b46e3fd7e003f79fd39dff99ca53bbe732"><code>a8eaa1b</code></a> :seedling: Bump the github-actions group with 2 updates (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1408">#1408</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/873d5fdf63bc863d140f57ed481e6a297324030b"><code>873d5fd</code></a> :seedling: Bump the github-actions group across 1 directory with 2 updates (#...</li> <li><a href="https://github.com/ossf/scorecard-action/commit/54cc1fe4e2c7bc69051a267c8e183497ca7d8da7"><code>54cc1fe</code></a> :seedling: Bump the docker-images group with 2 updates (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1401">#1401</a>)</li> <li><a href="https://github.com/ossf/scorecard-action/commit/82bcb91c5d3f72aaf692a0d3e399c425a29ac512"><code>82bcb91</code></a> :seedling: Bump golang.org/x/net from 0.26.0 to 0.27.0 (<a href="https://redirect.github.com/ossf/scorecard-action/issues/1400">#1400</a>)</li> <li>Additional commits viewable in <a href="https://github.com/ossf/scorecard-action/compare/dc50aa9510b46c811795eb24b2f1ba02a914e534...62b2cac7ed8198b15735ed49ab1e5cf35480ba46">compare view</a></li> </ul> </details> <br /> Updates `github/codeql-action` from 3.25.11 to 3.26.10 <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/github/codeql-action/blob/main/CHANGELOG.md">github/codeql-action's changelog</a>.</em></p> <blockquote> <h1>CodeQL Action Changelog</h1> <p>See the <a href="https://github.com/github/codeql-action/releases">releases page</a> for the relevant changes to the CodeQL CLI and language packs.</p> <p>Note that the only difference between <code>v2</code> and <code>v3</code> of the CodeQL Action is the node version they support, with <code>v3</code> running on node 20 while we continue to release <code>v2</code> to support running on node 16. For example <code>3.22.11</code> was the first <code>v3</code> release and is functionally identical to <code>2.22.11</code>. This approach ensures an easy way to track exactly which features are included in different versions, indicated by the minor and patch version numbers.</p> <h2>[UNRELEASED]</h2> <p>No user facing changes.</p> <h2>3.26.10 - 30 Sep 2024</h2> <ul> <li>We are rolling out a feature in September/October 2024 that sets up CodeQL using a bundle compressed with <a href="http://facebook.github.io/zstd/">Zstandard</a>. Our aim is to improve the performance of setting up CodeQL. <a href="https://redirect.github.com/github/codeql-action/pull/2502">#2502</a></li> </ul> <h2>3.26.9 - 24 Sep 2024</h2> <p>No user facing changes.</p> <h2>3.26.8 - 19 Sep 2024</h2> <ul> <li>Update default CodeQL bundle version to 2.19.0. <a href="https://redirect.github.com/github/codeql-action/pull/2483">#2483</a></li> </ul> <h2>3.26.7 - 13 Sep 2024</h2> <ul> <li>Update default CodeQL bundle version to 2.18.4. <a href="https://redirect.github.com/github/codeql-action/pull/2471">#2471</a></li> </ul> <h2>3.26.6 - 29 Aug 2024</h2> <ul> <li>Update default CodeQL bundle version to 2.18.3. <a href="https://redirect.github.com/github/codeql-action/pull/2449">#2449</a></li> </ul> <h2>3.26.5 - 23 Aug 2024</h2> <ul> <li>Fix an issue where the <code>csrutil</code> system call used for telemetry would fail on MacOS ARM machines with System Integrity Protection disabled. <a href="https://redirect.github.com/github/codeql-action/pull/2441">#2441</a></li> </ul> <h2>3.26.4 - 21 Aug 2024</h2> <ul> <li><em>Deprecation:</em> The <code>add-snippets</code> input on the <code>analyze</code> Action is deprecated and will be removed in the first release in August 2025. <a href="https://redirect.github.com/github/codeql-action/pull/2436">#2436</a></li> <li>Fix an issue where the disk usage system call used for telemetry would fail on MacOS ARM machines with System Integrity Protection disabled, and then surface a warning. The system call is now disabled for these machines. <a href="https://redirect.github.com/github/codeql-action/pull/2434">#2434</a></li> </ul> <h2>3.26.3 - 19 Aug 2024</h2> <ul> <li>Fix an issue where the CodeQL Action could not write diagnostic messages on Windows. This issue did not impact analysis quality. <a href="https://redirect.github.com/github/codeql-action/pull/2430">#2430</a></li> </ul> <h2>3.26.2 - 14 Aug 2024</h2> <ul> <li>Update default CodeQL bundle version to 2.18.2. <a href="https://redirect.github.com/github/codeql-action/pull/2417">#2417</a></li> </ul> <h2>3.26.1 - 13 Aug 2024</h2> <p>No user facing changes.</p> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/github/codeql-action/commit/e2b3eafc8d227b0241d48be5f425d47c2d750a13"><code>e2b3eaf</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2507">#2507</a> from github/update-v3.26.10-2617ff2d3</li> <li><a href="https://github.com/github/codeql-action/commit/7dbbf6d5424ee9117470bd89a28b9b992c935ff4"><code>7dbbf6d</code></a> Update changelog for v3.26.10</li> <li><a href="https://github.com/github/codeql-action/commit/2617ff2d3f2bf8dd95abadcd289352a4023a4758"><code>2617ff2</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2502">#2502</a> from github/henrymercer/zstd-experiment</li> <li><a href="https://github.com/github/codeql-action/commit/46e0c78da9edf293aeab3d4d62cf1a7b7534c6a0"><code>46e0c78</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2504">#2504</a> from github/mergeback/v3.26.9-to-main-461ef6c7</li> <li><a href="https://github.com/github/codeql-action/commit/da7be78a1ea4e90acbaa595fcc5606082dba4591"><code>da7be78</code></a> Update checked-in dependencies</li> <li><a href="https://github.com/github/codeql-action/commit/ae1c6a2b12389a4d40a3383d49e14518da35a78e"><code>ae1c6a2</code></a> Update changelog and version after v3.26.9</li> <li><a href="https://github.com/github/codeql-action/commit/461ef6c76dfe95d5c364de2f431ddbd31a417628"><code>461ef6c</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2503">#2503</a> from github/update-v3.26.9-f861efb2b</li> <li><a href="https://github.com/github/codeql-action/commit/00b1146c45021691af6c1c3c45e04d65d3c3f1e8"><code>00b1146</code></a> Update changelog for v3.26.9</li> <li><a href="https://github.com/github/codeql-action/commit/f861efb2b37e018668a6943ba7b408a7083627cc"><code>f861efb</code></a> Merge pull request <a href="https://redirect.github.com/github/codeql-action/issues/2498">#2498</a> from github/dependabot/npm_and_yarn/npm-9874b37b58</li> <li><a href="https://github.com/github/codeql-action/commit/6b2f7e7c28404627554332e4fe1880c5be10639c"><code>6b2f7e7</code></a> Run PR checks using JS only</li> <li>Additional commits viewable in <a href="https://github.com/github/codeql-action/compare/b611370bb5703a7efb587f9d136a52ea24c5c38c...e2b3eafc8d227b0241d48be5f425d47c2d750a13">compare view</a></li> </ul> </details> <br /> Updates `softprops/action-gh-release` from 2.0.6 to 2.0.8 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/softprops/action-gh-release/releases">softprops/action-gh-release's releases</a>.</em></p> <blockquote> <h2>v2.0.8</h2> <!-- raw HTML omitted --> <h2>What's Changed</h2> <h3>Other Changes 🔄</h3> <ul> <li>chore(deps): bump prettier from 2.8.0 to 3.3.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/480">softprops/action-gh-release#480</a></li> <li>chore(deps): bump <code>@​types/node</code> from 20.14.9 to 20.14.11 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/483">softprops/action-gh-release#483</a></li> <li>chore(deps): bump <code>@​octokit/plugin-throttling</code> from 9.3.0 to 9.3.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/484">softprops/action-gh-release#484</a></li> <li>chore(deps): bump glob from 10.4.2 to 11.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/477">softprops/action-gh-release#477</a></li> <li>refactor: write jest config in ts by <a href="https://github.com/chenrui333"><code>@​chenrui333</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/485">softprops/action-gh-release#485</a></li> <li>chore(deps): bump <code>@​actions/github</code> from 5.1.1 to 6.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/470">softprops/action-gh-release#470</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/softprops/action-gh-release/compare/v2...v2.0.8">https://github.com/softprops/action-gh-release/compare/v2...v2.0.8</a></p> <h2>v2.0.7</h2> <!-- raw HTML omitted --> <h2>What's Changed</h2> <h3>Bug fixes 🐛</h3> <ul> <li>Fix missing update release body by <a href="https://github.com/FirelightFlagboy"><code>@​FirelightFlagboy</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/365">softprops/action-gh-release#365</a></li> </ul> <h3>Other Changes 🔄</h3> <ul> <li>Bump <code>@​octokit/plugin-retry</code> from 4.0.3 to 7.1.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/443">softprops/action-gh-release#443</a></li> <li>Bump typescript from 4.9.5 to 5.5.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/467">softprops/action-gh-release#467</a></li> <li>Bump <code>@​types/node</code> from 20.14.6 to 20.14.8 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/469">softprops/action-gh-release#469</a></li> <li>Bump <code>@​types/node</code> from 20.14.8 to 20.14.9 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/473">softprops/action-gh-release#473</a></li> <li>Bump typescript from 5.5.2 to 5.5.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/472">softprops/action-gh-release#472</a></li> <li>Bump ts-jest from 29.1.5 to 29.2.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/479">softprops/action-gh-release#479</a></li> <li>docs: document that existing releases are updated by <a href="https://github.com/jvanbruegge"><code>@​jvanbruegge</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/474">softprops/action-gh-release#474</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/jvanbruegge"><code>@​jvanbruegge</code></a> made their first contribution in <a href="https://redirect.github.com/softprops/action-gh-release/pull/474">softprops/action-gh-release#474</a></li> <li><a href="https://github.com/FirelightFlagboy"><code>@​FirelightFlagboy</code></a> made their first contribution in <a href="https://redirect.github.com/softprops/action-gh-release/pull/365">softprops/action-gh-release#365</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/softprops/action-gh-release/compare/v2.0.6...v2.0.7">https://github.com/softprops/action-gh-release/compare/v2.0.6...v2.0.7</a></p> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md">softprops/action-gh-release's changelog</a>.</em></p> <blockquote> <h2>2.0.8</h2> <h3>Other Changes 🔄</h3> <ul> <li>chore(deps): bump prettier from 2.8.0 to 3.3.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/480">softprops/action-gh-release#480</a></li> <li>chore(deps): bump <code>@​types/node</code> from 20.14.9 to 20.14.11 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/483">softprops/action-gh-release#483</a></li> <li>chore(deps): bump <code>@​octokit/plugin-throttling</code> from 9.3.0 to 9.3.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/484">softprops/action-gh-release#484</a></li> <li>chore(deps): bump glob from 10.4.2 to 11.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/477">softprops/action-gh-release#477</a></li> <li>refactor: write jest config in ts by <a href="https://github.com/chenrui333"><code>@​chenrui333</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/485">softprops/action-gh-release#485</a></li> <li>chore(deps): bump <code>@​actions/github</code> from 5.1.1 to 6.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/470">softprops/action-gh-release#470</a></li> </ul> <h2>2.0.7</h2> <h3>Bug fixes 🐛</h3> <ul> <li>Fix missing update release body by <a href="https://github.com/FirelightFlagboy"><code>@​FirelightFlagboy</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/365">softprops/action-gh-release#365</a></li> </ul> <h3>Other Changes 🔄</h3> <ul> <li>Bump <code>@​octokit/plugin-retry</code> from 4.0.3 to 7.1.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/443">softprops/action-gh-release#443</a></li> <li>Bump typescript from 4.9.5 to 5.5.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/467">softprops/action-gh-release#467</a></li> <li>Bump <code>@​types/node</code> from 20.14.6 to 20.14.8 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/469">softprops/action-gh-release#469</a></li> <li>Bump <code>@​types/node</code> from 20.14.8 to 20.14.9 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/473">softprops/action-gh-release#473</a></li> <li>Bump typescript from 5.5.2 to 5.5.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/472">softprops/action-gh-release#472</a></li> <li>Bump ts-jest from 29.1.5 to 29.2.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/479">softprops/action-gh-release#479</a></li> <li>docs: document that existing releases are updated by <a href="https://github.com/jvanbruegge"><code>@​jvanbruegge</code></a> in <a href="https://redirect.github.com/softprops/action-gh-release/pull/474">softprops/action-gh-release#474</a></li> </ul> <h2>2.0.6</h2> <ul> <li>maintenance release with updated dependencies</li> </ul> <h2>2.0.5</h2> <ul> <li>Factor in file names with spaces when upserting files <a href="https://redirect.github.com/softprops/action-gh-release/pull/446">#446</a> via <a href="https://github.com/MystiPanda"><code>@​MystiPanda</code></a></li> <li>Improvements to error handling <a href="https://redirect.github.com/softprops/action-gh-release/pull/449">#449</a> via <a href="https://github.com/till"><code>@​till</code></a></li> </ul> <h2>2.0.4</h2> <ul> <li>Minor follow up to <a href="https://redirect.github.com/softprops/action-gh-release/pull/417">#417</a>. <a href="https://redirect.github.com/softprops/action-gh-release/pull/425">#425</a></li> </ul> <h2>2.0.3</h2> <ul> <li>Declare <code>make_latest</code> as an input field in <code>action.yml</code> <a href="https://redirect.github.com/softprops/action-gh-release/pull/419">#419</a></li> </ul> <h2>2.0.2</h2> <ul> <li>Revisit approach to <a href="https://redirect.github.com/softprops/action-gh-release/pull/384">#384</a> making unresolved pattern failures opt-in <a href="https://redirect.github.com/softprops/action-gh-release/pull/417">#417</a></li> </ul> <h2>2.0.1</h2> <ul> <li>Add support for make_latest property <a href="https://redirect.github.com/softprops/action-gh-release/pull/304">#304</a> via <a href="https://github.com/samueljseay"><code>@​samueljseay</code></a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/softprops/action-gh-release/commit/c062e08bd532815e2082a85e87e3ef29c3e6d191"><code>c062e08</code></a> release 2.0.8</li> <li><a href="https://github.com/softprops/action-gh-release/commit/380635c4add9f3686733a9aee43912f1f16604d3"><code>380635c</code></a> chore(deps): bump <code>@​actions/github</code> from 5.1.1 to 6.0.0 (<a href="https://redirect.github.com/softprops/action-gh-release/issues/470">#470</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/20adb4259cc911c7d3ef4d10da2f13ca8ca2834c"><code>20adb42</code></a> refactor: write jest config in ts (<a href="https://redirect.github.com/softprops/action-gh-release/issues/485">#485</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/f808f15ba8f7c201fa6f1f90fd6bb18127b9ddb0"><code>f808f15</code></a> chore(deps): bump glob from 10.4.2 to 11.0.0 (<a href="https://redirect.github.com/softprops/action-gh-release/issues/477">#477</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/61452410498f83c1b46c544ed23ed73f060138c4"><code>6145241</code></a> chore(deps): bump <code>@​octokit/plugin-throttling</code> from 9.3.0 to 9.3.1 (<a href="https://redirect.github.com/softprops/action-gh-release/issues/484">#484</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/4ac522d0bd78af302662418619bc832457bdd0b9"><code>4ac522d</code></a> chore(deps): bump <code>@​types/node</code> from 20.14.9 to 20.14.11 (<a href="https://redirect.github.com/softprops/action-gh-release/issues/483">#483</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/25849b132669d3a5d6adf884362acdb69262f262"><code>25849b1</code></a> chore(deps): bump prettier from 2.8.0 to 3.3.3 (<a href="https://redirect.github.com/softprops/action-gh-release/issues/480">#480</a>)</li> <li><a href="https://github.com/softprops/action-gh-release/commit/62060560e321d3dcfb1ae338d2512fbd98ab3f24"><code>6206056</code></a> chore: update dependabot commit msg</li> <li><a href="https://github.com/softprops/action-gh-release/commit/39aadf190d216edf1be66954a199b7c8983f1d09"><code>39aadf1</code></a> chore: run <code>frizbee actions .github/workflows/</code></li> <li><a href="https://github.com/softprops/action-gh-release/commit/6f3ab653231297c6e8410125a22784df62214f4e"><code>6f3ab65</code></a> chore: update dist file</li> <li>Additional commits viewable in <a href="https://github.com/softprops/action-gh-release/compare/a74c6b72af54cfa997e81df42d94703d6313a2d0...c062e08bd532815e2082a85e87e3ef29c3e6d191">compare view</a></li> </ul> </details> <br /> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore <dependency name> major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore <dependency name> minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore <dependency name>` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore <dependency name>` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore <dependency name> <ignore condition>` will remove the ignore condition of the specified dependency and ignore conditions </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent ef22a28 commit 419bfe4

File tree

6 files changed

+7
-7
lines changed

6 files changed

+7
-7
lines changed

.github/workflows/docs.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -65,7 +65,7 @@ jobs:
6565
fetch-depth: 1
6666
- name: Get subprojects that have doc changes
6767
id: docs-changed-subprojects
68-
uses: tj-actions/changed-files@v44
68+
uses: tj-actions/changed-files@v45
6969
with:
7070
files_yaml: |
7171
llvm:

.github/workflows/pr-code-format.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ jobs:
3232

3333
- name: Get changed files
3434
id: changed-files
35-
uses: tj-actions/changed-files@v44
35+
uses: tj-actions/changed-files@v45
3636
with:
3737
separator: ","
3838
skip_initial_fetch: true

.github/workflows/release-binaries.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -428,7 +428,7 @@ jobs:
428428

429429
- name: Attest Build Provenance
430430
id: provenance
431-
uses: actions/attest-build-provenance@897ed5eab6ed058a474202017ada7f40bfa52940 # v1.0.0
431+
uses: actions/attest-build-provenance@1c608d11d69870c2092266b3f9a6f3abbf17002c # v1.4.3
432432
with:
433433
subject-path: ${{ needs.prepare.outputs.release-binary-filename }}
434434

.github/workflows/release-sources.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -92,7 +92,7 @@ jobs:
9292
- name: Attest Build Provenance
9393
if: github.event_name != 'pull_request'
9494
id: provenance
95-
uses: actions/attest-build-provenance@897ed5eab6ed058a474202017ada7f40bfa52940 # v1.0.0
95+
uses: actions/attest-build-provenance@1c608d11d69870c2092266b3f9a6f3abbf17002c # v1.4.3
9696
with:
9797
subject-path: "*.xz"
9898
- if: github.event_name != 'pull_request'

.github/workflows/scorecard.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@ jobs:
3636
persist-credentials: false
3737

3838
- name: "Run analysis"
39-
uses: ossf/scorecard-action@dc50aa9510b46c811795eb24b2f1ba02a914e534 # v2.3.3
39+
uses: ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
4040
with:
4141
results_file: results.sarif
4242
results_format: sarif
@@ -57,6 +57,6 @@ jobs:
5757

5858
# Upload the results to GitHub's code scanning dashboard.
5959
- name: "Upload to code-scanning"
60-
uses: github/codeql-action/upload-sarif@b611370bb5703a7efb587f9d136a52ea24c5c38c # v3.25.11
60+
uses: github/codeql-action/upload-sarif@e2b3eafc8d227b0241d48be5f425d47c2d750a13 # v3.26.10
6161
with:
6262
sarif_file: results.sarif

.github/workflows/sycl-nightly.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -198,7 +198,7 @@ jobs:
198198
echo "TAG=$(date +'%Y-%m-%d')-${GITHUB_SHA::7}" >> "$GITHUB_OUTPUT"
199199
fi
200200
- name: Upload binaries
201-
uses: softprops/action-gh-release@a74c6b72af54cfa997e81df42d94703d6313a2d0
201+
uses: softprops/action-gh-release@c062e08bd532815e2082a85e87e3ef29c3e6d191
202202
with:
203203
files: |
204204
sycl_linux.tar.gz

0 commit comments

Comments
 (0)