Skip to content

Commit e21d197

Browse files
authored
Merge pull request #1972 from kube-logging/renovate/all-safe
chore(deps): update CI deps
2 parents 6535f9d + 909be61 commit e21d197

File tree

6 files changed

+54
-54
lines changed

6 files changed

+54
-54
lines changed

.github/workflows/artifacts.yaml

Lines changed: 17 additions & 17 deletions
Original file line numberDiff line numberDiff line change
@@ -71,13 +71,13 @@ jobs:
7171
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
7272

7373
- name: Set up QEMU
74-
uses: docker/setup-qemu-action@53851d14592bedcffcf25ea515637cff71ef929a # v3.3.0
74+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3.6.0
7575

7676
- name: Set up Docker Buildx
77-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
77+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
7878

7979
- name: Set up Cosign
80-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
80+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
8181
if: ${{ inputs.publish }}
8282

8383
- name: Set image name
@@ -86,7 +86,7 @@ jobs:
8686

8787
- name: Gather build metadata
8888
id: meta
89-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
89+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
9090
with:
9191
images: ${{ steps.image-name.outputs.value }}
9292
flavor: |
@@ -112,7 +112,7 @@ jobs:
112112

113113
- name: Build and push image
114114
id: build
115-
uses: docker/build-push-action@ca877d9245402d1537745e0e356eab47c3520991 # v6.13.0
115+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15.0
116116
with:
117117
context: .
118118
platforms: linux/amd64,linux/arm64
@@ -206,14 +206,14 @@ jobs:
206206
output: trivy-results.sarif
207207

208208
- name: Upload Trivy scan results as artifact
209-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
209+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
210210
with:
211211
name: "[${{ github.job }}] Trivy scan results"
212212
path: trivy-results.sarif
213213
retention-days: 5
214214

215215
- name: Upload Trivy scan results to GitHub Security tab
216-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
216+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
217217
with:
218218
sarif_file: trivy-results.sarif
219219

@@ -237,12 +237,12 @@ jobs:
237237
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
238238

239239
- name: Set up Helm
240-
uses: azure/setup-helm@fe7b79cd5ee1e45176fcad797de68ecaf3ca4814 # v4.2.0
240+
uses: azure/setup-helm@b9e51907a09c216f16ebe8536097933489208112 # v4.3.0
241241
with:
242242
version: v3.13.3
243243

244244
- name: Set up Cosign
245-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
245+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
246246
if: inputs.publish && inputs.release
247247

248248
- name: Set chart name
@@ -278,7 +278,7 @@ jobs:
278278
echo "package=${{ steps.chart-name.outputs.value }}-${{ steps.version.outputs.value }}.tgz" >> "$GITHUB_OUTPUT"
279279
280280
- name: Upload chart as artifact
281-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
281+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
282282
with:
283283
name: "[${{ github.job }}] Helm chart"
284284
path: ${{ steps.build.outputs.package }}
@@ -362,14 +362,14 @@ jobs:
362362
output: trivy-results.sarif
363363

364364
- name: Upload Trivy scan results as artifact
365-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
365+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
366366
with:
367367
name: "[${{ github.job }}] Trivy scan results"
368368
path: trivy-results.sarif
369369
retention-days: 5
370370

371371
- name: Upload Trivy scan results to GitHub Security tab
372-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
372+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
373373
with:
374374
sarif_file: trivy-results.sarif
375375

@@ -398,12 +398,12 @@ jobs:
398398
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
399399

400400
- name: Set up Helm
401-
uses: azure/setup-helm@fe7b79cd5ee1e45176fcad797de68ecaf3ca4814 # v4.2.0
401+
uses: azure/setup-helm@b9e51907a09c216f16ebe8536097933489208112 # v4.3.0
402402
with:
403403
version: v3.13.3
404404

405405
- name: Set up Cosign
406-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
406+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
407407
if: inputs.publish && inputs.release
408408

409409
- name: Set chart name
@@ -436,7 +436,7 @@ jobs:
436436
echo "package=${{ github.workspace }}/${{ env.subchartName }}-${{ steps.version.outputs.value }}.tgz" >> "$GITHUB_OUTPUT"
437437
438438
- name: Upload chart as artifact
439-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
439+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
440440
with:
441441
name: "[${{ github.job }}] Helm chart"
442442
path: ${{ steps.build.outputs.package }}
@@ -486,13 +486,13 @@ jobs:
486486
output: trivy-results.sarif
487487

488488
- name: Upload Trivy scan results as artifact
489-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
489+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
490490
with:
491491
name: "[${{ github.job }}] Trivy scan results"
492492
path: trivy-results.sarif
493493
retention-days: 5
494494

495495
- name: Upload Trivy scan results to GitHub Security tab
496-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
496+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
497497
with:
498498
sarif_file: trivy-results.sarif

.github/workflows/ci.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@ jobs:
3131
run: make generate-test-coverage
3232

3333
- name: Test Coverage
34-
uses: vladopajic/go-test-coverage@604860ea57b67a2351b4b78071943beecb11ac17 # v2.11.4
34+
uses: vladopajic/go-test-coverage@f5435e92b0a4496013d599a34389f4fbd9985a01 # v2.12.1
3535
with:
3636
config: ./.testcoverage.yml
3737

@@ -67,7 +67,7 @@ jobs:
6767
go-version-file: '.go-version'
6868

6969
- name: Cache licenses
70-
uses: actions/cache@1bd1e32a3bdc45362d1e726936510720a7c30a57 # v4.2.0
70+
uses: actions/cache@d4323d4df104b026a6aa633fdb11d772146be0bf # v4.2.2
7171
with:
7272
key: licensei-v2-${{ hashFiles('go.sum') }}
7373
path: |

.github/workflows/config-reloader.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -34,7 +34,7 @@ jobs:
3434
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
3535

3636
- name: Set up Cosign
37-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
37+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
3838
if: ${{ inputs.publish }}
3939

4040
- name: Set image name
@@ -43,7 +43,7 @@ jobs:
4343

4444
- name: Gather build metadata
4545
id: meta
46-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
46+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
4747
with:
4848
images: ${{ steps.image-name.outputs.value }}
4949
flavor: |
@@ -123,13 +123,13 @@ jobs:
123123
output: trivy-results.sarif
124124

125125
- name: Upload Trivy scan results as artifact
126-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
126+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
127127
with:
128128
name: "[${{ github.job }}] Trivy scan results"
129129
path: trivy-results.sarif
130130
retention-days: 5
131131

132132
- name: Upload Trivy scan results to GitHub Security tab
133-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
133+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
134134
with:
135135
sarif_file: trivy-results.sarif

.github/workflows/e2e.yaml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -43,10 +43,10 @@ jobs:
4343
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
4444

4545
- name: Set up Docker Buildx
46-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
46+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
4747

4848
- name: Build and export ${{ matrix.image }}-image
49-
uses: docker/build-push-action@ca877d9245402d1537745e0e356eab47c3520991 # v6.13.0
49+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15.0
5050
with:
5151
context: ${{ matrix.context }}
5252
tags: ${{ matrix.tags }}
@@ -57,7 +57,7 @@ jobs:
5757
outputs: type=docker,dest=/tmp/${{ matrix.output }}
5858

5959
- name: Upload artifact
60-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
60+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
6161
with:
6262
name: e2e-${{ matrix.image }}
6363
path: /tmp/${{ matrix.output }}
@@ -77,10 +77,10 @@ jobs:
7777
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
7878

7979
- name: Set up Docker Buildx
80-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
80+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
8181

8282
- name: Download artifact
83-
uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 # v4.1.8
83+
uses: actions/download-artifact@cc203385981b70ca67e1cc392babf9cc229d5806 # v4.1.9
8484
with:
8585
pattern: e2e-*
8686
path: /tmp
@@ -117,7 +117,7 @@ jobs:
117117

118118
- name: Archive Test Results
119119
if: always()
120-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
120+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
121121
with:
122122
name: go-e2e-test-cluster-logs
123123
path: build/_test
@@ -134,10 +134,10 @@ jobs:
134134

135135
steps:
136136
- name: Set up Docker Buildx
137-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
137+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
138138

139139
- name: Download artifact
140-
uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 # v4.1.8
140+
uses: actions/download-artifact@cc203385981b70ca67e1cc392babf9cc229d5806 # v4.1.9
141141
with:
142142
pattern: e2e-*
143143
path: /tmp
@@ -190,7 +190,7 @@ jobs:
190190
191191
- name: Archive Test Results
192192
if: always()
193-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
193+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
194194
with:
195195
name: script-e2e-test-cluster-logs-${{ matrix.kube }}
196196
path: build/_test

.github/workflows/fluentd-images.yaml

Lines changed: 18 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -84,10 +84,10 @@ jobs:
8484
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
8585

8686
- name: Set up QEMU
87-
uses: docker/setup-qemu-action@53851d14592bedcffcf25ea515637cff71ef929a # v3.3.0
87+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3.6.0
8888

8989
- name: Set up Docker Buildx
90-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
90+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
9191

9292
- name: Set image name
9393
id: image-name
@@ -100,7 +100,7 @@ jobs:
100100
101101
- name: Gather build metadata
102102
id: meta
103-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
103+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
104104
with:
105105
images: ${{ steps.image-name.outputs.value }}
106106
flavor: |
@@ -118,7 +118,7 @@ jobs:
118118
119119
- name: Build and push fluentd-${{ matrix.image-type }}-${{ matrix.platform }} image
120120
id: build
121-
uses: docker/build-push-action@ca877d9245402d1537745e0e356eab47c3520991 # v6.13.0
121+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15.0
122122
with:
123123
context: images/fluentd
124124
platforms: ${{ matrix.platform }}
@@ -144,14 +144,14 @@ jobs:
144144
output: trivy-results.sarif
145145

146146
- name: Upload Trivy scan results as artifact
147-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
147+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
148148
with:
149149
name: "[${{ github.job }}-${{ matrix.image-type }}-${{ env.PLATFORM }}] Trivy scan results"
150150
path: trivy-results.sarif
151151
retention-days: 5
152152

153153
- name: Upload Trivy scan results to GitHub Security tab
154-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
154+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
155155
with:
156156
sarif_file: trivy-results.sarif
157157

@@ -196,21 +196,21 @@ jobs:
196196
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
197197

198198
- name: Set up QEMU
199-
uses: docker/setup-qemu-action@53851d14592bedcffcf25ea515637cff71ef929a # v3.3.0
199+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3.6.0
200200

201201
- name: Set up Docker Buildx
202-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
202+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
203203

204204
- name: Set up Cosign
205-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
205+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
206206

207207
- name: Set image name
208208
id: image-name
209209
run: echo "value=ghcr.io/${{ github.repository }}/fluentd" >> "$GITHUB_OUTPUT"
210210

211211
- name: Gather build metadata
212212
id: meta
213-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
213+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
214214
with:
215215
images: ${{ steps.image-name.outputs.value }}
216216
labels: |
@@ -228,7 +228,7 @@ jobs:
228228

229229
- name: Build and push fluentd-${{ matrix.image-type }}-${{ matrix.platform }} image
230230
id: build
231-
uses: docker/build-push-action@ca877d9245402d1537745e0e356eab47c3520991 # v6.13.0
231+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15.0
232232
with:
233233
context: images/fluentd
234234
platforms: ${{ matrix.platform }}
@@ -248,7 +248,7 @@ jobs:
248248
echo "PLATFORM=${platform//\//-}" >> $GITHUB_ENV
249249
250250
- name: Upload digest
251-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
251+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
252252
with:
253253
name: digests-${{ matrix.image-type }}-${{ env.PLATFORM }}
254254
path: /tmp/digests/*
@@ -299,10 +299,10 @@ jobs:
299299

300300
steps:
301301
- name: Set up Docker Buildx
302-
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0
302+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
303303

304304
- name: Set up Cosign
305-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
305+
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
306306

307307
- name: Login to GitHub Container Registry
308308
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
@@ -312,15 +312,15 @@ jobs:
312312
password: ${{ github.token }}
313313

314314
- name: Download digests
315-
uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 # v4.1.8
315+
uses: actions/download-artifact@cc203385981b70ca67e1cc392babf9cc229d5806 # v4.1.9
316316
with:
317317
path: /tmp/digests
318318
pattern: digests-${{ matrix.image-type }}-*
319319
merge-multiple: true
320320

321321
- name: Gather build metadata
322322
id: meta
323-
uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1
323+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
324324
with:
325325
images: ${{ needs.fluentd-image-push.outputs.name }}
326326
flavor: |
@@ -387,13 +387,13 @@ jobs:
387387
output: trivy-results.sarif
388388

389389
- name: Upload Trivy scan results as artifact
390-
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
390+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
391391
with:
392392
name: "[${{ github.job }}-${{ matrix.image-type }}] Trivy scan results"
393393
path: trivy-results.sarif
394394
retention-days: 5
395395

396396
- name: Upload Trivy scan results to GitHub Security tab
397-
uses: github/codeql-action/upload-sarif@dd746615b3b9d728a6a37ca2045b68ca76d4841a # v3.28.8
397+
uses: github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
398398
with:
399399
sarif_file: trivy-results.sarif

0 commit comments

Comments
 (0)