chore(deps): bump actions/upload-pages-artifact from 3 to 5 - #593
chore(deps): bump actions/upload-pages-artifact from 3 to 5#593dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [actions/upload-pages-artifact](https://github.com/actions/upload-pages-artifact) from 3 to 5. - [Release notes](https://github.com/actions/upload-pages-artifact/releases) - [Commits](actions/upload-pages-artifact@v3...v5) --- updated-dependencies: - dependency-name: actions/upload-pages-artifact dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
Supersedes four separate Dependabot PRs (#591, #592, #593, #608) that each touched .github/workflows/pages.yml and would have cascade- conflicted on sequential merge (configure-pages and upload-pages-artifact share a diff hunk). Bumping them in one commit avoids 3-4 rounds of @dependabot rebase and fixes a checkout version skew in the same pass. Changes: pages.yml: actions/checkout v4 -> v7 (#608) actions/configure-pages v5 -> v6 (#592) actions/upload-pages-artifact v3 -> v5 (#593) actions/deploy-pages v4 -> v5 (#591) ci.yml + release.yml: actions/checkout v6 -> v7 The checkout bump in ci.yml/release.yml closes a version skew: PR #590 (merged earlier) bumped those two workflows v4 -> v6 but left pages.yml on v4. Rather than land pages.yml on v7 while the others stayed v6, all three are aligned to v7. Compatibility note: upload-pages-artifact v3 -> v5 crosses the artifact-backend change (same generation as actions/upload-artifact v4). This is compatible only when deploy-pages moves up in lockstep, which is exactly why the Pages trio is bumped together here rather than piecemeal. The ci.yml 'ci' check does NOT exercise pages.yml (it only runs on push to main touching docs/taskplane-overview/**), so this PR's green CI does not validate the Pages deploy. That is verified separately via workflow_dispatch after merge. Dependabot PRs #591, #592, #593, #608 will be closed as superseded.
|
Superseded by #609, which bumped all four GitHub Actions in a single commit to avoid cascade-conflicts (these four all edit Verified post-merge: the Pages deploy was re-run via |
|
Looks like actions/upload-pages-artifact is up-to-date now, so this is no longer needed. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps actions/upload-pages-artifact from 3 to 5.
Release notes
Sourced from actions/upload-pages-artifact's releases.
Commits
fc324d3Merge pull request #139 from Tom-van-Woudenberg/patch-1fe9d4b7Merge branch 'main' into patch-10ca1617Merge pull request #137 from jonchurch/include-hidden-files57f0e84Update action.yml4a90348v7 --> hash56f665aUpdate upload-artifact action to version 7f7615f5Addinclude-hidden-filesinput7b1f4a7Merge pull request #127 from heavymachinery/pin-sha4cc19c7Pinactions/upload-artifactto SHA2d163beMerge pull request #107 from KittyChiu/mainDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)