Conversation
dbfd659 to
f48ebca
Compare
f48ebca to
1e44c56
Compare
Signed-off-by: Renovate Bot <bot@renovateapp.com>
1e44c56 to
3bf0d76
Compare
prisis
pushed a commit
that referenced
this pull request
Mar 17, 2026
…2026-03-17) ### Bug Fixes * **deps:** update anolilab/workflows digest to 063d79a ([#345](#345)) ([64ac232](64ac232)) * **deps:** update commitlint monorepo to ^20.4.4 (patch) ([#346](#346)) ([61b2e64](61b2e64)) * **deps:** update dependency conventional-changelog-conventionalcommits to v9.3.0 ([#340](#340)) ([41ebeec](41ebeec)) * **deps:** update github-actions ([#337](#337)) ([8b41ff1](8b41ff1)) * **deps:** update github-actions ([#342](#342)) ([249297b](249297b)) * **deps:** update minor updates ([#321](#321)) ([8df4ef1](8df4ef1)) * **deps:** update minor updates (minor) ([#339](#339)) ([6e73117](6e73117)) * **deps:** update minor updates (minor) ([#343](#343)) ([063d79a](063d79a)) * **deps:** update patch updates ([#335](#335)) ([0f28eaf](0f28eaf)) * **deps:** update patch updates (patch) ([#336](#336)) ([03af722](03af722)) ### Miscellaneous Chores * **deps:** update dependency @anolilab/lint-staged-config to v6 ([#332](#332)) ([71d2bd1](71d2bd1)) * **deps:** update dependency brace-expansion@>&[#x3d](https://github.com/anolilab/workflows/issues/x3d);1.0.0 <&[#x3d](https://github.com/anolilab/workflows/issues/x3d);1.1.11 to v5 ([#333](#333)) ([59c15dc](59c15dc)) * **deps:** update dependency undici@<6.23.0 to v7 ([#334](#334)) ([e71f5d1](e71f5d1)) ### Continuous Integration * **deps:** update actions/upload-artifact action to v7 ([#338](#338)) ([d0923af](d0923af)) * **deps:** update crazy-max/ghaction-github-labeler action to v6 ([#341](#341)) ([6824100](6824100)) * **deps:** update marocchino/sticky-pull-request-comment action to v3 ([#344](#344)) ([eddbaf2](eddbaf2))
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v4.8.3→v4.9.0v6.2.0→v6.3.0v4.32.4→v4.32.6v2.14.2→v2.15.1Release Notes
actions/dependency-review-action (actions/dependency-review-action)
v4.9.0: Dependency Review Action 4.9.0Compare Source
This feature release contains a couple of notable changes:
show_patched_versionswhich will add a column to the output, showing the fix version of each vulnerable dependency. Thanks @felickz!allow-package-dependencylists, including case (in)sensitivity and url-encoded namespaces Thanks @juxtin!What's Changed
Patched VersiontoVulnerabilitiessummary by @felickz in #1045New Contributors
Full Changelog: actions/dependency-review-action@v4.8.3...v4.9.0
actions/setup-node (actions/setup-node)
v6.3.0Compare Source
What's Changed
Enhancements:
devEnginesfield by @susnux in #1283Dependency updates:
Bug fixes:
New Contributors
Full Changelog: actions/setup-node@v6...v6.3.0
github/codeql-action (github/codeql-action)
v4.32.6Compare Source
v4.32.5Compare Source
github-codeql-disable-overlaycustom repository property to disable improved incremental analysis for CodeQL. First, create a custom repository property with the namegithub-codeql-disable-overlayand the type "True/false" in the organization's settings. Then in the repository's settings, set this property totrueto disable improved incremental analysis. For more information, see Managing custom properties for repositories in your organization. This feature is not yet available on GitHub Enterprise Server. #3507start-proxyaction to resolve the CodeQL CLI version from feature flags instead of using the linked CLI bundle version. We expect to roll this change out to everyone in March. #3512step-security/harden-runner (step-security/harden-runner)
v2.15.1Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.15.0...v2.15.1
v2.15.0Compare Source
What's Changed
Windows and macOS runner support
We are excited to announce that Harden Runner now supports Windows and macOS runners, extending runtime security beyond Linux for the first time.
Insights for Windows and macOS runners will be displayed in the same consistent format you are already familiar with from Linux runners, giving you a unified view of runtime activity across all platforms.
Full Changelog: step-security/harden-runner@v2.14.2...v2.15.0
Configuration
📅 Schedule: Branch creation - "after 10:00 before 19:00 every weekday except after 13:00 before 14:00" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.