Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ci(deps): bump codacy/codacy-analysis-cli-action from 1.1.0 to 4.3.0 #332

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 3, 2023

Bumps codacy/codacy-analysis-cli-action from 1.1.0 to 4.3.0.

Release notes

Sourced from codacy/codacy-analysis-cli-action's releases.

Move tools to artifact

No release notes provided.

Add max-tool-memory flag

No release notes provided.

Introduce new versioning scheme

Now the versions will be published in the form of v4, v4.1 and v4.1.0.

Allow running Codacy Standalone tools

This release adds support for running Gosec, Clang-tidy, and many more standalone tools from the action.

Skip Uncommitted Changes

It's now possible to skip uncommitted changes using the flag --skip-uncommitted-files-check

Parallel mode runs now tools in parallel

Parallel mode was not working as intended. Now it spawns multiple Docker instances based on the parallelism level

Fix using the correct commit SHA on pull requests

Actions triggered on pull requests now send the reports for the correct commit SHA

Fix staticcheck flow that could change go.mod files

No release notes provided.

Fix standalone tools

Fixes scenario where gosec does not run leading to failure in the next standalone tools.

Add support for account API tokens

No release notes provided.

Fix SARIF output for tools that returns 0 startLine

No release notes provided.

Bump CLI version used in action

  • Bump to CLI version to 5.1.4.
  • Now, when exporting issues to SARIF it no longer downgrades issues' severities for security patterns.
Commits

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code labels Jul 3, 2023
@coveralls-official
Copy link

coveralls-official bot commented Jul 3, 2023

Pull Request Test Coverage Report for Build 6269731748

  • 0 of 0 changed or added relevant lines in 0 files are covered.
  • No unchanged relevant lines lost coverage.
  • Overall coverage remained the same at 94.518%

Totals Coverage Status
Change from base Build 6254063648: 0.0%
Covered Lines: 5169
Relevant Lines: 5346

💛 - Coveralls

@github-advanced-security
Copy link

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

2 similar comments
@github-advanced-security
Copy link

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

@github-advanced-security
Copy link

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

@nebolsin nebolsin force-pushed the dependabot/github_actions/codacy/codacy-analysis-cli-action-4.3.0 branch from a1ca279 to 2dd82a3 Compare September 19, 2023 22:00
@nebolsin
Copy link
Member

@dependabot recreate

Dependabot couldn't find the original pull request head commit, a1ca279.
@dependabot dependabot bot force-pushed the dependabot/github_actions/codacy/codacy-analysis-cli-action-4.3.0 branch from 65d0e75 to d95d273 Compare September 22, 2023 03:23
@nebolsin
Copy link
Member

@dependabot squash and merge

@dependabot dependabot bot merged commit 1db3a01 into main Sep 22, 2023
49 checks passed
@dependabot dependabot bot deleted the dependabot/github_actions/codacy/codacy-analysis-cli-action-4.3.0 branch September 22, 2023 03:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant