diff --git a/.github/dependabot.template.yml b/.github/dependabot.template.yml deleted file mode 100644 index 6b425a66..00000000 --- a/.github/dependabot.template.yml +++ /dev/null @@ -1,37 +0,0 @@ -version: 2 -updates: - - package-ecosystem: docker - open-pull-requests-limit: 20 - directory: "/" - schedule: - interval: weekly - day: friday - time: "04:00" - groups: - docker-dependencies: - patterns: - - "*" - - - package-ecosystem: github-actions - directory: "/" - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: "04:00" - groups: - github-actions-dependencies: - patterns: - - "*" - - - package-ecosystem: github-actions - directory: "/actions/**/action.yml" - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: "04:00" - groups: - github-actions-dependencies: - patterns: - - "*" diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 469799b7..6e9dac8a 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,70 +1,27 @@ -# This file was generated by the "Generate Dependabot Glob" action. Do not edit it directly. -# Make changes to `.github/dependabot.template.yml` and a PR will be automatically created. version: 2 updates: - package-ecosystem: docker open-pull-requests-limit: 20 - directory: / + directory: "/" schedule: interval: weekly day: friday - time: '04:00' + time: "04:00" groups: docker-dependencies: patterns: - - '*' + - "*" + - package-ecosystem: github-actions - directory: / open-pull-requests-limit: 20 + directories: + - "/" + - "/actions/**/*" schedule: interval: weekly day: friday - time: '04:00' + time: "04:00" groups: github-actions-dependencies: patterns: - - '*' - - package-ecosystem: github-actions - directory: /actions/dependencies-cache - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: '04:00' - groups: - github-actions-dependencies: - patterns: - - '*' - - package-ecosystem: github-actions - directory: /actions/get-package-manager - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: '04:00' - groups: - github-actions-dependencies: - patterns: - - '*' - - package-ecosystem: github-actions - directory: /actions/has-installed-dependencies - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: '04:00' - groups: - github-actions-dependencies: - patterns: - - '*' - - package-ecosystem: github-actions - directory: /actions/setup-node - open-pull-requests-limit: 20 - schedule: - interval: weekly - day: friday - time: '04:00' - groups: - github-actions-dependencies: - patterns: - - '*' + - "*" diff --git a/.github/workflows/__generate-dependabot-config.yml b/.github/workflows/__generate-dependabot-config.yml deleted file mode 100644 index 25a5df7c..00000000 --- a/.github/workflows/__generate-dependabot-config.yml +++ /dev/null @@ -1,17 +0,0 @@ -name: Internal - Generate dependabot.yml config - -on: - push: - branches: - - main - -permissions: - contents: read - -jobs: - generate-dependabot-config: - uses: hoverkraft-tech/ci-github-common/.github/workflows/generate-dependabot-config.yml@0.13.3 - with: - github-app-id: ${{ vars.CI_BOT_APP_ID }} - secrets: - github-app-key: ${{ secrets.CI_BOT_APP_PRIVATE_KEY }} diff --git a/.github/workflows/__greetings.yml b/.github/workflows/__greetings.yml index 9e95695c..3591848c 100644 --- a/.github/workflows/__greetings.yml +++ b/.github/workflows/__greetings.yml @@ -13,4 +13,4 @@ permissions: jobs: greetings: - uses: hoverkraft-tech/ci-github-common/.github/workflows/greetings.yml@0.13.3 + uses: hoverkraft-tech/ci-github-common/.github/workflows/greetings.yml@0.14.0 diff --git a/.github/workflows/__main-ci.yml b/.github/workflows/__main-ci.yml index 7a75c77f..ecb6ca9a 100644 --- a/.github/workflows/__main-ci.yml +++ b/.github/workflows/__main-ci.yml @@ -25,7 +25,7 @@ jobs: release: needs: ci - uses: hoverkraft-tech/ci-github-common/.github/workflows/release-actions.yml@0.13.3 + uses: hoverkraft-tech/ci-github-common/.github/workflows/release-actions.yml@0.14.0 with: update-all: ${{ (github.event_name == 'push' && startsWith(github.ref, 'refs/tags/')) || github.event_name == 'workflow_dispatch' }} github-app-id: ${{ vars.CI_BOT_APP_ID }} diff --git a/.github/workflows/__need-fix-to-issue.yml b/.github/workflows/__need-fix-to-issue.yml index 3f62217d..1ea39a8c 100644 --- a/.github/workflows/__need-fix-to-issue.yml +++ b/.github/workflows/__need-fix-to-issue.yml @@ -20,7 +20,7 @@ permissions: jobs: main: - uses: hoverkraft-tech/ci-github-common/.github/workflows/need-fix-to-issue.yml@0.13.3 + uses: hoverkraft-tech/ci-github-common/.github/workflows/need-fix-to-issue.yml@0.14.0 with: manual-commit-ref: ${{ inputs.manual-commit-ref }} manual-base-ref: ${{ inputs.manual-base-ref }} diff --git a/.github/workflows/__shared-ci.yml b/.github/workflows/__shared-ci.yml index f6b20fda..3b1d1243 100644 --- a/.github/workflows/__shared-ci.yml +++ b/.github/workflows/__shared-ci.yml @@ -12,7 +12,7 @@ permissions: jobs: linter: - uses: hoverkraft-tech/ci-github-common/.github/workflows/linter.yml@0.13.3 + uses: hoverkraft-tech/ci-github-common/.github/workflows/linter.yml@0.14.0 test-action-get-package-manager: name: Test action "get-package-manager" diff --git a/.github/workflows/__stale.yml b/.github/workflows/__stale.yml index 84ad8620..5c586d35 100644 --- a/.github/workflows/__stale.yml +++ b/.github/workflows/__stale.yml @@ -10,4 +10,4 @@ permissions: jobs: main: - uses: hoverkraft-tech/ci-github-common/.github/workflows/stale.yml@0.13.3 + uses: hoverkraft-tech/ci-github-common/.github/workflows/stale.yml@0.14.0 diff --git a/.github/workflows/continuous-integration.yml b/.github/workflows/continuous-integration.yml index cd58beda..a4b387aa 100644 --- a/.github/workflows/continuous-integration.yml +++ b/.github/workflows/continuous-integration.yml @@ -56,11 +56,11 @@ jobs: security-events: write runs-on: "ubuntu-latest" steps: - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.13.3 - - uses: github/codeql-action/init@v3.25.10 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.14.0 + - uses: github/codeql-action/init@v3.25.12 with: languages: ${{ inputs.code-ql }} - - uses: github/codeql-action/analyze@v3.25.10 + - uses: github/codeql-action/analyze@v3.25.12 setup: name: ⚙️ Setup @@ -75,7 +75,7 @@ jobs: steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 # jscpd:ignore-start - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.13.3 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.14.0 - id: oidc uses: ChristopherHX/oidc@v3 @@ -147,7 +147,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.13.3 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.14.0 - id: oidc uses: ChristopherHX/oidc@v3 @@ -181,7 +181,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.13.3 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.14.0 if: needs.setup.outputs.build-commands - id: oidc @@ -242,7 +242,7 @@ jobs: id-token: write steps: # FIXME: This is a workaround for having workflow ref. See https://github.com/orgs/community/discussions/38659 - - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.13.3 + - uses: hoverkraft-tech/ci-github-common/actions/checkout@0.14.0 - if: needs.setup.outputs.build-artifact uses: actions/download-artifact@v4