build(deps): bump the action-dependencies group across 1 directory with 7 updates #235
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the action-dependencies group with 7 updates in the / directory:
4.1.14.1.45.0.05.1.03.1.34.3.33.0.24.1.71.8.111.8.142334Updates
actions/checkoutfrom 4.1.1 to 4.1.4Release notes
Sourced from actions/checkout's releases.
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
0ad4b8fPrep Release v4.1.4 (#1704)43045aeDisableextensions.worktreeConfigwhen disablingsparse-checkout(#1692)37b0821Bump the minor-actions-dependencies group with 2 updates (#1693)9839dc1Add dependabot config (#1688)9b4c13bBump word-wrap from 1.2.3 to 1.2.5 (#1643)1d96c77Add SSH user parameter (#1685)cd7d8d6Check git version before attempting to disablesparse-checkout(#1656)8410ad0Updateactions/checkoutversion inupdate-main-version.yml(#1650)9bb5618Prep for release of v4.1.2 (#1649)8eb1f6aBump@babel/traversefrom 7.20.5 to 7.24.0 (#1642)Updates
actions/setup-pythonfrom 5.0.0 to 5.1.0Release notes
Sourced from actions/setup-python's releases.
Commits
82c7e63Documentation changes for avoiding rate limit issues on GHES (#835)10aa35afeat: fallback to raw endpoint for manifest when rate limit is reached (#766)9a7ac94Bump undici from 5.27.2 to 5.28.3 (#817)871daa9Fix the "Specifying multiple Python/PyPy versions" link (#782)2f07895Fix broken README.md link (#793)e9d6f99Replace setup-python@v4 by setup-python@v5 in README (#776)Updates
actions/upload-artifactfrom 3.1.3 to 4.3.3Release notes
Sourced from actions/upload-artifact's releases.
... (truncated)
Commits
6546280updating package versionc004fb4Merge branch 'main' into eggyhead/use-artifact-v2.1.690aba49updating toolkit artifact dependency to 2.1.6b06cde3Merge pull request #563 from actions/eggyhead/release-4.3.21746f4aRevert "updating to release 4.3.2"31685d0updating to release 4.3.218bf333Merge pull request #562 from actions/eggyhead/update-artifact-v215dac413bupdate package lock versionbb3b4a3updating package version3e3da83updating artifact and core dependenciesUpdates
actions/download-artifactfrom 3.0.2 to 4.1.7Release notes
Sourced from actions/download-artifact's releases.
... (truncated)
Commits
65a9edcMerge pull request #325 from bethanyj28/mainfdd1595licensedc13dba1update@actions/artifactdependency0daa75eMerge pull request #324 from actions/eggyhead/use-artifact-v2.1.69c19ed7Merge branch 'main' into eggyhead/use-artifact-v2.1.63d3ea87updating license89af5dbupdating artifact package v2.1.6b4aefffMerge pull request #323 from actions/eggyhead/update-artifact-v2158caf195package lock updated7a2ec4updating package versionUpdates
pypa/gh-action-pypi-publishfrom 1.8.11 to 1.8.14Release notes
Sourced from pypa/gh-action-pypi-publish's releases.
... (truncated)
Commits
81e9d93Bumppipto v24.0 in runtime prerequisites lock91527c4Regenerate lockfiles with pip-tools v7.4.13a817c6Bump action runtime to CPython 3.12741947bAdd a config file forpip-toolsd7af439Mass-bump transitive dependencies of runtimee90ddcaBumpreadme-rendererto v43.0dae7fa3Bump Twine to v5.0.00fe04aeBumpidto v1.3.0444e179Bump cryptography to v42.0.5820be4eNormalize pip-tools' header comment @runtime.txtUpdates
github/codeql-actionfrom 2 to 3Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
b5bd9beUpdate changelog and version after v3.25.1c7f9125Merge pull request #2248 from github/update-v3.25.1-c4fb451431c7e8b2Update changelog for v3.25.139e1e65Add changelog note501f5f5Update default bundle to codeql-bundle-v2.17.15d73b1bRemove incorrect log messagec4fb451Merge pull request #2245 from github/henrymercer/ignore-already-specified-flags556b3bcAdd changelog noteef66aeaMerge branch 'main' into henrymercer/ignore-already-specified-flags9b87e0aMerge pull request #2241 from github/nickfyson/speculative-script-fixUpdates
actions/dependency-review-actionfrom 3 to 4Release notes
Sourced from actions/dependency-review-action's releases.
... (truncated)
Commits
5bbc3babumping versionc59184aMerge pull request #722 from actions/remove-warn-default54c0657Merge pull request #728 from actions/dependabot/npm_and_yarn/eslint-8.57.021941b5Bump eslint from 8.56.0 to 8.57.0733dd5dbumping to 4.2.49093495Merge pull request #725 from actions/issue-71835b83b4Fix prettier issuese057056Add packaged code updated684d03Add trailing slash to tests2b0aaf1Fix extra slash issueDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions