Skip to content

chore(deps): update all dependencies - #37

Merged
github-actions[bot] merged 1 commit into
developfrom
renovate/all
Jul 23, 2026
Merged

chore(deps): update all dependencies#37
github-actions[bot] merged 1 commit into
developfrom
renovate/all

Conversation

@renovate

@renovate renovate Bot commented Jul 17, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
mkdocs-material (changelog) ==9.7.6==9.7.7 age confidence patch
nolte/gh-plumbing v1.1.25v1.1.26 age confidence patch
nolte/gh-plumbing v1.1.25v1.1.26 age confidence action patch

Release Notes

squidfunk/mkdocs-material (mkdocs-material)

v9.7.7: mkdocs-material-9.7.7

[!WARNING]

Material for MkDocs is approaching end of life

Material for MkDocs is scheduled to reach end of life on November 5, 2026. Until then, maintenance is limited to critical bug fixes and security updates.

The path forward is Zensical, our next-generation static site generator built from first principles. If you’re planning a new documentation project or thinking about your long-term setup, we encourage you to start exploring Zensical.

Organizations requiring support beyond this date can get in touch to discuss options.

Read the full announcement on our blog

Changes

  • Fixed a DOM-based XSS vulnerability in search suggestions

Thanks to @​p- for responsibly reporting this issue.

nolte/gh-plumbing (nolte/gh-plumbing)

v1.1.26

Compare Source

Changes
🚀 Features
  • feat(release): implement workflow-driven version-bearing auto-bump (primary path) (#​381) @​nolte
  • feat(release): harden reusable-release-publish against silent publish pitfalls (#​380) @​nolte
🐛 Bug Fixes
  • fix(release): degrade gracefully when primary-path align push is rejected (#​382) @​nolte
🧰 Maintenance
  • feat(labels): add frontend, backend, test, security labels (#​385) @​nolte
  • fix(release): degrade gracefully when primary-path align push is rejected (#​382) @​nolte
  • feat(release): implement workflow-driven version-bearing auto-bump (primary path) (#​381) @​nolte
  • feat(release): harden reusable-release-publish against silent publish pitfalls (#​380) @​nolte
  • fix(release): pin gate 4 alignment-commit check to TARGET_SHA (#​379) @​nolte

Project context
Audiences served
  • Downstream repositories consuming reusable workflows → addressed by §Reusable workflow changes
  • Downstream repositories extending Probot configurations → addressed by §Shared Probot configuration changes
  • Repository maintainer → addressed by §Reusable workflow changes (release automation)
Reusable workflow changes
  • reusable-release-publish.yml — workflow-driven, version-bearing auto-bump is now the primary alignment path (#​381), with graceful degradation when the primary-path alignment push is rejected (#​382).
  • reusable-release-publish.yml — hardened against silent publish pitfalls so a no-op publish fails loudly instead of exiting green (#​380).
  • reusable-release-publish.yml — gate-4 alignment-commit check pinned to TARGET_SHA for a deterministic verification target (#​379).
  • Consumers pinning uses: nolte/gh-plumbing/.github/workflows/reusable-release-publish.yaml@<tag> should re-pin to v1.1.26 to pick up these changes.
Shared Probot configuration changes
  • commons-settings.yml — four new labels: frontend, backend, test, security (#​385). Propagates to repositories extending gh-plumbing:.github/commons-settings.yml on the next Probot Settings sync.
  • commons-boring-cyborg.yml — path-based auto-labeling: src/frontend/**frontend, src/backend/**backend (#​385). Applies to repositories extending gh-plumbing:.github/commons-boring-cyborg.yml.
Open questions
  • renovate-configs/common.json is unchanged in this release; the Renovate-preset consumer audience has no release-relevant change in v1.1.26.

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added chore Maintenance dependencies Pull requests that update a dependency file. labels Jul 17, 2026
@renovate
renovate Bot force-pushed the renovate/all branch 23 times, most recently from 9636e74 to 3f026e7 Compare July 22, 2026 18:44
@renovate renovate Bot changed the title chore(deps): update dependency mkdocs-material to v9.7.7 chore(deps): update all dependencies Jul 22, 2026
@boring-cyborg boring-cyborg Bot added the cicd ci/cd process functionality. label Jul 22, 2026
@renovate
renovate Bot force-pushed the renovate/all branch 3 times, most recently from 4ec1026 to 6b084cc Compare July 23, 2026 04:44
@nolte nolte added the automerge Allow automatic Merge. label Jul 23, 2026
@github-actions
github-actions Bot merged commit 3629906 into develop Jul 23, 2026
6 checks passed
@github-actions
github-actions Bot deleted the renovate/all branch July 23, 2026 11:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

automerge Allow automatic Merge. chore Maintenance cicd ci/cd process functionality. dependencies Pull requests that update a dependency file.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant