Skip to content

ci: bump the github-actions group across 1 directory with 2 updates#524

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/github-actions-fdc061bf78
Open

ci: bump the github-actions group across 1 directory with 2 updates#524
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/github-actions-fdc061bf78

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 1, 2026

Bumps the github-actions group with 2 updates in the / directory: docker/login-action and sigstore/cosign-installer.

Updates docker/login-action from 9fe7774c8f8ebfade96f0a62aa10f3882309d517 to bb555fc48dca4deb5f227b07c7304c673b5708f0

Commits
  • bb555fc Merge pull request #957 from crazy-max/fix-update-dist
  • 6de6c60 ci: stop update-dist reruns after generated dist pushes
  • de05a6d Merge pull request #956 from docker/dependabot/github_actions/codecov/codecov...
  • 5ac140e build(deps): bump codecov/codecov-action from 5.5.4 to 6.0.0
  • bb9683d Merge pull request #955 from crazy-max/zizmor
  • abb6787 fix zizmor findings
  • a40c6a7 ci: zizmor workflow
  • 5c42dd2 Merge pull request #954 from docker/dependabot/github_actions/crazy-max/dot-g...
  • 1615afe build(deps): bump crazy-max/.github/.github/workflows/pr-assign-author.yml
  • a0d57b8 Merge pull request #947 from crazy-max/update-crazy-max-actions
  • Additional commits viewable in compare view

Updates sigstore/cosign-installer from 4.1.0 to 4.1.1

Release notes

Sourced from sigstore/cosign-installer's releases.

v4.1.1

What's Changed

Full Changelog: sigstore/cosign-installer@v4.1.0...v4.1.1

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Apr 1, 2026
@dependabot dependabot Bot temporarily deployed to Cloud API test env April 1, 2026 19:10 Inactive
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github-actions-fdc061bf78 branch from f0c9d94 to 8464655 Compare April 1, 2026 23:55
@dependabot dependabot Bot temporarily deployed to Cloud API test env April 1, 2026 23:55 Inactive
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github-actions-fdc061bf78 branch from 8464655 to 64acd9f Compare April 2, 2026 01:01
@dependabot dependabot Bot temporarily deployed to Cloud API test env April 2, 2026 01:01 Inactive
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github-actions-fdc061bf78 branch from 64acd9f to b2fd061 Compare April 8, 2026 19:08
@dependabot dependabot Bot temporarily deployed to Cloud API test env April 8, 2026 19:09 Inactive
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github-actions-fdc061bf78 branch from b2fd061 to fe4aebf Compare April 15, 2026 19:08
@dependabot dependabot Bot temporarily deployed to Cloud API test env April 15, 2026 19:08 Inactive
Bumps the github-actions group with 2 updates in the / directory: [docker/login-action](https://github.com/docker/login-action) and [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer).


Updates `docker/login-action` from 9fe7774c8f8ebfade96f0a62aa10f3882309d517 to bb555fc48dca4deb5f227b07c7304c673b5708f0
- [Release notes](https://github.com/docker/login-action/releases)
- [Commits](docker/login-action@9fe7774...bb555fc)

Updates `sigstore/cosign-installer` from 4.1.0 to 4.1.1
- [Release notes](https://github.com/sigstore/cosign-installer/releases)
- [Commits](sigstore/cosign-installer@ba7bc0a...cad07c2)

---
updated-dependencies:
- dependency-name: docker/login-action
  dependency-version: bb555fc48dca4deb5f227b07c7304c673b5708f0
  dependency-type: direct:production
  dependency-group: github-actions
- dependency-name: sigstore/cosign-installer
  dependency-version: 4.1.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/github-actions-fdc061bf78 branch from fe4aebf to 6abfbcf Compare April 22, 2026 19:08
@dependabot dependabot Bot deployed to Cloud API test env April 22, 2026 19:08 Active
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants