Repository navigation
ci(deps): bump the actions group with 7 updates - #16
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the actions group with 7 updates: | Package | From | To | | --- | --- | --- | | [docker/login-action](https://github.com/docker/login-action) | `4.1.0` | `4.6.0` | | [actions/setup-go](https://github.com/actions/setup-go) | `5.5.0` | `7.0.0` | | [praxis-proxy/conventions/.github/actions/setup-rust](https://github.com/praxis-proxy/conventions) | `0.1.0` | `0.3.0` | | [docker/build-push-action](https://github.com/docker/build-push-action) | `6.18.0` | `7.4.0` | | [praxis-proxy/conventions/.github/actions/setup-rust-lint](https://github.com/praxis-proxy/conventions) | `0.1.0` | `0.3.0` | | [praxis-proxy/conventions/.github/actions/coverage-check](https://github.com/praxis-proxy/conventions) | `0.1.0` | `0.3.0` | | [praxis-proxy/conventions/.github/actions/supply-chain-audit](https://github.com/praxis-proxy/conventions) | `0.1.0` | `0.3.0` | Updates `docker/login-action` from 4.1.0 to 4.6.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@4907a6d...dbcb813) Updates `actions/setup-go` from 5.5.0 to 7.0.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@d35c59a...b7ad1da) Updates `praxis-proxy/conventions/.github/actions/setup-rust` from 0.1.0 to 0.3.0 - [Changelog](https://github.com/praxis-proxy/conventions/blob/main/docs/release.md) - [Commits](praxis-proxy/conventions@7e1e8d9...c5837c3) Updates `docker/build-push-action` from 6.18.0 to 7.4.0 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](docker/build-push-action@2634353...c3c9e26) Updates `praxis-proxy/conventions/.github/actions/setup-rust-lint` from 0.1.0 to 0.3.0 - [Changelog](https://github.com/praxis-proxy/conventions/blob/main/docs/release.md) - [Commits](praxis-proxy/conventions@7e1e8d9...c5837c3) Updates `praxis-proxy/conventions/.github/actions/coverage-check` from 0.1.0 to 0.3.0 - [Changelog](https://github.com/praxis-proxy/conventions/blob/main/docs/release.md) - [Commits](praxis-proxy/conventions@7e1e8d9...c5837c3) Updates `praxis-proxy/conventions/.github/actions/supply-chain-audit` from 0.1.0 to 0.3.0 - [Changelog](https://github.com/praxis-proxy/conventions/blob/main/docs/release.md) - [Commits](praxis-proxy/conventions@7e1e8d9...c5837c3) --- updated-dependencies: - dependency-name: docker/login-action dependency-version: 4.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: actions/setup-go dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions - dependency-name: praxis-proxy/conventions/.github/actions/setup-rust dependency-version: 0.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: docker/build-push-action dependency-version: 7.4.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions - dependency-name: praxis-proxy/conventions/.github/actions/setup-rust-lint dependency-version: 0.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: praxis-proxy/conventions/.github/actions/coverage-check dependency-version: 0.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: praxis-proxy/conventions/.github/actions/supply-chain-audit dependency-version: 0.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com>
|
Navigate logical layers of code changes, visualize relationships, and explore their blast radius. No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configuration
📒 Files selected for processing (4)
🔗 Linked repositories identifiedCodeRabbit considers these linked repositories for cross-repo context during reviews:
Included review availability: This review used your included allowance. Your plan provides up to 10 included reviews per hour; 9 remain after this review. 📝 WalkthroughWalkthroughThe conformance, integration, release, and test workflows now use updated pinned versions of their GitHub Actions. ChangesWorkflow action updates
Priority: ⬇️ Low Estimated code review effort: 1 (Trivial) | ~5 minutes Change: Other Suggested reviewers: Merge Risk: ⚪ Minimal · up to The workflow action updates match the configured inputs and Rust version requirements, with no actionable CI or release risk evident in the reviewed changes. Architecture SummaryArchitecture risk: 🔵 Low · up to The changed surface does not map to a changed system, dependency edge, entrypoint, or external dependency. Changed systems: None identified. Architecture concerns Review detailsBefore / after behavior
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
Comment |
Bumps the actions group with 7 updates:
4.1.04.6.05.5.07.0.00.1.00.3.06.18.07.4.00.1.00.3.00.1.00.3.00.1.00.3.0Updates
docker/login-actionfrom 4.1.0 to 4.6.0Release notes
Sourced from docker/login-action's releases.
... (truncated)
Commits
dbcb813Merge pull request #1051 from docker/dependabot/npm_and_yarn/aws-sdk-dependen...5bcb015[dependabot skip] chore: update generated contentb30b2f2build(deps): bump the aws-sdk-dependencies group across 1 directory with 2 up...9087f1eMerge pull request #1057 from docker/dependabot/npm_and_yarn/js-yaml-5.2.20009830[dependabot skip] chore: update generated content2325523build(deps): bump js-yaml from 5.2.1 to 5.2.24ec1d4aMerge pull request #1056 from docker/dependabot/npm_and_yarn/postcss-8.5.225fc99baMerge pull request #1053 from docker/dependabot/github_actions/aws-actions/co...e512bd5Merge pull request #1052 from docker/dependabot/github_actions/codeql-actions...a146c91Merge pull request #1059 from crazy-max/harden-buildx-scope-pathsUpdates
actions/setup-gofrom 5.5.0 to 7.0.0Release notes
Sourced from actions/setup-go's releases.
... (truncated)
Commits
b7ad1dachore(deps): bump@actions/cacheto 6.2.0 (#771)0778a10Migrate to ESM and upgrade dependencies (#763)924ae3achore: bump version to 6.5.0 in package.json and package-lock.json (#762)e91cc3bBump@actions/cacheto 5.1.0, log cache write denied (#758)4a2405echore: update@types/nodeand@typescript-eslintdependencies to latest versi...78961f6chore: update@actionsdependencies and refresh license cache (#744)4a36011docs: fix Microsoft build of Go link (#734)8f19afcfeat: add go-download-base-url input for custom Go distributions (#721)27fdb26Bump minimatch from 3.1.2 to 3.1.5 (#727)def8c39Rearrange README.md, add advanced-usage.md (#724)Updates
praxis-proxy/conventions/.github/actions/setup-rustfrom 0.1.0 to 0.3.0Commits
c5837c3release: v0.3.0bd62781feat(ci): let other repos run these workflows instead of copying them747ec18fix(ci): let the org's maintainer teams triage issues23a6013fix(ci): explain PR Conventions failures on fork and Dependabot PRsfee1681fix(ci): stop PR Conventions failing on every Dependabot PRf4422e2chore(deps): Bump docker/build-push-action (#11)29ef9b4chore(deps): Bump taiki-e/install-action (#12)47bb6d1feat: add metadata-context input to ghcr-publish action (#8)cfdba0fchore(deps): Bump docker/setup-buildx-action (#7)728a69fchore(deps): Bump docker/login-action in /.github/actions/ghcr-publish (#6)Updates
docker/build-push-actionfrom 6.18.0 to 7.4.0Release notes
Sourced from docker/build-push-action's releases.
... (truncated)
Commits
c3c9e26Merge pull request #1621 from docker/dependabot/npm_and_yarn/docker/actions-t...459b674[dependabot skip] chore: update generated content4dedcb2chore(deps): Bump@docker/actions-toolkitfrom 0.99.0 to 0.100.0379bf63Merge pull request #1620 from crazy-max/buildx-error-message9877975chore: update generated content7ed0556use the shared Buildx error summary helper91670baMerge pull request #1618 from docker/dependabot/npm_and_yarn/docker/actions-t...80dbc86[dependabot skip] chore: update generated content50cac3achore(deps): Bump@docker/actions-toolkitfrom 0.98.0 to 0.99.003b4d6cMerge pull request #1617 from crazy-max/fix-metadata-workflow-commandsUpdates
praxis-proxy/conventions/.github/actions/setup-rust-lintfrom 0.1.0 to 0.3.0Commits
c5837c3release: v0.3.0bd62781feat(ci): let other repos run these workflows instead of copying them747ec18fix(ci): let the org's maintainer teams triage issues23a6013fix(ci): explain PR Conventions failures on fork and Dependabot PRsfee1681fix(ci): stop PR Conventions failing on every Dependabot PRf4422e2chore(deps): Bump docker/build-push-action (#11)29ef9b4chore(deps): Bump taiki-e/install-action (#12)47bb6d1feat: add metadata-context input to ghcr-publish action (#8)cfdba0fchore(deps): Bump docker/setup-buildx-action (#7)728a69fchore(deps): Bump docker/login-action in /.github/actions/ghcr-publish (#6)Updates
praxis-proxy/conventions/.github/actions/coverage-checkfrom 0.1.0 to 0.3.0Commits
c5837c3release: v0.3.0bd62781feat(ci): let other repos run these workflows instead of copying them747ec18fix(ci): let the org's maintainer teams triage issues23a6013fix(ci): explain PR Conventions failures on fork and Dependabot PRsfee1681fix(ci): stop PR Conventions failing on every Dependabot PRf4422e2chore(deps): Bump docker/build-push-action (#11)29ef9b4chore(deps): Bump taiki-e/install-action (#12)47bb6d1feat: add metadata-context input to ghcr-publish action (#8)cfdba0fchore(deps): Bump docker/setup-buildx-action (#7)728a69fchore(deps): Bump docker/login-action in /.github/actions/ghcr-publish (#6)Updates
praxis-proxy/conventions/.github/actions/supply-chain-auditfrom 0.1.0 to 0.3.0Commits
c5837c3release: v0.3.0bd62781feat(ci): let other repos run these workflows instead of copying them747ec18fix(ci): let the org's maintainer teams triage issues23a6013fix(ci): explain PR Conventions failures on fork and Dependabot PRsfee1681fix(ci): stop PR Conventions failing on every Dependabot PRf4422e2chore(deps): Bump docker/build-push-action (#11)29ef9b4chore(deps): Bump taiki-e/install-action (#12)47bb6d1feat: add metadata-context input to ghcr-publish action (#8)cfdba0fchore(deps): Bump docker/setup-buildx-action (#7)728a69fchore(deps): Bump docker/login-action in /.github/actions/ghcr-publish (#6)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsSummary by CodeRabbit