ci: bump the github-actions group across 1 directory with 10 updates
Type: Pull Request
State: Open
Association: Contributor
Comments: 0
(2 months ago)
(2 months ago)
dependencies github_actions
Bumps the github-actions group with 10 updates in the / directory:
| Package | From | To |
|---|---|---|
| actions/checkout | 4.3.0 |
5.0.0 |
| crate-ci/typos | 1.35.3 |
1.35.5 |
| azure/setup-helm | 4.3.0 |
4.3.1 |
| actions/setup-java | 4.7.1 |
5.0.0 |
| google-github-actions/setup-gcloud | 2.2.0 |
3.0.0 |
| actions/attest | 2.4.0 |
3.0.0 |
| depot/build-push-action | 1.15.0 |
1.16.2 |
| tj-actions/changed-files | f963b3f3562b00b6d2dd25efc390eb04e51ef6c6 |
3b04099b21072562f07469c10deb182b24236ca9 |
| nixbuild/nix-quick-install-action | 32 |
33 |
| github/codeql-action | 3.29.8 |
3.29.11 |
Updates actions/checkout from 4.3.0 to 5.0.0
Release notes
Sourced from actions/checkout's releases.
v5.0.0
What's Changed
- Update actions checkout to use node 24 by
@salmanmkcin actions/checkout#2226- Prepare v5.0.0 release by
@salmanmkcin actions/checkout#2238⚠️ Minimum Compatible Runner Version
v2.327.1
Release NotesMake sure your runner is updated to this version or newer to use this release.
Full Changelog: https://github.com/actions/checkout/compare/v4...v5.0.0
Changelog
Sourced from actions/checkout's changelog.
Changelog
V5.0.0
- Update actions checkout to use node 24 by
@salmanmkcin actions/checkout#2226V4.3.0
- docs: update README.md by
@motssin actions/checkout#1971- Add internal repos for checking out multiple repositories by
@mouismailin actions/checkout#1977- Documentation update - add recommended permissions to Readme by
@benwellsin actions/checkout#2043- Adjust positioning of user email note and permissions heading by
@joshmgrossin actions/checkout#2044- Update README.md by
@nebuk89in actions/checkout#2194- Update CODEOWNERS for actions by
@TingluoHuangin actions/checkout#2224- Update package dependencies by
@salmanmkcin actions/checkout#2236v4.2.2
url-helper.tsnow leverages well-known environment variables by@jww3in actions/checkout#1941- Expand unit test coverage for
isGhesby@jww3in actions/checkout#1946v4.2.1
- Check out other refs/* by commit if provided, fall back to ref by
@orhantoyin actions/checkout#1924v4.2.0
- Add Ref and Commit outputs by
@lucacomein actions/checkout#1180- Dependency updates by
@dependabot- actions/checkout#1777, actions/checkout#1872v4.1.7
- Bump the minor-npm-dependencies group across 1 directory with 4 updates by
@dependabotin actions/checkout#1739- Bump actions/checkout from 3 to 4 by
@dependabotin actions/checkout#1697- Check out other refs/* by commit by
@orhantoyin actions/checkout#1774- Pin actions/checkout's own workflows to a known, good, stable version. by
@jww3in actions/checkout#1776v4.1.6
- Check platform to set archive extension appropriately by
@cory-millerin actions/checkout#1732v4.1.5
- Update NPM dependencies by
@cory-millerin actions/checkout#1703- Bump github/codeql-action from 2 to 3 by
@dependabotin actions/checkout#1694- Bump actions/setup-node from 1 to 4 by
@dependabotin actions/checkout#1696- Bump actions/upload-artifact from 2 to 4 by
@dependabotin actions/checkout#1695- README: Suggest
user.emailto be41898282+github-actions[bot]@users.noreply.github.comby@cory-millerin actions/checkout#1707v4.1.4
- Disable
extensions.worktreeConfigwhen disablingsparse-checkoutby@jww3in actions/checkout#1692- Add dependabot config by
@cory-millerin actions/checkout#1688- Bump the minor-actions-dependencies group with 2 updates by
@dependabotin actions/checkout#1693- Bump word-wrap from 1.2.3 to 1.2.5 by
@dependabotin actions/checkout#1643v4.1.3
... (truncated)
Commits
08c6903Prepare v5.0.0 release (#2238)9f26565Update actions checkout to use node 24 (#2226)- See full diff in compare view
Updates crate-ci/typos from 1.35.3 to 1.35.5
Release notes
Sourced from crate-ci/typos's releases.
v1.35.5
[1.35.5] - 2025-08-18
Fixes
- Fix typo in correction to
accidently- Fix typo in correction to
dynamincally- Fix typo in correction to
interruptability- Fix typo in correction to
interruptability- Fix typo in correction to
messager- Fix typo in correction to
preferables- Fix typo in correction to
producibles- Fix typo in correction to
restauranteur- Fix typo in correction to
restauranteurs- Fix typo in correction to
searialize- Fix typo in correction to
somethin- Fix typo in correction to
unaccessible- Fix typo in correction to
unnesessarilyv1.35.4
[1.35.4] - 2025-08-12
Fixes
- Fix typo in correction to
exctracting
Changelog
Sourced from crate-ci/typos's changelog.
Change Log
All notable changes to this project will be documented in this file.
The format is based on Keep a Changelog and this project adheres to Semantic Versioning.
[Unreleased] - ReleaseDate
[1.35.5] - 2025-08-18
Fixes
- Fix typo in correction to
accidently- Fix typo in correction to
dynamincally- Fix typo in correction to
interruptability- Fix typo in correction to
interruptability- Fix typo in correction to
messager- Fix typo in correction to
preferables- Fix typo in correction to
producibles- Fix typo in correction to
restauranteur- Fix typo in correction to
restauranteurs- Fix typo in correction to
searialize- Fix typo in correction to
somethin- Fix typo in correction to
unaccessible- Fix typo in correction to
unnesessarily[1.35.4] - 2025-08-12
Fixes
- Fix typo in correction to
exctracting[1.35.3] - 2025-08-08
Fixes
- Don't correct
ratatuiin Rust files[1.35.2] - 2025-08-07
Fixes
- Don't correct
unmarshaling[1.35.1] - 2025-08-04
Fixes
- Fix typo in correction to
apostroph
... (truncated)
Commits
a4c3e43chore: Releasebc2ad8adocs: Ipdate changelogd5601e9chore: Release3f713a7Merge pull request #1358 from epage/fixes3c23c6bfix(dict): Remove incorrect correctionsa67079bchore: Release83518a5docs: Update changelog1f86d7cchore: Release5191d1fMerge pull request #1355 from epage/exctractingbb6d8c3fix(dict): Don't correct to exctracting- See full diff in compare view
Updates azure/setup-helm from 4.3.0 to 4.3.1
Release notes
Sourced from azure/setup-helm's releases.
v4.3.1
Changed
- #167 Pinning Action Dependencies for Security and Reliability
- #181 Fix types, and update node version.
- #191 chore(tests): Mock arch to make tests pass on arm host
- #192 chore: remove unnecessary prebuild script
- #203 Update helm version retrieval to use JSON output for latest version
- #207 ci(workflows): update helm version to v3.18.4 and add matrix for tests
Added
Changelog
Sourced from azure/setup-helm's changelog.
Change Log
[4.3.1] - 2025-08-12
Changed
- #167 Pinning Action Dependencies for Security and Reliability
- #181 Fix types, and update node version.
- #191 chore(tests): Mock arch to make tests pass on arm host
- #192 chore: remove unnecessary prebuild script
- #203 Update helm version retrieval to use JSON output for latest version
- #207 ci(workflows): update helm version to v3.18.4 and add matrix for tests
Added
[4.3.0] - 2025-02-15
[4.2.0] - 2024-04-15
- #124 Fix OS detection and download OS-native archive extension
[4.1.0] - 2024-03-01
- #130 switches to use Helm published file to read latest version instead of using GitHub releases
[4.0.0] - 2024-02-12
- #121 update to node20 as node16 is deprecated
Commits
1a275c3build9e7f762chore(release): v4.3.1 (#208)c096176Bump@types/nodefrom 24.1.0 to 24.2.1 in the actions group (#206)5e72872ci(workflows): update helm version to v3.18.4 and add matrix for tests (#207)fb8fa40Update default helm version to 3.18.3 (#194)0d09729chore: remove unnecessary prebuild script (#192)32bc120chore(tests): Mock arch to make tests pass on arm host (#191)51463d6Bump the actions group with 2 updates (#205)aff1094Bump the actions group across 1 directory with 2 updates (#204)a10a524Update helm version retrieval to use JSON output for latest version (#203)- Additional commits viewable in compare view
Updates actions/setup-java from 4.7.1 to 5.0.0
Release notes
Sourced from actions/setup-java's releases.
v5.0.0
What's Changed
Breaking Changes
- Upgrade to node 24 by
@salmanmkcin actions/setup-java#888Make sure your runner is updated to this version or newer to use this release. v2.327.1 Release Notes
Dependency Upgrades
- Upgrade Publish Immutable Action by
@HarithaVattikutiin actions/setup-java#798- Upgrade eslint-plugin-jest from 27.9.0 to 28.11.0 by
@dependabot[bot] in actions/setup-java#730- Upgrade undici from 5.28.5 to 5.29.0 by
@dependabot[bot] in actions/setup-java#833- Upgrade form-data to bring in fix for critical vulnerability by
@gowridurgadin actions/setup-java#887- Upgrade actions/checkout from 4 to 5 by
@dependabot[bot] in actions/setup-java#896Bug Fixes
- Prevent default installation of JetBrains pre-releases by
@priyagupta108in actions/setup-java#859- Improve Error Handling for Setup-Java Action to Help Debug Intermittent Failures by
@gowridurgadin actions/setup-java#848New Contributors
@gowridurgadmade their first contribution in actions/setup-java#848@salmanmkcmade their first contribution in actions/setup-java#888Full Changelog: https://github.com/actions/setup-java/compare/v4...v5.0.0
Commits
dded088Bump actions/checkout from 4 to 5 (#896)0913e9aUpgrade to node 24 (#888)e9343dbBumps form-data (#887)ae2b61dBump undici from 5.28.5 to 5.29.0 (#833)c190c18Bump eslint-plugin-jest from 27.9.0 to 29.0.1 (#730)67aec00Fix: prevent default installation of JetBrains pre-releases (#859)ebb356cImprove Error Handling for Setup-Java Action to Help Debug Intermittent Failu...f4f1212Update publish-immutable-actions.yml (#798)- See full diff in compare view
Updates google-github-actions/setup-gcloud from 2.2.0 to 3.0.0
Release notes
Sourced from google-github-actions/setup-gcloud's releases.
v3.0.0
What's Changed
- ‼️ This release requires Node 24+!
- ‼️ The
skip_tool_cacheoption has been removed! Skipping the tool cache is now the default behavior. To restore the previous behavior of using the tool cache (which is unnecessary on GitHub managed runners, but may provide performance increases on self-hosted runners), setcache: true.
- Bump to node24 by
@sethvargoin google-github-actions/setup-gcloud#723- Do not use the tool-cache by default by
@sethvargoin google-github-actions/setup-gcloud#724- Update to use v3 references by
@sethvargoin google-github-actions/setup-gcloud#725- Release: v3.0.0 by
@google-github-actions-botin google-github-actions/setup-gcloud#726Full Changelog: https://github.com/google-github-actions/setup-gcloud/compare/v2.2.1...v3.0.0
v2.2.1
What's Changed
- Update deps by
@sethvargoin google-github-actions/setup-gcloud#720- Bump to the latest actions-utils to fix the gen-readme bug by
@sethvargoin google-github-actions/setup-gcloud#721- Release: v2.2.1 by
@google-github-actions-botin google-github-actions/setup-gcloud#722Full Changelog: https://github.com/google-github-actions/setup-gcloud/compare/v2...v2.2.1
Commits
26f734cRelease: v3.0.0 (#726)d26df95Update to use v3 references (#725)f7c2918Do not use the tool-cache by default (#724)6387e69Bump to node24 (#723)e427ad8Release: v2.2.1 (#722)d71efb7Bump to the latest actions-utils to fix the gen-readme bug (#721)ed8ba68Update deps (#720)- See full diff in compare view
Updates actions/attest from 2.4.0 to 3.0.0
Release notes
Sourced from actions/attest's releases.
v3.0.0
What's Changed
- Bump form-data from 4.0.0 to 4.0.4 by
@dependabot[bot] in actions/attest#266- Bump
@sigstore/ocifrom 0.5.0 to 0.6.0 by@dependabot[bot] in actions/attest#271- Upgrade to Node 24 by
@salmanmkc/@bdehamerin actions/attest#276- Improved checksum parsing by
@bdehamerin actions/attest#280⚠️ Minimum Compatible Runner Version
v2.327.1 Release Notes
Make sure your runner is updated to this version or newer to use this release.
Full Changelog: https://github.com/actions/attest/compare/v2.4.0...v3.0.0
Commits
daf44fbimproved checksum parsing (#280)eda10f8Upgrade to Node 24 (#276)1e2321dremove super-linter (#283)aecfe99Bump the npm-development group across 1 directory with 4 updates (#282)03f25d8Bump the npm-development group with 4 updates (#273)0fca5a6use absolute path in linter config (#275)238c03fBump actions/checkout from 4 to 5 (#272)9c3e271Bump@sigstore/ocifrom 0.5.0 to 0.6.0 (#271)b40d9faBump the npm-development group with 8 updates (#270)e831e0eBump form-data from 4.0.0 to 4.0.4 (#266)- Additional commits viewable in compare view
Updates depot/build-push-action from 1.15.0 to 1.16.2
Release notes
Sourced from depot/build-push-action's releases.
v1.16.2
What's Changed
- Use ubuntu-latest for release workflow (#42)
@jacobwgillespiev1.16.1
What's Changed
- Update
@depot/actions-public-oidc-clientto v1.1.0 (#41)@jacobwgillespiev1.16.0
What's Changed
Commits
9785b13Merge pull request #42 from depot/latest7a65e80Use ubuntu-latest for release workflow0781b33Merge pull request #41 from depot/updatesd5d8e08Deduplicate dependencies801feb1Update@depot/actions-public-oidc-clientto v1.1.00b7423bMerge pull request #38 from zanieb/zb/annotations57a5fb2Merge branch 'main' into zb/annotations3ebc0d4Merge pull request #40 from depot/feat/save-tagsd662c5afeat: addsave-tagsfor multiple depot registry tags06fcbb7Add support for annotations- See full diff in compare view
Updates tj-actions/changed-files from f963b3f3562b00b6d2dd25efc390eb04e51ef6c6 to 3b04099b21072562f07469c10deb182b24236ca9
Changelog
Sourced from tj-actions/changed-files's changelog.
Changelog
46.0.5 - (2025-04-09)
⚙️ Miscellaneous Tasks
- deps: Bump yaml from 2.7.0 to 2.7.1 (#2520) (ed68ef8) - (dependabot[bot])
- deps-dev: Bump typescript from 5.8.2 to 5.8.3 (#2516) (a7bc14b) - (dependabot[bot])
- deps-dev: Bump
@types/nodefrom 22.13.11 to 22.14.0 (#2517) (3d751f6) - (dependabot[bot])- deps-dev: Bump eslint-plugin-prettier from 5.2.3 to 5.2.6 (#2519) (e2fda4e) - (dependabot[bot])
- deps-dev: Bump ts-jest from 29.2.6 to 29.3.1 (#2518) (0bed1b1) - (dependabot[bot])
- deps: Bump github/codeql-action from 3.28.12 to 3.28.15 (#2530) (6802458) - (dependabot[bot])
- deps: Bump tj-actions/branch-names from 8.0.1 to 8.1.0 (#2521) (cf2e39e) - (dependabot[bot])
- deps: Bump tj-actions/verify-changed-files from 20.0.1 to 20.0.4 (#2523) (6abeaa5) - (dependabot[bot])
⬆️ Upgrades
- Upgraded to v46.0.4 (#2511)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> (6f67ee9) - (github-actions[bot])46.0.4 - (2025-04-03)
🐛 Bug Fixes
- Bug modified_keys and changed_key outputs not set when no changes detected (#2509) (6cb76d0) - (Tonye Jack)
📚 Documentation
⬆️ Upgrades
- Upgraded to v46.0.3 (#2506)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> Co-authored-by: Tonye Jack jtonye@ymail.com (27ae6b3) - (github-actions[bot])46.0.3 - (2025-03-23)
🔄 Update
- Updated README.md (#2501)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> (41e0de5) - (github-actions[bot])
- Updated README.md (#2499)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]
@users.noreply.github.com> (9457878) - (github-actions[bot])📚 Documentation
... (truncated)
Commits
3b04099chore(deps-dev): bump@types/nodefrom 24.2.1 to 24.3.0 (#2649)e7b6c97chore(deps): bump github/codeql-action from 3.29.9 to 3.29.11 (#2651)765d62bchore(deps): bump tj-actions/git-cliff from 2.0.2 to 2.1.0 (#2648)2036da1chore(deps): bump github/codeql-action from 3.29.8 to 3.29.9 (#2647)239aef8chore(deps): bump github/codeql-action from 3.29.7 to 3.29.8 (#2644)a7d5f5fchore(deps-dev): bump@types/nodefrom 24.2.0 to 24.2.1 (#2645)5107f3achore(deps): bump actions/checkout from 4.2.2 to 5.0.0 (#2646)- See full diff in compare view
Updates nixbuild/nix-quick-install-action from 32 to 33
Release notes
Sourced from nixbuild/nix-quick-install-action's releases.
nixbuild/nix-quick-install-action@v33
Changes
- Add new Nix versions: 2.30.2 and 2.31.0.
Supported Nix Versions on x86_64-linux runners
- 2.31.0
- 2.30.2
- 2.29.1
- 2.28.4
- 2.26.4
- 2.24.15
- 2.3.18
Supported Nix Versions on aarch64-linux runners
- 2.31.0
- 2.30.2
- 2.29.1
- 2.28.4
- 2.26.4
- 2.24.15
Supported Nix Versions on x86_64-darwin runners
- 2.31.0
- 2.30.2
- 2.29.1
- 2.28.4
- 2.26.4
- 2.24.15
- 2.3.18
Commits
1f095feRelease v33b20c488Add Nix 2.30 and 2.31- See full diff in compare view
Updates github/codeql-action from 3.29.8 to 3.29.11
Release notes
Sourced from github/codeql-action's releases.
v3.29.11
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
3.29.11 - 21 Aug 2025
- Update default CodeQL bundle version to 2.22.4. #3044
See the full CHANGELOG.md for more information.
v3.29.10
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
3.29.10 - 18 Aug 2025
No user facing changes.
See the full CHANGELOG.md for more information.
v3.29.9
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
3.29.9 - 12 Aug 2025
No user facing changes.
See the full CHANGELOG.md for more information.
Changelog
Sourced from github/codeql-action's changelog.
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
[UNRELEASED]
No user facing changes.
3.29.11 - 21 Aug 2025
- Update default CodeQL bundle version to 2.22.4. #3044
3.29.10 - 18 Aug 2025
No user facing changes.
3.29.9 - 12 Aug 2025
No user facing changes.
3.29.8 - 08 Aug 2025
- Fix an issue where the Action would autodetect unsupported languages such as HTML. #3015
3.29.7 - 07 Aug 2025
This release rolls back 3.29.6 to address issues with language autodetection. It is identical to 3.29.5.
3.29.6 - 07 Aug 2025
- The
cleanup-levelinput to theanalyzeAction is now deprecated. The CodeQL Action has written a limited amount of intermediate results to the database since version 2.2.5, and now automatically manages cleanup. #2999- Update default CodeQL bundle version to 2.22.3. #3000
3.29.5 - 29 Jul 2025
- Update default CodeQL bundle version to 2.22.2. #2986
3.29.4 - 23 Jul 2025
No user facing changes.
3.29.3 - 21 Jul 2025
No user facing changes.
3.29.2 - 30 Jun 2025
- Experimental: When the
quality-queriesinput for theinitaction is provided with an argument, separate.quality.sariffiles are produced and uploaded for each language with the results of the specified queries. Do not use this in production as it is part of an internal experiment and subject to change at any time. #29353.29.1 - 27 Jun 2025
... (truncated)
Commits
3c3833eMerge pull request #3052 from github/update-v3.29.11-14148a4338c4bfbdUpdate changelog for v3.29.1114148a4Merge pull request #3044 from github/update-bundle/codeql-bundle-v2.22.471b2cb3Add changelog note2bf7825Update default bundle to codeql-bundle-v2.22.4db69a51Merge pull request #3049 from github/update-supported-enterprise-server-versionsa68d47bMerge pull request #3050 from github/henrymercer/init-not-called-config-errore496ff9Make "init not called" a configuration errorfd2ea72Update supported GitHub Enterprise Server versions6dee5bcMerge pull request #3045 from github/dependabot/npm_and_yarn/npm-5b4171dd16- Additional commits viewable in compare view
Most Recent Ignore Conditions Applied to This Pull Request
| Dependency Name | Ignore Conditions |
|---|---|
| crate-ci/typos | [>= 1.30.a, < 1.31] |
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions
Pull Request Statistics
1
11
+60
-60
Package Dependencies
github/codeql-action
actions
3.29.8 → 3.29.11
Patch
google-github-actions/setup-gcloud
actions
2.2.0 → 3.0.0
Major
tj-actions/changed-files
actions
f963b3f3562b00b6d2dd25efc390eb04e51ef6c6 → 3b04099b21072562f07469c10deb182b24236ca9
depot/build-push-action
actions
1.15.0 → 1.16.2
Minor
Technical Details
| ID: | 5888935 |
| UUID: | 2779619361 |
| Node ID: | PR_kwDOGkVX1s6lraAh |
| Host: | GitHub |
| Repository: | coder/coder |
| Merge State: | Unknown |