chore(deps): bump actions/attest-sbom from 3.0.0 to 4.0.0
Type: Pull Request
State: Open
Association: Unknown
Comments: 1
(4 months ago)
(4 months ago)
Bumps actions/attest-sbom from 3.0.0 to 4.0.0.
Release notes
Sourced from actions/attest-sbom's releases.
v4.0.0
[!WARNING] As of version 4.0.0 this action is being deprecated in favor of
actions/attest.actions/attest-sbomwill continue to function as a wrapper on top ofactions/attestfor some period of time, but applications should make plans to migrate.All of the existing action inputs are compatible with the
actions/attestinterface.What's Changed
- Prepare v4 release by
@bdehamerin actions/attest-sbom#253Full Changelog: https://github.com/actions/attest-sbom/compare/v3...v4.0.0
Commits
07e74fcperpare v4 release (#253)b74e951Bump the actions-minor group with 2 updates (#247)7d9b9d6Bump the npm-development group across 1 directory with 4 updates (#245)35d5f43Bump@actions/corefrom 2.0.1 to 2.0.2 in the npm-production group (#243)876bb5fBump the actions-minor group across 1 directory with 3 updates (#246)6cf30caBump the npm-development group with 2 updates (#241)e395115Bump the actions-minor group with 2 updates (#239)afc801dBump the npm-development group with 3 updates (#240)6ec0860Bump@actions/corefrom 1.11.1 to 2.0.1 (#237)532af8aBump github/codeql-action in the actions-minor group (#233)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Technical Details
| ID: | 14330650 |
| UUID: | 4013971453 |
| Node ID: | PR_kwDOQs97Qc7HeLGP |
| Host: | GitHub |
| Repository: | jsonlt/jsonlt-python |