Bump the actions group across 1 directory with 3 updates
Type: Pull Request
State: Merged
![dependabot[bot]](https://github.com/dependabot.png)
Association: Contributor
Comments: 0
(2 months ago)
(2 months ago)
(2 months ago)
by blink1073
dependencies github_actions
Bumps the actions group with 3 updates in the / directory: github/codeql-action, astral-sh/setup-uv and actions-rust-lang/setup-rust-toolchain.
Updates github/codeql-action
from 3.29.0 to 3.29.1
Release notes
Sourced from github/codeql-action's releases.
v3.29.1
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
3.29.1 - 27 Jun 2025
- Fix bug in PR analysis where user-provided
include
query filter fails to exclude non-included queries. #2938- Update default CodeQL bundle version to 2.22.1. #2950
See the full CHANGELOG.md for more information.
Changelog
Sourced from github/codeql-action's changelog.
CodeQL Action Changelog
See the releases page for the relevant changes to the CodeQL CLI and language packs.
[UNRELEASED]
- Experimental: When the
quality-queries
input for theinit
action is provided with an argument, separate.quality.sarif
files are produced and uploaded for each language with the results of the specified queries. Do not use this in production as it is part of an internal experiment and subject to change at any time. #23763.29.1 - 27 Jun 2025
- Fix bug in PR analysis where user-provided
include
query filter fails to exclude non-included queries. #2938- Update default CodeQL bundle version to 2.22.1. #2950
3.29.0 - 11 Jun 2025
- Update default CodeQL bundle version to 2.22.0. #2925
- Bump minimum CodeQL bundle version to 2.16.6. #2912
3.28.19 - 03 Jun 2025
- The CodeQL Action no longer includes its own copy of the extractor for the
actions
language, which is currently in public preview. Theactions
extractor has been included in the CodeQL CLI since v2.20.6. If your workflow has enabled theactions
language and you have pinned yourtools:
property to a specific version of the CodeQL CLI earlier than v2.20.6, you will need to update to at least CodeQL v2.20.6 or disableactions
analysis.- Update default CodeQL bundle version to 2.21.4. #2910
3.28.18 - 16 May 2025
- Update default CodeQL bundle version to 2.21.3. #2893
- Skip validating SARIF produced by CodeQL for improved performance. #2894
- The number of threads and amount of RAM used by CodeQL can now be set via the
CODEQL_THREADS
andCODEQL_RAM
runner environment variables. If set, these environment variables override thethreads
andram
inputs respectively. #28913.28.17 - 02 May 2025
- Update default CodeQL bundle version to 2.21.2. #2872
3.28.16 - 23 Apr 2025
- Update default CodeQL bundle version to 2.21.1. #2863
3.28.15 - 07 Apr 2025
- Fix bug where the action would fail if it tried to produce a debug artifact with more than 65535 files. #2842
3.28.14 - 07 Apr 2025
- Update default CodeQL bundle version to 2.21.0. #2838
3.28.13 - 24 Mar 2025
... (truncated)
Commits
39edc49
Merge pull request #2953 from github/update-v3.29.1-428aea55f27c4fb1
Update changelog for v3.29.1428aea5
Merge pull request #2952 from github/redsun82/fix-swift-test973250f
Swift: recreate a default Swift package to fix test8ef1782
Merge pull request #2950 from github/update-bundle/codeql-bundle-v2.22.1f3bfb98
Add changelog note2b4afc2
Update default bundle to codeql-bundle-v2.22.19b02dc2
Merge pull request #2928 from github/update-supported-enterprise-server-versions7ab92d0
Merge pull request #2948 from github/mbg/copilot-instructions2cae828
Merge pull request #2947 from github/dependency-proxy/codeql-bundle-v2.22.0- Additional commits viewable in compare view
Updates astral-sh/setup-uv
from 6.1.0 to 6.3.1
Release notes
Sourced from astral-sh/setup-uv's releases.
v6.3.1 🌈 Do not warn when version not in manifest-file
Changes
This is a hotfix to change the warning messages that a version could not be found in the local manifest-file to info level.
A
setup-uv
release contains a version-manifest.json file with infos in all availableuv
releases. When a newuv
version is released this is not contained in this file until the file gets updated and a newsetup-uv
release is made. We will overhaul this process in the future but for now the spamming of warnings is removed.🐛 Bug fixes
- Do not warn when version not in manifest-file
@eifinger
(#462)🧰 Maintenance
- chore: update known versions for 0.7.14 @github-actions[bot] (#459)
- Revert "Set expected cache dir drive to C: on windows (#451)"
@eifinger
(#460)v6.3.0 🌈 Use latest version from manifest-file
Changes
If a manifest-file is supplied the default value of the version input (latest) will get the latest version available in the manifest. That might not be the actual latest version available in the official uv repo.
🚀 Enhancements
- Use latest version from manifest-file
@eifinger
(#458)v6.2.0 🌈 New input manifest-file
Changes
This release adds a new input
manifest-file
.The
manifest-file
input allows you to specify a JSON manifest that lists available uv versions, architectures, and their download URLs. By default, this action uses the manifest file contained in this repository, which is automatically updated with each release of uv.The manifest file contains an array of objects, each describing a version, architecture, platform, and the corresponding download URL.
You can supply a custom manifest file URL to define additional versions, architectures, or different download URLs. This is useful if you maintain your own uv builds or want to override the default sources.
For example:
[ { "version": "0.7.12-alpha.1", </tr></table>
... (truncated)
Commits
bd01e18
Do not warn when version not in manifest-file (#462)c6a5eba
chore: update known versions for 0.7.14 (#459)790df8f
Revert "Set expected cache dir drive to C: on windows (#451)" (#460)445689e
Use latest version from manifest-file (#458)a02a550
Look for version-manifest.json relative to action path (#456)60cc2b4
Add input manifest-file (#454)7bbb36f
chore: update known versions for 0.7.13 and 0.7.12 (#444)60ecb38
Set expected cache dir drive to C: on windows (#451)252c995
chore: update known versions for 0.7.11 (#442)477a814
chore: update known versions for 0.7.10 (#440)- Additional commits viewable in compare view
Updates actions-rust-lang/setup-rust-toolchain
from 1.12.0 to 1.13.0
Release notes
Sourced from actions-rust-lang/setup-rust-toolchain's releases.
v1.13.0
What's Changed
- feat: support cache-provider by
@mindrunner
in actions-rust-lang/setup-rust-toolchain#65New Contributors
@mindrunner
made their first contribution in actions-rust-lang/setup-rust-toolchain#65Full Changelog: https://github.com/actions-rust-lang/setup-rust-toolchain/compare/v1.12.0...v1.13.0
Changelog
Sourced from actions-rust-lang/setup-rust-toolchain's changelog.
Changelog
All notable changes to this project will be documented in this file.
The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.
[Unreleased]
[1.13.0] - 2025-06-16
- Add new parameter
cache-provider
that is propagated toSwatinem/rust-cache
ascache-provider
(#65 by@mindrunner
)[1.12.0] - 2025-04-23
- Add support for installing rustup on Windows (#58 by
@maennchen
) This adds support for using Rust on the GitHub provided Windows ARM runners.[1.11.0] - 2025-02-24
- Add new parameter
cache-bin
that is propagated toSwatinem/rust-cache
ascache-bin
(#51 by@enkhjile
)- Add new parameter
cache-shared-key
that is propagated toSwatinem/rust-cache
asshared-key
(#52 by@skanehira
)[1.10.1] - 2024-10-01
- Fix problem matcher for rustfmt output. The format has changed since rust-lang/rustfmt#5971 and now follows the form "filename:line". Thanks to
@0xcypher02
for pointing out the problem.[1.10.0] - 2024-09-23
- Add new parameter
cache-directories
that is propagated toSwatinem/rust-cache
(#44 by@pranc1ngpegasus
)- Add new parameter
cache-key
that is propagated toSwatinem/rust-cache
askey
(#41 by@iainlane
)- Make rustup toolchain installation more robust in light of planned changes rust-lang/rustup#3635 and rust-lang/rustup#3985
- Allow installing multiple Rust toolchains by specifying multiple versions in the
toolchain
input parameter.- Configure the
rustup override
behavior via the newoverride
input. (#38)[1.9.0] - 2024-06-08
- Add extra argument
cache-on-failure
and forward it toSwatinem/rust-cache
. (#39 by@samuelhnrq
)
Set the default the value to true. This will result in more caching than previously. This helps when large dependencies are compiled only for testing to fail.[1.8.0] - 2024-01-13
- Allow specifying subdirectories for cache.
- Fix toolchain file overriding.
[1.7.0] - 2024-01-11
... (truncated)
Commits
fb51252
Update CHANGELOG.md33b85c3
Merge pull request #65 from mindrunner/main82947d7
feat: support cache-provider- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions
Pull Request Statistics
1
3
+12
-12
Package Dependencies
actions
1.12.0 → 1.13.0
Minor
Technical Details
ID: | 2496877 |
UUID: | 2625173953 |
Node ID: | PR_kwDOAAGmE86cePnB |
Host: | GitHub |
Repository: | mongodb/mongo-python-driver |
Merge State: | Unknown |