Commit Graph

425 Commits

Author SHA1 Message Date
François Mockers
b4cbb6353c don't auto update things that aren't published 2026-01-14 01:25:17 +01:00
dependabot[bot]
e565aacc84 Bump crate-ci/typos from 1.41.0 to 1.42.0 (#22446)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.41.0 to
1.42.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.42.0</h2>
<h2>[1.42.0] - 2026-01-07</h2>
<h3>Features</h3>
<ul>
<li>Dictionary updates</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h1>Change Log</h1>
<p>All notable changes to this project will be documented in this
file.</p>
<p>The format is based on <a href="https://keepachangelog.com/">Keep a
Changelog</a>
and this project adheres to <a href="https://semver.org/">Semantic
Versioning</a>.</p>
<!-- raw HTML omitted -->
<h2>[Unreleased] - ReleaseDate</h2>
<h2>[1.42.0] - 2026-01-07</h2>
<h3>Features</h3>
<ul>
<li>Dictionary updates</li>
</ul>
<h2>[1.41.0] - 2025-12-31</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1431">December
2025</a> changes</li>
</ul>
<h2>[1.40.1] - 2025-12-29</h2>
<h3>Fixes</h3>
<ul>
<li>Treat <code>incrementer</code> and <code>incrementor</code> the same
for now</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Don't correct ITerm2</li>
</ul>
<h2>[1.40.0] - 2025-11-26</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1405">November
2025</a> changes</li>
</ul>
<h2>[1.39.2] - 2025-11-13</h2>
<h3>Fixes</h3>
<ul>
<li>Don't offer <code>entry</code> as a correction for
<code>entrys</code></li>
</ul>
<h2>[1.39.1] - 2025-11-12</h2>
<h3>Features</h3>
<ul>
<li>Make <code>--help</code> more vibrant</li>
</ul>
<h2>[1.39.0] - 2025-10-31</h2>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="bb4666ad77"><code>bb4666a</code></a>
chore: Release</li>
<li><a
href="6995a8a1d2"><code>6995a8a</code></a>
chore: Release</li>
<li><a
href="e0227ba473"><code>e0227ba</code></a>
docs: Update changelog</li>
<li><a
href="c4054dbccf"><code>c4054db</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1460">#1460</a>
from epage/wiki</li>
<li><a
href="596a0bd11d"><code>596a0bd</code></a>
feat(dict): Extend from misspell's list</li>
<li><a
href="2d459793db"><code>2d45979</code></a>
refactor(misspell): Reformat dict to look like ours</li>
<li><a
href="54e1366637"><code>54e1366</code></a>
feat(dict): Extend from codespell's list</li>
<li><a
href="74e0660315"><code>74e0660</code></a>
feat(dict): Extend from wikipedia's list</li>
<li><a
href="a2568ec213"><code>a2568ec</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1459">#1459</a>
from epage/update</li>
<li><a
href="c360cf6c3d"><code>c360cf6</code></a>
fix(wikipedia): Update dict</li>
<li>Additional commits viewable in <a
href="5c19779cb5...bb4666ad77">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.41.0&new-version=1.42.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-01-09 23:36:56 +00:00
dependabot[bot]
8fbc556183 Bump super-linter/super-linter from 8.3.1 to 8.3.2 (#22270)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.3.1 to 8.3.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.3.2</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.3.1...v8.3.2">8.3.2</a>
(2025-12-24)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li>centralize file array additions and fix type (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7323">#7323</a>)
(<a
href="ce80cf6842">ce80cf6</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7302">#7302</a></li>
<li>create log groups for enabled languages only (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7329">#7329</a>)
(<a
href="7c85bf3695">7c85bf3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7307">#7307</a></li>
<li>initialize github_before_sha (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7120">#7120</a>)
(<a
href="a93b722492">a93b722</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7118">#7118</a>
<a
href="https://redirect.github.com/super-linter/super-linter/issues/7275">#7275</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7313">#7313</a>)
(<a
href="7fab96c232">7fab96c</a>)</li>
<li><strong>docker:</strong> bump clj-kondo/clj-kondo in the docker
group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7325">#7325</a>)
(<a
href="fa23c5433e">fa23c54</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7318">#7318</a>)
(<a
href="dc49a6d6bd">dc49a6d</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7312">#7312</a>)
(<a
href="ab584378be">ab58437</a>)</li>
<li><strong>npm:</strong> bump next from 16.0.10 to 16.1.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7316">#7316</a>)
(<a
href="a8572e292b">a8572e2</a>)</li>
<li><strong>npm:</strong> bump renovate (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7300">#7300</a>)
(<a
href="191338acc8">191338a</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 10
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7322">#7322</a>)
(<a
href="24d9e00de9">24d9e00</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7296">#7296</a>)
(<a
href="069748517a">0697485</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7301">#7301</a>)
(<a
href="4b2bf76ed4">4b2bf76</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7327">#7327</a>)
(<a
href="07e73d6003">07e73d6</a>)</li>
<li><strong>python:</strong> bump ansible-lint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7326">#7326</a>)
(<a
href="47962eae72">47962ea</a>)</li>
<li><strong>python:</strong> bump snakemake (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7295">#7295</a>)
(<a
href="3f925892e7">3f92589</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7299">#7299</a>)
(<a
href="0ca0315180">0ca0315</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
6 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7317">#7317</a>)
(<a
href="ae7e8d8e5c">ae7e8d8</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>disable dependabot cooldown (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7311">#7311</a>)
(<a
href="e98f7d3c79">e98f7d3</a>)</li>
<li><strong>docs:</strong> mention conflicting tools in upgrades (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7324">#7324</a>)
(<a
href="7afe608fff">7afe608</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7298">#7298</a></li>
<li><strong>github-actions:</strong> bump the dev-ci-tools group with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7315">#7315</a>)
(<a
href="4b07868ae2">4b07868</a>)</li>
<li>group eslint updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7321">#7321</a>)
(<a
href="20f25a3690">20f25a3</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.3.1...v8.3.2">8.3.2</a>
(2025-12-24)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li>centralize file array additions and fix type (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7323">#7323</a>)
(<a
href="ce80cf6842">ce80cf6</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7302">#7302</a></li>
<li>create log groups for enabled languages only (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7329">#7329</a>)
(<a
href="7c85bf3695">7c85bf3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7307">#7307</a></li>
<li>initialize github_before_sha (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7120">#7120</a>)
(<a
href="a93b722492">a93b722</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7118">#7118</a>
<a
href="https://redirect.github.com/super-linter/super-linter/issues/7275">#7275</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7313">#7313</a>)
(<a
href="7fab96c232">7fab96c</a>)</li>
<li><strong>docker:</strong> bump clj-kondo/clj-kondo in the docker
group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7325">#7325</a>)
(<a
href="fa23c5433e">fa23c54</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7318">#7318</a>)
(<a
href="dc49a6d6bd">dc49a6d</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7312">#7312</a>)
(<a
href="ab584378be">ab58437</a>)</li>
<li><strong>npm:</strong> bump next from 16.0.10 to 16.1.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7316">#7316</a>)
(<a
href="a8572e292b">a8572e2</a>)</li>
<li><strong>npm:</strong> bump renovate (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7300">#7300</a>)
(<a
href="191338acc8">191338a</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 10
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7322">#7322</a>)
(<a
href="24d9e00de9">24d9e00</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7296">#7296</a>)
(<a
href="069748517a">0697485</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7301">#7301</a>)
(<a
href="4b2bf76ed4">4b2bf76</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7327">#7327</a>)
(<a
href="07e73d6003">07e73d6</a>)</li>
<li><strong>python:</strong> bump ansible-lint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7326">#7326</a>)
(<a
href="47962eae72">47962ea</a>)</li>
<li><strong>python:</strong> bump snakemake (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7295">#7295</a>)
(<a
href="3f925892e7">3f92589</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7299">#7299</a>)
(<a
href="0ca0315180">0ca0315</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
6 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7317">#7317</a>)
(<a
href="ae7e8d8e5c">ae7e8d8</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>disable dependabot cooldown (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7311">#7311</a>)
(<a
href="e98f7d3c79">e98f7d3</a>)</li>
<li><strong>docs:</strong> mention conflicting tools in upgrades (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7324">#7324</a>)
(<a
href="7afe608fff">7afe608</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7298">#7298</a></li>
<li><strong>github-actions:</strong> bump the dev-ci-tools group with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7315">#7315</a>)
(<a
href="4b07868ae2">4b07868</a>)</li>
<li>group eslint updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7321">#7321</a>)
(<a
href="20f25a3690">20f25a3</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="d5b0a2ab11"><code>d5b0a2a</code></a>
chore(main): release 8.3.2 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7297">#7297</a>)</li>
<li><a
href="fa23c5433e"><code>fa23c54</code></a>
deps(docker): bump clj-kondo/clj-kondo in the docker group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7325">#7325</a>)</li>
<li><a
href="07e73d6003"><code>07e73d6</code></a>
deps(npm): bump the npm group across 1 directory with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7327">#7327</a>)</li>
<li><a
href="47962eae72"><code>47962ea</code></a>
deps(python): bump ansible-lint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7326">#7326</a>)</li>
<li><a
href="7c85bf3695"><code>7c85bf3</code></a>
fix: create log groups for enabled languages only (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7329">#7329</a>)</li>
<li><a
href="7afe608fff"><code>7afe608</code></a>
chore(docs): mention conflicting tools in upgrades (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7324">#7324</a>)</li>
<li><a
href="ce80cf6842"><code>ce80cf6</code></a>
fix: centralize file array additions and fix type (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7323">#7323</a>)</li>
<li><a
href="ab584378be"><code>ab58437</code></a>
deps(java): bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7312">#7312</a>)</li>
<li><a
href="24d9e00de9"><code>24d9e00</code></a>
deps(npm): bump the npm group across 1 directory with 10 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7322">#7322</a>)</li>
<li><a
href="dc49a6d6bd"><code>dc49a6d</code></a>
deps(docker): bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7318">#7318</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.3.1...v8.3.2">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.3.1&new-version=8.3.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-01-05 02:07:45 +00:00
dependabot[bot]
752683fcfd Bump actions/checkout from 6.0.0 to 6.0.1 (#22349)
Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.0
to 6.0.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/releases">actions/checkout's
releases</a>.</em></p>
<blockquote>
<h2>v6.0.1</h2>
<h2>What's Changed</h2>
<ul>
<li>Update all references from v5 and v4 to v6 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2314">actions/checkout#2314</a></li>
<li>Add worktree support for persist-credentials includeIf by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2327">actions/checkout#2327</a></li>
<li>Clarify v6 README by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2328">actions/checkout#2328</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v6...v6.0.1">https://github.com/actions/checkout/compare/v6...v6.0.1</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li>See full diff in <a
href="https://github.com/actions/checkout/compare/v6...8e8c483db84b4bee98b60c0593521ed34d9990e8">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/checkout&package-manager=github_actions&previous-version=6.0.0&new-version=6.0.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-01-03 22:22:19 +00:00
dependabot[bot]
d7d82a0f28 Bump crate-ci/typos from 1.40.0 to 1.41.0 (#22350)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.40.0 to
1.41.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.41.0</h2>
<h2>[1.41.0] - 2025-12-31</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1431">December
2025</a> changes</li>
</ul>
<h2>v1.40.1</h2>
<h2>[1.40.1] - 2025-12-29</h2>
<h3>Fixes</h3>
<ul>
<li>Treat <code>incrementer</code> and <code>incrementor</code> the same
for now</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Don't correct ITerm2</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h1>Change Log</h1>
<p>All notable changes to this project will be documented in this
file.</p>
<p>The format is based on <a href="https://keepachangelog.com/">Keep a
Changelog</a>
and this project adheres to <a href="https://semver.org/">Semantic
Versioning</a>.</p>
<!-- raw HTML omitted -->
<h2>[Unreleased] - ReleaseDate</h2>
<h2>[1.41.0] - 2025-12-31</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1431">December
2025</a> changes</li>
</ul>
<h2>[1.40.1] - 2025-12-29</h2>
<h3>Fixes</h3>
<ul>
<li>Treat <code>incrementer</code> and <code>incrementor</code> the same
for now</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Don't correct ITerm2</li>
</ul>
<h2>[1.40.0] - 2025-11-26</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1405">November
2025</a> changes</li>
</ul>
<h2>[1.39.2] - 2025-11-13</h2>
<h3>Fixes</h3>
<ul>
<li>Don't offer <code>entry</code> as a correction for
<code>entrys</code></li>
</ul>
<h2>[1.39.1] - 2025-11-12</h2>
<h3>Features</h3>
<ul>
<li>Make <code>--help</code> more vibrant</li>
</ul>
<h2>[1.39.0] - 2025-10-31</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1383">October
2025</a> changes</li>
</ul>
<h3>Fixes</h3>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="5c19779cb5"><code>5c19779</code></a>
chore: Release</li>
<li><a
href="cf11fdd0ca"><code>cf11fdd</code></a>
chore: Release</li>
<li><a
href="54e83d2a58"><code>54e83d2</code></a>
docs: Update changelog</li>
<li><a
href="fbd7b69944"><code>fbd7b69</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1454">#1454</a>
from epage/dec</li>
<li><a
href="5dc35c7a63"><code>5dc35c7</code></a>
feat(dict): December additions</li>
<li><a
href="1a319b54cc"><code>1a319b5</code></a>
chore: Release</li>
<li><a
href="00852bb03b"><code>00852bb</code></a>
docs: Update changelog</li>
<li><a
href="1d4327057a"><code>1d43270</code></a>
chore: Release</li>
<li><a
href="770146db44"><code>770146d</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1452">#1452</a>
from epage/incrementer</li>
<li><a
href="6bf28995c6"><code>6bf2899</code></a>
fix(dict): Be neutral on incrementer vs incrementor</li>
<li>Additional commits viewable in <a
href="2d0ce569fe...5c19779cb5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.40.0&new-version=1.41.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-01-02 08:00:32 +00:00
François Mockers
9e8c60076c use zizmor to lint GitHub actions (#22294)
# Objective

- Improve security of Bevy CI

## Solution

- Use zizmor to lint actions https://github.com/zizmorcore/zizmor
- Fix a few lints
  - pin actions
  - specify `persist-credentials`
  - set write permissions at job level instead of workflow level
  - set target branch for `pull_request_target` workflows
- Add the linter as CI. With the proposed config, it should report
potential issues in the security center and not block merging. There are
still a few lints that fail and need more rework to fix
2025-12-30 01:05:07 +00:00
François Mockers
7d8d9d9ca9 fixing docs with scraping examples enabled (#22192)
# Objective

- https://github.com/bevyengine/bevy/pull/22142 didn't work as intended
as scrapping examples is enabled by default on docs.rs

## Solution

- Disable only the examples that causes scraping to ICE
2025-12-29 04:22:01 +00:00
loreball
60970fc4fa Group wgpu dep updates together into one (#22262)
# Objective

Closes #22251

## Testing

Validation against https://www.schemastore.org/dependabot-2.0.json +
hope.
2025-12-25 22:46:00 +00:00
dependabot[bot]
7f801c1400 Bump super-linter/super-linter from 8.3.0 to 8.3.1 (#22228)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.3.0 to 8.3.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.3.1</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.3.0...v8.3.1">8.3.1</a>
(2025-12-15)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li><strong>docs:</strong> ansible-lints lints the entire dir (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7272">#7272</a>)
(<a
href="b721f3c545">b721f3c</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7263">#7263</a></li>
<li>handle paths with parentheses (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7273">#7273</a>)
(<a
href="d29d0d4ffb">d29d0d4</a>)</li>
<li>rollback to python 3.13 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7269">#7269</a>)
(<a
href="10265f11c8">10265f1</a>)</li>
<li>trivial log message bug when file does not exist (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7268">#7268</a>)
(<a
href="c6a7b38567">c6a7b38</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7251">#7251</a>)
(<a
href="d8a2032a5d">d8a2032</a>)</li>
<li><strong>java:</strong> bump
com.google.googlejavaformat:google-java-format (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7270">#7270</a>)
(<a
href="140a2e37bc">140a2e3</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7264">#7264</a>)
(<a
href="550df3c97d">550df3c</a>)</li>
<li><strong>java:</strong> bump the java-gradle group across 3
directories with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7252">#7252</a>)
(<a
href="5306a0a618">5306a0a</a>)</li>
<li><strong>npm:</strong> bump <code>@​modelcontextprotocol/sdk</code>
in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7248">#7248</a>)
(<a
href="4d59852bbc">4d59852</a>)</li>
<li><strong>npm:</strong> bump express from 5.1.0 to 5.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7246">#7246</a>)
(<a
href="50462d3ff8">50462d3</a>)</li>
<li><strong>npm:</strong> bump jws from 4.0.0 to 4.0.1 in /dependencies
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7260">#7260</a>)
(<a
href="cc90344711">cc90344</a>)</li>
<li><strong>npm:</strong> bump next from 16.0.7 to 16.0.9 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7277">#7277</a>)
(<a
href="b7cedfbfe6">b7cedfb</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7289">#7289</a>)
(<a
href="f65215e93e">f65215e</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 5
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7271">#7271</a>)
(<a
href="b4e616f557">b4e616f</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 7
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7259">#7259</a>)
(<a
href="0ab9ad4208">0ab9ad4</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 8
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7266">#7266</a>)
(<a
href="39e94f843c">39e94f8</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7288">#7288</a>)
(<a
href="4559b6e55a">4559b6e</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7265">#7265</a>)
(<a
href="026d3fe1ed">026d3fe</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>add prettier and htmlhint to the npm group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7257">#7257</a>)
(<a
href="4692c1cc3a">4692c1c</a>)</li>
<li><strong>deps:</strong> update docker dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7285">#7285</a>)
(<a
href="f4d16d3155">f4d16d3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7244">#7244</a></li>
<li>fix docs typos and update next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7284">#7284</a>)
(<a
href="0df9f3cff2">0df9f3c</a>)</li>
<li>update issue template and print graph (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7276">#7276</a>)
(<a
href="dfb728c158">dfb728c</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.3.0...v8.3.1">8.3.1</a>
(2025-12-15)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li><strong>docs:</strong> ansible-lints lints the entire dir (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7272">#7272</a>)
(<a
href="b721f3c545">b721f3c</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7263">#7263</a></li>
<li>handle paths with parentheses (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7273">#7273</a>)
(<a
href="d29d0d4ffb">d29d0d4</a>)</li>
<li>rollback to python 3.13 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7269">#7269</a>)
(<a
href="10265f11c8">10265f1</a>)</li>
<li>trivial log message bug when file does not exist (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7268">#7268</a>)
(<a
href="c6a7b38567">c6a7b38</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7251">#7251</a>)
(<a
href="d8a2032a5d">d8a2032</a>)</li>
<li><strong>java:</strong> bump
com.google.googlejavaformat:google-java-format (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7270">#7270</a>)
(<a
href="140a2e37bc">140a2e3</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7264">#7264</a>)
(<a
href="550df3c97d">550df3c</a>)</li>
<li><strong>java:</strong> bump the java-gradle group across 3
directories with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7252">#7252</a>)
(<a
href="5306a0a618">5306a0a</a>)</li>
<li><strong>npm:</strong> bump <code>@​modelcontextprotocol/sdk</code>
in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7248">#7248</a>)
(<a
href="4d59852bbc">4d59852</a>)</li>
<li><strong>npm:</strong> bump express from 5.1.0 to 5.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7246">#7246</a>)
(<a
href="50462d3ff8">50462d3</a>)</li>
<li><strong>npm:</strong> bump jws from 4.0.0 to 4.0.1 in /dependencies
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7260">#7260</a>)
(<a
href="cc90344711">cc90344</a>)</li>
<li><strong>npm:</strong> bump next from 16.0.7 to 16.0.9 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7277">#7277</a>)
(<a
href="b7cedfbfe6">b7cedfb</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7289">#7289</a>)
(<a
href="f65215e93e">f65215e</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 5
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7271">#7271</a>)
(<a
href="b4e616f557">b4e616f</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 7
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7259">#7259</a>)
(<a
href="0ab9ad4208">0ab9ad4</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 8
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7266">#7266</a>)
(<a
href="39e94f843c">39e94f8</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7288">#7288</a>)
(<a
href="4559b6e55a">4559b6e</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7265">#7265</a>)
(<a
href="026d3fe1ed">026d3fe</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>add prettier and htmlhint to the npm group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7257">#7257</a>)
(<a
href="4692c1cc3a">4692c1c</a>)</li>
<li><strong>deps:</strong> update docker dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7285">#7285</a>)
(<a
href="f4d16d3155">f4d16d3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7244">#7244</a></li>
<li>fix docs typos and update next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7284">#7284</a>)
(<a
href="0df9f3cff2">0df9f3c</a>)</li>
<li>update issue template and print graph (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7276">#7276</a>)
(<a
href="dfb728c158">dfb728c</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="47984f49b4"><code>47984f4</code></a>
chore(main): release 8.3.1 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7247">#7247</a>)</li>
<li><a
href="4559b6e55a"><code>4559b6e</code></a>
deps(python): bump the pip group across 1 directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7288">#7288</a>)</li>
<li><a
href="f65215e93e"><code>f65215e</code></a>
deps(npm): bump the npm group across 1 directory with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7289">#7289</a>)</li>
<li><a
href="f4d16d3155"><code>f4d16d3</code></a>
chore(deps): update docker dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7285">#7285</a>)</li>
<li><a
href="0df9f3cff2"><code>0df9f3c</code></a>
chore: fix docs typos and update next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7284">#7284</a>)</li>
<li><a
href="b7cedfbfe6"><code>b7cedfb</code></a>
deps(npm): bump next from 16.0.7 to 16.0.9 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7277">#7277</a>)</li>
<li><a
href="dfb728c158"><code>dfb728c</code></a>
chore: update issue template and print graph (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7276">#7276</a>)</li>
<li><a
href="026d3fe1ed"><code>026d3fe</code></a>
deps(python): bump the pip group across 1 directory with 7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7265">#7265</a>)</li>
<li><a
href="d29d0d4ffb"><code>d29d0d4</code></a>
fix: handle paths with parentheses (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7273">#7273</a>)</li>
<li><a
href="b4e616f557"><code>b4e616f</code></a>
deps(npm): bump the npm group across 1 directory with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7271">#7271</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.3.0...v8.3.1">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.3.0&new-version=8.3.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-22 19:41:48 +00:00
dependabot[bot]
2e457880d2 Bump actions/download-artifact from 6 to 7 (#22118)
Bumps
[actions/download-artifact](https://github.com/actions/download-artifact)
from 6 to 7.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/download-artifact/releases">actions/download-artifact's
releases</a>.</em></p>
<blockquote>
<h2>v7.0.0</h2>
<h2>v7 - What's new</h2>
<blockquote>
<p>[!IMPORTANT]
actions/download-artifact@v7 now runs on Node.js 24 (<code>runs.using:
node24</code>) and requires a minimum Actions Runner version of 2.327.1.
If you are using self-hosted runners, ensure they are updated before
upgrading.</p>
</blockquote>
<h3>Node.js 24</h3>
<p>This release updates the runtime to Node.js 24. v6 had preliminary
support for Node 24, however this action was by default still running on
Node.js 20. Now this action by default will run on Node.js 24.</p>
<h2>What's Changed</h2>
<ul>
<li>Update GHES guidance to include reference to Node 20 version by <a
href="https://github.com/patrikpolyak"><code>@​patrikpolyak</code></a>
in <a
href="https://redirect.github.com/actions/download-artifact/pull/440">actions/download-artifact#440</a></li>
<li>Download Artifact Node24 support by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/415">actions/download-artifact#415</a></li>
<li>fix: update <code>@​actions/artifact</code> to fix Node.js 24
punycode deprecation by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/451">actions/download-artifact#451</a></li>
<li>prepare release v7.0.0 for Node.js 24 support by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/452">actions/download-artifact#452</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a
href="https://github.com/patrikpolyak"><code>@​patrikpolyak</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/download-artifact/pull/440">actions/download-artifact#440</a></li>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/download-artifact/pull/415">actions/download-artifact#415</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/download-artifact/compare/v6.0.0...v7.0.0">https://github.com/actions/download-artifact/compare/v6.0.0...v7.0.0</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="37930b1c2a"><code>37930b1</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/452">#452</a>
from actions/download-artifact-v7-release</li>
<li><a
href="72582b9e0a"><code>72582b9</code></a>
doc: update readme</li>
<li><a
href="0d2ec9d4cb"><code>0d2ec9d</code></a>
chore: release v7.0.0 for Node.js 24 support</li>
<li><a
href="fd7ae8fda6"><code>fd7ae8f</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/451">#451</a>
from actions/fix-storage-blob</li>
<li><a
href="d484700543"><code>d484700</code></a>
chore: restore minimatch.dep.yml license file</li>
<li><a
href="03a808050e"><code>03a8080</code></a>
chore: remove obsolete dependency license files</li>
<li><a
href="56fe6d904b"><code>56fe6d9</code></a>
chore: update <code>@​actions/artifact</code> license file to 5.0.1</li>
<li><a
href="8e3ebc4ab4"><code>8e3ebc4</code></a>
chore: update package-lock.json with <code>@​actions/artifact</code><a
href="https://github.com/5"><code>@​5</code></a>.0.1</li>
<li><a
href="1e3c4b4d49"><code>1e3c4b4</code></a>
fix: update <code>@​actions/artifact</code> to ^5.0.0 for Node.js 24
punycode fix</li>
<li><a
href="458627d354"><code>458627d</code></a>
chore: use local <code>@​actions/artifact</code> package for Node.js 24
testing</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/download-artifact/compare/v6...v7">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/download-artifact&package-manager=github_actions&previous-version=6&new-version=7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-18 18:48:54 +00:00
dependabot[bot]
2ee29c7682 Bump peter-evans/create-pull-request from 7 to 8 (#22119)
Bumps
[peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request)
from 7 to 8.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/peter-evans/create-pull-request/releases">peter-evans/create-pull-request's
releases</a>.</em></p>
<blockquote>
<h2>Create Pull Request v8.0.0</h2>
<h2>What's new in v8</h2>
<ul>
<li>Requires <a
href="https://github.com/actions/runner/releases/tag/v2.327.1">Actions
Runner v2.327.1</a> or later if you are using a self-hosted runner for
Node 24 support.</li>
</ul>
<h2>What's Changed</h2>
<ul>
<li>chore: Update checkout action version to v6 by <a
href="https://github.com/yonas"><code>@​yonas</code></a> in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4258">peter-evans/create-pull-request#4258</a></li>
<li>Update actions/checkout references to <a
href="https://github.com/v6"><code>@​v6</code></a> in docs by <a
href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4259">peter-evans/create-pull-request#4259</a></li>
<li>feat: v8 by <a
href="https://github.com/peter-evans"><code>@​peter-evans</code></a> in
<a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4260">peter-evans/create-pull-request#4260</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/yonas"><code>@​yonas</code></a> made
their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4258">peter-evans/create-pull-request#4258</a></li>
<li><a href="https://github.com/Copilot"><code>@​Copilot</code></a> made
their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4259">peter-evans/create-pull-request#4259</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/peter-evans/create-pull-request/compare/v7.0.11...v8.0.0">https://github.com/peter-evans/create-pull-request/compare/v7.0.11...v8.0.0</a></p>
<h2>Create Pull Request v7.0.11</h2>
<h2>What's Changed</h2>
<ul>
<li>fix: restrict remote prune to self-hosted runners by <a
href="https://github.com/peter-evans"><code>@​peter-evans</code></a> in
<a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4250">peter-evans/create-pull-request#4250</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/peter-evans/create-pull-request/compare/v7.0.10...v7.0.11">https://github.com/peter-evans/create-pull-request/compare/v7.0.10...v7.0.11</a></p>
<h2>Create Pull Request v7.0.10</h2>
<p>⚙️ Fixes an issue where updating a pull request failed when targeting
a forked repository with the same owner as its parent.</p>
<h2>What's Changed</h2>
<ul>
<li>build(deps): bump the github-actions group with 2 updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4235">peter-evans/create-pull-request#4235</a></li>
<li>build(deps-dev): bump prettier from 3.6.2 to 3.7.3 in the npm group
by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4240">peter-evans/create-pull-request#4240</a></li>
<li>fix: provider list pulls fallback for multi fork same owner by <a
href="https://github.com/peter-evans"><code>@​peter-evans</code></a> in
<a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4245">peter-evans/create-pull-request#4245</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/obnyis"><code>@​obnyis</code></a> made
their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4064">peter-evans/create-pull-request#4064</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/peter-evans/create-pull-request/compare/v7.0.9...v7.0.10">https://github.com/peter-evans/create-pull-request/compare/v7.0.9...v7.0.10</a></p>
<h2>Create Pull Request v7.0.9</h2>
<p>⚙️ Fixes an <a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/4228">incompatibility</a>
with the recently released <code>actions/checkout@v6</code>.</p>
<h2>What's Changed</h2>
<ul>
<li>~70 dependency updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
<li>docs: fix workaround description about <code>ready_for_review</code>
by <a href="https://github.com/ybiquitous"><code>@​ybiquitous</code></a>
in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/3939">peter-evans/create-pull-request#3939</a></li>
<li>Docs: <code>add-paths</code> default behavior by <a
href="https://github.com/joeflack4"><code>@​joeflack4</code></a> in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/3928">peter-evans/create-pull-request#3928</a></li>
<li>docs: update to create-github-app-token v2 by <a
href="https://github.com/Goooler"><code>@​Goooler</code></a> in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4063">peter-evans/create-pull-request#4063</a></li>
<li>Fix compatibility with actions/checkout@v6 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4230">peter-evans/create-pull-request#4230</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/joeflack4"><code>@​joeflack4</code></a>
made their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/3928">peter-evans/create-pull-request#3928</a></li>
<li><a href="https://github.com/Goooler"><code>@​Goooler</code></a> made
their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4063">peter-evans/create-pull-request#4063</a></li>
<li><a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> made
their first contribution in <a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/4230">peter-evans/create-pull-request#4230</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="98357b18bf"><code>98357b1</code></a>
feat: v8 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/4260">#4260</a>)</li>
<li><a
href="41c0e4b789"><code>41c0e4b</code></a>
Update actions/checkout references to <a
href="https://github.com/v6"><code>@​v6</code></a> in docs (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/4259">#4259</a>)</li>
<li><a
href="994332de4c"><code>994332d</code></a>
chore: Update checkout action version to v6 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/4258">#4258</a>)</li>
<li>See full diff in <a
href="https://github.com/peter-evans/create-pull-request/compare/v7...v8">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=peter-evans/create-pull-request&package-manager=github_actions&previous-version=7&new-version=8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-18 18:48:48 +00:00
dependabot[bot]
e6cc0b90f2 Bump actions/upload-artifact from 5 to 6 (#22121)
Bumps
[actions/upload-artifact](https://github.com/actions/upload-artifact)
from 5 to 6.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/upload-artifact/releases">actions/upload-artifact's
releases</a>.</em></p>
<blockquote>
<h2>v6.0.0</h2>
<h2>v6 - What's new</h2>
<blockquote>
<p>[!IMPORTANT]
actions/upload-artifact@v6 now runs on Node.js 24 (<code>runs.using:
node24</code>) and requires a minimum Actions Runner version of 2.327.1.
If you are using self-hosted runners, ensure they are updated before
upgrading.</p>
</blockquote>
<h3>Node.js 24</h3>
<p>This release updates the runtime to Node.js 24. v5 had preliminary
support for Node.js 24, however this action was by default still running
on Node.js 20. Now this action by default will run on Node.js 24.</p>
<h2>What's Changed</h2>
<ul>
<li>Upload Artifact Node 24 support by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/719">actions/upload-artifact#719</a></li>
<li>fix: update <code>@​actions/artifact</code> for Node.js 24 punycode
deprecation by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/744">actions/upload-artifact#744</a></li>
<li>prepare release v6.0.0 for Node.js 24 support by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/745">actions/upload-artifact#745</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-artifact/compare/v5.0.0...v6.0.0">https://github.com/actions/upload-artifact/compare/v5.0.0...v6.0.0</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="b7c566a772"><code>b7c566a</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/745">#745</a>
from actions/upload-artifact-v6-release</li>
<li><a
href="e516bc8500"><code>e516bc8</code></a>
docs: correct description of Node.js 24 support in README</li>
<li><a
href="ddc45ed9bc"><code>ddc45ed</code></a>
docs: update README to correct action name for Node.js 24 support</li>
<li><a
href="615b319bd2"><code>615b319</code></a>
chore: release v6.0.0 for Node.js 24 support</li>
<li><a
href="017748b48f"><code>017748b</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/744">#744</a>
from actions/fix-storage-blob</li>
<li><a
href="38d4c7997f"><code>38d4c79</code></a>
chore: rebuild dist</li>
<li><a
href="7d27270e0c"><code>7d27270</code></a>
chore: add missing license cache files for <code>@​actions/core</code>,
<code>@​actions/io</code>, and mi...</li>
<li><a
href="5f643d3c94"><code>5f643d3</code></a>
chore: update license files for <code>@​actions/artifact</code><a
href="https://github.com/5"><code>@​5</code></a>.0.1 dependencies</li>
<li><a
href="1df1684032"><code>1df1684</code></a>
chore: update package-lock.json with <code>@​actions/artifact</code><a
href="https://github.com/5"><code>@​5</code></a>.0.1</li>
<li><a
href="b5b1a91840"><code>b5b1a91</code></a>
fix: update <code>@​actions/artifact</code> to ^5.0.0 for Node.js 24
punycode fix</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/upload-artifact/compare/v5...v6">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/upload-artifact&package-manager=github_actions&previous-version=5&new-version=6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-18 18:48:41 +00:00
WaterWhisperer
5286510949 Update the key creation for cache-restore is done on update-cachesyml (#22186)
# Objective

Fixes #22055 

## Solution

Replace `See .github/workflows/validation-jobs.yml for how keys are
generated` with `See .github/workflows/update-caches.yml for how keys
are generated`

## Testing

None (comment)
2025-12-18 18:19:53 +00:00
dependabot[bot]
96e9e45e3b Bump actions/cache from 4 to 5 (#22120)
Bumps [actions/cache](https://github.com/actions/cache) from 4 to 5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/cache/releases">actions/cache's
releases</a>.</em></p>
<blockquote>
<h2>v5.0.0</h2>
<blockquote>
<p>[!IMPORTANT]
<strong><code>actions/cache@v5</code> runs on the Node.js 24 runtime and
requires a minimum Actions Runner version of
<code>2.327.1</code>.</strong></p>
<p>If you are using self-hosted runners, ensure they are updated before
upgrading.</p>
</blockquote>
<hr />
<h2>What's Changed</h2>
<ul>
<li>Upgrade to use node24 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/cache/pull/1630">actions/cache#1630</a></li>
<li>Prepare v5.0.0 release by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/cache/pull/1684">actions/cache#1684</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/cache/compare/v4.3.0...v5.0.0">https://github.com/actions/cache/compare/v4.3.0...v5.0.0</a></p>
<h2>v4.3.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Add note on runner versions by <a
href="https://github.com/GhadimiR"><code>@​GhadimiR</code></a> in <a
href="https://redirect.github.com/actions/cache/pull/1642">actions/cache#1642</a></li>
<li>Prepare <code>v4.3.0</code> release by <a
href="https://github.com/Link"><code>@​Link</code></a>- in <a
href="https://redirect.github.com/actions/cache/pull/1655">actions/cache#1655</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/GhadimiR"><code>@​GhadimiR</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/cache/pull/1642">actions/cache#1642</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/cache/compare/v4...v4.3.0">https://github.com/actions/cache/compare/v4...v4.3.0</a></p>
<h2>v4.2.4</h2>
<h2>What's Changed</h2>
<ul>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/cache/pull/1620">actions/cache#1620</a></li>
<li>Upgrade <code>@actions/cache</code> to <code>4.0.5</code> and move
<code>@protobuf-ts/plugin</code> to dev depdencies by <a
href="https://github.com/Link"><code>@​Link</code></a>- in <a
href="https://redirect.github.com/actions/cache/pull/1634">actions/cache#1634</a></li>
<li>Prepare release <code>4.2.4</code> by <a
href="https://github.com/Link"><code>@​Link</code></a>- in <a
href="https://redirect.github.com/actions/cache/pull/1636">actions/cache#1636</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/nebuk89"><code>@​nebuk89</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/cache/pull/1620">actions/cache#1620</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/cache/compare/v4...v4.2.4">https://github.com/actions/cache/compare/v4...v4.2.4</a></p>
<h2>v4.2.3</h2>
<h2>What's Changed</h2>
<ul>
<li>Update to use <code>@​actions/cache</code> 4.0.3 package &amp;
prepare for new release by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/cache/pull/1577">actions/cache#1577</a>
(SAS tokens for cache entries are now masked in debug logs)</li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/cache/pull/1577">actions/cache#1577</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/cache/compare/v4.2.2...v4.2.3">https://github.com/actions/cache/compare/v4.2.2...v4.2.3</a></p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/actions/cache/blob/main/RELEASES.md">actions/cache's
changelog</a>.</em></p>
<blockquote>
<h1>Releases</h1>
<h2>Changelog</h2>
<h3>5.0.1</h3>
<ul>
<li>Update <code>@azure/storage-blob</code> to <code>^12.29.1</code> via
<code>@actions/cache@5.0.1</code> <a
href="https://redirect.github.com/actions/cache/pull/1685">#1685</a></li>
</ul>
<h3>5.0.0</h3>
<blockquote>
<p>[!IMPORTANT]
<code>actions/cache@v5</code> runs on the Node.js 24 runtime and
requires a minimum Actions Runner version of <code>2.327.1</code>.
If you are using self-hosted runners, ensure they are updated before
upgrading.</p>
</blockquote>
<h3>4.3.0</h3>
<ul>
<li>Bump <code>@actions/cache</code> to <a
href="https://redirect.github.com/actions/toolkit/pull/2132">v4.1.0</a></li>
</ul>
<h3>4.2.4</h3>
<ul>
<li>Bump <code>@actions/cache</code> to v4.0.5</li>
</ul>
<h3>4.2.3</h3>
<ul>
<li>Bump <code>@actions/cache</code> to v4.0.3 (obfuscates SAS token in
debug logs for cache entries)</li>
</ul>
<h3>4.2.2</h3>
<ul>
<li>Bump <code>@actions/cache</code> to v4.0.2</li>
</ul>
<h3>4.2.1</h3>
<ul>
<li>Bump <code>@actions/cache</code> to v4.0.1</li>
</ul>
<h3>4.2.0</h3>
<p>TLDR; The cache backend service has been rewritten from the ground up
for improved performance and reliability. <a
href="https://github.com/actions/cache">actions/cache</a> now integrates
with the new cache service (v2) APIs.</p>
<p>The new service will gradually roll out as of <strong>February 1st,
2025</strong>. The legacy service will also be sunset on the same date.
Changes in these release are <strong>fully backward
compatible</strong>.</p>
<p><strong>We are deprecating some versions of this action</strong>. We
recommend upgrading to version <code>v4</code> or <code>v3</code> as
soon as possible before <strong>February 1st, 2025.</strong> (Upgrade
instructions below).</p>
<p>If you are using pinned SHAs, please use the SHAs of versions
<code>v4.2.0</code> or <code>v3.4.0</code></p>
<p>If you do not upgrade, all workflow runs using any of the deprecated
<a href="https://github.com/actions/cache">actions/cache</a> will
fail.</p>
<p>Upgrading to the recommended versions will not break your
workflows.</p>
<h3>4.1.2</h3>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="9255dc7a25"><code>9255dc7</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/cache/issues/1686">#1686</a>
from actions/cache-v5.0.1-release</li>
<li><a
href="8ff5423e8b"><code>8ff5423</code></a>
chore: release v5.0.1</li>
<li><a
href="9233019a15"><code>9233019</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/cache/issues/1685">#1685</a>
from salmanmkc/node24-storage-blob-fix</li>
<li><a
href="b975f2bb84"><code>b975f2b</code></a>
fix: add peer property to package-lock.json for dependencies</li>
<li><a
href="d0a0e18134"><code>d0a0e18</code></a>
fix: update license files for <code>@​actions/cache</code>,
fast-xml-parser, and strnum</li>
<li><a
href="74de208dcf"><code>74de208</code></a>
fix: update <code>@​actions/cache</code> to ^5.0.1 for Node.js 24
punycode fix</li>
<li><a
href="ac7f1152ea"><code>ac7f115</code></a>
peer</li>
<li><a
href="b0f846b50b"><code>b0f846b</code></a>
fix: update <code>@​actions/cache</code> with storage-blob fix for
Node.js 24 punycode depr...</li>
<li><a
href="a783357455"><code>a783357</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/cache/issues/1684">#1684</a>
from actions/prepare-cache-v5-release</li>
<li><a
href="3bb0d78750"><code>3bb0d78</code></a>
docs: highlight v5 runner requirement in releases</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/cache/compare/v4...v5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/cache&package-manager=github_actions&previous-version=4&new-version=5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-17 18:46:58 +00:00
François Mockers
380767f1d6 disable scrapping examples in doc (#22142)
# Objective

- rustdoc example scrapping is too unstable, and often ICE 
- Fixes https://github.com/bevyengine/bevy/issues/21978

## Solution

- Stop using it
2025-12-16 04:55:09 +00:00
François Mockers
6002f6722d install x264 linux dependency in CI jobs that need it (#22139)
# Objective

- Some CI jobs on a schedule / on main started failing after #21237 
- Fixes part of https://github.com/bevyengine/bevy/issues/21978

## Solution

- Install the linux dependencies needed
2025-12-16 00:55:59 +00:00
François Mockers
4eed4d0427 Easy screenrecording plugin (#21237)
# Objective

- Followup on #21235
- See
https://github.com/mockersf/bevy/compare/easy-screenshots...mockersf:bevy:easy-screenrecording
for what's new
- Be able to record videos from Bevy in a consistent manner

## Solution

- Make a new `EasyScreenRecordPlugin` in the dev tools

## Testing

- Add to any example
```
        .add_plugins(bevy::dev_tools::EasyScreenRecordPlugin::default())
```
- Run the example with the feature `bevy_internal/screenrecording`
enabled
- press the space bar
- wait for it...
- press the space bar again
- screen recording! 🎉 
- almost... you now have a h264 file. VLC can read them, but they are
not the most friendly format
- `ffmpeg` is our friend! `for file in *.h264; do ffmpeg -i $file
$file.mp4; done`
- you now have a .mp4 file that can be shared anywhere!

---

## Showcase

directly taken by Bevy


https://github.com/user-attachments/assets/217f5093-9443-40e5-b2ce-33f65f6a56c6
2025-12-15 00:39:25 +00:00
Kevin Chen
d44b9f8694 Adds UIDebug Overlay centered scene to examples/testbed/ui (#22052)
# Objective

- Fixes #22019 

## Solution

- Adds a new scene in the ui testbed that tests the generation of the Ui
Debug Overlay. It only is viewable if you run the example with
`--features bevy_ui_debug`.
- Added a way to override the color used by the overlay to ensure that
screenshots are consistent between CI runs (the line colors are
generated based on the `Entity`, which changes every time you change the
scene.)
- Added the `--features bevy_ui_debug` flag to `example-run.yml`,
ensuring that screenshots and their validations take this new scene into
account. (I assumed I’m not supposed to add this to
`validation-jobs.yml` under `run-examples-on-wasm`, but if I’m supposed
to, let me know and I can add it. I figured a debug feature does not
need that specific validation).

## Testing

- I ran the command `cargo run --example testbed_ui --features
bevy_ui_debug` and verified that debug lines showed up for regular
outlines, for a node with `Visibility::Hidden` with `show_hidden =
true`, and that clipped areas have outlines with `show_clipped = true`.
I carouseled through all the scenes a couple of times
- I also ran `cargo run --example testbed_ui ` and made sure nothing was
ruined after multiple carousels through all the scenes.

---

## Showcase

`cargo run --example testbed_ui --features bevy_ui_debug` , press
spacebar 11x to see the scene.

<img width="1282" height="750" alt="Screenshot 2025-12-06 at 10 03
25 PM"
src="https://github.com/user-attachments/assets/f76ef3ac-b762-4eef-9843-573f362fe45a"
/>
2025-12-08 22:31:47 +00:00
dependabot[bot]
1285ccf7c0 Bump crate-ci/typos from 1.39.2 to 1.40.0 (#21993)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.39.2 to
1.40.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.40.0</h2>
<h2>[1.40.0] - 2025-11-26</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1405">November
2025</a> changes</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.40.0] - 2025-11-26</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1405">November
2025</a> changes</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="2d0ce569fe"><code>2d0ce56</code></a>
chore: Release</li>
<li><a
href="efbd900f8d"><code>efbd900</code></a>
chore: Release</li>
<li><a
href="863fd15db8"><code>863fd15</code></a>
docs: Update changelog</li>
<li><a
href="9a27b16791"><code>9a27b16</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1432">#1432</a>
from epage/nov</li>
<li><a
href="3dbd9d4eac"><code>3dbd9d4</code></a>
feat(dict): November additions</li>
<li><a
href="a1a16c7b7c"><code>a1a16c7</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1427">#1427</a>
from deining/bump-github-action</li>
<li><a
href="cb8d2e78ff"><code>cb8d2e7</code></a>
docs: Bump GitHub checkout action in 'github-action.md'</li>
<li><a
href="9f99fb8dfe"><code>9f99fb8</code></a>
docs(ref): Clarify extend-words / extend-identifiers</li>
<li>See full diff in <a
href="https://github.com/crate-ci/typos/compare/v1.39.2...v1.40.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.39.2&new-version=1.40.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-01 06:57:49 +00:00
dependabot[bot]
69637b5644 Bump super-linter/super-linter from 8.2.1 to 8.3.0 (#21992)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.2.1 to 8.3.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.3.0</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.2.1...v8.3.0">8.3.0</a>
(2025-11-28)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add ability to specify config files for nbqa tools (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7184">#7184</a>)
(<a
href="b37c1c33a7">b37c1c3</a>)</li>
<li>lint dependabot, github actions with zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7241">#7241</a>)
(<a
href="09306cdabe">09306cd</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7137">#7137</a></li>
<li>support rust 2024 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7211">#7211</a>)
(<a
href="c15ee6dd7d">c15ee6d</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7139">#7139</a></li>
</ul>
<h3>🐛 Bugfixes</h3>
<ul>
<li>parse json to extract terraform version (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7239">#7239</a>)
(<a
href="29f17277db">29f1727</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7188">#7188</a>)
(<a
href="74b24446f8">74b2444</a>)</li>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7231">#7231</a>)
(<a
href="dd55c528c7">dd55c52</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7178">#7178</a>)
(<a
href="3bdc919281">3bdc919</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7202">#7202</a>)
(<a
href="0e09528bdf">0e09528</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7123">#7123</a>)
(<a
href="41c3da1d09">41c3da1</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 12 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7235">#7235</a>)
(<a
href="b1cf27d548">b1cf27d</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 6 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7148">#7148</a>)
(<a
href="76149cff49">76149cf</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 9 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7194">#7194</a>)
(<a
href="45f731ea75">45f731e</a>)</li>
<li><strong>npm:</strong> bump <code>@​babel/eslint-parser</code> in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7183">#7183</a>)
(<a
href="197eb8863a">197eb88</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7127">#7127</a>)
(<a
href="2d57f06c64">2d57f06</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7196">#7196</a>)
(<a
href="033ea992a1">033ea99</a>)</li>
<li><strong>npm:</strong> bump body-parser from 2.2.0 to 2.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7238">#7238</a>)
(<a
href="30403f6aa4">30403f6</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.37.0 to 9.38.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7170">#7170</a>)
(<a
href="b42af6f21b">b42af6f</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.38.0 to 9.39.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7191">#7191</a>)
(<a
href="0cf22c89f9">0cf22c8</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.39.0 to 9.39.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7197">#7197</a>)
(<a
href="513ae8ba51">513ae8b</a>)</li>
<li><strong>npm:</strong> bump eslint-plugin-react-hooks (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7180">#7180</a>)
(<a
href="61e42084aa">61e4208</a>)</li>
<li><strong>npm:</strong> bump js-yaml from 3.14.1 to 3.14.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7210">#7210</a>)
(<a
href="29faa98759">29faa98</a>)</li>
<li><strong>npm:</strong> bump npm-groovy-lint from 15.2.1 to 15.2.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7130">#7130</a>)
(<a
href="4913825234">4913825</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.142.0 to 41.146.5 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7134">#7134</a>)
(<a
href="900b973697">900b973</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.151.1 to 41.161.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7182">#7182</a>)
(<a
href="1d8c2a20d7">1d8c2a2</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.161.0 to 42.4.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7198">#7198</a>)
(<a
href="0a4ed306a1">0a4ed30</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7145">#7145</a>)
(<a
href="c137ca99f7">c137ca9</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7175">#7175</a>)
(<a
href="f0b0ff5c9a">f0b0ff5</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7146">#7146</a>)
(<a
href="d4d3f16826">d4d3f16</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7195">#7195</a>)
(<a
href="ad4f63c168">ad4f63c</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 5
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7233">#7233</a>)
(<a
href="5cadbf190a">5cadbf1</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 8
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7221">#7221</a>)
(<a
href="3802c521f7">3802c52</a>)</li>
<li><strong>npm:</strong> bump the react group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7190">#7190</a>)
(<a
href="d6c8078d41">d6c8078</a>)</li>
<li><strong>npm:</strong> bump the react group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7128">#7128</a>)
(<a
href="4034702980">4034702</a>)</li>
<li><strong>npm:</strong> bump the typescript group across 1 directory
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7176">#7176</a>)
(<a
href="39aba76792">39aba76</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
11 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7199">#7199</a>)
(<a
href="07fbf76c2c">07fbf76</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7234">#7234</a>)
(<a
href="c8bd6d308c">c8bd6d3</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.2.1...v8.3.0">8.3.0</a>
(2025-11-28)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add ability to specify config files for nbqa tools (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7184">#7184</a>)
(<a
href="b37c1c33a7">b37c1c3</a>)</li>
<li>lint dependabot, github actions with zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7241">#7241</a>)
(<a
href="09306cdabe">09306cd</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7137">#7137</a></li>
<li>support rust 2024 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7211">#7211</a>)
(<a
href="c15ee6dd7d">c15ee6d</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7139">#7139</a></li>
</ul>
<h3>🐛 Bugfixes</h3>
<ul>
<li>parse json to extract terraform version (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7239">#7239</a>)
(<a
href="29f17277db">29f1727</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7188">#7188</a>)
(<a
href="74b24446f8">74b2444</a>)</li>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7231">#7231</a>)
(<a
href="dd55c528c7">dd55c52</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7178">#7178</a>)
(<a
href="3bdc919281">3bdc919</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7202">#7202</a>)
(<a
href="0e09528bdf">0e09528</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7123">#7123</a>)
(<a
href="41c3da1d09">41c3da1</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 12 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7235">#7235</a>)
(<a
href="b1cf27d548">b1cf27d</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 6 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7148">#7148</a>)
(<a
href="76149cff49">76149cf</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 9 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7194">#7194</a>)
(<a
href="45f731ea75">45f731e</a>)</li>
<li><strong>npm:</strong> bump <code>@​babel/eslint-parser</code> in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7183">#7183</a>)
(<a
href="197eb8863a">197eb88</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7127">#7127</a>)
(<a
href="2d57f06c64">2d57f06</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7196">#7196</a>)
(<a
href="033ea992a1">033ea99</a>)</li>
<li><strong>npm:</strong> bump body-parser from 2.2.0 to 2.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7238">#7238</a>)
(<a
href="30403f6aa4">30403f6</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.37.0 to 9.38.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7170">#7170</a>)
(<a
href="b42af6f21b">b42af6f</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.38.0 to 9.39.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7191">#7191</a>)
(<a
href="0cf22c89f9">0cf22c8</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.39.0 to 9.39.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7197">#7197</a>)
(<a
href="513ae8ba51">513ae8b</a>)</li>
<li><strong>npm:</strong> bump eslint-plugin-react-hooks (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7180">#7180</a>)
(<a
href="61e42084aa">61e4208</a>)</li>
<li><strong>npm:</strong> bump js-yaml from 3.14.1 to 3.14.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7210">#7210</a>)
(<a
href="29faa98759">29faa98</a>)</li>
<li><strong>npm:</strong> bump npm-groovy-lint from 15.2.1 to 15.2.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7130">#7130</a>)
(<a
href="4913825234">4913825</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.142.0 to 41.146.5 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7134">#7134</a>)
(<a
href="900b973697">900b973</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.151.1 to 41.161.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7182">#7182</a>)
(<a
href="1d8c2a20d7">1d8c2a2</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.161.0 to 42.4.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7198">#7198</a>)
(<a
href="0a4ed306a1">0a4ed30</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7145">#7145</a>)
(<a
href="c137ca99f7">c137ca9</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7175">#7175</a>)
(<a
href="f0b0ff5c9a">f0b0ff5</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7146">#7146</a>)
(<a
href="d4d3f16826">d4d3f16</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7195">#7195</a>)
(<a
href="ad4f63c168">ad4f63c</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 5
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7233">#7233</a>)
(<a
href="5cadbf190a">5cadbf1</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 8
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7221">#7221</a>)
(<a
href="3802c521f7">3802c52</a>)</li>
<li><strong>npm:</strong> bump the react group across 1 directory with 2
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7190">#7190</a>)
(<a
href="d6c8078d41">d6c8078</a>)</li>
<li><strong>npm:</strong> bump the react group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7128">#7128</a>)
(<a
href="4034702980">4034702</a>)</li>
<li><strong>npm:</strong> bump the typescript group across 1 directory
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7176">#7176</a>)
(<a
href="39aba76792">39aba76</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
11 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7199">#7199</a>)
(<a
href="07fbf76c2c">07fbf76</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7234">#7234</a>)
(<a
href="c8bd6d308c">c8bd6d3</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7219">#7219</a>)
(<a
href="91361a34fd">91361a3</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="502f4fe48a"><code>502f4fe</code></a>
chore(main): release 8.3.0 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7149">#7149</a>)</li>
<li><a
href="13997378fd"><code>1399737</code></a>
chore: update google-java-format to 1.29.0 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7104">#7104</a>)</li>
<li><a
href="b1cf27d548"><code>b1cf27d</code></a>
deps(docker): bump the docker group across 1 directory with 12 updates
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7235">#7235</a>)</li>
<li><a
href="09306cdabe"><code>09306cd</code></a>
feat: lint dependabot, github actions with zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7241">#7241</a>)</li>
<li><a
href="5aa81e2b92"><code>5aa81e2</code></a>
chore: set devcontainer name (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7240">#7240</a>)</li>
<li><a
href="29f17277db"><code>29f1727</code></a>
fix: parse json to extract terraform version (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7239">#7239</a>)</li>
<li><a
href="30403f6aa4"><code>30403f6</code></a>
deps(npm): bump body-parser from 2.2.0 to 2.2.1 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7238">#7238</a>)</li>
<li><a
href="c8bd6d308c"><code>c8bd6d3</code></a>
deps(python): bump the pip group across 1 directory with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7234">#7234</a>)</li>
<li><a
href="5cadbf190a"><code>5cadbf1</code></a>
deps(npm): bump the npm group across 1 directory with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7233">#7233</a>)</li>
<li><a
href="f40c1749ad"><code>f40c174</code></a>
ci(github-actions): bump actions/checkout in the dev-ci-tools group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7232">#7232</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.2.1...v8.3.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.2.1&new-version=8.3.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-01 06:56:48 +00:00
dependabot[bot]
b4bf1f0d12 Bump actions/checkout from 5 to 6 (#21927)
Bumps [actions/checkout](https://github.com/actions/checkout) from 5 to
6.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/releases">actions/checkout's
releases</a>.</em></p>
<blockquote>
<h2>v6.0.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Update README to include Node.js 24 support details and requirements
by <a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/2248">actions/checkout#2248</a></li>
<li>Persist creds to a separate file by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2286">actions/checkout#2286</a></li>
<li>v6-beta by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2298">actions/checkout#2298</a></li>
<li>update readme/changelog for v6 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2311">actions/checkout#2311</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v5.0.0...v6.0.0">https://github.com/actions/checkout/compare/v5.0.0...v6.0.0</a></p>
<h2>v6-beta</h2>
<h2>What's Changed</h2>
<p>Updated persist-credentials to store the credentials under
<code>$RUNNER_TEMP</code> instead of directly in the local git
config.</p>
<p>This requires a minimum Actions Runner version of <a
href="https://github.com/actions/runner/releases/tag/v2.329.0">v2.329.0</a>
to access the persisted credentials for <a
href="https://docs.github.com/en/actions/tutorials/use-containerized-services/create-a-docker-container-action">Docker
container action</a> scenarios.</p>
<h2>v5.0.1</h2>
<h2>What's Changed</h2>
<ul>
<li>Port v6 cleanup to v5 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2301">actions/checkout#2301</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v5...v5.0.1">https://github.com/actions/checkout/compare/v5...v5.0.1</a></p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/blob/main/CHANGELOG.md">actions/checkout's
changelog</a>.</em></p>
<blockquote>
<h1>Changelog</h1>
<h2>V6.0.0</h2>
<ul>
<li>Persist creds to a separate file by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2286">actions/checkout#2286</a></li>
<li>Update README to include Node.js 24 support details and requirements
by <a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/2248">actions/checkout#2248</a></li>
</ul>
<h2>V5.0.1</h2>
<ul>
<li>Port v6 cleanup to v5 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2301">actions/checkout#2301</a></li>
</ul>
<h2>V5.0.0</h2>
<ul>
<li>Update actions checkout to use node 24 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2226">actions/checkout#2226</a></li>
</ul>
<h2>V4.3.1</h2>
<ul>
<li>Port v6 cleanup to v4 by <a
href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2305">actions/checkout#2305</a></li>
</ul>
<h2>V4.3.0</h2>
<ul>
<li>docs: update README.md by <a
href="https://github.com/motss"><code>@​motss</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1971">actions/checkout#1971</a></li>
<li>Add internal repos for checking out multiple repositories by <a
href="https://github.com/mouismail"><code>@​mouismail</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1977">actions/checkout#1977</a></li>
<li>Documentation update - add recommended permissions to Readme by <a
href="https://github.com/benwells"><code>@​benwells</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2043">actions/checkout#2043</a></li>
<li>Adjust positioning of user email note and permissions heading by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2044">actions/checkout#2044</a></li>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2194">actions/checkout#2194</a></li>
<li>Update CODEOWNERS for actions by <a
href="https://github.com/TingluoHuang"><code>@​TingluoHuang</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/2224">actions/checkout#2224</a></li>
<li>Update package dependencies by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2236">actions/checkout#2236</a></li>
</ul>
<h2>v4.2.2</h2>
<ul>
<li><code>url-helper.ts</code> now leverages well-known environment
variables by <a href="https://github.com/jww3"><code>@​jww3</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/1941">actions/checkout#1941</a></li>
<li>Expand unit test coverage for <code>isGhes</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1946">actions/checkout#1946</a></li>
</ul>
<h2>v4.2.1</h2>
<ul>
<li>Check out other refs/* by commit if provided, fall back to ref by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1924">actions/checkout#1924</a></li>
</ul>
<h2>v4.2.0</h2>
<ul>
<li>Add Ref and Commit outputs by <a
href="https://github.com/lucacome"><code>@​lucacome</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1180">actions/checkout#1180</a></li>
<li>Dependency updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>- <a
href="https://redirect.github.com/actions/checkout/pull/1777">actions/checkout#1777</a>,
<a
href="https://redirect.github.com/actions/checkout/pull/1872">actions/checkout#1872</a></li>
</ul>
<h2>v4.1.7</h2>
<ul>
<li>Bump the minor-npm-dependencies group across 1 directory with 4
updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1739">actions/checkout#1739</a></li>
<li>Bump actions/checkout from 3 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1697">actions/checkout#1697</a></li>
<li>Check out other refs/* by commit by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1774">actions/checkout#1774</a></li>
<li>Pin actions/checkout's own workflows to a known, good, stable
version. by <a href="https://github.com/jww3"><code>@​jww3</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1776">actions/checkout#1776</a></li>
</ul>
<h2>v4.1.6</h2>
<ul>
<li>Check platform to set archive extension appropriately by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1732">actions/checkout#1732</a></li>
</ul>
<h2>v4.1.5</h2>
<ul>
<li>Update NPM dependencies by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1703">actions/checkout#1703</a></li>
<li>Bump github/codeql-action from 2 to 3 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1694">actions/checkout#1694</a></li>
<li>Bump actions/setup-node from 1 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1696">actions/checkout#1696</a></li>
<li>Bump actions/upload-artifact from 2 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1695">actions/checkout#1695</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="1af3b93b68"><code>1af3b93</code></a>
update readme/changelog for v6 (<a
href="https://redirect.github.com/actions/checkout/issues/2311">#2311</a>)</li>
<li><a
href="71cf2267d8"><code>71cf226</code></a>
v6-beta (<a
href="https://redirect.github.com/actions/checkout/issues/2298">#2298</a>)</li>
<li><a
href="069c695914"><code>069c695</code></a>
Persist creds to a separate file (<a
href="https://redirect.github.com/actions/checkout/issues/2286">#2286</a>)</li>
<li><a
href="ff7abcd0c3"><code>ff7abcd</code></a>
Update README to include Node.js 24 support details and requirements (<a
href="https://redirect.github.com/actions/checkout/issues/2248">#2248</a>)</li>
<li>See full diff in <a
href="https://github.com/actions/checkout/compare/v5...v6">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/checkout&package-manager=github_actions&previous-version=5&new-version=6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-28 23:03:09 +00:00
dependabot[bot]
3cb737f7a4 Bump crate-ci/typos from 1.39.0 to 1.39.2 (#21867)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.39.0 to
1.39.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.39.2</h2>
<h2>[1.39.2] - 2025-11-13</h2>
<h3>Fixes</h3>
<ul>
<li>Don't offer <code>entry</code> as a correction for
<code>entrys</code></li>
</ul>
<h2>v1.39.1</h2>
<h2>[1.39.1] - 2025-11-12</h2>
<h3>Features</h3>
<ul>
<li>Make <code>--help</code> more vibrant</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.39.2] - 2025-11-13</h2>
<h3>Fixes</h3>
<ul>
<li>Don't offer <code>entry</code> as a correction for
<code>entrys</code></li>
</ul>
<h2>[1.39.1] - 2025-11-12</h2>
<h3>Features</h3>
<ul>
<li>Make <code>--help</code> more vibrant</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="626c4bedb7"><code>626c4be</code></a>
chore: Release</li>
<li><a
href="c6b458db05"><code>c6b458d</code></a>
docs: Update changelog</li>
<li><a
href="eed04198a6"><code>eed0419</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1423">#1423</a>
from epage/entrys</li>
<li><a
href="40383f41a2"><code>40383f4</code></a>
fix(dict): Don't offer 'entry' as a correction for 'entrys'</li>
<li><a
href="1af53e3774"><code>1af53e3</code></a>
chore: Release</li>
<li><a
href="e5d291b81a"><code>e5d291b</code></a>
docs: Update changelog</li>
<li><a
href="55474f5ff9"><code>55474f5</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1417">#1417</a>
from starsep/colorful_help</li>
<li><a
href="78b9375950"><code>78b9375</code></a>
feat: Enable colors for typos --help</li>
<li><a
href="308f8f5788"><code>308f8f5</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1409">#1409</a>
from crate-ci/renovate/actions-download-artifact-6.x</li>
<li><a
href="cf03418f50"><code>cf03418</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1410">#1410</a>
from crate-ci/renovate/actions-setup-python-6.x</li>
<li>Additional commits viewable in <a
href="https://github.com/crate-ci/typos/compare/v1.39.0...v1.39.2">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.39.0&new-version=1.39.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-21 22:37:01 +00:00
Greeble
c6cb7c4a52 Bump crate-ci/typos from 1.38.1 to 1.39.0 (adopted, attempt 2) (#21728)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.38.1 to
1.39.0. Adopted from https://github.com/bevyengine/bevy/pull/21724.
Supercedes #21727 which targeted the wrong branch.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-03 09:14:19 +00:00
dependabot[bot]
fa224d7640 Bump super-linter/super-linter from 8.2.0 to 8.2.1 (#21609)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.2.0 to 8.2.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.2.1</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.2.0...v8.2.1">8.2.1</a>
(2025-10-15)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li>biome ignore errors on unmatched files (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7089">#7089</a>)
(<a
href="8d1cfd5ca3">8d1cfd5</a>)</li>
<li>handle pull_request_target (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7088">#7088</a>)
(<a
href="188a10fdb3">188a10f</a>)</li>
<li>handle schedule and workflow_dispatch events (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7098">#7098</a>)
(<a
href="28cb079925">28cb079</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7095">#7095</a></li>
<li>set CONFLICT_FOUND as expected (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7093">#7093</a>)
(<a
href="07cfe7eb12">07cfe7e</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7092">#7092</a></li>
<li>strip workspace from the regex check path (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7110">#7110</a>)
(<a
href="3b72a2d2c0">3b72a2d</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7086">#7086</a></li>
<li>validate DEFAULT_BRANCH when using find (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7119">#7119</a>)
(<a
href="7508f4ccb7">7508f4c</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7117">#7117</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>docker:</strong> bump the docker group with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7100">#7100</a>)
(<a
href="28c568121b">28c5681</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.36.0 to 9.37.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7102">#7102</a>)
(<a
href="cf6cb1ebfa">cf6cb1e</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.132.2 to 41.136.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7107">#7107</a>)
(<a
href="495692ff75">495692f</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7101">#7101</a>)
(<a
href="b3a735d16a">b3a735d</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7108">#7108</a>)
(<a
href="ce227b3ec8">ce227b3</a>)</li>
<li><strong>npm:</strong> bump typescript (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7109">#7109</a>)
(<a
href="deba11c880">deba11c</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7106">#7106</a>)
(<a
href="7c02a56ba6">7c02a56</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>add missing ruff variables to readme (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7091">#7091</a>)
(<a
href="7daeceba58">7daeceb</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7099">#7099</a></li>
<li>explain who ignores VALIDATE_ALL_CODEBASE (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7111">#7111</a>)
(<a
href="9150eb9b2b">9150eb9</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7090">#7090</a></li>
<li><strong>github-actions:</strong> bump
peter-evans/create-issue-from-file (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7103">#7103</a>)
(<a
href="ec80a77393">ec80a77</a>)</li>
<li>update rack to 3.2.3 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7136">#7136</a>)
(<a
href="2e6ad3dff5">2e6ad3d</a>)</li>
<li>update ruby transitive dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7115">#7115</a>)
(<a
href="00a71f647b">00a71f6</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.2.0...v8.2.1">8.2.1</a>
(2025-10-15)</h2>
<h3>🐛 Bugfixes</h3>
<ul>
<li>biome ignore errors on unmatched files (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7089">#7089</a>)
(<a
href="8d1cfd5ca3">8d1cfd5</a>)</li>
<li>handle pull_request_target (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7088">#7088</a>)
(<a
href="188a10fdb3">188a10f</a>)</li>
<li>handle schedule and workflow_dispatch events (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7098">#7098</a>)
(<a
href="28cb079925">28cb079</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7095">#7095</a></li>
<li>set CONFLICT_FOUND as expected (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7093">#7093</a>)
(<a
href="07cfe7eb12">07cfe7e</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7092">#7092</a></li>
<li>strip workspace from the regex check path (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7110">#7110</a>)
(<a
href="3b72a2d2c0">3b72a2d</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7086">#7086</a></li>
<li>validate DEFAULT_BRANCH when using find (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7119">#7119</a>)
(<a
href="7508f4ccb7">7508f4c</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7117">#7117</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>docker:</strong> bump the docker group with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7100">#7100</a>)
(<a
href="28c568121b">28c5681</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.36.0 to 9.37.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7102">#7102</a>)
(<a
href="cf6cb1ebfa">cf6cb1e</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.132.2 to 41.136.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7107">#7107</a>)
(<a
href="495692ff75">495692f</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7101">#7101</a>)
(<a
href="b3a735d16a">b3a735d</a>)</li>
<li><strong>npm:</strong> bump the npm group across 1 directory with 4
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7108">#7108</a>)
(<a
href="ce227b3ec8">ce227b3</a>)</li>
<li><strong>npm:</strong> bump typescript (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7109">#7109</a>)
(<a
href="deba11c880">deba11c</a>)</li>
<li><strong>python:</strong> bump the pip group across 1 directory with
7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7106">#7106</a>)
(<a
href="7c02a56ba6">7c02a56</a>)</li>
</ul>
<h3>🧰 Maintenance</h3>
<ul>
<li>add missing ruff variables to readme (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7091">#7091</a>)
(<a
href="7daeceba58">7daeceb</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7099">#7099</a></li>
<li>explain who ignores VALIDATE_ALL_CODEBASE (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7111">#7111</a>)
(<a
href="9150eb9b2b">9150eb9</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7090">#7090</a></li>
<li><strong>github-actions:</strong> bump
peter-evans/create-issue-from-file (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7103">#7103</a>)
(<a
href="ec80a77393">ec80a77</a>)</li>
<li>update rack to 3.2.3 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7136">#7136</a>)
(<a
href="2e6ad3dff5">2e6ad3d</a>)</li>
<li>update ruby transitive dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7115">#7115</a>)
(<a
href="00a71f647b">00a71f6</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="2bdd90ed32"><code>2bdd90e</code></a>
chore(main): release 8.2.1 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7094">#7094</a>)</li>
<li><a
href="51e00ddd74"><code>51e00dd</code></a>
chore: use powershell from dotnet sdk image (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7141">#7141</a>)</li>
<li><a
href="2e6ad3dff5"><code>2e6ad3d</code></a>
chore: update rack to 3.2.3 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7136">#7136</a>)</li>
<li><a
href="7508f4ccb7"><code>7508f4c</code></a>
fix: validate DEFAULT_BRANCH when using find (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7119">#7119</a>)</li>
<li><a
href="cf6cb1ebfa"><code>cf6cb1e</code></a>
deps(npm): bump eslint from 9.36.0 to 9.37.0 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7102">#7102</a>)</li>
<li><a
href="495692ff75"><code>495692f</code></a>
deps(npm): bump renovate from 41.132.2 to 41.136.0 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7107">#7107</a>)</li>
<li><a
href="deba11c880"><code>deba11c</code></a>
deps(npm): bump typescript (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7109">#7109</a>)</li>
<li><a
href="28c568121b"><code>28c5681</code></a>
deps(docker): bump the docker group with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7100">#7100</a>)</li>
<li><a
href="b3a735d16a"><code>b3a735d</code></a>
deps(npm): bump the eslint-plugins-configs group across 1 directory with
2 up...</li>
<li><a
href="ec80a77393"><code>ec80a77</code></a>
ci(github-actions): bump peter-evans/create-issue-from-file (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7103">#7103</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.2.0...v8.2.1">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.2.0&new-version=8.2.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-28 22:33:03 +00:00
dependabot[bot]
16ee65963e Bump actions/upload-artifact from 4 to 5 (#21663)
Bumps
[actions/upload-artifact](https://github.com/actions/upload-artifact)
from 4 to 5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/upload-artifact/releases">actions/upload-artifact's
releases</a>.</em></p>
<blockquote>
<h2>v5.0.0</h2>
<h2>What's Changed</h2>
<p><strong>BREAKING CHANGE:</strong> this update supports Node
<code>v24.x</code>. This is not a breaking change per-se but we're
treating it as such.</p>
<ul>
<li>Update README.md by <a
href="https://github.com/GhadimiR"><code>@​GhadimiR</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/681">actions/upload-artifact#681</a></li>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/712">actions/upload-artifact#712</a></li>
<li>Readme: spell out the first use of GHES by <a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a> in
<a
href="https://redirect.github.com/actions/upload-artifact/pull/727">actions/upload-artifact#727</a></li>
<li>Update GHES guidance to include reference to Node 20 version by <a
href="https://github.com/patrikpolyak"><code>@​patrikpolyak</code></a>
in <a
href="https://redirect.github.com/actions/upload-artifact/pull/725">actions/upload-artifact#725</a></li>
<li>Bump <code>@actions/artifact</code> to <code>v4.0.0</code></li>
<li>Prepare <code>v5.0.0</code> by <a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a> in
<a
href="https://redirect.github.com/actions/upload-artifact/pull/734">actions/upload-artifact#734</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/GhadimiR"><code>@​GhadimiR</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/681">actions/upload-artifact#681</a></li>
<li><a href="https://github.com/nebuk89"><code>@​nebuk89</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/712">actions/upload-artifact#712</a></li>
<li><a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/727">actions/upload-artifact#727</a></li>
<li><a
href="https://github.com/patrikpolyak"><code>@​patrikpolyak</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/725">actions/upload-artifact#725</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-artifact/compare/v4...v5.0.0">https://github.com/actions/upload-artifact/compare/v4...v5.0.0</a></p>
<h2>v4.6.2</h2>
<h2>What's Changed</h2>
<ul>
<li>Update to use artifact 2.3.2 package &amp; prepare for new
upload-artifact release by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/685">actions/upload-artifact#685</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/685">actions/upload-artifact#685</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-artifact/compare/v4...v4.6.2">https://github.com/actions/upload-artifact/compare/v4...v4.6.2</a></p>
<h2>v4.6.1</h2>
<h2>What's Changed</h2>
<ul>
<li>Update to use artifact 2.2.2 package by <a
href="https://github.com/yacaovsnc"><code>@​yacaovsnc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/673">actions/upload-artifact#673</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-artifact/compare/v4...v4.6.1">https://github.com/actions/upload-artifact/compare/v4...v4.6.1</a></p>
<h2>v4.6.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Expose env vars to control concurrency and timeout by <a
href="https://github.com/yacaovsnc"><code>@​yacaovsnc</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/662">actions/upload-artifact#662</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-artifact/compare/v4...v4.6.0">https://github.com/actions/upload-artifact/compare/v4...v4.6.0</a></p>
<h2>v4.5.0</h2>
<h2>What's Changed</h2>
<ul>
<li>fix: deprecated <code>Node.js</code> version in action by <a
href="https://github.com/hamirmahal"><code>@​hamirmahal</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/578">actions/upload-artifact#578</a></li>
<li>Add new <code>artifact-digest</code> output by <a
href="https://github.com/bdehamer"><code>@​bdehamer</code></a> in <a
href="https://redirect.github.com/actions/upload-artifact/pull/656">actions/upload-artifact#656</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a
href="https://github.com/hamirmahal"><code>@​hamirmahal</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/upload-artifact/pull/578">actions/upload-artifact#578</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="330a01c490"><code>330a01c</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/734">#734</a>
from actions/danwkennedy/prepare-5.0.0</li>
<li><a
href="03f2824452"><code>03f2824</code></a>
Update <code>github.dep.yml</code></li>
<li><a
href="905a1ecb59"><code>905a1ec</code></a>
Prepare <code>v5.0.0</code></li>
<li><a
href="2d9f9cdfa9"><code>2d9f9cd</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/725">#725</a>
from patrikpolyak/patch-1</li>
<li><a
href="9687587dec"><code>9687587</code></a>
Merge branch 'main' into patch-1</li>
<li><a
href="2848b2cda0"><code>2848b2c</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/727">#727</a>
from danwkennedy/patch-1</li>
<li><a
href="9b511775fd"><code>9b51177</code></a>
Spell out the first use of GHES</li>
<li><a
href="cd231ca1ed"><code>cd231ca</code></a>
Update GHES guidance to include reference to Node 20 version</li>
<li><a
href="de65e23aa2"><code>de65e23</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-artifact/issues/712">#712</a>
from actions/nebuk89-patch-1</li>
<li><a
href="8747d8cd76"><code>8747d8c</code></a>
Update README.md</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/upload-artifact/compare/v4...v5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/upload-artifact&package-manager=github_actions&previous-version=4&new-version=5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-28 22:32:19 +00:00
François Mockers
2eca45944a fix path when sending screenshots to pixeleagle (#21683)
# Objective

- #21664 broke CI. Failures wasn't triggered by this PR as it's the CI
that runs from the main branch

## Solution

- download-artifact v5 changed how artefacts are handled. we met a case
not documented in their breaking change
2025-10-28 20:55:13 +00:00
dependabot[bot]
4679505b48 Bump actions/download-artifact from 4 to 6 (#21664)
Bumps
[actions/download-artifact](https://github.com/actions/download-artifact)
from 4 to 6.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/download-artifact/releases">actions/download-artifact's
releases</a>.</em></p>
<blockquote>
<h2>v6.0.0</h2>
<h2>What's Changed</h2>
<p><strong>BREAKING CHANGE:</strong> this update supports Node
<code>v24.x</code>. This is not a breaking change per-se but we're
treating it as such.</p>
<ul>
<li>Update README for download-artifact v5 changes by <a
href="https://github.com/yacaovsnc"><code>@​yacaovsnc</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/417">actions/download-artifact#417</a></li>
<li>Update README with artifact extraction details by <a
href="https://github.com/yacaovsnc"><code>@​yacaovsnc</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/424">actions/download-artifact#424</a></li>
<li>Readme: spell out the first use of GHES by <a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a> in
<a
href="https://redirect.github.com/actions/download-artifact/pull/431">actions/download-artifact#431</a></li>
<li>Bump <code>@actions/artifact</code> to <code>v4.0.0</code></li>
<li>Prepare <code>v6.0.0</code> by <a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a> in
<a
href="https://redirect.github.com/actions/download-artifact/pull/438">actions/download-artifact#438</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a
href="https://github.com/danwkennedy"><code>@​danwkennedy</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/download-artifact/pull/431">actions/download-artifact#431</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/download-artifact/compare/v5...v6.0.0">https://github.com/actions/download-artifact/compare/v5...v6.0.0</a></p>
<h2>v5.0.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/407">actions/download-artifact#407</a></li>
<li>BREAKING fix: inconsistent path behavior for single artifact
downloads by ID by <a
href="https://github.com/GrantBirki"><code>@​GrantBirki</code></a> in <a
href="https://redirect.github.com/actions/download-artifact/pull/416">actions/download-artifact#416</a></li>
</ul>
<h2>v5.0.0</h2>
<h3>🚨 Breaking Change</h3>
<p>This release fixes an inconsistency in path behavior for single
artifact downloads by ID. <strong>If you're downloading single artifacts
by ID, the output path may change.</strong></p>
<h4>What Changed</h4>
<p>Previously, <strong>single artifact downloads</strong> behaved
differently depending on how you specified the artifact:</p>
<ul>
<li><strong>By name</strong>: <code>name: my-artifact</code> → extracted
to <code>path/</code> (direct)</li>
<li><strong>By ID</strong>: <code>artifact-ids: 12345</code> → extracted
to <code>path/my-artifact/</code> (nested)</li>
</ul>
<p>Now both methods are consistent:</p>
<ul>
<li><strong>By name</strong>: <code>name: my-artifact</code> → extracted
to <code>path/</code> (unchanged)</li>
<li><strong>By ID</strong>: <code>artifact-ids: 12345</code> → extracted
to <code>path/</code> (fixed - now direct)</li>
</ul>
<h4>Migration Guide</h4>
<h5> No Action Needed If:</h5>
<ul>
<li>You download artifacts by <strong>name</strong></li>
<li>You download <strong>multiple</strong> artifacts by ID</li>
<li>You already use <code>merge-multiple: true</code> as a
workaround</li>
</ul>
<h5>⚠️ Action Required If:</h5>
<p>You download <strong>single artifacts by ID</strong> and your
workflows expect the nested directory structure.</p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="018cc2cf5b"><code>018cc2c</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/438">#438</a>
from actions/danwkennedy/prepare-6.0.0</li>
<li><a
href="815651c680"><code>815651c</code></a>
Revert &quot;Remove <code>github.dep.yml</code>&quot;</li>
<li><a
href="bb3a066a8b"><code>bb3a066</code></a>
Remove <code>github.dep.yml</code></li>
<li><a
href="fa1ce46bbd"><code>fa1ce46</code></a>
Prepare <code>v6.0.0</code></li>
<li><a
href="4a24838f3d"><code>4a24838</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/431">#431</a>
from danwkennedy/patch-1</li>
<li><a
href="5e3251c4ff"><code>5e3251c</code></a>
Readme: spell out the first use of GHES</li>
<li><a
href="abefc31eaf"><code>abefc31</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/424">#424</a>
from actions/yacaovsnc/update_readme</li>
<li><a
href="ac43a6070a"><code>ac43a60</code></a>
Update README with artifact extraction details</li>
<li><a
href="de96f4613b"><code>de96f46</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/download-artifact/issues/417">#417</a>
from actions/yacaovsnc/update_readme</li>
<li><a
href="7993cb44e9"><code>7993cb4</code></a>
Remove migration guide for artifact download changes</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/download-artifact/compare/v4...v6">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/download-artifact&package-manager=github_actions&previous-version=4&new-version=6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-27 21:32:40 +00:00
Alice Cecile
8e10cbf07a Rename M-Needs- labels (#21614)
# Objective

https://github.com/bevyengine/bevy-website/pull/2293 proposed a rename
of our `M-Needs-Release-Note` and `M-Needs-Migration-Guide` labels for
improved clarity.

This has been approved, so I'm merging that PR.

This repo lists these labels in a few places for automation /
contributor help, and they need to be updated.

## Solution

Grep for these like @bd103 told me to in
https://github.com/bevyengine/bevy-website/pull/2293#issuecomment-3422121003

## Follow-up work

Once this PR is merged I'll actually rename the label.
2025-10-20 17:39:57 +00:00
François Mockers
ed85d9b00a Bevy security policy (#20942)
# Objective

- Check the last unchecked point of
https://github.com/bevyengine/bevy/community

## Solution

- Add a security policy

---------

Co-authored-by: BD103 <59022059+BD103@users.noreply.github.com>
2025-10-16 22:03:06 +00:00
François Mockers
3ca67f042a Update npm test dependencies (#21372)
# Objective

- We use npm for tests on wasm and on mobile
- Dependencies haven't been updated in... a long time

## Solution

- Update them

## Testing

- I ran both in local and it worked
2025-10-15 07:09:34 +00:00
dependabot[bot]
af5f307dd1 Bump github/codeql-action from 3 to 4 (#21523)
Bumps [github/codeql-action](https://github.com/github/codeql-action)
from 3 to 4.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/github/codeql-action/releases">github/codeql-action's
releases</a>.</em></p>
<blockquote>
<h2>v3.30.8</h2>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<h2>3.30.8 - 10 Oct 2025</h2>
<p>No user facing changes.</p>
<p>See the full <a
href="https://github.com/github/codeql-action/blob/v3.30.8/CHANGELOG.md">CHANGELOG.md</a>
for more information.</p>
<h2>v3.30.7</h2>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<h2>3.30.7 - 06 Oct 2025</h2>
<p>No user facing changes.</p>
<p>See the full <a
href="https://github.com/github/codeql-action/blob/v3.30.7/CHANGELOG.md">CHANGELOG.md</a>
for more information.</p>
<h2>v3.30.6</h2>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<h2>3.30.6 - 02 Oct 2025</h2>
<ul>
<li>Update default CodeQL bundle version to 2.23.2. <a
href="https://redirect.github.com/github/codeql-action/pull/3168">#3168</a></li>
</ul>
<p>See the full <a
href="https://github.com/github/codeql-action/blob/v3.30.6/CHANGELOG.md">CHANGELOG.md</a>
for more information.</p>
<h2>v3.30.5</h2>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<h2>3.30.5 - 26 Sep 2025</h2>
<ul>
<li>We fixed a bug that was introduced in <code>3.30.4</code> with
<code>upload-sarif</code> which resulted in files without a
<code>.sarif</code> extension not getting uploaded. <a
href="https://redirect.github.com/github/codeql-action/pull/3160">#3160</a></li>
</ul>
<p>See the full <a
href="https://github.com/github/codeql-action/blob/v3.30.5/CHANGELOG.md">CHANGELOG.md</a>
for more information.</p>
<h2>v3.30.4</h2>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<h2>3.30.4 - 25 Sep 2025</h2>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/github/codeql-action/blob/main/CHANGELOG.md">github/codeql-action's
changelog</a>.</em></p>
<blockquote>
<h2>3.29.4 - 23 Jul 2025</h2>
<p>No user facing changes.</p>
<h2>3.29.3 - 21 Jul 2025</h2>
<p>No user facing changes.</p>
<h2>3.29.2 - 30 Jun 2025</h2>
<ul>
<li>Experimental: When the <code>quality-queries</code> input for the
<code>init</code> action is provided with an argument, separate
<code>.quality.sarif</code> files are produced and uploaded for each
language with the results of the specified queries. Do not use this in
production as it is part of an internal experiment and subject to change
at any time. <a
href="https://redirect.github.com/github/codeql-action/pull/2935">#2935</a></li>
</ul>
<h2>3.29.1 - 27 Jun 2025</h2>
<ul>
<li>Fix bug in PR analysis where user-provided <code>include</code>
query filter fails to exclude non-included queries. <a
href="https://redirect.github.com/github/codeql-action/pull/2938">#2938</a></li>
<li>Update default CodeQL bundle version to 2.22.1. <a
href="https://redirect.github.com/github/codeql-action/pull/2950">#2950</a></li>
</ul>
<h2>3.29.0 - 11 Jun 2025</h2>
<ul>
<li>Update default CodeQL bundle version to 2.22.0. <a
href="https://redirect.github.com/github/codeql-action/pull/2925">#2925</a></li>
<li>Bump minimum CodeQL bundle version to 2.16.6. <a
href="https://redirect.github.com/github/codeql-action/pull/2912">#2912</a></li>
</ul>
<h2>3.28.21 - 28 July 2025</h2>
<p>No user facing changes.</p>
<h2>3.28.20 - 21 July 2025</h2>
<ul>
<li>Remove support for combining SARIF files from a single upload for
GHES 3.18, see <a
href="https://github.blog/changelog/2024-05-06-code-scanning-will-stop-combining-runs-from-a-single-upload/">the
changelog post</a>. <a
href="https://redirect.github.com/github/codeql-action/pull/2959">#2959</a></li>
</ul>
<h2>3.28.19 - 03 Jun 2025</h2>
<ul>
<li>The CodeQL Action no longer includes its own copy of the extractor
for the <code>actions</code> language, which is currently in public
preview.
The <code>actions</code> extractor has been included in the CodeQL CLI
since v2.20.6. If your workflow has enabled the <code>actions</code>
language <em>and</em> you have pinned
your <code>tools:</code> property to a specific version of the CodeQL
CLI earlier than v2.20.6, you will need to update to at least CodeQL
v2.20.6 or disable
<code>actions</code> analysis.</li>
<li>Update default CodeQL bundle version to 2.21.4. <a
href="https://redirect.github.com/github/codeql-action/pull/2910">#2910</a></li>
</ul>
<h2>3.28.18 - 16 May 2025</h2>
<ul>
<li>Update default CodeQL bundle version to 2.21.3. <a
href="https://redirect.github.com/github/codeql-action/pull/2893">#2893</a></li>
<li>Skip validating SARIF produced by CodeQL for improved performance.
<a
href="https://redirect.github.com/github/codeql-action/pull/2894">#2894</a></li>
<li>The number of threads and amount of RAM used by CodeQL can now be
set via the <code>CODEQL_THREADS</code> and <code>CODEQL_RAM</code>
runner environment variables. If set, these environment variables
override the <code>threads</code> and <code>ram</code> inputs
respectively. <a
href="https://redirect.github.com/github/codeql-action/pull/2891">#2891</a></li>
</ul>
<h2>3.28.17 - 02 May 2025</h2>
<ul>
<li>Update default CodeQL bundle version to 2.21.2. <a
href="https://redirect.github.com/github/codeql-action/pull/2872">#2872</a></li>
</ul>
<h2>3.28.16 - 23 Apr 2025</h2>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="a841c540b7"><code>a841c54</code></a>
Scratch <code>uploadSpecifiedFiles</code> tests, make
<code>uploadPayload</code> tests instead</li>
<li><a
href="aeb12f6eaa"><code>aeb12f6</code></a>
Merge branch 'main' into redsun82/skip-sarif-upload-tests</li>
<li><a
href="6fd4ceb7bb"><code>6fd4ceb</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/3189">#3189</a>
from github/henrymercer/download-codeql-rate-limit</li>
<li><a
href="196a3e577b"><code>196a3e5</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/3188">#3188</a>
from github/mbg/telemetry/partial-config</li>
<li><a
href="98abb870dc"><code>98abb87</code></a>
Add configuration error for rate limited CodeQL download</li>
<li><a
href="bdd2cdf891"><code>bdd2cdf</code></a>
Also include <code>language</code> in error status report for
<code>start-proxy</code>, if available</li>
<li><a
href="fb148789ab"><code>fb14878</code></a>
Include <code>languages</code> in <code>start-proxy</code>
telemetry</li>
<li><a
href="2ff418f28a"><code>2ff418f</code></a>
Parse <code>language</code> before calling
<code>getCredentials</code></li>
<li>See full diff in <a
href="https://github.com/github/codeql-action/compare/v3...v4">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github/codeql-action&package-manager=github_actions&previous-version=3&new-version=4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-13 06:29:36 +00:00
dependabot[bot]
5fed6c28b5 Bump crate-ci/typos from 1.37.2 to 1.38.1 (#21522)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.37.2 to
1.38.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.38.1</h2>
<h2>[1.38.1] - 2025-10-07</h2>
<h3>Fixes</h3>
<ul>
<li>Ignore common golang identifiers</li>
</ul>
<h2>v1.38.0</h2>
<h2>[1.38.0] - 2025-10-06</h2>
<h3>Features</h3>
<ul>
<li>Update type list</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Don't correct <code>typ</code></li>
<li>Consistently error on unused config fields</li>
</ul>
<h2>v1.37.3</h2>
<h2>[1.37.3] - 2025-10-06</h2>
<h3>Fixes</h3>
<ul>
<li>Don't correct <code>PN</code> for <code>bitbake</code> file
types</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.38.1] - 2025-10-07</h2>
<h3>Fixes</h3>
<ul>
<li>Ignore common golang identifiers</li>
</ul>
<h2>[1.38.0] - 2025-10-06</h2>
<h3>Features</h3>
<ul>
<li>Update type list</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Don't correct <code>typ</code></li>
<li>Consistently error on unused config fields</li>
</ul>
<h2>[1.37.3] - 2025-10-06</h2>
<h3>Fixes</h3>
<ul>
<li>Don't correct <code>PN</code> for <code>bitbake</code> file
types</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="80c8a4945e"><code>80c8a49</code></a>
chore: Release</li>
<li><a
href="c1008ce1b6"><code>c1008ce</code></a>
docs: Update changelog</li>
<li><a
href="62a3b5083a"><code>62a3b50</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1398">#1398</a>
from ccoveille-forks/go-exclusions</li>
<li><a
href="e6bedbde77"><code>e6bedbd</code></a>
fix(config): Add some Go exclusions</li>
<li><a
href="90cacd60e8"><code>90cacd6</code></a>
docs(ref): Speak to glob ambiguity</li>
<li><a
href="b81b12ea1b"><code>b81b12e</code></a>
docs(ref): Clarify directories are not spell checked</li>
<li><a
href="eaf25df994"><code>eaf25df</code></a>
docs(ref): Speak to locale's behavior</li>
<li><a
href="a9735e2e14"><code>a9735e2</code></a>
docs(ref): Provide identifier/word config examples</li>
<li><a
href="3c14191fcc"><code>3c14191</code></a>
docs(ref): Talk about include lists</li>
<li><a
href="d0f81dc972"><code>d0f81dc</code></a>
docs(ref): Re-organize help more like cargo</li>
<li>Additional commits viewable in <a
href="https://github.com/crate-ci/typos/compare/v1.37.2...v1.38.1">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.37.2&new-version=1.38.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-13 06:28:13 +00:00
François Mockers
7ee613a282 update taplo to 0.10.0 (#21330)
# Objective

- Taplo 0.10.0 is out since may, let's update!

## Solution

- Stop using cargo-binstall. it's a pain to maintain and break updates
for the tools it installs anyway
<img width="827" height="749" alt="Screenshot 2025-10-01 at 21 54 58"
src="https://github.com/user-attachments/assets/f86ba2e9-767f-4a0d-b87c-9222d2b804ff"
/>

- All that just for the tool installing the tool
- Do the curl as recommended in taplo docs

## Testing

- CI
2025-10-06 18:33:15 +00:00
Greeble
9a643c695a (Adopted) Bump crate-ci/typos from 1.36.3 to 1.37.2 #21414 (#21418)
Adopts https://github.com/bevyengine/bevy/pull/21414. Bumps
[crate-ci/typos](https://github.com/crate-ci/typos) from 1.36.3 to
1.37.2.

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-06 10:30:44 +00:00
dependabot[bot]
265ddd5288 Bump super-linter/super-linter from 8.1.0 to 8.2.0 (#21415)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.1.0 to 8.2.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.2.0</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.1.0...v8.2.0">8.2.0</a>
(2025-09-30)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add kubeconform (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7011">#7011</a>)
(<a
href="415cc32b5b">415cc32</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6967">#6967</a></li>
<li>add pre-commit (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7064">#7064</a>)
(<a
href="9106b37eb1">9106b37</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/3683">#3683</a></li>
<li>export GITHUB_TOKEN (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7054">#7054</a>)
(<a
href="879aeb54c5">879aeb5</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6970">#6970</a></li>
<li>run ruff as a formatter (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6981">#6981</a>)
(<a
href="f9bdfcb11f">f9bdfcb</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/5951">#5951</a></li>
<li>set zizmor github token variable (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6971">#6971</a>)
(<a
href="097f489a3c">097f489</a>)</li>
<li>support biome (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7005">#7005</a>)
(<a
href="fdf27febcd">fdf27fe</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6298">#6298</a></li>
<li>support git worktrees (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6983">#6983</a>)
(<a
href="deb98535da">deb9853</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6944">#6944</a></li>
</ul>
<h3>🐛 Bugfixes</h3>
<ul>
<li>initialize GITHUB_BEFORE_SHA on merge commits (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7053">#7053</a>)
(<a
href="4649231e87">4649231</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6873">#6873</a></li>
<li>initialize GITHUB_SHA for both worktrees and regular repos (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7010">#7010</a>)
(<a
href="8477b1314e">8477b13</a>)</li>
<li>install r only when needed (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7029">#7029</a>)
(<a
href="5114ec9316">5114ec9</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7022">#7022</a></li>
<li>set biome working directory (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7035">#7035</a>)
(<a
href="d32a717680">d32a717</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6973">#6973</a>)
(<a
href="1e6cd2fc20">1e6cd2f</a>)</li>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6999">#6999</a>)
(<a
href="0c0b8321d3">0c0b832</a>)</li>
<li><strong>bundler:</strong> bump rubocop-performance (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7014">#7014</a>)
(<a
href="1f7db0b462">1f7db0b</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7071">#7071</a>)
(<a
href="1680ba2250">1680ba2</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6989">#6989</a>)
(<a
href="dee2e4ec01">dee2e4e</a>)</li>
<li><strong>docker:</strong> bump aquasecurity/trivy in the docker group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7080">#7080</a>)
(<a
href="41480dbd9e">41480db</a>)</li>
<li><strong>docker:</strong> bump goreleaser/goreleaser in the docker
group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7070">#7070</a>)
(<a
href="c2c988af99">c2c988a</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7031">#7031</a>)
(<a
href="a1aae7d16e">a1aae7d</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6995">#6995</a>)
(<a
href="54c24c13df">54c24c1</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7000">#7000</a>)
(<a
href="9df4ad90b2">9df4ad9</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7043">#7043</a>)
(<a
href="e2dbaa16f8">e2dbaa1</a>)</li>
<li><strong>docker:</strong> bump the docker group with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6974">#6974</a>)
(<a
href="8ea4f4921c">8ea4f49</a>)</li>
<li><strong>docker:</strong> bump the docker group with 8 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7056">#7056</a>)
(<a
href="ccb8ba06ab">ccb8ba0</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6991">#6991</a>)
(<a
href="6fc26f0c89">6fc26f0</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7072">#7072</a>)
(<a
href="96c0ec91f6">96c0ec9</a>)</li>
<li><strong>npm:</strong> bump <code>@​babel/eslint-parser</code> in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7017">#7017</a>)
(<a
href="c0393aa443">c0393aa</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6992">#6992</a>)
(<a
href="d37840f976">d37840f</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7003">#7003</a>)
(<a
href="6d3fb85646">6d3fb85</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7023">#7023</a>)
(<a
href="a974afd67f">a974afd</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7059">#7059</a>)
(<a
href="dc633f9616">dc633f9</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7074">#7074</a>)
(<a
href="ecf5001972">ecf5001</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7081">#7081</a>)
(<a
href="74125801e0">7412580</a>)</li>
<li><strong>npm:</strong> bump axios (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7040">#7040</a>)
(<a
href="407092f356">407092f</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.33.0 to 9.34.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6977">#6977</a>)
(<a
href="0480c3ec78">0480c3e</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.34.0 to 9.35.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7016">#7016</a>)
(<a
href="aa8b43fec4">aa8b43f</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.1.0...v8.2.0">8.2.0</a>
(2025-09-30)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add kubeconform (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7011">#7011</a>)
(<a
href="415cc32b5b">415cc32</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6967">#6967</a></li>
<li>add pre-commit (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7064">#7064</a>)
(<a
href="9106b37eb1">9106b37</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/3683">#3683</a></li>
<li>export GITHUB_TOKEN (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7054">#7054</a>)
(<a
href="879aeb54c5">879aeb5</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6970">#6970</a></li>
<li>run ruff as a formatter (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6981">#6981</a>)
(<a
href="f9bdfcb11f">f9bdfcb</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/5951">#5951</a></li>
<li>set zizmor github token variable (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6971">#6971</a>)
(<a
href="097f489a3c">097f489</a>)</li>
<li>support biome (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7005">#7005</a>)
(<a
href="fdf27febcd">fdf27fe</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6298">#6298</a></li>
<li>support git worktrees (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6983">#6983</a>)
(<a
href="deb98535da">deb9853</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6944">#6944</a></li>
</ul>
<h3>🐛 Bugfixes</h3>
<ul>
<li>initialize GITHUB_BEFORE_SHA on merge commits (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7053">#7053</a>)
(<a
href="4649231e87">4649231</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6873">#6873</a></li>
<li>initialize GITHUB_SHA for both worktrees and regular repos (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7010">#7010</a>)
(<a
href="8477b1314e">8477b13</a>)</li>
<li>install r only when needed (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7029">#7029</a>)
(<a
href="5114ec9316">5114ec9</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/7022">#7022</a></li>
<li>set biome working directory (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7035">#7035</a>)
(<a
href="d32a717680">d32a717</a>)</li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6973">#6973</a>)
(<a
href="1e6cd2fc20">1e6cd2f</a>)</li>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6999">#6999</a>)
(<a
href="0c0b8321d3">0c0b832</a>)</li>
<li><strong>bundler:</strong> bump rubocop-performance (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7014">#7014</a>)
(<a
href="1f7db0b462">1f7db0b</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7071">#7071</a>)
(<a
href="1680ba2250">1680ba2</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6989">#6989</a>)
(<a
href="dee2e4ec01">dee2e4e</a>)</li>
<li><strong>docker:</strong> bump aquasecurity/trivy in the docker group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/7080">#7080</a>)
(<a
href="41480dbd9e">41480db</a>)</li>
<li><strong>docker:</strong> bump goreleaser/goreleaser in the docker
group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7070">#7070</a>)
(<a
href="c2c988af99">c2c988a</a>)</li>
<li><strong>docker:</strong> bump the docker group across 1 directory
with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7031">#7031</a>)
(<a
href="a1aae7d16e">a1aae7d</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6995">#6995</a>)
(<a
href="54c24c13df">54c24c1</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7000">#7000</a>)
(<a
href="9df4ad90b2">9df4ad9</a>)</li>
<li><strong>docker:</strong> bump the docker group with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7043">#7043</a>)
(<a
href="e2dbaa16f8">e2dbaa1</a>)</li>
<li><strong>docker:</strong> bump the docker group with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6974">#6974</a>)
(<a
href="8ea4f4921c">8ea4f49</a>)</li>
<li><strong>docker:</strong> bump the docker group with 8 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7056">#7056</a>)
(<a
href="ccb8ba06ab">ccb8ba0</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6991">#6991</a>)
(<a
href="6fc26f0c89">6fc26f0</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7072">#7072</a>)
(<a
href="96c0ec91f6">96c0ec9</a>)</li>
<li><strong>npm:</strong> bump <code>@​babel/eslint-parser</code> in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7017">#7017</a>)
(<a
href="c0393aa443">c0393aa</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6992">#6992</a>)
(<a
href="d37840f976">d37840f</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7003">#7003</a>)
(<a
href="6d3fb85646">6d3fb85</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7023">#7023</a>)
(<a
href="a974afd67f">a974afd</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7059">#7059</a>)
(<a
href="dc633f9616">dc633f9</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7074">#7074</a>)
(<a
href="ecf5001972">ecf5001</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7081">#7081</a>)
(<a
href="74125801e0">7412580</a>)</li>
<li><strong>npm:</strong> bump axios (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7040">#7040</a>)
(<a
href="407092f356">407092f</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.33.0 to 9.34.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6977">#6977</a>)
(<a
href="0480c3ec78">0480c3e</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.34.0 to 9.35.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7016">#7016</a>)
(<a
href="aa8b43fec4">aa8b43f</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.35.0 to 9.36.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7061">#7061</a>)
(<a
href="30779159ed">3077915</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="7bba2eeb89"><code>7bba2ee</code></a>
chore(main): release 8.2.0 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6972">#6972</a>)</li>
<li><a
href="8c221dad9b"><code>8c221da</code></a>
deps(python): bump the pip group across 1 directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7079">#7079</a>)</li>
<li><a
href="41480dbd9e"><code>41480db</code></a>
deps(docker): bump aquasecurity/trivy in the docker group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7080">#7080</a>)</li>
<li><a
href="74125801e0"><code>7412580</code></a>
deps(npm): bump <code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7081">#7081</a>)</li>
<li><a
href="d42850b362"><code>d42850b</code></a>
deps(npm): bump renovate from 41.131.12 to 41.132.2 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7082">#7082</a>)</li>
<li><a
href="9106b37eb1"><code>9106b37</code></a>
feat: add pre-commit (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7064">#7064</a>)</li>
<li><a
href="9c989744d0"><code>9c98974</code></a>
deps(npm): bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7069">#7069</a>)</li>
<li><a
href="92f78b71af"><code>92f78b7</code></a>
deps(python): bump the pip group across 1 directory with 3 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7078">#7078</a>)</li>
<li><a
href="ecf5001972"><code>ecf5001</code></a>
deps(npm): bump <code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7074">#7074</a>)</li>
<li><a
href="98635c9cf4"><code>98635c9</code></a>
deps(npm): bump the npm group across 1 directory with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/7077">#7077</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.1.0...v8.2.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.1.0&new-version=8.2.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-06 07:14:45 +00:00
BD103
feea1a1cbe Update cargo-binstall to v1.15.6 (#21324)
# Objective

- Adopted from #21271.
- `cargo-binstall` in CI is outdated, let's update!

## Solution

- Update to v1.15.6 from v1.14.1.

## Testing

- As it's run in CI, the best way to test is to run CI! :)

## Notable Changes

-
[v1.14.2](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.14.2)
- Dependency updates
-
[v1.14.3](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.14.3)
- Fixes race condition
-
[v1.14.4](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.14.4)
- Switch from `fs4` to `std` for file locking
-
[v1.15.0](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.0)
- Prompt when using Quickinstall. ~~This may cause some issues in CI, I
need to investigate it further.~~
-
[v1.15.1](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.1)
- Fix issues with manifest file and Quickinstall prompt
-
[v1.15.2](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.2)
- Fix updating telemetry config file
-
[v1.15.3](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.3)
- Stop building for x86 MacOS
-
[v1.15.4](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.4)
- Docs and dependencies
-
[v1.15.5](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.5)
- Support Socks5 proxy
-
[v1.15.6](https://github.com/cargo-bins/cargo-binstall/releases/tag/v1.15.6)
- Update dependencies

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-01 19:20:48 +00:00
dependabot[bot]
9a4a1194e2 Bump crate-ci/typos from 1.36.2 to 1.36.3 (#21270)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.36.2 to
1.36.3.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.36.3</h2>
<h2>[1.36.3] - 2025-09-25</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>analysises</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.36.3] - 2025-09-25</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>analysises</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="0c17dabcee"><code>0c17dab</code></a>
chore: Release</li>
<li><a
href="d4a3b7b012"><code>d4a3b7b</code></a>
docs: Update changelog</li>
<li><a
href="8feb042263"><code>8feb042</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1379">#1379</a>
from epage/dict</li>
<li><a
href="6995b89f82"><code>6995b89</code></a>
fix(dict): Don't correct too analysises</li>
<li><a
href="87d09ddc37"><code>87d09dd</code></a>
fix(codespell): Update to 2f3751e</li>
<li><a
href="5e1db27ee9"><code>5e1db27</code></a>
docs(readme): Specify --locked</li>
<li><a
href="2abc5d928a"><code>2abc5d9</code></a>
chore(deps): Update Rust Stable to v1.90 (<a
href="https://redirect.github.com/crate-ci/typos/issues/1375">#1375</a>)</li>
<li>See full diff in <a
href="https://github.com/crate-ci/typos/compare/v1.36.2...v1.36.3">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.36.2&new-version=1.36.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-29 22:50:21 +00:00
François Mockers
559b2a1e4b run codeql on PRs to automatically detect security vulnerabilities (#21245)
# Objective

- CodeQL for Rust is now stable and fast
- Run it on PRs

> Discover vulnerabilities across a codebase with CodeQL, our
industry-leading semantic code analysis engine. CodeQL lets you query
code as though it were data. Write a query to find all variants of a
vulnerability, eradicating it forever. Then share your query to help
others do the same.
2025-09-28 17:41:29 +00:00
dependabot[bot]
45f54fd884 Bump crate-ci/typos from 1.35.5 to 1.36.2 (#21047)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.35.5 to
1.36.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.36.2</h2>
<h2>[1.36.2] - 2025-09-04</h2>
<h3>Fixes</h3>
<ul>
<li>Fix regression from 1.36.1 when rendering an error for a line with
invalid UTF-8</li>
</ul>
<h2>v1.36.1</h2>
<h2>[1.36.1] - 2025-09-03</h2>
<h3>Fixes</h3>
<ul>
<li>Replaced the error rendering for various quality of life
improvements</li>
</ul>
<h2>v1.36.0</h2>
<h2>[1.36.0] - 2025-09-02</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1345">August
2025</a> changes</li>
</ul>
<h2>v1.35.8</h2>
<h2>[1.35.8] - 2025-09-02</h2>
<h2>v1.35.7</h2>
<h2>[1.35.7] - 2025-08-29</h2>
<h3>Documentation</h3>
<ul>
<li>Expand PyPI metadata</li>
</ul>
<h2>v1.35.6</h2>
<h2>[1.35.6] - 2025-08-28</h2>
<h3>Fixes</h3>
<ul>
<li>Track <code>go.mod</code> as a golang file (regression from
1.13.21)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.36.2] - 2025-09-04</h2>
<h3>Fixes</h3>
<ul>
<li>Fix regression from 1.36.1 when rendering an error for a line with
invalid UTF-8</li>
</ul>
<h2>[1.36.1] - 2025-09-03</h2>
<h3>Fixes</h3>
<ul>
<li>Replaced the error rendering for various quality of life
improvements</li>
</ul>
<h2>[1.36.0] - 2025-09-02</h2>
<h3>Features</h3>
<ul>
<li>Updated the dictionary with the <a
href="https://redirect.github.com/crate-ci/typos/issues/1345">August
2025</a> changes</li>
</ul>
<h2>[1.35.8] - 2025-09-02</h2>
<h2>[1.35.7] - 2025-08-29</h2>
<h3>Documentation</h3>
<ul>
<li>Expand PyPI metadata</li>
</ul>
<h2>[1.35.6] - 2025-08-28</h2>
<h3>Fixes</h3>
<ul>
<li>Track <code>go.mod</code> as a golang file (regression from
1.13.21)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="85f62a8a84"><code>85f62a8</code></a>
chore: Release</li>
<li><a
href="6f26306a91"><code>6f26306</code></a>
docs: Update changelog</li>
<li><a
href="6bd8b39b57"><code>6bd8b39</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1374">#1374</a>
from epage/invalid</li>
<li><a
href="f5e19d3038"><code>f5e19d3</code></a>
fix(cli): Don't panic with invalid utf-8</li>
<li><a
href="5062775d92"><code>5062775</code></a>
test(cli): Generalize utf16 tests</li>
<li><a
href="b6297a6a50"><code>b6297a6</code></a>
chore: Release</li>
<li><a
href="e6d718928a"><code>e6d7189</code></a>
docs: Update changelog</li>
<li><a
href="1bf1ed2584"><code>1bf1ed2</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1372">#1372</a>
from epage/render</li>
<li><a
href="9e79b8d2c6"><code>9e79b8d</code></a>
refactor(cli): Give control over the whole group</li>
<li><a
href="a5fa603453"><code>a5fa603</code></a>
refactor(cli): Extract snippet creation</li>
<li>Additional commits viewable in <a
href="https://github.com/crate-ci/typos/compare/v1.35.5...v1.36.2">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.35.5&new-version=1.36.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

---------

Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: Torstein Grindvik <Torstein Grindvik>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Lucas Franca <lucasfnf@gmail.com>
Co-authored-by: akimakinai <105044389+akimakinai@users.noreply.github.com>
Co-authored-by: Rob Parrett <robparrett@gmail.com>
Co-authored-by: ickshonpe <david.curthoys@googlemail.com>
Co-authored-by: Janis <130913856+janis-bhm@users.noreply.github.com>
Co-authored-by: Greeble <166992735+greeble-dev@users.noreply.github.com>
Co-authored-by: François Mockers <francois.mockers@vleue.com>
Co-authored-by: DAA <42379074+DaAlbrecht@users.noreply.github.com>
Co-authored-by: Torstein Grindvik <52322338+torsteingrindvik@users.noreply.github.com>
Co-authored-by: Alice Cecile <alice.i.cecile@gmail.com>
Co-authored-by: MushineLament <mushinelament@163.com>
Co-authored-by: Joda <joseph@josephbartley.dev>
Co-authored-by: Dimitrios Loukadakis <dloukadakis@users.noreply.github.com>
Co-authored-by: Miles Silberling-Cook <NthTensor@users.noreply.github.com>
Co-authored-by: atlv <email@atlasdostal.com>
Co-authored-by: Periwink <charlesbour@gmail.com>
Co-authored-by: Corvus <corvusprudens@gmail.com>
Co-authored-by: Marc Guiselin <marc.guiselin@protonmail.com>
Co-authored-by: Carter Anderson <mcanders1@gmail.com>
Co-authored-by: Chris Russell <8494645+chescock@users.noreply.github.com>
Co-authored-by: James Liu <contact@jamessliu.com>
2025-09-21 01:21:17 +00:00
François Mockers
cdbc1a0499 Run release exporter in ci (#21067)
# Objective

- Fail PRs that add a release content that fails parsing

## Solution

- Add a check mode to the exporter tool
- Run it in CI

## Testing

- Should fail on this PR before
https://github.com/bevyengine/bevy/pull/21065 is merged
2025-09-15 22:02:27 +00:00
dependabot[bot]
6354e6a6f4 Bump actions/upload-pages-artifact from 3 to 4 (#20746)
Bumps
[actions/upload-pages-artifact](https://github.com/actions/upload-pages-artifact)
from 3 to 4.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/upload-pages-artifact/releases">actions/upload-pages-artifact's
releases</a>.</em></p>
<blockquote>
<h2>v4.0.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Potentially breaking change: hidden files (specifically dotfiles)
will not be included in the artifact by <a
href="https://github.com/tsusdere"><code>@​tsusdere</code></a> in <a
href="https://redirect.github.com/actions/upload-pages-artifact/pull/102">actions/upload-pages-artifact#102</a>
If you need to include dotfiles in your artifact: instead of using this
action, create your own artifact according to these requirements <a
href="https://github.com/actions/upload-pages-artifact?tab=readme-ov-file#artifact-validation">https://github.com/actions/upload-pages-artifact?tab=readme-ov-file#artifact-validation</a></li>
<li>Pin <code>actions/upload-artifact</code> to SHA by <a
href="https://github.com/heavymachinery"><code>@​heavymachinery</code></a>
in <a
href="https://redirect.github.com/actions/upload-pages-artifact/pull/127">actions/upload-pages-artifact#127</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/upload-pages-artifact/compare/v3.0.1...v4.0.0">https://github.com/actions/upload-pages-artifact/compare/v3.0.1...v4.0.0</a></p>
<h2>v3.0.1</h2>
<h1>Changelog</h1>
<ul>
<li>Group tar's output to prevent it from messing up action logs <a
href="https://github.com/SilverRainZ"><code>@​SilverRainZ</code></a> (<a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/94">#94</a>)</li>
<li>Update README.md <a
href="https://github.com/uiolee"><code>@​uiolee</code></a> (<a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/88">#88</a>)</li>
<li>Bump the non-breaking-changes group with 1 update <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> (<a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/92">#92</a>)</li>
<li>Update Dependabot config to group non-breaking changes <a
href="https://github.com/JamesMGreene"><code>@​JamesMGreene</code></a>
(<a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/91">#91</a>)</li>
<li>Bump actions/checkout from 3 to 4 <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> (<a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/76">#76</a>)</li>
</ul>
<p>See details of <a
href="https://github.com/actions/upload-pages-artifact/compare/v3.0.0...v3.0.1">all
code changes</a> since previous release.</p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="7b1f4a764d"><code>7b1f4a7</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/127">#127</a>
from heavymachinery/pin-sha</li>
<li><a
href="4cc19c7d3f"><code>4cc19c7</code></a>
Pin <code>actions/upload-artifact</code> to SHA</li>
<li><a
href="2d163be3dd"><code>2d163be</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/107">#107</a>
from KittyChiu/main</li>
<li><a
href="c70484322b"><code>c704843</code></a>
fix: linted README</li>
<li><a
href="9605915f1d"><code>9605915</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/106">#106</a>
from KittyChiu/kittychiu/update-readme-1</li>
<li><a
href="e59cdfe6d6"><code>e59cdfe</code></a>
Update README.md</li>
<li><a
href="a2d6704326"><code>a2d6704</code></a>
doc: updated usage section in readme</li>
<li><a
href="984864e7b7"><code>984864e</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/105">#105</a>
from actions/Jcambass-patch-1</li>
<li><a
href="45dc78884c"><code>45dc788</code></a>
Add workflow file for publishing releases to immutable action
package</li>
<li><a
href="efaad07812"><code>efaad07</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/upload-pages-artifact/issues/102">#102</a>
from actions/hidden-files</li>
<li>Additional commits viewable in <a
href="https://github.com/actions/upload-pages-artifact/compare/v3...v4">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/upload-pages-artifact&package-manager=github_actions&previous-version=3&new-version=4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-11 19:17:32 +00:00
dependabot[bot]
4ab8807cfb Bump cargo-bins/cargo-binstall from 1.14.1 to 1.15.4 (#20927)
Bumps
[cargo-bins/cargo-binstall](https://github.com/cargo-bins/cargo-binstall)
from 1.14.1 to 1.15.4.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/cargo-bins/cargo-binstall/releases">cargo-bins/cargo-binstall's
releases</a>.</em></p>
<blockquote>
<h2>v1.15.4</h2>
<p><em>Binstall is a tool to fetch and install Rust-based executables as
binaries. It aims to be a drop-in replacement for <code>cargo
install</code> in most cases. Install it today with <code>cargo install
cargo-binstall</code>, from the binaries below, or if you already have
it, upgrade with <code>cargo binstall cargo-binstall</code>.</em></p>
<h4>In this release:</h4>
<ul>
<li>clarify <code>--install-path</code> behavior when installing from
source (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2259">#2259</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2294">#2294</a>)</li>
</ul>
<h4>Other changes:</h4>
<ul>
<li>bump dependencies (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2295">#2295</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2298">#2298</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2299">#2299</a>)</li>
</ul>
<h2>v1.15.3</h2>
<p><em>Binstall is a tool to fetch and install Rust-based executables as
binaries. It aims to be a drop-in replacement for <code>cargo
install</code> in most cases. Install it today with <code>cargo install
cargo-binstall</code>, from the binaries below, or if you already have
it, upgrade with <code>cargo binstall cargo-binstall</code>.</em></p>
<h4>In this release:</h4>
<ul>
<li>Upgrade (de)compression libraries (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2289">#2289</a>)</li>
<li>Fix release pipeline: stop building for x86_64h-apple-darwin since
it is broken and is a rarely used tier 3 target, plus GHA no longer
offers x86_64 mac (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2292">#2292</a>)</li>
</ul>
<h2>v1.15.2</h2>
<p><em>Binstall is a tool to fetch and install Rust-based executables as
binaries. It aims to be a drop-in replacement for <code>cargo
install</code> in most cases. Install it today with <code>cargo install
cargo-binstall</code>, from the binaries below, or if you already have
it, upgrade with <code>cargo binstall cargo-binstall</code>.</em></p>
<h4>In this release:</h4>
<ul>
<li>Fix updating telemetry config (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2279">#2279</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2287">#2287</a>)</li>
</ul>
<h4>Other changes:</h4>
<ul>
<li>Upgrade dependencies (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2278">#2278</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2286">#2286</a>)</li>
</ul>
<h2>v1.15.1</h2>
<p><em>Binstall is a tool to fetch and install Rust-based executables as
binaries. It aims to be a drop-in replacement for <code>cargo
install</code> in most cases. Install it today with <code>cargo install
cargo-binstall</code>, from the binaries below, or if you already have
it, upgrade with <code>cargo binstall cargo-binstall</code>.</em></p>
<h4>In this release:</h4>
<ul>
<li>fix failure to create settings manifest file (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2268">#2268</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2271">#2271</a>)</li>
<li>fix race condition in creating, loading and writing of settings
manifest file (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2272">#2272</a>)</li>
<li>fix infinite hang on <code>--self-install</code> due to the
quickinstall consent (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2269">#2269</a>
<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2273">#2273</a>)</li>
</ul>
<h2>v1.15.0</h2>
<p><em>Binstall is a tool to fetch and install Rust-based executables as
binaries. It aims to be a drop-in replacement for <code>cargo
install</code> in most cases. Install it today with <code>cargo install
cargo-binstall</code>, from the binaries below, or if you already have
it, upgrade with <code>cargo binstall cargo-binstall</code>.</em></p>
<h4>In this release:</h4>
<ul>
<li>confirm on the first time using quickinstall (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2223">#2223</a>)</li>
</ul>
<h4>Other changes:</h4>
<ul>
<li>upgrade dependencies</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="837578dfb4"><code>837578d</code></a>
release: cargo-binstall v1.15.4 (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2300">#2300</a>)</li>
<li><a
href="8e44f83827"><code>8e44f83</code></a>
chore: release (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2296">#2296</a>)</li>
<li><a
href="5443f9d2e6"><code>5443f9d</code></a>
dep: Upgrade transitive dependencies (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2299">#2299</a>)</li>
<li><a
href="70ac1feb82"><code>70ac1fe</code></a>
build(deps): bump the deps group with 2 updates (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2298">#2298</a>)</li>
<li><a
href="1c0f7dc22c"><code>1c0f7dc</code></a>
dep: Upgrade transitive dependencies (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2295">#2295</a>)</li>
<li><a
href="1cbbe45fe4"><code>1cbbe45</code></a>
clarify --install-path behavior when installing from source (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2294">#2294</a>)</li>
<li><a
href="451eb5a23b"><code>451eb5a</code></a>
release: cargo-binstall v1.15.3 (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2293">#2293</a>)</li>
<li><a
href="c39419e83e"><code>c39419e</code></a>
Fix release pipeline: rm x86_64h-apple-darwin build (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2292">#2292</a>)</li>
<li><a
href="2bb61346d0"><code>2bb6134</code></a>
release: cargo-binstall v1.15.3 (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2291">#2291</a>)</li>
<li><a
href="316a77ca99"><code>316a77c</code></a>
chore: release (<a
href="https://redirect.github.com/cargo-bins/cargo-binstall/issues/2290">#2290</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/cargo-bins/cargo-binstall/compare/v1.14.1...v1.15.4">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=cargo-bins/cargo-binstall&package-manager=github_actions&previous-version=1.14.1&new-version=1.15.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-11 19:11:19 +00:00
dependabot[bot]
1a34687028 Bump super-linter/super-linter from 8.0.0 to 8.1.0 (#20928)
Bumps
[super-linter/super-linter](https://github.com/super-linter/super-linter)
from 8.0.0 to 8.1.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/releases">super-linter/super-linter's
releases</a>.</em></p>
<blockquote>
<h2>v8.1.0</h2>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.0.0...v8.1.0">8.1.0</a>
(2025-08-20)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add env var for npm-groovy-lint log level (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6907">#6907</a>)
(<a
href="32d5e3d6c9">32d5e3d</a>)</li>
<li>add trivy and trivy sbom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6925">#6925</a>)
(<a
href="542ff97039">542ff97</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/693">#693</a></li>
<li>add zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6957">#6957</a>)
(<a
href="eda5c0e754">eda5c0e</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6740">#6740</a></li>
<li>install os packages at run time (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6943">#6943</a>)
(<a
href="fecfeb3adc">fecfeb3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/5824">#5824</a></li>
<li>pass options to jvm when running checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6928">#6928</a>)
(<a
href="3b3b2cd2a5">3b3b2cd</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6927">#6927</a>
<a
href="https://redirect.github.com/super-linter/super-linter/issues/6926">#6926</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6918">#6918</a>)
(<a
href="112c95e4f2">112c95e</a>)</li>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6947">#6947</a>)
(<a
href="bdbef71a04">bdbef71</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6929">#6929</a>)
(<a
href="f7958f16e5">f7958f1</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/6937">#6937</a>)
(<a
href="fed04a2753">fed04a2</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/6952">#6952</a>)
(<a
href="8d1d341f73">8d1d341</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6933">#6933</a>)
(<a
href="8fd087d163">8fd087d</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6948">#6948</a>)
(<a
href="95bb9b6666">95bb9b6</a>)</li>
<li><strong>docker:</strong> bump the docker group with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6896">#6896</a>)
(<a
href="f651b3c4e8">f651b3c</a>)</li>
<li><strong>docker:</strong> bump the docker group with 7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6911">#6911</a>)
(<a
href="1b4e55230e">1b4e552</a>)</li>
<li><strong>java:</strong> bump com.pinterest.ktlint:ktlint-cli (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6894">#6894</a>)
(<a
href="b5fcc9b4c9">b5fcc9b</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6930">#6930</a>)
(<a
href="230c55a459">230c55a</a>)</li>
<li><strong>npm:</strong> bump <code>@​eslint/plugin-kit</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6886">#6886</a>)
(<a
href="83aa3a571a">83aa3a5</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6893">#6893</a>)
(<a
href="73f831b59b">73f831b</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6950">#6950</a>)
(<a
href="e030d7b910">e030d7b</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6959">#6959</a>)
(<a
href="8723595f12">8723595</a>)</li>
<li><strong>npm:</strong> bump axios (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6904">#6904</a>)
(<a
href="5a4eeebc9d">5a4eeeb</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.31.0 to 9.32.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6920">#6920</a>)
(<a
href="6ded2125d9">6ded212</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.32.0 to 9.33.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6939">#6939</a>)
(<a
href="8e854668c9">8e85466</a>)</li>
<li><strong>npm:</strong> bump eslint-plugin-prettier (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6931">#6931</a>)
(<a
href="783c7d096f">783c7d0</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6895">#6895</a>)
(<a
href="9d496e9666">9d496e9</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6913">#6913</a>)
(<a
href="7b0f0b0ecc">7b0f0b0</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6935">#6935</a>)
(<a
href="f687fd17a2">f687fd1</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6960">#6960</a>)
(<a
href="a006caa4ca">a006caa</a>)</li>
<li><strong>npm:</strong> bump npm-groovy-lint from 15.2.0 to 15.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6922">#6922</a>)
(<a
href="00263ef944">00263ef</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6889">#6889</a>)
(<a
href="320e5c4804">320e5c4</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6936">#6936</a>)
(<a
href="00971e793c">00971e7</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6949">#6949</a>)
(<a
href="a71d2509d5">a71d250</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.37.1 to 41.52.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6919">#6919</a>)
(<a
href="5552c4d37a">5552c4d</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.52.0 to 41.62.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6940">#6940</a>)
(<a
href="7957b7768a">7957b77</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.62.2 to 41.78.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6954">#6954</a>)
(<a
href="befbae4ae8">befbae4</a>)</li>
<li><strong>npm:</strong> bump stylelint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6891">#6891</a>)
(<a
href="fa38c73b48">fa38c73</a>)</li>
<li><strong>npm:</strong> bump textlint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6916">#6916</a>)
(<a
href="cb8d26c1c6">cb8d26c</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6890">#6890</a>)
(<a
href="8d9b03dcdd">8d9b03d</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6912">#6912</a>)
(<a
href="712b0e7e4a">712b0e7</a>)</li>
<li><strong>npm:</strong> bump the npm_and_yarn group across 1 directory
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6901">#6901</a>)
(<a
href="a412a4dc13">a412a4d</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md">super-linter/super-linter's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/super-linter/super-linter/compare/v8.0.0...v8.1.0">8.1.0</a>
(2025-08-20)</h2>
<h3>🚀 Features</h3>
<ul>
<li>add env var for npm-groovy-lint log level (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6907">#6907</a>)
(<a
href="32d5e3d6c9">32d5e3d</a>)</li>
<li>add trivy and trivy sbom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6925">#6925</a>)
(<a
href="542ff97039">542ff97</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/693">#693</a></li>
<li>add zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6957">#6957</a>)
(<a
href="eda5c0e754">eda5c0e</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6740">#6740</a></li>
<li>install os packages at run time (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6943">#6943</a>)
(<a
href="fecfeb3adc">fecfeb3</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/5824">#5824</a></li>
<li>pass options to jvm when running checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6928">#6928</a>)
(<a
href="3b3b2cd2a5">3b3b2cd</a>),
closes <a
href="https://redirect.github.com/super-linter/super-linter/issues/6927">#6927</a>
<a
href="https://redirect.github.com/super-linter/super-linter/issues/6926">#6926</a></li>
</ul>
<h3>⬆️ Dependency updates</h3>
<ul>
<li><strong>bundler:</strong> bump rubocop in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6918">#6918</a>)
(<a
href="112c95e4f2">112c95e</a>)</li>
<li><strong>bundler:</strong> bump rubocop-rails in /dependencies in the
rubocop group (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6947">#6947</a>)
(<a
href="bdbef71a04">bdbef71</a>)</li>
<li><strong>bundler:</strong> bump the rubocop group in /dependencies
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6929">#6929</a>)
(<a
href="f7958f16e5">f7958f1</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/6937">#6937</a>)
(<a
href="fed04a2753">fed04a2</a>)</li>
<li><strong>docker:</strong> bump python in the docker-base-images group
(<a
href="https://redirect.github.com/super-linter/super-linter/issues/6952">#6952</a>)
(<a
href="8d1d341f73">8d1d341</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6933">#6933</a>)
(<a
href="8fd087d163">8fd087d</a>)</li>
<li><strong>docker:</strong> bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6948">#6948</a>)
(<a
href="95bb9b6666">95bb9b6</a>)</li>
<li><strong>docker:</strong> bump the docker group with 5 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6896">#6896</a>)
(<a
href="f651b3c4e8">f651b3c</a>)</li>
<li><strong>docker:</strong> bump the docker group with 7 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6911">#6911</a>)
(<a
href="1b4e55230e">1b4e552</a>)</li>
<li><strong>java:</strong> bump com.pinterest.ktlint:ktlint-cli (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6894">#6894</a>)
(<a
href="b5fcc9b4c9">b5fcc9b</a>)</li>
<li><strong>java:</strong> bump com.puppycrawl.tools:checkstyle (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6930">#6930</a>)
(<a
href="230c55a459">230c55a</a>)</li>
<li><strong>npm:</strong> bump <code>@​eslint/plugin-kit</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6886">#6886</a>)
(<a
href="83aa3a571a">83aa3a5</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6893">#6893</a>)
(<a
href="73f831b59b">73f831b</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6950">#6950</a>)
(<a
href="e030d7b910">e030d7b</a>)</li>
<li><strong>npm:</strong> bump
<code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6959">#6959</a>)
(<a
href="8723595f12">8723595</a>)</li>
<li><strong>npm:</strong> bump axios (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6904">#6904</a>)
(<a
href="5a4eeebc9d">5a4eeeb</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.31.0 to 9.32.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6920">#6920</a>)
(<a
href="6ded2125d9">6ded212</a>)</li>
<li><strong>npm:</strong> bump eslint from 9.32.0 to 9.33.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6939">#6939</a>)
(<a
href="8e854668c9">8e85466</a>)</li>
<li><strong>npm:</strong> bump eslint-plugin-prettier (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6931">#6931</a>)
(<a
href="783c7d096f">783c7d0</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6895">#6895</a>)
(<a
href="9d496e9666">9d496e9</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6913">#6913</a>)
(<a
href="7b0f0b0ecc">7b0f0b0</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6935">#6935</a>)
(<a
href="f687fd17a2">f687fd1</a>)</li>
<li><strong>npm:</strong> bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6960">#6960</a>)
(<a
href="a006caa4ca">a006caa</a>)</li>
<li><strong>npm:</strong> bump npm-groovy-lint from 15.2.0 to 15.2.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6922">#6922</a>)
(<a
href="00263ef944">00263ef</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6889">#6889</a>)
(<a
href="320e5c4804">320e5c4</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6936">#6936</a>)
(<a
href="00971e793c">00971e7</a>)</li>
<li><strong>npm:</strong> bump react-router-dom (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6949">#6949</a>)
(<a
href="a71d2509d5">a71d250</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.37.1 to 41.52.0 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6919">#6919</a>)
(<a
href="5552c4d37a">5552c4d</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.52.0 to 41.62.2 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6940">#6940</a>)
(<a
href="7957b7768a">7957b77</a>)</li>
<li><strong>npm:</strong> bump renovate from 41.62.2 to 41.78.1 in
/dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6954">#6954</a>)
(<a
href="befbae4ae8">befbae4</a>)</li>
<li><strong>npm:</strong> bump stylelint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6891">#6891</a>)
(<a
href="fa38c73b48">fa38c73</a>)</li>
<li><strong>npm:</strong> bump textlint (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6916">#6916</a>)
(<a
href="cb8d26c1c6">cb8d26c</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6890">#6890</a>)
(<a
href="8d9b03dcdd">8d9b03d</a>)</li>
<li><strong>npm:</strong> bump the eslint-plugins-configs group across 1
directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6912">#6912</a>)
(<a
href="712b0e7e4a">712b0e7</a>)</li>
<li><strong>npm:</strong> bump the npm_and_yarn group across 1 directory
with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6901">#6901</a>)
(<a
href="a412a4dc13">a412a4d</a>)</li>
<li><strong>npm:</strong> bump the react group across 1 directory with 3
updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6914">#6914</a>)
(<a
href="d6d6c93ffd">d6d6c93</a>)</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="ffde3b2b33"><code>ffde3b2</code></a>
chore(main): release 8.1.0 (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6902">#6902</a>)</li>
<li><a
href="7c09bd596d"><code>7c09bd5</code></a>
ci(github-actions): bump googleapis/release-please-action (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6968">#6968</a>)</li>
<li><a
href="2b936d9279"><code>2b936d9</code></a>
deps(npm): bump the textlint group across 1 directory with 2 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6963">#6963</a>)</li>
<li><a
href="a006caa4ca"><code>a006caa</code></a>
deps(npm): bump next (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6960">#6960</a>)</li>
<li><a
href="87f91dceb4"><code>87f91dc</code></a>
ci(dev-npm): bump release-please in /dev-dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6962">#6962</a>)</li>
<li><a
href="8723595f12"><code>8723595</code></a>
deps(npm): bump <code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6959">#6959</a>)</li>
<li><a
href="befbae4ae8"><code>befbae4</code></a>
deps(npm): bump renovate from 41.62.2 to 41.78.1 in /dependencies (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6954">#6954</a>)</li>
<li><a
href="eda5c0e754"><code>eda5c0e</code></a>
feat: add zizmor (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6957">#6957</a>)</li>
<li><a
href="95bb9b6666"><code>95bb9b6</code></a>
deps(docker): bump the docker group with 4 updates (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6948">#6948</a>)</li>
<li><a
href="e030d7b910"><code>e030d7b</code></a>
deps(npm): bump <code>@​typescript-eslint/eslint-plugin</code> (<a
href="https://redirect.github.com/super-linter/super-linter/issues/6950">#6950</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/super-linter/super-linter/compare/v8.0.0...v8.1.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=super-linter/super-linter&package-manager=github_actions&previous-version=8.0.0&new-version=8.1.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-08 08:31:49 +00:00
dependabot[bot]
c3bcbba177 Bump actions/github-script from 7 to 8 (#20926)
Bumps [actions/github-script](https://github.com/actions/github-script)
from 7 to 8.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/github-script/releases">actions/github-script's
releases</a>.</em></p>
<blockquote>
<h2>v8.0.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Update Node.js version support to 24.x by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/637">actions/github-script#637</a></li>
<li>README for updating actions/github-script from v7 to v8 by <a
href="https://github.com/sneha-krip"><code>@​sneha-krip</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/653">actions/github-script#653</a></li>
</ul>
<h2>⚠️ Minimum Compatible Runner Version</h2>
<p><strong>v2.327.1</strong><br />
<a
href="https://github.com/actions/runner/releases/tag/v2.327.1">Release
Notes</a></p>
<p>Make sure your runner is updated to this version or newer to use this
release.</p>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/637">actions/github-script#637</a></li>
<li><a
href="https://github.com/sneha-krip"><code>@​sneha-krip</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/653">actions/github-script#653</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/github-script/compare/v7.1.0...v8.0.0">https://github.com/actions/github-script/compare/v7.1.0...v8.0.0</a></p>
<h2>v7.1.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Upgrade husky to v9 by <a
href="https://github.com/benelan"><code>@​benelan</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/482">actions/github-script#482</a></li>
<li>Add workflow file for publishing releases to immutable action
package by <a
href="https://github.com/Jcambass"><code>@​Jcambass</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/485">actions/github-script#485</a></li>
<li>Upgrade IA Publish by <a
href="https://github.com/Jcambass"><code>@​Jcambass</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/486">actions/github-script#486</a></li>
<li>Fix workflow status badges by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/497">actions/github-script#497</a></li>
<li>Update usage of <code>actions/upload-artifact</code> by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/512">actions/github-script#512</a></li>
<li>Clear up package name confusion by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/514">actions/github-script#514</a></li>
<li>Update dependencies with <code>npm audit fix</code> by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/515">actions/github-script#515</a></li>
<li>Specify that the used script is JavaScript by <a
href="https://github.com/timotk"><code>@​timotk</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/478">actions/github-script#478</a></li>
<li>chore: Add Dependabot for NPM and Actions by <a
href="https://github.com/nschonni"><code>@​nschonni</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/472">actions/github-script#472</a></li>
<li>Define <code>permissions</code> in workflows and update actions by
<a href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in
<a
href="https://redirect.github.com/actions/github-script/pull/531">actions/github-script#531</a></li>
<li>chore: Add Dependabot for .github/actions/install-dependencies by <a
href="https://github.com/nschonni"><code>@​nschonni</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/532">actions/github-script#532</a></li>
<li>chore: Remove .vscode settings by <a
href="https://github.com/nschonni"><code>@​nschonni</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/533">actions/github-script#533</a></li>
<li>ci: Use github/setup-licensed by <a
href="https://github.com/nschonni"><code>@​nschonni</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/473">actions/github-script#473</a></li>
<li>make octokit instance available as octokit on top of github, to make
it easier to seamlessly copy examples from GitHub rest api or octokit
documentations by <a
href="https://github.com/iamstarkov"><code>@​iamstarkov</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/508">actions/github-script#508</a></li>
<li>Remove <code>octokit</code> README updates for v7 by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/557">actions/github-script#557</a></li>
<li>docs: add &quot;exec&quot; usage examples by <a
href="https://github.com/neilime"><code>@​neilime</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/546">actions/github-script#546</a></li>
<li>Bump ruby/setup-ruby from 1.213.0 to 1.222.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/actions/github-script/pull/563">actions/github-script#563</a></li>
<li>Bump ruby/setup-ruby from 1.222.0 to 1.229.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/actions/github-script/pull/575">actions/github-script#575</a></li>
<li>Clearly document passing inputs to the <code>script</code> by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/603">actions/github-script#603</a></li>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/github-script/pull/610">actions/github-script#610</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/benelan"><code>@​benelan</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/482">actions/github-script#482</a></li>
<li><a href="https://github.com/Jcambass"><code>@​Jcambass</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/485">actions/github-script#485</a></li>
<li><a href="https://github.com/timotk"><code>@​timotk</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/478">actions/github-script#478</a></li>
<li><a
href="https://github.com/iamstarkov"><code>@​iamstarkov</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/508">actions/github-script#508</a></li>
<li><a href="https://github.com/neilime"><code>@​neilime</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/546">actions/github-script#546</a></li>
<li><a href="https://github.com/nebuk89"><code>@​nebuk89</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/github-script/pull/610">actions/github-script#610</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/github-script/compare/v7...v7.1.0">https://github.com/actions/github-script/compare/v7...v7.1.0</a></p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="ed597411d8"><code>ed59741</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/github-script/issues/653">#653</a>
from actions/sneha-krip/readme-for-v8</li>
<li><a
href="2dc352e4ba"><code>2dc352e</code></a>
Bold minimum Actions Runner version in README</li>
<li><a
href="01e118c8d0"><code>01e118c</code></a>
Update README for Node 24 runtime requirements</li>
<li><a
href="8b222ac82e"><code>8b222ac</code></a>
Apply suggestion from <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a></li>
<li><a
href="adc0eeac99"><code>adc0eea</code></a>
README for updating actions/github-script from v7 to v8</li>
<li><a
href="20fe497b3f"><code>20fe497</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/github-script/issues/637">#637</a>
from actions/node24</li>
<li><a
href="e7b7f222b1"><code>e7b7f22</code></a>
update licenses</li>
<li><a
href="2c81ba05f3"><code>2c81ba0</code></a>
Update Node.js version support to 24.x</li>
<li>See full diff in <a
href="https://github.com/actions/github-script/compare/v7...v8">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/github-script&package-manager=github_actions&previous-version=7&new-version=8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-08 08:31:31 +00:00
François Mockers
cd6958a79e re-enable wasm32 atomics CI check (#20832)
# Objective

- It was disabled in #20462 due to
https://github.com/rust-lang/rust/issues/145101
- Rust issue was fixed by https://github.com/rust-lang/rust/pull/145096

## Solution

- Re-enable the job in CI
2025-09-02 19:24:49 +00:00
dependabot[bot]
1ac6136c40 Bump actions/setup-java from 4 to 5 (#20749)
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 4
to 5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/setup-java/releases">actions/setup-java's
releases</a>.</em></p>
<blockquote>
<h2>v5.0.0</h2>
<h2>What's Changed</h2>
<h3>Breaking Changes</h3>
<ul>
<li>Upgrade to node 24 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/888">actions/setup-java#888</a></li>
</ul>
<p>Make sure your runner is updated to this version or newer to use this
release. v2.327.1 <a
href="https://github.com/actions/runner/releases/tag/v2.327.1">Release
Notes</a></p>
<h3>Dependency Upgrades</h3>
<ul>
<li>Upgrade Publish Immutable Action by <a
href="https://github.com/HarithaVattikuti"><code>@​HarithaVattikuti</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/798">actions/setup-java#798</a></li>
<li>Upgrade eslint-plugin-jest from 27.9.0 to 28.11.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/actions/setup-java/pull/730">actions/setup-java#730</a></li>
<li>Upgrade undici from 5.28.5 to 5.29.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/actions/setup-java/pull/833">actions/setup-java#833</a></li>
<li>Upgrade form-data to bring in fix for critical vulnerability by <a
href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a> in
<a
href="https://redirect.github.com/actions/setup-java/pull/887">actions/setup-java#887</a></li>
<li>Upgrade actions/checkout from 4 to 5 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/actions/setup-java/pull/896">actions/setup-java#896</a></li>
</ul>
<h3>Bug Fixes</h3>
<ul>
<li>Prevent default installation of JetBrains pre-releases by <a
href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/859">actions/setup-java#859</a></li>
<li>Improve Error Handling for Setup-Java Action to Help Debug
Intermittent Failures by <a
href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a> in
<a
href="https://redirect.github.com/actions/setup-java/pull/848">actions/setup-java#848</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a
href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/setup-java/pull/848">actions/setup-java#848</a></li>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/setup-java/pull/888">actions/setup-java#888</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/setup-java/compare/v4...v5.0.0">https://github.com/actions/setup-java/compare/v4...v5.0.0</a></p>
<h2>v4.7.1</h2>
<h2>What's Changed</h2>
<h3>Documentation changes</h3>
<ul>
<li>Add Documentation to Recommend Using GraalVM JDK 17 Version to
17.0.12 to Align with GFTC License Terms by <a
href="https://github.com/aparnajyothi-y"><code>@​aparnajyothi-y</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/704">actions/setup-java#704</a></li>
<li>Remove duplicated GraalVM section in documentation by <a
href="https://github.com/Marcono1234"><code>@​Marcono1234</code></a> in
<a
href="https://redirect.github.com/actions/setup-java/pull/716">actions/setup-java#716</a></li>
</ul>
<h3>Dependency updates:</h3>
<ul>
<li>Upgrade <code>@​action/cache</code> from 4.0.0 to 4.0.2 by <a
href="https://github.com/aparnajyothi-y"><code>@​aparnajyothi-y</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/766">actions/setup-java#766</a></li>
<li>Upgrade <code>@​actions/glob</code> from 0.4.0 to 0.5.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/744">actions/setup-java#744</a></li>
<li>Upgrade ts-jest from 29.1.2 to 29.2.5 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/743">actions/setup-java#743</a></li>
<li>Upgrade <code>@​action/cache</code> to 4.0.3 by <a
href="https://github.com/aparnajyothi-y"><code>@​aparnajyothi-y</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/773">actions/setup-java#773</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/setup-java/compare/v4...v4.7.1">https://github.com/actions/setup-java/compare/v4...v4.7.1</a></p>
<h2>v4.7.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Configure Dependabot settings by <a
href="https://github.com/HarithaVattikuti"><code>@​HarithaVattikuti</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/722">actions/setup-java#722</a></li>
<li>README Update: Added a permissions section by <a
href="https://github.com/benwells"><code>@​benwells</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/723">actions/setup-java#723</a></li>
<li>Upgrade <code>cache</code> from version 3.2.4 to 4.0.0 by <a
href="https://github.com/aparnajyothi-y"><code>@​aparnajyothi-y</code></a>
in <a
href="https://redirect.github.com/actions/setup-java/pull/724">actions/setup-java#724</a></li>
<li>Upgrade <code>@actions/http-client</code> from 2.2.1 to 2.2.3 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/728">actions/setup-java#728</a></li>
<li>Upgrade <code>actions/publish-immutable-action</code> from 0.0.3 to
0.0.4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/727">actions/setup-java#727</a></li>
<li>Upgrade <code>@types/jest</code> from 29.5.12 to 29.5.14 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-java/pull/729">actions/setup-java#729</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="dded088883"><code>dded088</code></a>
Bump actions/checkout from 4 to 5 (<a
href="https://redirect.github.com/actions/setup-java/issues/896">#896</a>)</li>
<li><a
href="0913e9a06e"><code>0913e9a</code></a>
Upgrade to node 24 (<a
href="https://redirect.github.com/actions/setup-java/issues/888">#888</a>)</li>
<li><a
href="e9343db97e"><code>e9343db</code></a>
Bumps form-data (<a
href="https://redirect.github.com/actions/setup-java/issues/887">#887</a>)</li>
<li><a
href="ae2b61dbc6"><code>ae2b61d</code></a>
Bump undici from 5.28.5 to 5.29.0 (<a
href="https://redirect.github.com/actions/setup-java/issues/833">#833</a>)</li>
<li><a
href="c190c18feb"><code>c190c18</code></a>
Bump eslint-plugin-jest from 27.9.0 to 29.0.1 (<a
href="https://redirect.github.com/actions/setup-java/issues/730">#730</a>)</li>
<li><a
href="67aec007b3"><code>67aec00</code></a>
Fix: prevent default installation of JetBrains pre-releases (<a
href="https://redirect.github.com/actions/setup-java/issues/859">#859</a>)</li>
<li><a
href="ebb356cc4e"><code>ebb356c</code></a>
Improve Error Handling for Setup-Java Action to Help Debug Intermittent
Failu...</li>
<li><a
href="f4f1212c88"><code>f4f1212</code></a>
Update publish-immutable-actions.yml (<a
href="https://redirect.github.com/actions/setup-java/issues/798">#798</a>)</li>
<li>See full diff in <a
href="https://github.com/actions/setup-java/compare/v4...v5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/setup-java&package-manager=github_actions&previous-version=4&new-version=5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-31 07:36:54 +00:00
dependabot[bot]
77aacb4bef Bump crate-ci/typos from 1.35.4 to 1.35.5 (#20745)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.35.4 to
1.35.5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.35.5</h2>
<h2>[1.35.5] - 2025-08-18</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>accidently</code></li>
<li>Fix typo in correction to <code>dynamincally</code></li>
<li>Fix typo in correction to <code>interruptability</code></li>
<li>Fix typo in correction to <code>interruptability</code></li>
<li>Fix typo in correction to <code>messager</code></li>
<li>Fix typo in correction to <code>preferables</code></li>
<li>Fix typo in correction to <code>producibles</code></li>
<li>Fix typo in correction to <code>restauranteur</code></li>
<li>Fix typo in correction to <code>restauranteurs</code></li>
<li>Fix typo in correction to <code>searialize</code></li>
<li>Fix typo in correction to <code>somethin</code></li>
<li>Fix typo in correction to <code>unaccessible</code></li>
<li>Fix typo in correction to <code>unnesessarily</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.35.5] - 2025-08-18</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>accidently</code></li>
<li>Fix typo in correction to <code>dynamincally</code></li>
<li>Fix typo in correction to <code>interruptability</code></li>
<li>Fix typo in correction to <code>interruptability</code></li>
<li>Fix typo in correction to <code>messager</code></li>
<li>Fix typo in correction to <code>preferables</code></li>
<li>Fix typo in correction to <code>producibles</code></li>
<li>Fix typo in correction to <code>restauranteur</code></li>
<li>Fix typo in correction to <code>restauranteurs</code></li>
<li>Fix typo in correction to <code>searialize</code></li>
<li>Fix typo in correction to <code>somethin</code></li>
<li>Fix typo in correction to <code>unaccessible</code></li>
<li>Fix typo in correction to <code>unnesessarily</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="a4c3e43aea"><code>a4c3e43</code></a>
chore: Release</li>
<li><a
href="bc2ad8a213"><code>bc2ad8a</code></a>
docs: Ipdate changelog</li>
<li><a
href="d5601e99df"><code>d5601e9</code></a>
chore: Release</li>
<li><a
href="3f713a7cee"><code>3f713a7</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1358">#1358</a>
from epage/fixes</li>
<li><a
href="3c23c6ba04"><code>3c23c6b</code></a>
fix(dict): Remove incorrect corrections</li>
<li>See full diff in <a
href="https://github.com/crate-ci/typos/compare/v1.35.4...v1.35.5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.35.4&new-version=1.35.5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-31 07:36:27 +00:00
dependabot[bot]
29e5d6af81 Bump actions/checkout from 4 to 5 (#20632)
[//]: # (dependabot-start)
⚠️  **Dependabot is rebasing this PR** ⚠️ 

Rebasing might not happen immediately, so don't worry if this takes some
time.

Note: if you make any changes to this PR yourself, they will take
precedence over the rebase.

---

[//]: # (dependabot-end)

Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to
5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/releases">actions/checkout's
releases</a>.</em></p>
<blockquote>
<h2>v5.0.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Update actions checkout to use node 24 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2226">actions/checkout#2226</a></li>
<li>Prepare v5.0.0 release by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2238">actions/checkout#2238</a></li>
</ul>
<h2>⚠️ Minimum Compatible Runner Version</h2>
<p><strong>v2.327.1</strong><br />
<a
href="https://github.com/actions/runner/releases/tag/v2.327.1">Release
Notes</a></p>
<p>Make sure your runner is updated to this version or newer to use this
release.</p>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v4...v5.0.0">https://github.com/actions/checkout/compare/v4...v5.0.0</a></p>
<h2>v4.3.0</h2>
<h2>What's Changed</h2>
<ul>
<li>docs: update README.md by <a
href="https://github.com/motss"><code>@​motss</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1971">actions/checkout#1971</a></li>
<li>Add internal repos for checking out multiple repositories by <a
href="https://github.com/mouismail"><code>@​mouismail</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1977">actions/checkout#1977</a></li>
<li>Documentation update - add recommended permissions to Readme by <a
href="https://github.com/benwells"><code>@​benwells</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2043">actions/checkout#2043</a></li>
<li>Adjust positioning of user email note and permissions heading by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2044">actions/checkout#2044</a></li>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2194">actions/checkout#2194</a></li>
<li>Update CODEOWNERS for actions by <a
href="https://github.com/TingluoHuang"><code>@​TingluoHuang</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/2224">actions/checkout#2224</a></li>
<li>Update package dependencies by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2236">actions/checkout#2236</a></li>
<li>Prepare release v4.3.0 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2237">actions/checkout#2237</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/motss"><code>@​motss</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/1971">actions/checkout#1971</a></li>
<li><a href="https://github.com/mouismail"><code>@​mouismail</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/1977">actions/checkout#1977</a></li>
<li><a href="https://github.com/benwells"><code>@​benwells</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/2043">actions/checkout#2043</a></li>
<li><a href="https://github.com/nebuk89"><code>@​nebuk89</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/2194">actions/checkout#2194</a></li>
<li><a href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/2236">actions/checkout#2236</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v4...v4.3.0">https://github.com/actions/checkout/compare/v4...v4.3.0</a></p>
<h2>v4.2.2</h2>
<h2>What's Changed</h2>
<ul>
<li><code>url-helper.ts</code> now leverages well-known environment
variables by <a href="https://github.com/jww3"><code>@​jww3</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/1941">actions/checkout#1941</a></li>
<li>Expand unit test coverage for <code>isGhes</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1946">actions/checkout#1946</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v4.2.1...v4.2.2">https://github.com/actions/checkout/compare/v4.2.1...v4.2.2</a></p>
<h2>v4.2.1</h2>
<h2>What's Changed</h2>
<ul>
<li>Check out other refs/* by commit if provided, fall back to ref by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1924">actions/checkout#1924</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/Jcambass"><code>@​Jcambass</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/1919">actions/checkout#1919</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v4.2.0...v4.2.1">https://github.com/actions/checkout/compare/v4.2.0...v4.2.1</a></p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/blob/main/CHANGELOG.md">actions/checkout's
changelog</a>.</em></p>
<blockquote>
<h1>Changelog</h1>
<h2>V5.0.0</h2>
<ul>
<li>Update actions checkout to use node 24 by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2226">actions/checkout#2226</a></li>
</ul>
<h2>V4.3.0</h2>
<ul>
<li>docs: update README.md by <a
href="https://github.com/motss"><code>@​motss</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1971">actions/checkout#1971</a></li>
<li>Add internal repos for checking out multiple repositories by <a
href="https://github.com/mouismail"><code>@​mouismail</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1977">actions/checkout#1977</a></li>
<li>Documentation update - add recommended permissions to Readme by <a
href="https://github.com/benwells"><code>@​benwells</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2043">actions/checkout#2043</a></li>
<li>Adjust positioning of user email note and permissions heading by <a
href="https://github.com/joshmgross"><code>@​joshmgross</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2044">actions/checkout#2044</a></li>
<li>Update README.md by <a
href="https://github.com/nebuk89"><code>@​nebuk89</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2194">actions/checkout#2194</a></li>
<li>Update CODEOWNERS for actions by <a
href="https://github.com/TingluoHuang"><code>@​TingluoHuang</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/2224">actions/checkout#2224</a></li>
<li>Update package dependencies by <a
href="https://github.com/salmanmkc"><code>@​salmanmkc</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/2236">actions/checkout#2236</a></li>
</ul>
<h2>v4.2.2</h2>
<ul>
<li><code>url-helper.ts</code> now leverages well-known environment
variables by <a href="https://github.com/jww3"><code>@​jww3</code></a>
in <a
href="https://redirect.github.com/actions/checkout/pull/1941">actions/checkout#1941</a></li>
<li>Expand unit test coverage for <code>isGhes</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1946">actions/checkout#1946</a></li>
</ul>
<h2>v4.2.1</h2>
<ul>
<li>Check out other refs/* by commit if provided, fall back to ref by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1924">actions/checkout#1924</a></li>
</ul>
<h2>v4.2.0</h2>
<ul>
<li>Add Ref and Commit outputs by <a
href="https://github.com/lucacome"><code>@​lucacome</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1180">actions/checkout#1180</a></li>
<li>Dependency updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>- <a
href="https://redirect.github.com/actions/checkout/pull/1777">actions/checkout#1777</a>,
<a
href="https://redirect.github.com/actions/checkout/pull/1872">actions/checkout#1872</a></li>
</ul>
<h2>v4.1.7</h2>
<ul>
<li>Bump the minor-npm-dependencies group across 1 directory with 4
updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1739">actions/checkout#1739</a></li>
<li>Bump actions/checkout from 3 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1697">actions/checkout#1697</a></li>
<li>Check out other refs/* by commit by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1774">actions/checkout#1774</a></li>
<li>Pin actions/checkout's own workflows to a known, good, stable
version. by <a href="https://github.com/jww3"><code>@​jww3</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1776">actions/checkout#1776</a></li>
</ul>
<h2>v4.1.6</h2>
<ul>
<li>Check platform to set archive extension appropriately by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1732">actions/checkout#1732</a></li>
</ul>
<h2>v4.1.5</h2>
<ul>
<li>Update NPM dependencies by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1703">actions/checkout#1703</a></li>
<li>Bump github/codeql-action from 2 to 3 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1694">actions/checkout#1694</a></li>
<li>Bump actions/setup-node from 1 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1696">actions/checkout#1696</a></li>
<li>Bump actions/upload-artifact from 2 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1695">actions/checkout#1695</a></li>
<li>README: Suggest <code>user.email</code> to be
<code>41898282+github-actions[bot]@users.noreply.github.com</code> by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1707">actions/checkout#1707</a></li>
</ul>
<h2>v4.1.4</h2>
<ul>
<li>Disable <code>extensions.worktreeConfig</code> when disabling
<code>sparse-checkout</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1692">actions/checkout#1692</a></li>
<li>Add dependabot config by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1688">actions/checkout#1688</a></li>
<li>Bump the minor-actions-dependencies group with 2 updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1693">actions/checkout#1693</a></li>
<li>Bump word-wrap from 1.2.3 to 1.2.5 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1643">actions/checkout#1643</a></li>
</ul>
<h2>v4.1.3</h2>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="08c6903cd8"><code>08c6903</code></a>
Prepare v5.0.0 release (<a
href="https://redirect.github.com/actions/checkout/issues/2238">#2238</a>)</li>
<li><a
href="9f265659d3"><code>9f26565</code></a>
Update actions checkout to use node 24 (<a
href="https://redirect.github.com/actions/checkout/issues/2226">#2226</a>)</li>
<li>See full diff in <a
href="https://github.com/actions/checkout/compare/v4...v5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/checkout&package-manager=github_actions&previous-version=4&new-version=5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-18 22:54:54 +00:00
dependabot[bot]
c7ff24cc7c Bump crate-ci/typos from 1.35.3 to 1.35.4 (#20633)
Bumps [crate-ci/typos](https://github.com/crate-ci/typos) from 1.35.3 to
1.35.4.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/releases">crate-ci/typos's
releases</a>.</em></p>
<blockquote>
<h2>v1.35.4</h2>
<h2>[1.35.4] - 2025-08-12</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>exctracting</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/crate-ci/typos/blob/master/CHANGELOG.md">crate-ci/typos's
changelog</a>.</em></p>
<blockquote>
<h2>[1.35.4] - 2025-08-12</h2>
<h3>Fixes</h3>
<ul>
<li>Fix typo in correction to <code>exctracting</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="a67079b4ae"><code>a67079b</code></a>
chore: Release</li>
<li><a
href="83518a5ce2"><code>83518a5</code></a>
docs: Update changelog</li>
<li><a
href="1f86d7c688"><code>1f86d7c</code></a>
chore: Release</li>
<li><a
href="5191d1f297"><code>5191d1f</code></a>
Merge pull request <a
href="https://redirect.github.com/crate-ci/typos/issues/1355">#1355</a>
from epage/exctracting</li>
<li><a
href="bb6d8c3931"><code>bb6d8c3</code></a>
fix(dict): Don't correct to exctracting</li>
<li>See full diff in <a
href="https://github.com/crate-ci/typos/compare/v1.35.3...v1.35.4">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=crate-ci/typos&package-manager=github_actions&previous-version=1.35.3&new-version=1.35.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: François Mockers <francois.mockers@vleue.com>
2025-08-18 22:02:32 +00:00
François Mockers
b26ef4514e pin CI to macos 14 until iOS example is updated and fix invalid_params tests (#20640)
# Objective

- Bevy repo was just updated to macos-15 images by GitHub
- This breaks building for iOS as the SDK we use is no longer available
- Also closes #20629

## Solution

- Pin to macos-14 until we've updated iOS example

---------

Co-authored-by: Alice Cecile <alice.i.cecile@gmail.com>
2025-08-18 20:14:19 +00:00