Skip to content

Commit

Permalink
chore(deps): bump zgosalvez/github-actions-ensure-sha-pinned-actions …
Browse files Browse the repository at this point in the history
…from 3.0.10 to 3.0.11 (#241)

Bumps
[zgosalvez/github-actions-ensure-sha-pinned-actions](https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions)
from 3.0.10 to 3.0.11.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/releases">zgosalvez/github-actions-ensure-sha-pinned-actions's
releases</a>.</em></p>
<blockquote>
<h2>v3.0.11</h2>
<h2>What's Changed</h2>
<ul>
<li>Bump eslint from 9.6.0 to 9.9.1 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/pull/178">zgosalvez/github-actions-ensure-sha-pinned-actions#178</a></li>
<li>Bump zgosalvez/github-actions-get-action-runs-using-version from
2.0.8 to 2.0.9 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/pull/175">zgosalvez/github-actions-ensure-sha-pinned-actions#175</a></li>
<li>Bump actions/setup-node from 4.0.2 to 4.0.3 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/pull/174">zgosalvez/github-actions-ensure-sha-pinned-actions#174</a></li>
<li>Bump <code>@​actions/glob</code> from 0.4.0 to 0.5.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/pull/177">zgosalvez/github-actions-ensure-sha-pinned-actions#177</a></li>
<li>Bump yaml from 2.4.5 to 2.5.0 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/pull/173">zgosalvez/github-actions-ensure-sha-pinned-actions#173</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/compare/v3...v3.0.11">https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/compare/v3...v3.0.11</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/commit/3c16e895bb662b4d7e284f032cbe8835a57773cc"><code>3c16e89</code></a>
Bump yaml from 2.4.5 to 2.5.0 (<a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/issues/173">#173</a>)</li>
<li><a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/commit/d3bc074ebb4938ed1b66860ea8b456645cf6a5a9"><code>d3bc074</code></a>
Bump <code>@​actions/glob</code> from 0.4.0 to 0.5.0 (<a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/issues/177">#177</a>)</li>
<li><a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/commit/fa880966f9290081b3570615ed531178e7cac725"><code>fa88096</code></a>
Bump actions/setup-node from 4.0.2 to 4.0.3 (<a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/issues/174">#174</a>)</li>
<li><a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/commit/f8b67401b4df98787e7ba09b862c1aefc7c54566"><code>f8b6740</code></a>
Bump zgosalvez/github-actions-get-action-runs-using-version (<a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/issues/175">#175</a>)</li>
<li><a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/commit/964e0008966cf6cd1cad4badb6c6212de54e102f"><code>964e000</code></a>
Bump eslint from 9.6.0 to 9.9.1 (<a
href="https://redirect.github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/issues/178">#178</a>)</li>
<li>See full diff in <a
href="https://github.com/zgosalvez/github-actions-ensure-sha-pinned-actions/compare/b88cd0aad2c36a63e42c71f81cb1958fed95ac87...3c16e895bb662b4d7e284f032cbe8835a57773cc">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=zgosalvez/github-actions-ensure-sha-pinned-actions&package-manager=github_actions&previous-version=3.0.10&new-version=3.0.11)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
  • Loading branch information
dependabot[bot] authored Aug 26, 2024
1 parent afc28d1 commit 15ca6f9
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion .github/workflows/validate.yml
Original file line number Diff line number Diff line change
Expand Up @@ -144,7 +144,7 @@ jobs:
- name: Checkout
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
- name: Ensure SHA pinned actions
uses: zgosalvez/github-actions-ensure-sha-pinned-actions@b88cd0aad2c36a63e42c71f81cb1958fed95ac87 # v3
uses: zgosalvez/github-actions-ensure-sha-pinned-actions@3c16e895bb662b4d7e284f032cbe8835a57773cc # v3

##############################################################################
# Run all unit tests with coverage enabled
Expand Down

0 comments on commit 15ca6f9

Please sign in to comment.