build(deps): bump the actions group across 1 directory with 3 updates#82
Open
dependabot[bot] wants to merge 1 commit intomainfrom
Open
build(deps): bump the actions group across 1 directory with 3 updates#82dependabot[bot] wants to merge 1 commit intomainfrom
dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Bumps the actions group with 3 updates in the / directory: [trufflesecurity/trufflehog](https://github.com/trufflesecurity/trufflehog), [dependabot/fetch-metadata](https://github.com/dependabot/fetch-metadata) and [DavidAnson/markdownlint-cli2-action](https://github.com/davidanson/markdownlint-cli2-action). Updates `trufflesecurity/trufflehog` from 3.93.8 to 3.94.3 - [Release notes](https://github.com/trufflesecurity/trufflehog/releases) - [Commits](trufflesecurity/trufflehog@v3.93.8...v3.94.3) Updates `dependabot/fetch-metadata` from 2 to 3 - [Release notes](https://github.com/dependabot/fetch-metadata/releases) - [Commits](dependabot/fetch-metadata@v2...v3) Updates `DavidAnson/markdownlint-cli2-action` from 22 to 23 - [Release notes](https://github.com/davidanson/markdownlint-cli2-action/releases) - [Commits](DavidAnson/markdownlint-cli2-action@v22...v23) --- updated-dependencies: - dependency-name: trufflesecurity/trufflehog dependency-version: 3.94.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: dependabot/fetch-metadata dependency-version: '3' dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions - dependency-name: DavidAnson/markdownlint-cli2-action dependency-version: '23' dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com>
514f876 to
0d8590b
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the actions group with 3 updates in the / directory: trufflesecurity/trufflehog, dependabot/fetch-metadata and DavidAnson/markdownlint-cli2-action.
Updates
trufflesecurity/trufflehogfrom 3.93.8 to 3.94.3Release notes
Sourced from trufflesecurity/trufflehog's releases.
... (truncated)
Commits
47e7b7cSplit out detector types into separate proto file in order to narrow CODEOWNE...9bfdb3eAdd HTML decoder for secret detection in HTML-formatted sources (#4840)bff3d26[CSM-1857] Fix expired Azure secrets being silently dropped (#4845)b0ee281Add nil check and error context to GitHub analyzer (#4858)a8770b8Add AnalysisInfo to verified results (#4862)239dc4ehandle AADSTS50173 as explicit revocation signal for azure refresh tokens (#4...e48f903Add release bot workflow for trufflehog releases (#4835)6bd2d14Re-enabled TestAPKHandler test and updated artifact url (#4856)681b305Updated google.golang.org/grpc v1.78.0 --> v1.79.3 (#4852)e81c0fcAdd Shopify OAuth Detector (#4738)Updates
dependabot/fetch-metadatafrom 2 to 3Release notes
Sourced from dependabot/fetch-metadata's releases.
... (truncated)
Commits
ffa630cv3.0.0 (#686)ec8fff2Merge pull request #674 from dependabot/dependabot/npm_and_yarn/picomatch-2.3.2caf48bdbuild(deps-dev): bump picomatch from 2.3.1 to 2.3.213d8274Upgrade@actions/githubto ^9.0.0 and@octokit/request-errorto ^7.1.0 (#678)b603099Upgrade@actions/corefrom ^1.11.1 to ^3.0.0 (#677)c5dc5b1Enable noImplicitAny in tsconfig.json (#684)a183f3cAdd typecheck step to CI (#685)5e17564Remove skipLibCheck from tsconfig.json (#683)bb56eebSwitch tsconfig module resolution to bundler (#682)3632e3dRemove vestigial outDir from tsconfig.json (#681)Updates
DavidAnson/markdownlint-cli2-actionfrom 22 to 23Release notes
Sourced from DavidAnson/markdownlint-cli2-action's releases.
... (truncated)
Commits
ce4853dUpdate to version 23.0.0.63a898cImprove type fidelity.08fc3a2Add configPointer input, examples for package.json/pyproject.toml.154744fFreshen generated index.js file.d1d523cBump markdownlint-cli2 from 0.21.0 to 0.22.0619b235Bump eslint from 10.0.3 to 10.1.0a226cbeFreshen generated index.js file.5d93b2eMigrate from Node.js 20 to Node.js 24.0cf8cddBump eslint from 10.0.2 to 10.0.3462cc85Bump@stylistic/eslint-pluginfrom 5.9.0 to 5.10.0