From eab55f58e0f712e18e0eae89a02432e28d10e21c Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Wed, 22 May 2024 16:20:16 -0600 Subject: [PATCH] chore(deps): update mattermost support dependencies (#66) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit [![Mend Renovate](https://app.renovatebot.com/images/banner.svg)](https://renovatebot.com) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [actions/checkout](https://togithub.com/actions/checkout) | action | patch | `v4.1.4` -> `v4.1.6` | | [defenseunicorns/zarf](https://togithub.com/defenseunicorns/zarf) | | patch | `v0.33.1` -> `v0.33.2` | | [github/codeql-action](https://togithub.com/github/codeql-action) | action | patch | `v3.25.3` -> `v3.25.6` | | [golangci/golangci-lint](https://togithub.com/golangci/golangci-lint) | repository | patch | `v1.58.0` -> `v1.58.2` | | [google-github-actions/release-please-action](https://togithub.com/google-github-actions/release-please-action) | action | patch | `v4.1.0` -> `v4.1.1` | | [ossf/scorecard-action](https://togithub.com/ossf/scorecard-action) | action | patch | `v2.3.1` -> `v2.3.3` | | [python-jsonschema/check-jsonschema](https://togithub.com/python-jsonschema/check-jsonschema) | repository | patch | `0.28.2` -> `0.28.4` | | [renovatebot/pre-commit-hooks](https://togithub.com/renovatebot/pre-commit-hooks) | repository | minor | `37.342.1` -> `37.374.3` | | [step-security/harden-runner](https://togithub.com/step-security/harden-runner) | action | minor | `v2.7.1` -> `v2.8.0` | Note: The `pre-commit` manager in Renovate is not supported by the `pre-commit` maintainers or community. Please do not report any problems there, instead [create a Discussion in the Renovate repository](https://togithub.com/renovatebot/renovate/discussions/new) if you have any questions. --- ### Release Notes
actions/checkout (actions/checkout) ### [`v4.1.6`](https://togithub.com/actions/checkout/blob/HEAD/CHANGELOG.md#v416) [Compare Source](https://togithub.com/actions/checkout/compare/v4.1.5...v4.1.6) - Check platform to set archive extension appropriately by [@​cory-miller](https://togithub.com/cory-miller) in [https://github.com/actions/checkout/pull/1732](https://togithub.com/actions/checkout/pull/1732) ### [`v4.1.5`](https://togithub.com/actions/checkout/releases/tag/v4.1.5) [Compare Source](https://togithub.com/actions/checkout/compare/v4.1.4...v4.1.5) #### What's Changed - Update NPM dependencies by [@​cory-miller](https://togithub.com/cory-miller) in [https://github.com/actions/checkout/pull/1703](https://togithub.com/actions/checkout/pull/1703) - Bump github/codeql-action from 2 to 3 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/actions/checkout/pull/1694](https://togithub.com/actions/checkout/pull/1694) - Bump actions/setup-node from 1 to 4 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/actions/checkout/pull/1696](https://togithub.com/actions/checkout/pull/1696) - Bump actions/upload-artifact from 2 to 4 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/actions/checkout/pull/1695](https://togithub.com/actions/checkout/pull/1695) - README: Suggest `user.email` to be `41898282+github-actions[bot]@​users.noreply.github.com` by [@​cory-miller](https://togithub.com/cory-miller) in [https://github.com/actions/checkout/pull/1707](https://togithub.com/actions/checkout/pull/1707) **Full Changelog**: https://github.com/actions/checkout/compare/v4.1.4...v4.1.5
defenseunicorns/zarf (defenseunicorns/zarf) ### [`v0.33.2`](https://togithub.com/defenseunicorns/zarf/releases/tag/v0.33.2) [Compare Source](https://togithub.com/defenseunicorns/zarf/compare/v0.33.1...v0.33.2) ##### What's Changed - fix: schema integration by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2463](https://togithub.com/defenseunicorns/zarf/pull/2463) - docs: add contributor covenant code of conduct by [@​salaxander](https://togithub.com/salaxander) in [https://github.com/defenseunicorns/zarf/pull/2462](https://togithub.com/defenseunicorns/zarf/pull/2462) - docs: fix casing on code of conduct badge by [@​salaxander](https://togithub.com/salaxander) in [https://github.com/defenseunicorns/zarf/pull/2466](https://togithub.com/defenseunicorns/zarf/pull/2466) - fix(deps): update github.com/anchore/clio digest to [`3c4abf8`](https://togithub.com/defenseunicorns/zarf/commit/3c4abf8) by [@​renovate](https://togithub.com/renovate) in [https://github.com/defenseunicorns/zarf/pull/2424](https://togithub.com/defenseunicorns/zarf/pull/2424) - fix: update docker media type in registry by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2476](https://togithub.com/defenseunicorns/zarf/pull/2476) - fix: adds GetVariableConfig function for packager by [@​decleaver](https://togithub.com/decleaver) in [https://github.com/defenseunicorns/zarf/pull/2475](https://togithub.com/defenseunicorns/zarf/pull/2475) - test: add tests for remove copies from components to enable refactoring by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2473](https://togithub.com/defenseunicorns/zarf/pull/2473) - fix!: do not uninstall helm chart after failed install or upgrade by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2456](https://togithub.com/defenseunicorns/zarf/pull/2456) - feat: inspect --list-images by [@​Noxsios](https://togithub.com/Noxsios) in [https://github.com/defenseunicorns/zarf/pull/2478](https://togithub.com/defenseunicorns/zarf/pull/2478) - refactor: remove copies from components to a filter by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2474](https://togithub.com/defenseunicorns/zarf/pull/2474) - chore: add support.md by [@​schristoff](https://togithub.com/schristoff) in [https://github.com/defenseunicorns/zarf/pull/2480](https://togithub.com/defenseunicorns/zarf/pull/2480) - chore: add a check for go mod tidy by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2481](https://togithub.com/defenseunicorns/zarf/pull/2481) - fix: use correct sha256 checksum for arm64 injector binary by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2483](https://togithub.com/defenseunicorns/zarf/pull/2483) - fix: simplify go mod tidy check by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2482](https://togithub.com/defenseunicorns/zarf/pull/2482) ##### New Contributors - [@​salaxander](https://togithub.com/salaxander) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2462](https://togithub.com/defenseunicorns/zarf/pull/2462) - [@​phillebaba](https://togithub.com/phillebaba) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2473](https://togithub.com/defenseunicorns/zarf/pull/2473) - [@​schristoff](https://togithub.com/schristoff) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2480](https://togithub.com/defenseunicorns/zarf/pull/2480) **Full Changelog**: https://github.com/defenseunicorns/zarf/compare/v0.33.1...v0.33.2
github/codeql-action (github/codeql-action) ### [`v3.25.6`](https://togithub.com/github/codeql-action/compare/v3.25.5...v3.25.6) [Compare Source](https://togithub.com/github/codeql-action/compare/v3.25.5...v3.25.6) ### [`v3.25.5`](https://togithub.com/github/codeql-action/compare/v3.25.4...v3.25.5) [Compare Source](https://togithub.com/github/codeql-action/compare/v3.25.4...v3.25.5) ### [`v3.25.4`](https://togithub.com/github/codeql-action/compare/v3.25.3...v3.25.4) [Compare Source](https://togithub.com/github/codeql-action/compare/v3.25.3...v3.25.4)
golangci/golangci-lint (golangci/golangci-lint) ### [`v1.58.2`](https://togithub.com/golangci/golangci-lint/compare/v1.58.1...v1.58.2) [Compare Source](https://togithub.com/golangci/golangci-lint/compare/v1.58.1...v1.58.2) ### [`v1.58.1`](https://togithub.com/golangci/golangci-lint/compare/v1.58.0...v1.58.1) [Compare Source](https://togithub.com/golangci/golangci-lint/compare/v1.58.0...v1.58.1)
google-github-actions/release-please-action (google-github-actions/release-please-action) ### [`v4.1.1`](https://togithub.com/google-github-actions/release-please-action/releases/tag/v4.1.1) [Compare Source](https://togithub.com/google-github-actions/release-please-action/compare/v4.1.0...v4.1.1) ##### Bug Fixes - add deprecation warning to workflow run ([#​1](https://togithub.com/google-github-actions/release-please-action/issues/1)) ([edb78cf](https://togithub.com/google-github-actions/release-please-action/commit/edb78cf884d22d5d991d94144d031fce49cadbea))
ossf/scorecard-action (ossf/scorecard-action) ### [`v2.3.3`](https://togithub.com/ossf/scorecard-action/releases/tag/v2.3.3) [Compare Source](https://togithub.com/ossf/scorecard-action/compare/v2.3.2...v2.3.3) > \[!NOTE]\ > There is no v2.3.2 release as a step was skipped in the release process. This was fixed and re-released under the v2.3.3 tag #### What's Changed - :seedling: Bump github.com/ossf/scorecard/v4 (v4.13.1) to github.com/ossf/scorecard/v5 (v5.0.0-rc1) by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1366](https://togithub.com/ossf/scorecard-action/pull/1366) - :seedling: Bump github.com/ossf/scorecard/v5 from v5.0.0-rc1 to v5.0.0-rc2 by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1374](https://togithub.com/ossf/scorecard-action/pull/1374) - :seedling: Bump github.com/ossf/scorecard/v5 from v5.0.0-rc2 to v5.0.0-rc2.0.20240509182734-7ce860946928 by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1377](https://togithub.com/ossf/scorecard-action/pull/1377) For a full changelist of what these include, see the [v5.0.0-rc1](https://togithub.com/ossf/scorecard/releases/tag/v5.0.0-rc1) and [v5.0.0-rc2](https://togithub.com/ossf/scorecard/releases/tag/v5.0.0-rc2) release notes. ##### Documentation - :book: Move token discussion out of main README. by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1279](https://togithub.com/ossf/scorecard-action/pull/1279) - :book: link to `ossf/scorecard` workflow instead of maintaining an example by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1352](https://togithub.com/ossf/scorecard-action/pull/1352) - :book: update api links to new scorecard.dev site by [@​spencerschrock](https://togithub.com/spencerschrock) in [https://github.com/ossf/scorecard-action/pull/1376](https://togithub.com/ossf/scorecard-action/pull/1376) **Full Changelog**: https://github.com/ossf/scorecard-action/compare/v2.3.1...v2.3.3 ### [`v2.3.2`](https://togithub.com/ossf/scorecard-action/compare/v2.3.1...v2.3.2) [Compare Source](https://togithub.com/ossf/scorecard-action/compare/v2.3.1...v2.3.2)
python-jsonschema/check-jsonschema (python-jsonschema/check-jsonschema) ### [`v0.28.4`](https://togithub.com/python-jsonschema/check-jsonschema/blob/HEAD/CHANGELOG.rst#0284) [Compare Source](https://togithub.com/python-jsonschema/check-jsonschema/compare/0.28.3...0.28.4) - Update vendored schemas: buildkite, github-workflows, gitlab-ci, renovate, taskfile, woodpecker-ci (2024-05-19) ### [`v0.28.3`](https://togithub.com/python-jsonschema/check-jsonschema/blob/HEAD/CHANGELOG.rst#0283) [Compare Source](https://togithub.com/python-jsonschema/check-jsonschema/compare/0.28.2...0.28.3) - Update vendored schemas: dependabot, github-workflows, gitlab-ci, renovate, woodpecker-ci (2024-05-05) - Update Cloud Build pre-commit hook to support JSON Cloud Build config. Thanks :user:`jrdnbradford`! (:pr:`427`)
renovatebot/pre-commit-hooks (renovatebot/pre-commit-hooks) ### [`v37.374.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.374.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.374.0...37.374.3) See https://github.com/renovatebot/renovate/releases/tag/37.374.3 for more changes ### [`v37.374.0`](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.373.0...37.374.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.373.0...37.374.0) ### [`v37.373.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.373.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.371.1...37.373.0) See https://github.com/renovatebot/renovate/releases/tag/37.373.0 for more changes ### [`v37.371.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.371.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.371.0...37.371.1) See https://github.com/renovatebot/renovate/releases/tag/37.371.1 for more changes ### [`v37.371.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.371.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.10...37.371.0) See https://github.com/renovatebot/renovate/releases/tag/37.371.0 for more changes ### [`v37.368.10`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.10) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.9...37.368.10) See https://github.com/renovatebot/renovate/releases/tag/37.368.10 for more changes ### [`v37.368.9`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.9) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.8...37.368.9) See https://github.com/renovatebot/renovate/releases/tag/37.368.9 for more changes ### [`v37.368.8`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.8) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.7...37.368.8) See https://github.com/renovatebot/renovate/releases/tag/37.368.8 for more changes ### [`v37.368.7`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.7) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.6...37.368.7) See https://github.com/renovatebot/renovate/releases/tag/37.368.7 for more changes ### [`v37.368.6`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.6) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.5...37.368.6) See https://github.com/renovatebot/renovate/releases/tag/37.368.6 for more changes ### [`v37.368.5`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.5) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.4...37.368.5) See https://github.com/renovatebot/renovate/releases/tag/37.368.5 for more changes ### [`v37.368.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.3...37.368.4) See https://github.com/renovatebot/renovate/releases/tag/37.368.4 for more changes ### [`v37.368.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.2...37.368.3) See https://github.com/renovatebot/renovate/releases/tag/37.368.3 for more changes ### [`v37.368.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.368.0...37.368.2) See https://github.com/renovatebot/renovate/releases/tag/37.368.2 for more changes ### [`v37.368.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.368.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.366.1...37.368.0) See https://github.com/renovatebot/renovate/releases/tag/37.368.0 for more changes ### [`v37.366.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.366.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.363.9...37.366.1) See https://github.com/renovatebot/renovate/releases/tag/37.366.1 for more changes ### [`v37.363.9`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.363.9) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.363.6...37.363.9) See https://github.com/renovatebot/renovate/releases/tag/37.363.9 for more changes ### [`v37.363.6`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.363.6) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.363.4...37.363.6) See https://github.com/renovatebot/renovate/releases/tag/37.363.6 for more changes ### [`v37.363.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.363.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.363.3...37.363.4) See https://github.com/renovatebot/renovate/releases/tag/37.363.4 for more changes ### [`v37.363.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.363.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.363.1...37.363.3) See https://github.com/renovatebot/renovate/releases/tag/37.363.3 for more changes ### [`v37.363.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.363.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.359.0...37.363.1) See https://github.com/renovatebot/renovate/releases/tag/37.363.1 for more changes ### [`v37.359.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.359.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.358.2...37.359.0) See https://github.com/renovatebot/renovate/releases/tag/37.359.0 for more changes ### [`v37.358.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.358.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.358.1...37.358.2) See https://github.com/renovatebot/renovate/releases/tag/37.358.2 for more changes ### [`v37.358.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.358.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.358.0...37.358.1) See https://github.com/renovatebot/renovate/releases/tag/37.358.1 for more changes ### [`v37.358.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.358.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.356.1...37.358.0) See https://github.com/renovatebot/renovate/releases/tag/37.358.0 for more changes ### [`v37.356.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.356.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.356.0...37.356.1) See https://github.com/renovatebot/renovate/releases/tag/37.356.1 for more changes ### [`v37.356.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.356.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.355.1...37.356.0) See https://github.com/renovatebot/renovate/releases/tag/37.356.0 for more changes ### [`v37.355.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.355.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.6...37.355.1) See https://github.com/renovatebot/renovate/releases/tag/37.355.1 for more changes ### [`v37.354.6`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.6) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.5...37.354.6) See https://github.com/renovatebot/renovate/releases/tag/37.354.6 for more changes ### [`v37.354.5`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.5) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.4...37.354.5) See https://github.com/renovatebot/renovate/releases/tag/37.354.5 for more changes ### [`v37.354.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.3...37.354.4) See https://github.com/renovatebot/renovate/releases/tag/37.354.4 for more changes ### [`v37.354.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.2...37.354.3) See https://github.com/renovatebot/renovate/releases/tag/37.354.3 for more changes ### [`v37.354.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.354.1...37.354.2) See https://github.com/renovatebot/renovate/releases/tag/37.354.2 for more changes ### [`v37.354.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.354.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.353.1...37.354.1) See https://github.com/renovatebot/renovate/releases/tag/37.354.1 for more changes ### [`v37.353.1`](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.353.0...37.353.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.353.0...37.353.1) ### [`v37.353.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.353.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.352.0...37.353.0) See https://github.com/renovatebot/renovate/releases/tag/37.353.0 for more changes ### [`v37.352.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.352.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.351.4...37.352.0) See https://github.com/renovatebot/renovate/releases/tag/37.352.0 for more changes ### [`v37.351.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.351.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.351.2...37.351.4) See https://github.com/renovatebot/renovate/releases/tag/37.351.4 for more changes ### [`v37.351.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.351.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.351.1...37.351.2) See https://github.com/renovatebot/renovate/releases/tag/37.351.2 for more changes ### [`v37.351.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.351.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.351.0...37.351.1) See https://github.com/renovatebot/renovate/releases/tag/37.351.1 for more changes ### [`v37.351.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.351.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.349.3...37.351.0) See https://github.com/renovatebot/renovate/releases/tag/37.351.0 for more changes ### [`v37.349.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.349.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.349.2...37.349.3) See https://github.com/renovatebot/renovate/releases/tag/37.349.3 for more changes ### [`v37.349.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.349.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.349.0...37.349.2) See https://github.com/renovatebot/renovate/releases/tag/37.349.2 for more changes ### [`v37.349.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.349.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.347.2...37.349.0) See https://github.com/renovatebot/renovate/releases/tag/37.349.0 for more changes ### [`v37.347.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.347.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.347.0...37.347.2) See https://github.com/renovatebot/renovate/releases/tag/37.347.2 for more changes ### [`v37.347.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.347.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.345.0...37.347.0) See https://github.com/renovatebot/renovate/releases/tag/37.347.0 for more changes ### [`v37.345.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.345.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.344.0...37.345.0) See https://github.com/renovatebot/renovate/releases/tag/37.345.0 for more changes ### [`v37.344.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.344.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.342.1...37.344.0) See https://github.com/renovatebot/renovate/releases/tag/37.344.0 for more changes
step-security/harden-runner (step-security/harden-runner) ### [`v2.8.0`](https://togithub.com/step-security/harden-runner/releases/tag/v2.8.0) [Compare Source](https://togithub.com/step-security/harden-runner/compare/v2.7.1...v2.8.0) #### What's Changed Release v2.8.0 by [@​h0x0er](https://togithub.com/h0x0er) and [@​varunsh-coder](https://togithub.com/varunsh-coder) in [https://github.com/step-security/harden-runner/pull/416](https://togithub.com/step-security/harden-runner/pull/416) This release includes: - File Monitoring Enhancements: Adds the capability to view the name and path of every file written during the build process. - Process Tracking Enhancements: Adds the capability to view process names and arguments of processes run during the build process. These enhancements are based on insights from the XZ Utils incident, aimed at improving observability and detections during the build process. **Full Changelog**: https://github.com/step-security/harden-runner/compare/v2...v2.8.0
--- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://togithub.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate](https://www.mend.io/free-developer-tools/renovate/). View repository job log [here](https://developer.mend.io/github/defenseunicorns/uds-package-mattermost). Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Release-As: v9.8.0-uds.0 --- .github/workflows/codeql.yaml | 8 ++++---- .github/workflows/dependencyreview.yaml | 4 ++-- .github/workflows/lint.yaml | 2 +- .github/workflows/scorecard.yaml | 6 +++--- .github/workflows/tag-and-release.yaml | 4 ++-- .github/workflows/test.yaml | 2 +- .pre-commit-config.yaml | 8 ++++---- 7 files changed, 17 insertions(+), 17 deletions(-) diff --git a/.github/workflows/codeql.yaml b/.github/workflows/codeql.yaml index 3f836ca1..9d63e0e5 100644 --- a/.github/workflows/codeql.yaml +++ b/.github/workflows/codeql.yaml @@ -29,17 +29,17 @@ jobs: steps: - name: Checkout repository - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/init@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6 with: languages: ${{ matrix.language }} - name: Autobuild - uses: github/codeql-action/autobuild@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/autobuild@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6 - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/analyze@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6 with: category: "/language:${{matrix.language}}" diff --git a/.github/workflows/dependencyreview.yaml b/.github/workflows/dependencyreview.yaml index 35288cf3..7141d093 100644 --- a/.github/workflows/dependencyreview.yaml +++ b/.github/workflows/dependencyreview.yaml @@ -17,11 +17,11 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@a4aa98b93cab29d9b1101a6143fb8bce00e2eac4 # v2.7.1 + uses: step-security/harden-runner@f086349bfa2bd1361f7909c78558e816508cdc10 # v2.8.0 with: egress-policy: audit - name: 'Checkout Repository' - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 - name: 'Dependency Review' uses: actions/dependency-review-action@0c155c5e8556a497adf53f2c18edabf945ed8e70 # v4.3.2 diff --git a/.github/workflows/lint.yaml b/.github/workflows/lint.yaml index f92ec8bf..d0138c1a 100644 --- a/.github/workflows/lint.yaml +++ b/.github/workflows/lint.yaml @@ -15,7 +15,7 @@ jobs: steps: - name: Checkout - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 with: fetch-depth: 0 diff --git a/.github/workflows/scorecard.yaml b/.github/workflows/scorecard.yaml index b4a568d8..c0bf00c8 100644 --- a/.github/workflows/scorecard.yaml +++ b/.github/workflows/scorecard.yaml @@ -22,12 +22,12 @@ jobs: steps: - name: "Checkout code" - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 with: persist-credentials: false - name: "Run analysis" - uses: ossf/scorecard-action@0864cf19026789058feabb7e87baa5f140aac736 # v2.3.1 + uses: ossf/scorecard-action@dc50aa9510b46c811795eb24b2f1ba02a914e534 # v2.3.3 with: results_file: results.sarif results_format: sarif @@ -45,6 +45,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/upload-sarif@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6 with: sarif_file: results.sarif diff --git a/.github/workflows/tag-and-release.yaml b/.github/workflows/tag-and-release.yaml index 18131a70..656ad61b 100644 --- a/.github/workflows/tag-and-release.yaml +++ b/.github/workflows/tag-and-release.yaml @@ -18,7 +18,7 @@ jobs: steps: - name: Create release tag id: tag - uses: google-github-actions/release-please-action@a37ac6e4f6449ce8b3f7607e4d97d0146028dc0b # v4.1.0 + uses: google-github-actions/release-please-action@e4dc86ba9405554aeba3c6bb2d169500e7d3b4ee # v4.1.1 - id: release-flag run: echo "release_created=${{ steps.tag.outputs.release_created || false }}" >> $GITHUB_OUTPUT @@ -36,7 +36,7 @@ jobs: packages: write steps: - - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + - uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 - name: Environment setup uses: defenseunicorns/uds-common/.github/actions/setup@b2e8b25930c953ef893e7c787fe350f0d8679ee2 # v0.4.2 diff --git a/.github/workflows/test.yaml b/.github/workflows/test.yaml index f01664cd..342b9e01 100644 --- a/.github/workflows/test.yaml +++ b/.github/workflows/test.yaml @@ -43,7 +43,7 @@ jobs: steps: - name: Checkout repository - uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 + uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 - name: Environment setup uses: defenseunicorns/uds-common/.github/actions/setup@b2e8b25930c953ef893e7c787fe350f0d8679ee2 # v0.4.2 diff --git a/.pre-commit-config.yaml b/.pre-commit-config.yaml index ab2edbe0..79e03a56 100644 --- a/.pre-commit-config.yaml +++ b/.pre-commit-config.yaml @@ -32,7 +32,7 @@ repos: hooks: - id: fix-smartquotes - repo: https://github.com/python-jsonschema/check-jsonschema - rev: 0.28.2 + rev: 0.28.4 hooks: - id: check-jsonschema name: "Validate Zarf Configs Against Schema" @@ -41,14 +41,14 @@ repos: args: [ "--schemafile", - "https://raw.githubusercontent.com/defenseunicorns/zarf/v0.33.1/zarf.schema.json", + "https://raw.githubusercontent.com/defenseunicorns/zarf/v0.33.2/zarf.schema.json", "--no-cache" ] - repo: https://github.com/golangci/golangci-lint - rev: v1.58.0 + rev: v1.58.2 hooks: - id: golangci-lint - repo: https://github.com/renovatebot/pre-commit-hooks - rev: 37.342.1 + rev: 37.374.3 hooks: - id: renovate-config-validator