chore(deps): bump the github-actions group with 4 updates #426
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the github-actions group with 4 updates: vladopajic/go-test-coverage, dependabot/fetch-metadata, actions/dependency-review-action and github/codeql-action.
Updates
vladopajic/go-test-coverage
from 2.8.3 to 2.10.0Release notes
Sourced from vladopajic/go-test-coverage's releases.
Commits
a1e0de1
bump version to v2.10.0d35274a
Update README.md0b76be5
add ability to exclude body of switch and select with annotation (#79)fe6d2c4
various improvements (cosmetics, lints, coverage) (#78)741802c
excluding whole body from coverage when having comment annotation (#77)ac294bd
Update README.md243a824
exclude files with no statements (#76)84ec899
add ability to exclude entire function from coverage statistics (#75)4a74198
Update README.md77a434f
add support for multiple profiles (#74)Updates
dependabot/fetch-metadata
from 1.6.0 to 2.0.0Release notes
Sourced from dependabot/fetch-metadata's releases.
... (truncated)
Commits
0fb2170
v2.0.0 (#508)dc2c459
v2
is the new tracking tag (#506)f2f0ad1
Upgrade from node16 to node20 (#443)8348ea7
v1.7.0 (#505)e21c9fb
Switch to the official action for managing app tokens (#504)3e1bcb9
Scope app token to only this repo for security (#501)7187f39
Merge pull request #442 from dependabot/dependabot/github_actions/tibdex/gith...f9af96f
Bump tibdex/github-app-token from 1.8.2 to 2.1.09977d7b
Merge pull request #497 from dependabot/dependabot/npm_and_yarn/dev-dependenc...4e1067b
run npm buildUpdates
actions/dependency-review-action
from 4.1.3 to 4.2.4Release notes
Sourced from actions/dependency-review-action's releases.
Commits
733dd5d
bumping to 4.2.49093495
Merge pull request #725 from actions/issue-71835b83b4
Fix prettier issuese057056
Add packaged code updated684d03
Add trailing slash to tests2b0aaf1
Fix extra slash issued920937
Fix repositoryUrl issues around GitHub Actions02b13f6
Merge pull request #721 from sporkmonger/patch-16e0fa26
Typo fixes0fa40c3
bumping to 4.2.3.Updates
github/codeql-action
from 3.24.7 to 3.24.9Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
1b1aada
Merge pull request #2208 from github/update-v3.24.9-09d4101d26505708
Update changelog for v3.24.909d4101
Merge pull request #2203 from github/update-bundle/codeql-bundle-v2.16.5a3ab02e
Merge branch 'main' into update-bundle/codeql-bundle-v2.16.59cf4574
Add changelog note964f5e7
Merge pull request #2207 from github/henrymercer/more-processing-error-catego...9c0c35b
Merge pull request #2206 from github/henrymercer/improved-autobuild-error-wit...c84e4c8
Mark some more processing errors as invalid SARIF upload requests4aca720
Improve error message when using build modes and autobuild fails7f375ae
Wrap configuration errors for all CLI commandsDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions