chore(deps): bump actions/checkout from 4 to 7#153
Conversation
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
Greptile SummaryThis PR is a routine Dependabot bump of
|
| Filename | Overview |
|---|---|
| .github/workflows/bench.yml | Bumps both bench job checkouts from v4 to v7; uses push and pull_request triggers (not affected by v7's fork-PR blocking change) |
| .github/workflows/build.yml | Bumps checkout from v6 to v7; straightforward change with no special trigger concerns |
| .github/workflows/cd.yml | Bumps checkout from v6 to v7; triggered only on release events, unaffected by v7 security changes |
| .github/workflows/nix.yml | Bumps checkout from v6 to v7; clean one-line change |
| .github/workflows/release-plz.yml | Bumps checkout from v6 to v7; triggered on push to main only, uses YAML anchors to apply the checkout step to both jobs |
| .github/workflows/rust.yml | Bumps checkout from v6 to v7; no issues |
| .github/workflows/typos.yml | Bumps checkout from v6 to v7; no issues |
Flowchart
%%{init: {'theme': 'neutral'}}%%
flowchart TD
A[GitHub Event] --> B{Trigger type?}
B -->|push to main| C[release-plz / bench]
B -->|pull_request| D[bench / build / rust / typos / nix]
B -->|release published| E[cd]
C --> F[actions/checkout v7]
D --> F
E --> F
F --> G[Checkout code from base repo]
style F fill:#2d8a4e,color:#fff
%%{init: {'theme': 'base', 'themeVariables': {"darkMode": true, "background": "#0d1117", "primaryColor": "#21262d", "primaryTextColor": "#e6edf3", "primaryBorderColor": "#8b949e", "lineColor": "#8b949e", "textColor": "#e6edf3", "edgeLabelBackground": "#161b22", "actorBkg": "#21262d", "actorBorder": "#8b949e", "actorTextColor": "#e6edf3", "actorLineColor": "#8b949e", "signalColor": "#8b949e", "signalTextColor": "#e6edf3", "noteBkgColor": "#373320", "noteBorderColor": "#d4a72c", "noteTextColor": "#f0e6c0", "labelBoxBkgColor": "#21262d", "labelBoxBorderColor": "#8b949e", "labelTextColor": "#e6edf3", "loopTextColor": "#e6edf3", "activationBkgColor": "#30363d", "activationBorderColor": "#8b949e"}}}%%
flowchart TD
A[GitHub Event] --> B{Trigger type?}
B -->|push to main| C[release-plz / bench]
B -->|pull_request| D[bench / build / rust / typos / nix]
B -->|release published| E[cd]
C --> F[actions/checkout v7]
D --> F
E --> F
F --> G[Checkout code from base repo]
style F fill:#2d8a4e,color:#fff
Reviews (1): Last reviewed commit: "chore(deps): bump actions/checkout from ..." | Re-trigger Greptile
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps actions/checkout from 4 to 7.
Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
9c091bbupdate error wording (#2467)1044a6dgetting ready for checkout v7 release (#2464)f028218Bump the minor-npm-dependencies group across 1 directory with 3 updates (#2462)d914b26upgrade module to esm and update dependencies (#2463)537c7efBump@actions/coreand@actions/tool-cacheand Remove uuid (#2459)130a169Bump js-yaml from 4.1.0 to 4.2.0 (#2461)7d09575Bump flatted from 3.3.1 to 3.4.2 (#2460)0f9f3aaBump actions/publish-immutable-action (#2458)f9e715ablock checking out fork pr for pull_request_target and workflow_run (#2454)df4cb1cUpdate changelog for v6.0.3 (#2446)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)