Skip to content

Commit ca3f657

Browse files
ci(deps): bump the actions group with 3 updates (#196)
Bumps the actions group with 3 updates: [actions/setup-go](https://github.com/actions/setup-go), [codecov/codecov-action](https://github.com/codecov/codecov-action) and [github/codeql-action](https://github.com/github/codeql-action). Updates `actions/setup-go` from 6.3.0 to 6.4.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@4b73464...4a36011) Updates `codecov/codecov-action` from 5.5.3 to 6.0.0 - [Release notes](https://github.com/codecov/codecov-action/releases) - [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md) - [Commits](codecov/codecov-action@1af5884...57e3a13) Updates `github/codeql-action` from 4.34.1 to 4.35.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@3869755...c10b806) --- updated-dependencies: - dependency-name: actions/setup-go dependency-version: 6.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: codecov/codecov-action dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions - dependency-name: github/codeql-action dependency-version: 4.35.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 59a42c7 commit ca3f657

11 files changed

Lines changed: 25 additions & 25 deletions

.github/workflows/build-matrix.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ jobs:
3232
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
3333

3434
- name: Set up Go
35-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
35+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
3636
with:
3737
go-version-file: 'go.mod'
3838
cache: true

.github/workflows/ci.yml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2323

2424
- name: Set up Go
25-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
25+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
2626
with:
2727
go-version-file: 'go.mod'
2828
cache: true
@@ -41,7 +41,7 @@ jobs:
4141
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
4242

4343
- name: Set up Go
44-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
44+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
4545
with:
4646
go-version-file: 'go.mod'
4747
cache: true
@@ -60,7 +60,7 @@ jobs:
6060
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
6161

6262
- name: Set up Go
63-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
63+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
6464
with:
6565
go-version-file: 'go.mod'
6666
cache: true
@@ -85,7 +85,7 @@ jobs:
8585
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
8686

8787
- name: Set up Go
88-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
88+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
8989
with:
9090
go-version-file: 'go.mod'
9191
cache: true
@@ -116,7 +116,7 @@ jobs:
116116
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
117117

118118
- name: Set up Go
119-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
119+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
120120
with:
121121
go-version-file: 'go.mod'
122122
cache: true
@@ -138,7 +138,7 @@ jobs:
138138
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
139139

140140
- name: Set up Go
141-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
141+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
142142
with:
143143
go-version-file: 'go.mod'
144144
cache: true
@@ -165,7 +165,7 @@ jobs:
165165
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
166166

167167
- name: Set up Go
168-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
168+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
169169
with:
170170
go-version-file: 'go.mod'
171171
cache: true
@@ -206,7 +206,7 @@ jobs:
206206

207207
- name: Build CKB (fallback)
208208
if: steps.download.outcome == 'failure'
209-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
209+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
210210
with:
211211
go-version-file: 'go.mod'
212212
cache: true

.github/workflows/ckb.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -79,7 +79,7 @@ jobs:
7979
with:
8080
fetch-depth: 0
8181

82-
- uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
82+
- uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
8383
with:
8484
go-version-file: 'go.mod'
8585
cache: true
@@ -980,7 +980,7 @@ jobs:
980980
with:
981981
fetch-depth: 0
982982

983-
- uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
983+
- uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
984984
with:
985985
go-version-file: 'go.mod'
986986
cache: true

.github/workflows/cov.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525
fetch-depth: 2 # Required for Codecov to determine PR base SHA
2626

2727
- name: Set up Go
28-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
28+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
2929
with:
3030
go-version-file: 'go.mod'
3131
cache: true
@@ -59,7 +59,7 @@ jobs:
5959
echo "</details>" >> $GITHUB_STEP_SUMMARY
6060
6161
- name: Upload to Codecov
62-
uses: codecov/codecov-action@1af58845a975a7985b0beb0cbe6fbbb71a41dbad # v5
62+
uses: codecov/codecov-action@57e3a136b779b570ffcdbf80b3bdc90e7fab3de2 # v5
6363
with:
6464
files: coverage.out
6565
flags: unit

.github/workflows/nfr.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2222

2323
- name: Set up Go
24-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
24+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
2525
with:
2626
go-version-file: 'go.mod'
2727
cache: true
@@ -55,7 +55,7 @@ jobs:
5555
ref: ${{ github.event.pull_request.base.sha }}
5656

5757
- name: Set up Go
58-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
58+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
5959
with:
6060
go-version-file: 'go.mod'
6161
cache: true

.github/workflows/release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
fetch-depth: 0
2424

2525
- name: Set up Go
26-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
26+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
2727
with:
2828
go-version-file: 'go.mod'
2929
cache: true

.github/workflows/security-dependencies.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -71,7 +71,7 @@ jobs:
7171
# ==================== Go Setup (if needed) ====================
7272
- name: Set up Go
7373
if: inputs.has_go && (inputs.scan_govulncheck || inputs.scan_trivy)
74-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
74+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
7575
with:
7676
go-version-file: 'go.mod'
7777
cache: true
@@ -142,7 +142,7 @@ jobs:
142142
143143
- name: Upload Trivy SARIF
144144
if: inputs.scan_trivy && hashFiles('trivy-vuln.sarif') != ''
145-
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
145+
uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4
146146
with:
147147
sarif_file: trivy-vuln.sarif
148148
category: trivy

.github/workflows/security-sast-common.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -91,7 +91,7 @@ jobs:
9191
9292
- name: Upload SARIF
9393
if: hashFiles('semgrep.sarif') != ''
94-
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
94+
uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4
9595
with:
9696
sarif_file: semgrep.sarif
9797
category: semgrep

.github/workflows/security-sast-go.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -47,7 +47,7 @@ jobs:
4747
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
4848

4949
- name: Set up Go
50-
uses: actions/setup-go@4b73464bb391d4059bd26b0524d20df3927bd417 # v6
50+
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6
5151
with:
5252
go-version-file: 'go.mod'
5353
cache: true
@@ -134,7 +134,7 @@ jobs:
134134
echo "| **Total** | **$FINDINGS** |" >> $GITHUB_STEP_SUMMARY
135135
136136
- name: Upload SARIF
137-
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
137+
uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4
138138
with:
139139
sarif_file: gosec.sarif
140140
category: gosec

.github/workflows/security-sast-python.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -134,7 +134,7 @@ jobs:
134134
135135
- name: Upload SARIF
136136
if: hashFiles('bandit.sarif') != ''
137-
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
137+
uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4
138138
with:
139139
sarif_file: bandit.sarif
140140
category: bandit

0 commit comments

Comments
 (0)