Skip to content

chore(deps): bump codecov/codecov-action from 4.6.0 to 7.0.0#636

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/codecov/codecov-action-7.0.0
Open

chore(deps): bump codecov/codecov-action from 4.6.0 to 7.0.0#636
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/codecov/codecov-action-7.0.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 13, 2026

Copy link
Copy Markdown
Contributor

Bumps codecov/codecov-action from 4.6.0 to 7.0.0.

Release notes

Sourced from codecov/codecov-action's releases.

v7.0.0

⚠️ Due to migration issues with keybase, we are unable to update our keys under the codecovsecurity account. We have deleted the account and are using codecovsecops with the original gpg key

What's Changed

Full Changelog: codecov/codecov-action@v6.0.1...v7.0.0

v6.0.2

This is a copy of the v7.0.0 release to make updates easier

What's Changed

Full Changelog: codecov/codecov-action@v6.0.1...v6.0.2

v6.0.1

What's Changed

Full Changelog: codecov/codecov-action@v6.0.0...v6.0.1

v6.0.0

⚠️ This version introduces support for node24 which make cause breaking changes for systems that do not currently support node24. ⚠️

What's Changed

Full Changelog: codecov/codecov-action@v5.5.4...v6.0.0

v5.5.5

This release only contains the keybase.io change as described here.

Full Changelog: codecov/codecov-action@v5.5.4...v5.5.5

v5.5.4

This is a mirror of v5.5.2. v6 will be released which requires node24

What's Changed

... (truncated)

Changelog

Sourced from codecov/codecov-action's changelog.

v5.5.2

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.1..v5.5.2

v5.5.1

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.0..v5.5.1

v5.5.0

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.4.3..v5.5.0

v5.4.3

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.4.2..v5.4.3

v5.4.2

... (truncated)

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 13, 2026
@dependabot dependabot Bot force-pushed the dependabot/github_actions/codecov/codecov-action-7.0.0 branch from d87d7fa to 8c98d56 Compare June 14, 2026 03:55
@frankbria

Copy link
Copy Markdown
Owner

Held for supply-chain aging: codecov/codecov-action@v7.0.0 was published 2026-06-07 (<2 weeks old) and is a major bump. Revisit after ~2026-06-21.

@dependabot dependabot Bot force-pushed the dependabot/github_actions/codecov/codecov-action-7.0.0 branch 10 times, most recently from bf6a753 to 41daf33 Compare June 20, 2026 21:45
@frankbria

Copy link
Copy Markdown
Owner

Holding pending a config check, not freshness (v7.0.0 published 2026-06-07, ~2 weeks). This is a major bump 4→7: codecov-action v5 made the upload token mandatory (new CLI-based uploader). Before merging, confirm CODECOV_TOKEN is configured as a repo/org secret and referenced in the coverage workflow — otherwise uploads will start failing silently. Note the app/coverage checks didn't run on this PR (path filter), so CI green here doesn't exercise the upload. Once the token is verified, safe to merge.

@dependabot dependabot Bot force-pushed the dependabot/github_actions/codecov/codecov-action-7.0.0 branch from 41daf33 to bfa074b Compare June 21, 2026 03:27
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 4.6.0 to 7.0.0.
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](codecov/codecov-action@b9fd7d1...fb8b358)

---
updated-dependencies:
- dependency-name: codecov/codecov-action
  dependency-version: 7.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/codecov/codecov-action-7.0.0 branch from bfa074b to c807152 Compare June 21, 2026 03:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant