Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 17, 2025

Bumps chainguard-dev/actions from 87966c10ea9ee2c3a45da2dc41040ee57ab8376d to b479012116eacde7f895586c17b598f7ba0ee700.

Changelog

Sourced from chainguard-dev/actions's changelog.

version: 2

project_name: actions

used only to help with the GH release and changelog

no builds :)

builds:

  • skip: true

release: draft: false

changelog: use: github-native

Commits
  • b479012 Bump chainguard-dev/actions from 1.5.7 to 1.5.8 (#638)
  • 016768a Bump chainguard-dev/actions from 1.5.7 to 1.5.8 in /goimports (#640)
  • 4d66309 Bump chainguard-dev/actions from 1.5.7 to 1.5.8 in /gofmt (#639)
  • 801a526 Bump chainguard-dev/actions from 1.5.7 to 1.5.8 in /inky-build-pkg (#641)
  • 206cffd Bump chainguard-dev/actions from 1.5.7 to 1.5.8 in /melange-build (#642)
  • 710bc21 Bump chainguard-dev/actions from 1.5.7 to 1.5.8 in /wolfi-build-pkg (#643)
  • abcc11e Bump step-security/harden-runner from 2.13.1 to 2.13.2 (#637)
  • a33af70 Bump azure/setup-helm from 2.1 to 3.5 in /setup-monitoring (#636)
  • 5eab3aa Bump actions/upload-artifact from 4.6.2 to 5.0.0 in /k8s-diag (#632)
  • 00fec78 Bump actions/upload-artifact from 4.6.2 to 5.0.0 in /nodiff (#633)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [chainguard-dev/actions](https://github.com/chainguard-dev/actions) from 87966c10ea9ee2c3a45da2dc41040ee57ab8376d to b479012116eacde7f895586c17b598f7ba0ee700.
- [Release notes](https://github.com/chainguard-dev/actions/releases)
- [Changelog](https://github.com/chainguard-dev/actions/blob/main/.goreleaser.yml)
- [Commits](chainguard-dev/actions@87966c1...b479012)

---
updated-dependencies:
- dependency-name: chainguard-dev/actions
  dependency-version: b479012116eacde7f895586c17b598f7ba0ee700
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added 🚸 dependencies Pull requests that update a dependency file dependencies Pull requests that update a dependency file labels Nov 17, 2025
@sualeh sualeh merged commit ddc9384 into main Nov 20, 2025
28 of 29 checks passed
@sualeh sualeh deleted the dependabot/github_actions/chainguard-dev/actions-b479012116eacde7f895586c17b598f7ba0ee700 branch November 20, 2025 23:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

🚸 dependencies Pull requests that update a dependency file dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants