Skip to content

fix(deps): update all#1

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/all
Open

fix(deps): update all#1
renovate[bot] wants to merge 1 commit intomainfrom
renovate/all

Conversation

@renovate
Copy link

@renovate renovate bot commented Jun 24, 2021

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Type Update Change Age Confidence
actions/cache action minor v3.0.7v3.5.0 age confidence
actions/checkout action minor v3.0.2v3.6.0 age confidence
alex (source) dependencies patch 9.1.09.1.1 age confidence
github.com/go-chi/chi require patch v1.5.4v1.5.5 age confidence
github.com/stretchr/testify require minor v1.8.0v1.11.1 age confidence
github.com/tailscale/depaware require digest 720c4b49c2ad25 age confidence
go.uber.org/zap require minor v1.19.1v1.27.1 age confidence
goreleaser/goreleaser-action action minor v2.8.0v2.9.1 age confidence
markdownlint-cli dependencies minor 0.27.10.48.0 age confidence

Release Notes

actions/cache (actions/cache)

v3.5.0

Compare Source

  • Bump actions/cache to v4.1.0

Full Changelog: actions/cache@v3...v3.5.0

v3.4.3

Compare Source

What's Changed

Full Changelog: actions/cache@v3.4.2...v3.4.3

v3.4.2

Compare Source

What's Changed

[!IMPORTANT]
As a reminder, there were important backend changes to release v3.4.0, see those release notes and the announcement for more details.

Full Changelog: actions/cache@v3.4.0...v3.4.2

v3.4.1

Compare Source

[!WARNING]
This version was incorrectly released using a SHA pointing to a newer version for immutable actions only. Please use v3.4.2 (or v3) instead.

v3.4.0

Compare Source

⚠️ Important Changes

The cache backend service has been rewritten from the ground up for improved performance and reliability. actions/cache now integrates with the new cache service (v2) APIs.

The new service will gradually roll out as of February 1st, 2025. The legacy service will also be sunset on the same date. Changes in these release are fully backward compatible.

We are deprecating some versions of this action. We recommend upgrading to version v4 or v3 as soon as possible before February 1st, 2025. (Upgrade instructions below).

If you are using pinned SHAs, please use the SHAs of versions v4.2.0 or v3.4.0

If you do not upgrade, all workflow runs using any of the deprecated actions/cache will fail.

Upgrading to the recommended versions will not break your workflows.

Read more about the change & access the migration guide: reference to the announcement.

Minor changes

Minor and patch version updates for these dependencies:

Full Changelog: actions/cache@v3.3.3...v3.4.0

v3.3.3

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.3.3

v3.3.2

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.3.2

v3.3.1

Compare Source

What's Changed

Full Changelog: actions/cache@v3...v3.3.1

v3.3.0

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.3.0

v3.2.6

Compare Source

What's Changed

Full Changelog: actions/cache@v3...v3.2.6

v3.2.5

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.2.5

v3.2.4

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.2.4

v3.2.3

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.2.3

v3.2.2

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3.2.1...v3.2.2

v3.2.1

Compare Source

What's Changed

Full Changelog: actions/cache@v3.2.0...v3.2.1

v3.2.0

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.2.0

v3.0.11

Compare Source

What's Changed

New Contributors

Full Changelog: actions/cache@v3...v3.0.11

v3.0.10

Compare Source

  • Fix a bug with sorting inputs.
  • Update definition for restore-keys in README.md

v3.0.9

Compare Source

  • Enhanced the warning message for cache unavailability in case of GHES.

v3.0.8

Compare Source

What's Changed

  • Fix zstd not working for windows on gnu tar in issues.
  • Allow users to provide a custom timeout as input for aborting cache segment download using the environment variable SEGMENT_DOWNLOAD_TIMEOUT_MIN. Default is 60 minutes.
actions/checkout (actions/checkout)

v3.6.0

Compare Source

v3.5.3

Compare Source

v3.5.2

Compare Source

v3.5.1

Compare Source

v3.5.0

Compare Source

v3.4.0

Compare Source

v3.3.0

Compare Source

v3.2.0

Compare Source

v3.1.0

Compare Source

get-alex/alex (alex)

v9.1.1

Compare Source

Full Changelog: get-alex/alex@9.1.0...9.1.1

go-chi/chi (github.com/go-chi/chi)

v1.5.5

Compare Source

stretchr/testify (github.com/stretchr/testify)

v1.11.1

Compare Source

This release fixes #​1785 introduced in v1.11.0 where expected argument values implementing the stringer interface (String() string) with a method which mutates their value, when passed to mock.Mock.On (m.On("Method", <expected>).Return()) or actual argument values passed to mock.Mock.Called may no longer match one another where they previously did match. The behaviour prior to v1.11.0 where the stringer is always called is restored. Future testify releases may not call the stringer method at all in this case.

What's Changed

Full Changelog: stretchr/testify@v1.11.0...v1.11.1

v1.11.0

Compare Source

What's Changed

Functional Changes

v1.11.0 Includes a number of performance improvements.

Fixes
Documentation, Build & CI

New Contributors

Full Changelog: stretchr/testify@v1.10.0...v1.11.0

v1.10.0

Compare Source

What's Changed
Functional Changes
Fixes
Documentation, Build & CI
New Contributors

Full Changelog: stretchr/testify@v1.9.0...v1.10.0

v1.9.0

Compare Source

What's Changed


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot requested a review from moul as a code owner June 24, 2021 13:16
@trafico-bot trafico-bot bot added the 🔍 Ready for Review Pull Request is not reviewed yet label Jun 24, 2021
@codecov
Copy link

codecov bot commented Jun 24, 2021

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 71.05%. Comparing base (0ebf11a) to head (fbaa11b).

Current head fbaa11b differs from pull request most recent head 1e3d4a5

Please upload reports for the commit 1e3d4a5 to get more accurate results.

Additional details and impacted files
@@           Coverage Diff           @@
##             main       #1   +/-   ##
=======================================
  Coverage   71.05%   71.05%           
=======================================
  Files           1        1           
  Lines          38       38           
=======================================
  Hits           27       27           
  Misses          7        7           
  Partials        4        4           
Flag Coverage Δ
unittests 71.05% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

@renovate renovate bot changed the title Update module moul.io/u to v1.25.1 Update module moul.io/u to v1.25.1 - autoclosed Jun 24, 2021
@renovate renovate bot closed this Jun 24, 2021
@renovate renovate bot deleted the renovate/all branch June 24, 2021 16:49
@renovate renovate bot changed the title Update module moul.io/u to v1.25.1 - autoclosed Update module moul.io/u to v1.25.1 Jun 28, 2021
@renovate renovate bot reopened this Jun 28, 2021
@renovate renovate bot restored the renovate/all branch June 28, 2021 18:44
@renovate renovate bot changed the title Update module moul.io/u to v1.25.1 Update module go.uber.org/zap to v1.18.0 Jun 28, 2021
@renovate renovate bot changed the title Update module go.uber.org/zap to v1.18.0 Update module go.uber.org/zap to v1.18.1 Jun 28, 2021
@renovate renovate bot changed the title Update module go.uber.org/zap to v1.18.1 Update all Jul 23, 2021
@renovate renovate bot force-pushed the renovate/all branch 2 times, most recently from dc8e898 to 2abd2b1 Compare July 26, 2021 12:34
@renovate renovate bot changed the title Update all chore(deps): update all Aug 30, 2021
@auto-add-label auto-add-label bot added the dependencies Pull requests that update a dependency file label Aug 30, 2021
@renovate renovate bot changed the title chore(deps): update all fix(deps): update dependency markdownlint-cli to v0.28.1 Aug 30, 2021
@auto-add-label auto-add-label bot added bug Something isn't working and removed dependencies Pull requests that update a dependency file labels Aug 30, 2021
@renovate renovate bot changed the title fix(deps): update dependency markdownlint-cli to v0.28.1 chore(deps): update all Aug 30, 2021
@auto-add-label auto-add-label bot added dependencies Pull requests that update a dependency file and removed bug Something isn't working labels Aug 30, 2021
@renovate renovate bot changed the title chore(deps): update all fix(deps): update all Sep 8, 2021
@auto-add-label auto-add-label bot added bug Something isn't working and removed dependencies Pull requests that update a dependency file labels Sep 8, 2021
@renovate renovate bot changed the title fix(deps): update all chore(deps): update all Sep 9, 2021
@auto-add-label auto-add-label bot added dependencies Pull requests that update a dependency file and removed bug Something isn't working labels Nov 23, 2021
@renovate renovate bot force-pushed the renovate/all branch 3 times, most recently from 557a2c0 to 7db7e45 Compare February 9, 2022 08:58
@renovate renovate bot changed the title chore(deps): update all fix(deps): update all Apr 21, 2022
@auto-add-label auto-add-label bot added bug Something isn't working and removed dependencies Pull requests that update a dependency file labels Apr 21, 2022
@renovate renovate bot changed the title fix(deps): update all chore(deps): update all Apr 21, 2022
@auto-add-label auto-add-label bot added dependencies Pull requests that update a dependency file and removed bug Something isn't working labels Apr 21, 2022
@renovate renovate bot changed the title chore(deps): update all fix(deps): update all Apr 23, 2022
@auto-add-label auto-add-label bot added bug Something isn't working and removed dependencies Pull requests that update a dependency file labels Apr 23, 2022
@renovate renovate bot force-pushed the renovate/all branch from 7ea3185 to ddd9463 Compare May 31, 2022 11:38
@renovate renovate bot changed the title fix(deps): update all chore(deps): update all May 31, 2022
@auto-add-label auto-add-label bot added dependencies Pull requests that update a dependency file and removed bug Something isn't working labels May 31, 2022
@renovate renovate bot changed the title chore(deps): update all fix(deps): update all Jun 1, 2022
@auto-add-label auto-add-label bot removed the dependencies Pull requests that update a dependency file label Jun 1, 2022
@socket-security
Copy link

socket-security bot commented Mar 24, 2023

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm entities is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: ?npm/markdownlint-cli@0.48.0npm/entities@4.5.0

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/entities@4.5.0. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm markdown-it is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: ?npm/markdownlint-cli@0.48.0npm/markdown-it@14.1.1

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/markdown-it@14.1.1. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@socket-security
Copy link

socket-security bot commented May 3, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file 🔍 Ready for Review Pull Request is not reviewed yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants