From 1c2040c5c8dae98f13bed5be8def1fa122778c6b Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sat, 20 Jul 2024 16:02:40 +0000 Subject: [PATCH] Bump the github-actions-all group with 2 updates Bumps the github-actions-all group with 2 updates: [github/codeql-action](https://github.com/github/codeql-action) and [oven-sh/setup-bun](https://github.com/oven-sh/setup-bun). Updates `github/codeql-action` from 3.25.12 to 3.25.13 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/4fa2a7953630fd2f3fb380f21be14ede0169dd4f...2d790406f505036ef40ecba973cc774a50395aac) Updates `oven-sh/setup-bun` from 123c6c4e2fea3eb7bffaa91a85eb6b3d505bf7af to 4bc047ad259df6fc24a6c9b0f9a0cb08cf17fbe5 - [Release notes](https://github.com/oven-sh/setup-bun/releases) - [Commits](https://github.com/oven-sh/setup-bun/compare/123c6c4e2fea3eb7bffaa91a85eb6b3d505bf7af...4bc047ad259df6fc24a6c9b0f9a0cb08cf17fbe5) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions-all - dependency-name: oven-sh/setup-bun dependency-type: direct:production dependency-group: github-actions-all ... Signed-off-by: dependabot[bot] --- .github/workflows/codeql.yml | 6 +++--- .github/workflows/main.yml | 2 +- .github/workflows/scorecard.yml | 2 +- 3 files changed, 5 insertions(+), 5 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 63248a8..9e9883a 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -29,10 +29,10 @@ jobs: - name: "Checkout" uses: "actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332" - name: "Initialize CodeQL" - uses: "github/codeql-action/init@4fa2a7953630fd2f3fb380f21be14ede0169dd4f" + uses: "github/codeql-action/init@2d790406f505036ef40ecba973cc774a50395aac" with: languages: "${{ matrix.language }}" - name: "Autobuild" - uses: "github/codeql-action/autobuild@4fa2a7953630fd2f3fb380f21be14ede0169dd4f" + uses: "github/codeql-action/autobuild@2d790406f505036ef40ecba973cc774a50395aac" - name: "Perform CodeQL Analysis" - uses: "github/codeql-action/analyze@4fa2a7953630fd2f3fb380f21be14ede0169dd4f" + uses: "github/codeql-action/analyze@2d790406f505036ef40ecba973cc774a50395aac" diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index a2a586a..14bd341 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -150,7 +150,7 @@ jobs: name: "dist" path: "./dist/" - name: "Use Bun ${{ matrix.bun_version }}" - uses: "oven-sh/setup-bun@123c6c4e2fea3eb7bffaa91a85eb6b3d505bf7af" + uses: "oven-sh/setup-bun@4bc047ad259df6fc24a6c9b0f9a0cb08cf17fbe5" with: bun-version: "${{ matrix.bun_version }}" - name: "Install dependencies" diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index b802ca2..78096d8 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -29,6 +29,6 @@ jobs: repo_token: "${{ secrets.GITHUB_TOKEN }}" publish_results: false - name: "Upload SARIF file" - uses: "github/codeql-action/upload-sarif@4fa2a7953630fd2f3fb380f21be14ede0169dd4f" + uses: "github/codeql-action/upload-sarif@2d790406f505036ef40ecba973cc774a50395aac" with: sarif_file: "./results.sarif"