Skip to content

Commit a1c9308

Browse files
build(deps): bump the ci group with 4 updates
Bumps the ci group with 4 updates: [actions/setup-go](https://github.com/actions/setup-go), [fluxcd/pkg](https://github.com/fluxcd/pkg), [github/codeql-action](https://github.com/github/codeql-action) and [anchore/sbom-action](https://github.com/anchore/sbom-action). Updates `actions/setup-go` from 5.1.0 to 5.2.0 - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@41dfa10...3041bf5) Updates `fluxcd/pkg` from 5bf9095331052934ae6b4585b8632c0e5b0a2106 to 42918b3976feb09d656545044ed34ad3e0193ed1 - [Commits](fluxcd/pkg@5bf9095...42918b3) Updates `github/codeql-action` from 3.27.6 to 3.27.9 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@aa57810...df409f7) Updates `anchore/sbom-action` from 0.17.8 to 0.17.9 - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@55dc4ee...df80a98) --- updated-dependencies: - dependency-name: actions/setup-go dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ci - dependency-name: fluxcd/pkg dependency-type: direct:production dependency-group: ci - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent b45a8b5 commit a1c9308

9 files changed

+26
-26
lines changed

.github/workflows/conformance.yaml

+5-5
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525
- name: Checkout
2626
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2727
- name: Setup Go
28-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
28+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
2929
with:
3030
go-version: ${{ env.GO_VERSION }}
3131
cache-dependency-path: |
@@ -82,7 +82,7 @@ jobs:
8282
- name: Checkout
8383
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
8484
- name: Setup Go
85-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
85+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
8686
with:
8787
go-version: ${{ env.GO_VERSION }}
8888
cache-dependency-path: |
@@ -97,7 +97,7 @@ jobs:
9797
KUBECONFIG_PATH="$(git rev-parse --show-toplevel)/bin/kubeconfig.yaml"
9898
echo "kubeconfig-path=${KUBECONFIG_PATH}" >> $GITHUB_OUTPUT
9999
- name: Setup Kustomize
100-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
100+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
101101
- name: Build
102102
run: make build-dev
103103
- name: Create repository
@@ -175,7 +175,7 @@ jobs:
175175
- name: Checkout
176176
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
177177
- name: Setup Go
178-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
178+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
179179
with:
180180
go-version: ${{ env.GO_VERSION }}
181181
cache-dependency-path: |
@@ -190,7 +190,7 @@ jobs:
190190
KUBECONFIG_PATH="$(git rev-parse --show-toplevel)/bin/kubeconfig.yaml"
191191
echo "kubeconfig-path=${KUBECONFIG_PATH}" >> $GITHUB_OUTPUT
192192
- name: Setup Kustomize
193-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
193+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
194194
- name: Build
195195
run: make build-dev
196196
- name: Create repository

.github/workflows/e2e-azure.yaml

+1-1
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ jobs:
3232
- name: CheckoutD
3333
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3434
- name: Setup Go
35-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
35+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
3636
with:
3737
go-version: 1.23.x
3838
cache-dependency-path: tests/integration/go.sum

.github/workflows/e2e-bootstrap.yaml

+3-3
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
- name: Checkout
2020
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2121
- name: Setup Go
22-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
22+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
2323
with:
2424
go-version: 1.23.x
2525
cache-dependency-path: |
@@ -35,9 +35,9 @@ jobs:
3535
node_image: ghcr.io/fluxcd/kindest/node:v1.31.0-amd64
3636
kubectl_version: v1.31.0
3737
- name: Setup Kustomize
38-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
38+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
3939
- name: Setup yq
40-
uses: fluxcd/pkg/actions/yq@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
40+
uses: fluxcd/pkg/actions/yq@42918b3976feb09d656545044ed34ad3e0193ed1 # main
4141
- name: Build
4242
run: make build-dev
4343
- name: Set outputs

.github/workflows/e2e-gcp.yaml

+1-1
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@ jobs:
3131
- name: Checkout
3232
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3333
- name: Setup Go
34-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
34+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
3535
with:
3636
go-version: 1.23.x
3737
cache-dependency-path: tests/integration/go.sum

.github/workflows/e2e.yaml

+2-2
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525
- name: Checkout
2626
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2727
- name: Setup Go
28-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
28+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
2929
with:
3030
go-version: 1.23.x
3131
cache-dependency-path: |
@@ -46,7 +46,7 @@ jobs:
4646
run: |
4747
kubectl apply -f https://raw.githubusercontent.com/projectcalico/calico/v3.27.3/manifests/calico.yaml
4848
- name: Setup Kustomize
49-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
49+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
5050
- name: Run tests
5151
run: make test
5252
- name: Run e2e tests

.github/workflows/ossf.yaml

+1-1
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,6 @@ jobs:
3434
path: results.sarif
3535
retention-days: 5
3636
- name: Upload SARIF results
37-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
37+
uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9
3838
with:
3939
sarif_file: results.sarif

.github/workflows/release.yaml

+5-5
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ jobs:
2424
- name: Unshallow
2525
run: git fetch --prune --unshallow
2626
- name: Setup Go
27-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
27+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
2828
with:
2929
go-version: 1.23.x
3030
cache: false
@@ -34,11 +34,11 @@ jobs:
3434
id: buildx
3535
uses: docker/setup-buildx-action@c47758b77c9736f4b2ef4073d4d51994fabfe349 # v3.7.1
3636
- name: Setup Syft
37-
uses: anchore/sbom-action/download-syft@55dc4ee22412511ee8c3142cbea40418e6cec693 # v0.17.8
37+
uses: anchore/sbom-action/download-syft@df80a981bc6edbc4e220a492d3cbe9f5547a6e75 # v0.17.9
3838
- name: Setup Cosign
3939
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
4040
- name: Setup Kustomize
41-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
41+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
4242
- name: Login to GitHub Container Registry
4343
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
4444
with:
@@ -59,7 +59,7 @@ jobs:
5959
run: |
6060
kustomize build manifests/crds > all-crds.yaml
6161
- name: Generate OpenAPI JSON schemas from CRDs
62-
uses: fluxcd/pkg/actions/crdjsonschema@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
62+
uses: fluxcd/pkg/actions/crdjsonschema@42918b3976feb09d656545044ed34ad3e0193ed1 # main
6363
with:
6464
crd: all-crds.yaml
6565
output: schemas
@@ -112,7 +112,7 @@ jobs:
112112
steps:
113113
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
114114
- name: Setup Kustomize
115-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
115+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
116116
- name: Setup Flux CLI
117117
uses: ./action/
118118
- name: Prepare

.github/workflows/scan.yaml

+7-7
Original file line numberDiff line numberDiff line change
@@ -33,9 +33,9 @@ jobs:
3333
steps:
3434
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3535
- name: Setup Kustomize
36-
uses: fluxcd/pkg/actions/kustomize@5bf9095331052934ae6b4585b8632c0e5b0a2106 # main
36+
uses: fluxcd/pkg/actions/kustomize@42918b3976feb09d656545044ed34ad3e0193ed1 # main
3737
- name: Setup Go
38-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
38+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
3939
with:
4040
go-version-file: 'go.mod'
4141
cache-dependency-path: |
@@ -54,7 +54,7 @@ jobs:
5454
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
5555
- name: Upload result to GitHub Code Scanning
5656
continue-on-error: true
57-
uses: github/codeql-action/upload-sarif@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
57+
uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9
5858
with:
5959
sarif_file: snyk.sarif
6060

@@ -67,20 +67,20 @@ jobs:
6767
- name: Checkout repository
6868
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
6969
- name: Setup Go
70-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
70+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
7171
with:
7272
go-version-file: 'go.mod'
7373
cache-dependency-path: |
7474
**/go.sum
7575
**/go.mod
7676
- name: Initialize CodeQL
77-
uses: github/codeql-action/init@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
77+
uses: github/codeql-action/init@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9
7878
with:
7979
languages: go
8080
# xref: https://docs.github.com/en/code-security/code-scanning/automatically-scanning-your-code-for-vulnerabilities-and-errors/configuring-code-scanning#using-queries-in-ql-packs
8181
# xref: https://codeql.github.com/codeql-query-help/go/
8282
queries: security-and-quality
8383
- name: Autobuild
84-
uses: github/codeql-action/autobuild@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
84+
uses: github/codeql-action/autobuild@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9
8585
- name: Perform CodeQL Analysis
86-
uses: github/codeql-action/analyze@aa578102511db1f4524ed59b8cc2bae4f6e88195 # v3.27.6
86+
uses: github/codeql-action/analyze@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9

.github/workflows/update.yaml

+1-1
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020
- name: Check out code
2121
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2222
- name: Setup Go
23-
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
23+
uses: actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2.0
2424
with:
2525
go-version: 1.23.x
2626
cache-dependency-path: |

0 commit comments

Comments
 (0)