chore(deps): Update GitHub Actions to a9781c9#59
Conversation
|
Note Reviews pausedIt looks like this branch is under active development. To avoid overwhelming you with review comments due to an influx of new commits, CodeRabbit has automatically paused this review. You can configure this behavior by changing the Use the following commands to manage reviews:
Use the checkboxes below for quick actions:
📝 WalkthroughWalkthroughFive GitHub Actions workflow files update their delegated org-level reusable-workflow ChangesWorkflow delegation updates
Estimated code review effort🎯 2 (Simple) | ⏱️ ~10 minutes Possibly related PRs
Suggested labels
Poem
🚥 Pre-merge checks | ✅ 4 | ❌ 1❌ Failed checks (1 warning)
✅ Passed checks (4 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches🧪 Generate unit tests (beta)
Comment |
Dependency ReviewThe following issues were found:
License Issues.github/workflows/security-analysis.yml
OpenSSF Scorecard
Scanned Files
|
There was a problem hiding this comment.
Pull request overview
Updates the pinned digest for the org-level reusable GitHub Actions workflows to incorporate upstream patch fixes and security updates, without changing this repository’s workflow inputs or behavior.
Changes:
- Bump
ByronWilliamsCPA/.githubreusable workflow references from40ff5b5…to160e806…across security, scorecard, SBOM, compatibility, and coverage workflows. - Keep existing workflow configuration/inputs unchanged while consuming the newer upstream workflow implementations.
Reviewed changes
Copilot reviewed 5 out of 5 changed files in this pull request and generated no comments.
Show a summary per file
| File | Description |
|---|---|
.github/workflows/security-analysis.yml |
Updates reusable workflow digest for the security analysis workflow caller. |
.github/workflows/scorecard.yml |
Updates reusable workflow digest for the OpenSSF Scorecard caller. |
.github/workflows/sbom.yml |
Updates reusable workflow digest for SBOM generation and security scanning caller. |
.github/workflows/python-compatibility.yml |
Updates reusable workflow digest for the Python compatibility matrix caller. |
.github/workflows/coverage.yml |
Updates reusable workflow digest for the Qlty coverage upload caller. |
15fe0b1 to
f31a877
Compare
f31a877 to
0c155a3
Compare
a0f0da1 to
1121aa8
Compare
1121aa8 to
61f8725
Compare
Summary
Why
Scheduled patch update, bug fixes and security patches with no API changes.
Changes
This PR contains the following updates:
40ff5b5→a9781c9Impact
Acceptance Criteria
Testing
Notes
Configuration
📅 Schedule: (in timezone America/New_York)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate.