chore(deps): update github-actions - #163
Conversation
|
Claude finished @renovate[bot]'s task in 2m 17s —— View job Review: Renovate dependency bump
FindingsNo bugs, security issues, or performance problems in the workflow/action changes. This is a clean SHA-pin bump. Verified locally:
Minor (non-blocking)Doc drift only: the old checkout pin Note on verification scopeI confirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub ( Recommendation: Safe to merge. The bumps are patch/minor across trusted, already-pinned actions. |
There was a problem hiding this comment.
Approved by the shared auto-approve workflow because this PR matched the approval criteria.
For more information, see https://github.com/loft-sh/github-actions?tab=readme-ov-file#auto-approve-bot-prs.
4eafdd1 to
b2f1f27
Compare
|
Claude finished @renovate[bot]'s task in 57s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Verified across the whole
Notes:
Minor (non-blocking)Doc drift only — the old Verification scopeI confirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network is blocked in this sandbox). The SHAs come from Renovate's digest resolution and the version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge. |
b2f1f27 to
021a49f
Compare
|
Claude finished @renovate[bot]'s task in 44s —— View job Review: Renovate dependency bump
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Minor (non-blocking)Doc drift only — the old Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
021a49f to
21a726e
Compare
|
Claude finished @renovate[bot]'s task in 46s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
21a726e to
4ef0d1c
Compare
|
Claude finished @renovate[bot]'s task in 45s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body / prior reviews were written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
4ef0d1c to
82dc414
Compare
|
Claude finished @renovate[bot]'s task in 50s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Note since prior reviews / PR body were written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
82dc414 to
5a21f93
Compare
|
Claude finished @renovate[bot]'s task in 49s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body / prior reviews were written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
5a21f93 to
514d3b5
Compare
|
Claude finished @renovate[bot]'s task in 50s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
514d3b5 to
0f2c6c6
Compare
|
Claude finished @renovate[bot]'s task in 45s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
0f2c6c6 to
fc67a83
Compare
|
Claude finished @renovate[bot]'s task in 41s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
fc67a83 to
a6bc804
Compare
|
Claude finished @renovate[bot]'s task in 39s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
a6bc804 to
d0fbf65
Compare
|
Claude finished @renovate[bot]'s task in 35s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Every executable reference in
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
d0fbf65 to
8cb6560
Compare
|
Claude finished @renovate[bot]'s task in 1m 10s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Verified every changed line is a pinned Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
8cb6560 to
3af22e7
Compare
|
Claude finished @renovate[bot]'s task in 52s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Verified every changed line is a pinned Every executable reference in
Note since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
3af22e7 to
45df450
Compare
|
Claude finished @renovate[bot]'s task in 1m 2s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Clean SHA-pin bump across trusted, already-pinned actions. Confirmed every added line is a Every executable reference in
Notes since the PR body was written:
Minor (non-blocking)Doc drift only — the old checkout pin Verification scopeConfirmed internal consistency across the repo. I could not cryptographically confirm each tag→SHA mapping against GitHub (network blocked in this sandbox). SHAs come from Renovate's digest resolution and version comments are consistent, so risk is low; a tag→SHA spot-check is left to the maintainer if desired. Recommendation: Safe to merge — patch/minor bumps across trusted, already-pinned actions. |
f9a1066 to
7d24da9
Compare
|
Claude finished @renovate[bot]'s task in 1m 30s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 99/99 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the replaced SHAs (mostly Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
7d24da9 to
5bd0e0c
Compare
|
Claude finished @renovate[bot]'s task in 1m 26s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 99/99 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the replaced SHAs (mostly Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
5bd0e0c to
6ed3ef2
Compare
|
Claude finished @renovate[bot]'s task in 1m 32s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review: no version changes. This sync is a rebase onto
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the replaced SHAs (mostly Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
6ed3ef2 to
3d9439a
Compare
|
Claude finished @renovate[bot]'s task in 1m 33s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
3d9439a to
4622670
Compare
|
Claude finished @renovate[bot]'s task in 1m 22s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
4622670 to
8bcf260
Compare
|
Claude finished @renovate[bot]'s task in 1m 19s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
8bcf260 to
0a528ab
Compare
|
Claude finished @renovate[bot]'s task in 1m 32s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
0a528ab to
e51055d
Compare
|
Claude finished @renovate[bot]'s task in 1m 18s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines are Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
e51055d to
15d9ce0
Compare
|
Claude finished @renovate[bot]'s task in 2m 4s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 101/101 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review: no version changes. This sync is a rebase onto
One correction to my previous reviews' tables: Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
15d9ce0 to
fb82aaf
Compare
|
Claude finished @renovate[bot]'s task in 1m 29s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 0 of 105 added lines are anything other than a Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review: no version changes. This sync is a rebase onto
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged from the last review: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
fb82aaf to
cb92718
Compare
|
Claude finished @renovate[bot]'s task in 1m 32s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 0 of 107 added lines are anything other than a Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review: no version changes. This sync is a rebase onto
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
cb92718 to
24e49f6
Compare
|
Claude finished @renovate[bot]'s task in 1m 12s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 107/107 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
|
Claude finished @renovate[bot]'s task in 1m 56s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 107/107 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
|
Claude finished @renovate[bot]'s task in 1m 16s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 107/107 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
|
Claude finished @renovate[bot]'s task in 1m 14s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 107/107 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review:
Stale-pin scan: all 13 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
|
Claude finished @renovate[bot]'s task in 1m 3s —— View job Review: Renovate dependency bump (re-review after sync)
FindingsNo bugs, security issues, or performance problems. Verified mechanically: 108/108 added lines match Enumerated every pinned ref in executable YAML — each action resolves to exactly one SHA, no split-brain pins:
Delta since the last review: no version changes. This sync is a rebase onto
Stale-pin scan: all 14 replaced SHAs have zero hits in any Carried forward — Security-positive note (carried forward): Also unchanged: the PR body's Minor (non-blocking)Doc drift only — the stale checkout pin Verification scopeConfirmed internal consistency across the repo. I could not confirm tag→SHA mappings against GitHub (shallow checkout, no local tags), so the internal coordination-tag digests ( Recommendation: Safe to merge — patch/minor bumps across SHA-pinned actions. |
|
Claude finished @renovate[bot]'s task in 2m 25s —— View job Review: Renovate dependency bump (re-review after sync)
🔴 Blocking: this sync reverts the cve-scan notifier pin and reds
|
| Action | SHA | Version |
|---|---|---|
actions/checkout |
d23441a |
v6.1.0 |
actions/setup-go |
924ae3a |
v6.5.0 |
anthropics/claude-code-action |
a874e9e |
v1.0.210 / # v1 |
openai/codex-action |
8636508 |
v1.12 |
azure/setup-helm |
9bc31f4 |
v5.0.1 |
aws-actions/configure-aws-credentials |
e6de054 |
v6.2.3 |
docker/login-action |
dbcb813 |
v4.6.0 |
dorny/paths-filter |
ceb8a2b |
v4.0.3 |
reviewdog/action-actionlint |
dbe5299 |
v1.73.2 |
slackapi/slack-github-action |
0d95c9a |
v3.0.5 |
dev-hanz-ops/install-gh-cli-action |
6089bdd |
v0.3.0 |
ci-test-notify (internal) |
5bee69a |
|
validate-renovate.yaml (internal) |
c40c1db |
validate-renovate/v1 |
claude-code-actionadvanced tov1.0.210(a874e9e) — body table says v1.0.209 (a60f3e1). Consistent across all 4 references (# v1.0.210inai-pr-review/action.yml,# v1inclaude.yaml/claude.yml/claude-code-review.yaml). Incidental confirmation: this job is executing from_actions/anthropics/claude-code-action/a874e9ecd7bb36efdad65429c6b35815f5a08f10/.- Unpinned-ref scan: no non-SHA
uses:refs added. The only ones in the tree are pre-existing local./paths and internalloft-sh/github-actions@<coordination-tag>refs carryingzizmor: ignore[unpinned-uses]justifications. - Stale-pin scan: of the 14 replaced SHAs, 13 have zero remaining hits in any
.yaml/.yml. The 14th is0157c66— the regression above.
Carried forward: dev-hanz-ops/install-gh-cli-action v0.2.1 → v0.3.0 (backport.yaml) is still the one small-third-party publisher here; SHA-pinned, and the release is just a Node 20→24 bump.
Minor (non-blocking)
Doc drift — the stale checkout pin de0fac2 # v6.0.2 still appears across 10 non-executed docs (root README.md, .claude/skills/github-actions-dev/SKILL.md, and the checkov, commitlint, cve-scan, go-licenses, govulncheck, publish-helm-chart, subtree-mirror, vcluster-release READMEs). Renovate doesn't rewrite doc examples.
Also unchanged: the body's actions/setup-node v6.4.0 → v6.5.0 row is a no-op — no executable setup-node reference remains in this repo.
Verification scope
Confirmed internal consistency across the repo and reproduced the failing assertion locally with grep -Fc. I could not run bats itself (not installed in this sandbox) or confirm tag→SHA mappings against GitHub (shallow checkout, no local tags) — so the claim that 0157c66 is newer than the ci-test-notify/v1 tag rests on git log -S, which shows f6288e7 introduced it while 5bee69a was already the tag digest in earlier syncs.
Recommendation: do not merge as-is. Advance ci-test-notify/v1 to 0157c66 and rebase, or the cve-scan bats job stays red and the notifier fix stays reverted.
• branch renovate/github-actions
This PR contains the following updates:
v6.0.2→v6.1.0v6.4.0→v6.5.0f4fb5c6→a874e9ev1.0.121→v1.0.210v6.1.3→v6.2.3v5.0.0→v5.0.1v0.2.1→v0.3.0v4.4.0→v4.6.0v4.0.1→v4.0.353686d2→c40c1db85d7023→5bee69av1.8→v1.12v1.72.0→v1.73.2v3.0.3→v3.0.5Release Notes
actions/checkout (actions/checkout)
v6.1.0Compare Source
v6.0.3Compare Source
actions/setup-go (actions/setup-go)
v6.5.0Compare Source
anthropics/claude-code-action (anthropics/claude-code-action)
v1.0.210Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.209...v1.0.210
v1.0.209Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.208...v1.0.209
v1.0.208Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.207...v1.0.208
v1.0.207Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.206...v1.0.207
v1.0.206Compare Source
v1.0.205Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.203...v1.0.205
v1.0.204Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.202...v1.0.204
v1.0.203Compare Source
v1.0.202Compare Source
v1.0.201Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.200...v1.0.201
v1.0.200Compare Source
v1.0.199Compare Source
v1.0.198Compare Source
v1.0.197Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1.0.196...v1.0.197
v1.0.196Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1.0.195...v1.0.196
v1.0.195Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.194...v1.0.195
v1.0.194Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1.0.193...v1.0.194
v1.0.193Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.192...v1.0.193
v1.0.192Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1.0.191...v1.0.192
v1.0.191Compare Source
Full Changelog: anthropics/claude-code-action@v1.0.190...v1.0.191
v1.0.190Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.190
v1.0.189Compare Source
v1.0.188Compare Source
v1.0.187Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.187
v1.0.186Compare Source
v1.0.185Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.185
v1.0.184Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.184
v1.0.183Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.183
v1.0.182Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.182
v1.0.181Compare Source
v1.0.180Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.180
v1.0.179Compare Source
v1.0.178Compare Source
v1.0.177Compare Source
v1.0.176Compare Source
v1.0.175Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.175
v1.0.174Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.174
v1.0.173Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.173
v1.0.172Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.172
v1.0.171Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.171
v1.0.170Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.170
v1.0.169Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.169
v1.0.168Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.168
v1.0.167Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.167
v1.0.166Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.166
v1.0.165Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.165
v1.0.164Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.164
v1.0.163Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.163
v1.0.162Compare Source
v1.0.161Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.161
v1.0.160Compare Source
v1.0.159Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.159
v1.0.158Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.158
v1.0.157Compare Source
v1.0.156Compare Source
v1.0.155Compare Source
v1.0.154Compare Source
v1.0.153Compare Source
v1.0.152Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.152
v1.0.151Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.151
v1.0.150Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.150
v1.0.149Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.149
v1.0.148Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.148
v1.0.147Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.147
v1.0.146Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.146
v1.0.145Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.145
v1.0.144Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.144
v1.0.143Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.143
v1.0.142Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.142
v1.0.141Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.141
v1.0.140Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.140
v1.0.139Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.139
v1.0.138Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.138
v1.0.137Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.137
v1.0.136Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.136
v1.0.135Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.135
v1.0.134Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.134
v1.0.133Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.133
v1.0.132Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.132
v1.0.131Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.131
v1.0.130Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.130
v1.0.129Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.129
v1.0.128Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.128
v1.0.127Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.127
v1.0.126Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.126
v1.0.125Compare Source
What's Changed
Full Changelog: anthropics/claude-code-action@v1...v1.0.125
v1.0.124Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.124
v1.0.123Compare Source
What's Changed
New Contributors
Full Changelog: anthropics/claude-code-action@v1...v1.0.123
v1.0.122Compare Source
Full Changelog: anthropics/claude-code-action@v1...v1.0.122
aws-actions/configure-aws-credentials (aws-actions/configure-aws-credentials)
v6.2.3Compare Source
v6.2.2Compare Source
v6.2.1Compare Source
Bug Fixes
v6.2.0Compare Source
Features
Bug Fixes
azure/setup-helm (azure/setup-helm)
v5.0.1Compare Source
dev-hanz-ops/install-gh-cli-action (dev-hanz-ops/install-gh-cli-action)
v0.3.0: - update to node24Compare Source
docker/login-action (docker/login-action)
v4.6.0Compare Source
v4.5.2Compare Source
v4.5.1Compare Source
v4.5.0Compare Source
dorny/paths-filter (dorny/paths-filter)
v4.0.3Compare Source
v4.0.2Compare Source
openai/codex-action (openai/codex-action)
v1.12Compare Source
drop-sudo; run the action after steps that needsudo, Docker, or privileged service sockets.v1.11Compare Source
v1.10Compare Source
v1.9Compare Source
setup-nodepin tov6.3.0reviewdog/action-actionlint (reviewdog/action-actionlint)
v1.73.2Compare Source
What's Changed
05b2b8bby @renovate[bot] in #224Full Changelog: reviewdog/action-actionlint@v1.73.1...v1.73.2
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.