Skip to content

fix(deps): update all non-major dependencies#196

Merged
timhuynh94 merged 1 commit intomainfrom
renovate/all-minor-patch-digest-pin
Apr 20, 2026
Merged

fix(deps): update all non-major dependencies#196
timhuynh94 merged 1 commit intomainfrom
renovate/all-minor-patch-digest-pin

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Aug 18, 2025

This PR contains the following updates:

Package Type Update Change Age Confidence
actions/setup-go action minor v6.3.0v6.4.0 age confidence
alpine final patch 3.23.33.23.4 age confidence
alpine stage patch 3.23.33.23.4 age confidence
codecov/codecov-action action patch v5.5.2v5.5.4 age confidence
elgohr/Publish-Docker-Github-Action (changelog) action digest 4feac4d1c2f28c
github.com/go-vela/server require minor v0.27.5v0.28.3 age confidence
github.com/urfave/cli/v3 require minor v3.7.0v3.8.0 age confidence
github/codeql-action action minor v4.32.5v4.35.2 age confidence
reviewdog/action-golangci-lint action minor v2.8.0v2.10.0 age confidence

Release Notes

actions/setup-go (actions/setup-go)

v6.4.0

Compare Source

What's Changed
Enhancement
  • Add go-download-base-url input for custom Go distributions by @​gdams in #​721
Dependency update
Documentation update
New Contributors

Full Changelog: actions/setup-go@v6...v6.4.0

codecov/codecov-action (codecov/codecov-action)

v5.5.4

Compare Source

This is a mirror of v5.5.2. v6 will be released which requires node24

What's Changed

Full Changelog: codecov/codecov-action@v5.5.3...v5.5.4

v5.5.3

Compare Source

What's Changed

Full Changelog: codecov/codecov-action@v5.5.2...v5.5.3

go-vela/server (github.com/go-vela/server)

v0.28.3

Compare Source

What's Changed

Full Changelog: go-vela/server@v0.28.2...v0.28.3

v0.28.2

Compare Source

What's Changed

Full Changelog: go-vela/server@v0.28.1...v0.28.2

v0.28.1

Compare Source

What's Changed

Full Changelog: go-vela/server@v0.28.0...v0.28.1

v0.28.0

Compare Source

What's Changed

Full Changelog: go-vela/server@v0.27.5...v0.28.0

urfave/cli (github.com/urfave/cli/v3)

v3.8.0

Compare Source

What's Changed

New Contributors

Full Changelog: urfave/cli@v3.7.0...v3.8.0

github/codeql-action (github/codeql-action)

v4.35.2

Compare Source

  • The undocumented TRAP cache cleanup feature that could be enabled using the CODEQL_ACTION_CLEANUP_TRAP_CACHES environment variable is deprecated and will be removed in May 2026. If you are affected by this, we recommend disabling TRAP caching by passing the trap-caching: false input to the init Action. #​3795
  • The Git version 2.36.0 requirement for improved incremental analysis now only applies to repositories that contain submodules. #​3789
  • Python analysis on GHES no longer extracts the standard library, relying instead on models of the standard library. This should result in significantly faster extraction and analysis times, while the effect on alerts should be minimal. #​3794
  • Fixed a bug in the validation of OIDC configurations for private registries that was added in CodeQL Action 4.33.0 / 3.33.0. #​3807
  • Update default CodeQL bundle version to 2.25.2. #​3823

v4.35.1

Compare Source

v4.35.0

Compare Source

v4.34.1

Compare Source

  • Downgrade default CodeQL bundle version to 2.24.3 due to issues with a small percentage of Actions and JavaScript analyses. #​3762

v4.34.0

Compare Source

  • Added an experimental change which disables TRAP caching when improved incremental analysis is enabled, since improved incremental analysis supersedes TRAP caching. This will improve performance and reduce Actions cache usage. We expect to roll this change out to everyone in March. #​3569
  • We are rolling out improved incremental analysis to C/C++ analyses that use build mode none. We expect this rollout to be complete by the end of April 2026. #​3584
  • Update default CodeQL bundle version to 2.25.0. #​3585

v4.33.0

Compare Source

  • Upcoming change: Starting April 2026, the CodeQL Action will skip collecting file coverage information on pull requests to improve analysis performance. File coverage information will still be computed on non-PR analyses. Pull request analyses will log a warning about this upcoming change. #​3562

    To opt out of this change:

    • Repositories owned by an organization: Create a custom repository property with the name github-codeql-file-coverage-on-prs and the type "True/false", then set this property to true in the repository's settings. For more information, see Managing custom properties for repositories in your organization. Alternatively, if you are using an advanced setup workflow, you can set the CODEQL_ACTION_FILE_COVERAGE_ON_PRS environment variable to true in your workflow.
    • User-owned repositories using default setup: Switch to an advanced setup workflow and set the CODEQL_ACTION_FILE_COVERAGE_ON_PRS environment variable to true in your workflow.
    • User-owned repositories using advanced setup: Set the CODEQL_ACTION_FILE_COVERAGE_ON_PRS environment variable to true in your workflow.
  • Fixed a bug which caused the CodeQL Action to fail loading repository properties if a "Multi select" repository property was configured for the repository. #​3557

  • The CodeQL Action now loads custom repository properties on GitHub Enterprise Server, enabling the customization of features such as github-codeql-disable-overlay that was previously only available on GitHub.com. #​3559

  • Once private package registries can be configured with OIDC-based authentication for organizations, the CodeQL Action will now be able to accept such configurations. #​3563

  • Fixed the retry mechanism for database uploads. Previously this would fail with the error "Response body object should not be disturbed or locked". #​3564

  • A warning is now emitted if the CodeQL Action detects a repository property whose name suggests that it relates to the CodeQL Action, but which is not one of the properties recognised by the current version of the CodeQL Action. #​3570

v4.32.6

Compare Source

reviewdog/action-golangci-lint (reviewdog/action-golangci-lint)

v2.10.0

Compare Source

What's Changed
New Contributors

Full Changelog: reviewdog/action-golangci-lint@v2.9.0...v2.10.0

v2.9.0

Compare Source

What's Changed

Full Changelog: reviewdog/action-golangci-lint@v2.8.0...v2.9.0


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the dependencies Indicates a change to dependencies label Aug 18, 2025
@renovate renovate Bot requested a review from a team as a code owner August 18, 2025 14:42
@renovate renovate Bot added the dependencies Indicates a change to dependencies label Aug 18, 2025
@codecov
Copy link
Copy Markdown

codecov Bot commented Aug 18, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 35.56%. Comparing base (af322d5) to head (c6ad339).
⚠️ Report is 1 commits behind head on main.

❌ Your project status has failed because the head coverage (35.56%) is below the target coverage (90.00%). You can increase the head coverage or adjust the target coverage.

Additional details and impacted files

Impacted file tree graph

@@           Coverage Diff           @@
##             main     #196   +/-   ##
=======================================
  Coverage   35.56%   35.56%           
=======================================
  Files          12       12           
  Lines         883      883           
=======================================
  Hits          314      314           
  Misses        556      556           
  Partials       13       13           
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@renovate renovate Bot changed the title chore(deps): update github/codeql-action action to v3.29.10 chore(deps): update all non-major dependencies Aug 20, 2025
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 2 times, most recently from 89df485 to 411341e Compare August 21, 2025 17:42
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from 411341e to 65b9c99 Compare August 31, 2025 09:56
@renovate renovate Bot changed the title chore(deps): update all non-major dependencies fix(deps): update all non-major dependencies Aug 31, 2025
@renovate
Copy link
Copy Markdown
Contributor Author

renovate Bot commented Aug 31, 2025

ℹ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 4 additional dependencies were updated

Details:

Package Change
golang.org/x/crypto v0.40.0 -> v0.41.0
golang.org/x/mod v0.25.0 -> v0.26.0
golang.org/x/sys v0.34.0 -> v0.35.0
golang.org/x/text v0.27.0 -> v0.28.0

@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 4 times, most recently from a21df7d to 88c8ab8 Compare September 8, 2025 18:32
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 2 times, most recently from 18ac416 to a70416f Compare September 10, 2025 20:43
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 3 times, most recently from 875042a to 3c0b98d Compare September 26, 2025 18:13
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 4 times, most recently from a665458 to 7335eb1 Compare October 9, 2025 05:25
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from 7335eb1 to 9a0e6d3 Compare October 10, 2025 17:50
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 2 times, most recently from 0fdc46f to 7fa814e Compare October 21, 2025 10:49
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 3 times, most recently from 9286eb6 to 406c9c7 Compare October 30, 2025 21:36
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from 406c9c7 to 2861a51 Compare November 9, 2025 12:55
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 2 times, most recently from 9da9eb2 to d0b0f03 Compare December 18, 2025 06:03
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from d0b0f03 to 7c168a7 Compare December 31, 2025 15:03
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 4 times, most recently from b59b759 to b504a98 Compare January 18, 2026 05:57
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 5 times, most recently from cc4ddda to 7b8a473 Compare January 28, 2026 06:28
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 3 times, most recently from 76b628c to b5ea9f0 Compare February 6, 2026 12:38
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 6 times, most recently from b0127eb to d0a171d Compare February 20, 2026 04:30
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from d0a171d to 3162bf2 Compare February 20, 2026 18:47
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch 2 times, most recently from c8d6dd1 to 4f9fd9a Compare March 2, 2026 13:17
@renovate renovate Bot changed the title fix(deps): update all non-major dependencies chore(deps): update github/codeql-action action to v4.32.6 Mar 5, 2026
@renovate renovate Bot force-pushed the renovate/all-minor-patch-digest-pin branch from 4f9fd9a to da705e1 Compare March 5, 2026 21:46
@renovate
Copy link
Copy Markdown
Contributor Author

renovate Bot commented Mar 31, 2026

ℹ️ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 3 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.8 -> 1.26.1
golang.org/x/crypto v0.46.0 -> v0.50.0
golang.org/x/sys v0.39.0 -> v0.43.0
golang.org/x/text v0.32.0 -> v0.36.0

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Indicates a change to dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants