Releases: github/dependabot-action
Releases · github/dependabot-action
v1.0.3
What's Changed
- Backport extended request timeout by @landongrindheim in #133
Full Changelog: v1...v1.0.3
v2.2.0
What's Changed
- Improve annotation of failed jobs by @brrygrdn in #113
- Bump dependabot/fetch-metadata from 1.2.1 to 1.3.0 by @dependabot in #108
- Bump actions/setup-node from 2.5.1 to 3 by @dependabot in #99
- Bump actions/checkout from 2 to 3 by @dependabot in #107
- Bump ts-node from 10.2.1 to 10.7.0 by @dependabot in #111
- Enable connectivity check by @mctofu in #120
- Update CODEOWNERS for org shift by @mctofu in #121
- Switch from GHPR to GHCR for images by @brrygrdn in #119
- [Dependabot Updates] Remove the docker registry by @brrygrdn in #126
- Fix vulnerabilities in minimalist and node-forge by @brrygrdn in #127
Full Changelog: v2.1.0...v2.2.0
v1.0.2
v2.1.0
What's Changed
- Switch to using explicit container SHAs by @brrygrdn in https://github.com/dependabot/updater-action/pull/92
- Build the containers manifest for Dependabot Docker PRs by @brrygrdn in https://github.com/dependabot/updater-action/pull/93
- Update containers to the latest release SHAs by @brrygrdn in https://github.com/dependabot/updater-action/pull/95
- Ensure we wait for container downloads if they don't exist by @brrygrdn in https://github.com/dependabot/updater-action/pull/96
- Fix cleanup of network and containers by @brrygrdn in https://github.com/dependabot/updater-action/pull/97
- Cleanup old image versions by @brrygrdn in https://github.com/dependabot/updater-action/pull/98
- Bump follow-redirects from 1.14.7 to 1.14.9 by @dependabot in https://github.com/dependabot/updater-action/pull/101
- Bump @types/node from 16.4.6 to 17.0.21 by @dependabot in https://github.com/dependabot/updater-action/pull/89
- Bump ansi-regex downstream deps by @brrygrdn in https://github.com/dependabot/updater-action/pull/104
- Bump husky from 7.0.2 to 7.0.4 by @dependabot in https://github.com/dependabot/updater-action/pull/87
- Bump eslint from 7.31.0 to 8.9.0 by @dependabot in https://github.com/dependabot/updater-action/pull/81
- Manually update our containers to the latest versions by @brrygrdn in https://github.com/dependabot/updater-action/pull/109
Full Changelog: dependabot/updater-action@v2...v2.1.0
v1.0.1 - Bug fix for Docker cleanup of crashed jobs
What's Changed
- [Backport] Fix cleanup of network and containers by @brrygrdn in https://github.com/dependabot/updater-action/pull/100
Full Changelog: dependabot/updater-action@v1...v1.0.1
v2.0.1
What's Changed
- Bump ts-jest from 27.0.7 to 27.1.3 by @dependabot in https://github.com/dependabot/updater-action/pull/65
- Bump @types/node-forge from 0.10.3 to 1.0.0 by @dependabot in https://github.com/dependabot/updater-action/pull/60
- Automatically update dist/ files for Dependabot bumps by @brrygrdn in https://github.com/dependabot/updater-action/pull/83
- Bump @actions/core from 1.5.0 to 1.6.0 by @dependabot in https://github.com/dependabot/updater-action/pull/20
- Bump @octokit/webhooks-types from 4.8.0 to 5.4.0 by @dependabot in https://github.com/dependabot/updater-action/pull/85
- Bump jest from 27.3.1 to 27.5.1 by @dependabot in https://github.com/dependabot/updater-action/pull/86
- Use automatically updated Dockerfiles to set the tag of the updater/proxy used. by @brrygrdn in https://github.com/dependabot/updater-action/pull/84
- Bump actions/setup-node from 1 to 2.5.1 by @dependabot in https://github.com/dependabot/updater-action/pull/90
Full Changelog: dependabot/updater-action@v2...v2.0.1
v2.0.0
What's Changed
- Resolve vulnerabilities (npm audit fix) by @landongrindheim in https://github.com/dependabot/updater-action/pull/61
- Bump dockerode (built on Linux) by @landongrindheim in https://github.com/dependabot/updater-action/pull/69
- Resolve vulnerability alerts with npm audit fix --force by @mctofu in https://github.com/dependabot/updater-action/pull/74
- Consistency and clarity pass on our workflows by @brrygrdn in https://github.com/dependabot/updater-action/pull/76
- Ensure the build check fails if there are new untracked files by @brrygrdn in https://github.com/dependabot/updater-action/pull/77
- Use the ImageService to fetch dependencies in development and CI by @brrygrdn in https://github.com/dependabot/updater-action/pull/75
- v1.0.0 release notes by @brrygrdn in https://github.com/dependabot/updater-action/pull/79
- Upgrade to Node 16 by @brrygrdn in https://github.com/dependabot/updater-action/pull/78
New Contributors
- @landongrindheim made their first contribution in https://github.com/dependabot/updater-action/pull/61
- @mctofu made their first contribution in https://github.com/dependabot/updater-action/pull/74
Full Changelog: https://github.com/dependabot/updater-action/commits/v2.0.0