Bump the ci-dependencies group with 3 updates #49
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the ci-dependencies group with 3 updates: actions/dependency-review-action, darbiadev/.github and pypa/gh-action-pypi-publish.
Updates
actions/dependency-review-action
from 3.1.2 to 3.1.4Release notes
Sourced from actions/dependency-review-action's releases.
Commits
01bc870
bumping version4b4f0de
Merge pull request #623 from actions/fix-advisory-filtersa93fa86
Fixing test name.550520e
Merge pull request #624 from actions/dependabot/npm_and_yarn/typescript-5.3.22d0fb60
Merge pull request #625 from actions/dependabot/npm_and_yarn/typescript-eslin...c07c237
Bump@typescript-eslint/eslint-plugin
from 6.11.0 to 6.12.04d842d7
Bump typescript from 5.2.2 to 5.3.2a6d4686
adding dist4366dba
Advisory filters should not drop entire dependencies.50dafeb
Tiny logic refactor.Updates
darbiadev/.github
from 4.0.1 to 11.0.0Release notes
Sourced from darbiadev/.github's releases.
... (truncated)
Commits
38577af
Correctly skip third-party uploads if tokens are not present (#107)c1a77ef
Add mypy to Python linting (#106)6a6eb74
Disable merge commit creation during checkout for Python tests (#105)64b318d
Add uploading Python test coverage to DeepSource (#104)e156abc
Revert "Reorganize workflows into folders (#101)" (#103)54b4274
Delete sphinx-with-pdf workflow (#102)e03b5cd
Reorganize workflows into folders (#101)a59e0d7
Don't install entire project when linting Python projects (#100)b0749d5
Make Containerfile name overridable with user input (#99)7c66040
Add coverage and optional Codecov to Python tests (#98)Updates
pypa/gh-action-pypi-publish
from 1.8.10 to 1.8.11Release notes
Sourced from pypa/gh-action-pypi-publish's releases.
Commits
2f6f737
Merge commit PR #184 into unstable/v12fa448a
Merge PRs #190, #184, #185, #189 and #194 into unstable/v1824ad31
Revert flake8 to v4.0.1 for WPS41f3f53
Bump cryptography from 41.0.3 to 41.0.6 in /requirements2319287
twine-upload: ::error, switch nudge order254a0d4
twine-upload: add a nudge for password auth70a33ca
Bump pip from 22.3.1 to 23.3 in /requirements102f507
Bump urllib3 from 2.0.6 to 2.0.7 in /requirements79739dc
Merge pull request #183 from pypa/dependabot/pip/requirements/urllib3-2.0.69a3f9ad
[pre-commit.ci] pre-commit autoupdateDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions