From 67a5edd79adeaa4cabe1dce5d22d6ebcc2d288d4 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Tue, 23 Jul 2024 11:37:31 -0600 Subject: [PATCH] chore(deps): update mattermost support dependencies (#110) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit [![Mend Renovate](https://app.renovatebot.com/images/banner.svg)](https://renovatebot.com) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [actions/dependency-review-action](https://togithub.com/actions/dependency-review-action) | action | patch | `v4.3.3` -> `v4.3.4` | | [defenseunicorns/uds-common](https://togithub.com/defenseunicorns/uds-common) | | minor | `v0.7.1` -> `v0.9.0` | | [defenseunicorns/uds-common](https://togithub.com/defenseunicorns/uds-common) | action | minor | `v0.7.1` -> `v0.9.0` | | [defenseunicorns/zarf](https://togithub.com/defenseunicorns/zarf) | | minor | `v0.35.0` -> `v0.36.1` | | [github/codeql-action](https://togithub.com/github/codeql-action) | action | patch | `v3.25.11` -> `v3.25.13` | | [mattermost/mattermost-plugin-ai](https://togithub.com/mattermost/mattermost-plugin-ai) | | patch | `0.8.2` -> `0.8.3` | | [renovatebot/pre-commit-hooks](https://togithub.com/renovatebot/pre-commit-hooks) | repository | minor | `37.426.2` -> `37.440.4` | | [step-security/harden-runner](https://togithub.com/step-security/harden-runner) | action | minor | `v2.8.1` -> `v2.9.0` | Note: The `pre-commit` manager in Renovate is not supported by the `pre-commit` maintainers or community. Please do not report any problems there, instead [create a Discussion in the Renovate repository](https://togithub.com/renovatebot/renovate/discussions/new) if you have any questions. --- ### Release Notes
actions/dependency-review-action (actions/dependency-review-action) ### [`v4.3.4`](https://togithub.com/actions/dependency-review-action/releases/tag/v4.3.4) [Compare Source](https://togithub.com/actions/dependency-review-action/compare/v4.3.3...v4.3.4) #### What's Changed - Include all added dependencies in scorecard entries by [@​elireisman](https://togithub.com/elireisman) in [https://github.com/actions/dependency-review-action/pull/783](https://togithub.com/actions/dependency-review-action/pull/783) - Update SPDX Expression Parsing by [@​febuiles](https://togithub.com/febuiles) in [https://github.com/actions/dependency-review-action/pull/719](https://togithub.com/actions/dependency-review-action/pull/719) - This PR is a significant refactor of SPDX expression parsing that *may* fix some bugs, but unfortunately there are several related known issues that remain unresolved as of this version. **Full Changelog**: https://github.com/actions/dependency-review-action/compare/v4.3.3...v4.3.4
defenseunicorns/uds-common (defenseunicorns/uds-common) ### [`v0.9.0`](https://togithub.com/defenseunicorns/uds-common/releases/tag/v0.9.0) [Compare Source](https://togithub.com/defenseunicorns/uds-common/compare/v0.8.2...v0.9.0) ##### ⚠ BREAKING CHANGES - update doug ci credential for new identity config req ##### Bug Fixes - update doug ci credential for new identity config req ([71340f7](https://togithub.com/defenseunicorns/uds-common/commit/71340f7d4fc0cd8fd6c44335b54e0b12769965d1)) ### [`v0.8.2`](https://togithub.com/defenseunicorns/uds-common/releases/tag/v0.8.2) [Compare Source](https://togithub.com/defenseunicorns/uds-common/compare/v0.8.1...v0.8.2) ##### Miscellaneous - add additional install step to playwright install ([#​183](https://togithub.com/defenseunicorns/uds-common/issues/183)) ([41855e4](https://togithub.com/defenseunicorns/uds-common/commit/41855e42bd73c67109ed42935f1e67ab7305ddda)) - **deps:** update uds common support dependencies ([#​179](https://togithub.com/defenseunicorns/uds-common/issues/179)) ([e1a0d5a](https://togithub.com/defenseunicorns/uds-common/commit/e1a0d5acba2c0cc083af6ac2823d9cf068008453)) - fix the Zarf package renovate regex to the correct versionTemplate ([#​181](https://togithub.com/defenseunicorns/uds-common/issues/181)) ([272b502](https://togithub.com/defenseunicorns/uds-common/commit/272b502fa2f36b3703f9cdcbdbfb579ce437a0d7)) ### [`v0.8.1`](https://togithub.com/defenseunicorns/uds-common/releases/tag/v0.8.1) [Compare Source](https://togithub.com/defenseunicorns/uds-common/compare/v0.8.0...v0.8.1) ##### Miscellaneous - add cgr identity assume to setup action ([#​180](https://togithub.com/defenseunicorns/uds-common/issues/180)) ([2ec74fb](https://togithub.com/defenseunicorns/uds-common/commit/2ec74fbe496c5cdcc88cd3f424951f11271fe5d6)) - fix version matching for UDS packages ([#​176](https://togithub.com/defenseunicorns/uds-common/issues/176)) ([e068b6a](https://togithub.com/defenseunicorns/uds-common/commit/e068b6a255cc856e313485826a2140a3977c6b03)) ### [`v0.8.0`](https://togithub.com/defenseunicorns/uds-common/releases/tag/v0.8.0) [Compare Source](https://togithub.com/defenseunicorns/uds-common/compare/v0.7.1...v0.8.0) ##### Features - **compliance:** add support for extra options on compliance validate ([#​170](https://togithub.com/defenseunicorns/uds-common/issues/170)) ([d191505](https://togithub.com/defenseunicorns/uds-common/commit/d19150566784e51f7c8d31b7d37b6915cdacc410)) ##### Bug Fixes - chainguard creds/renovate match ([#​173](https://togithub.com/defenseunicorns/uds-common/issues/173)) ([49401cc](https://togithub.com/defenseunicorns/uds-common/commit/49401cc5c8000a661c6e1bc9e10e42fa6f6e2389)) ##### Miscellaneous - add cgr.dev renovate rule ([#​171](https://togithub.com/defenseunicorns/uds-common/issues/171)) ([68497f9](https://togithub.com/defenseunicorns/uds-common/commit/68497f95ffdccf5802da81f2f0c9a8f7f8fe912c)) - **deps:** update uds common support dependencies ([#​164](https://togithub.com/defenseunicorns/uds-common/issues/164)) ([6c50f47](https://togithub.com/defenseunicorns/uds-common/commit/6c50f47ecd9c75483ab70953d5c31682362377c2)) - **deps:** update uds common support dependencies ([#​169](https://togithub.com/defenseunicorns/uds-common/issues/169)) ([b6a4232](https://togithub.com/defenseunicorns/uds-common/commit/b6a4232cb030f3ea7e66041306b5cfcd9a488a98)) - update CODEOWNERS with more specific permissions ([#​175](https://togithub.com/defenseunicorns/uds-common/issues/175)) ([f2b7220](https://togithub.com/defenseunicorns/uds-common/commit/f2b722051014d64d350bd34ea087e6ffb3daf428))
defenseunicorns/zarf (defenseunicorns/zarf) ### [`v0.36.1`](https://togithub.com/zarf-dev/zarf/releases/tag/v0.36.1) [Compare Source](https://togithub.com/defenseunicorns/zarf/compare/v0.36.0...v0.36.1) 🚨 Important 🚨: Zarf will be moving from github.com/defenseunicorns/zarf to github.com/zarf-dev/zarf ##### What's Changed - test: simplifying e2e test checks by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2721](https://togithub.com/defenseunicorns/zarf/pull/2721) - fix: fix link to CONTRIBUTING.md in PR template by [@​daveworth](https://togithub.com/daveworth) in [https://github.com/defenseunicorns/zarf/pull/2726](https://togithub.com/defenseunicorns/zarf/pull/2726) - refactor: compile local cluster service format regexp just once by [@​matiasinsaurralde](https://togithub.com/matiasinsaurralde) in [https://github.com/defenseunicorns/zarf/pull/2727](https://togithub.com/defenseunicorns/zarf/pull/2727) ##### New Contributors - [@​daveworth](https://togithub.com/daveworth) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2726](https://togithub.com/defenseunicorns/zarf/pull/2726) - [@​matiasinsaurralde](https://togithub.com/matiasinsaurralde) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2727](https://togithub.com/defenseunicorns/zarf/pull/2727) **Full Changelog**: https://github.com/defenseunicorns/zarf/compare/v0.36.0...v0.36.1 ### [`v0.36.0`](https://togithub.com/defenseunicorns/zarf/releases/tag/v0.36.0) [Compare Source](https://togithub.com/defenseunicorns/zarf/compare/v0.35.0...v0.36.0) #### What's Changed - refactor: remove unused constants and variables by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2633](https://togithub.com/defenseunicorns/zarf/pull/2633) - docs: fixed wrong link in zarf site nerd notes page by [@​joelmccoy](https://togithub.com/joelmccoy) in [https://github.com/defenseunicorns/zarf/pull/2639](https://togithub.com/defenseunicorns/zarf/pull/2639) - chore: s3 cleanup by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2632](https://togithub.com/defenseunicorns/zarf/pull/2632) - refactor: change UpdateZarfAgentValues to rolling restart by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2644](https://togithub.com/defenseunicorns/zarf/pull/2644) - chore: make less by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2648](https://togithub.com/defenseunicorns/zarf/pull/2648) - fix: docs links by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2650](https://togithub.com/defenseunicorns/zarf/pull/2650) - refactor: remove use of reflections by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2634](https://togithub.com/defenseunicorns/zarf/pull/2634) - refactor: remove use of message.Fatal in tools by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2602](https://togithub.com/defenseunicorns/zarf/pull/2602) - refactor: remove k8s package by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2627](https://togithub.com/defenseunicorns/zarf/pull/2627) - feat: add context to pull and data injections by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2654](https://togithub.com/defenseunicorns/zarf/pull/2654) - test: move creator tests into one file by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2658](https://togithub.com/defenseunicorns/zarf/pull/2658) - test: site and links by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2656](https://togithub.com/defenseunicorns/zarf/pull/2656) - chore: run unit tests on main by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2653](https://togithub.com/defenseunicorns/zarf/pull/2653) - fix(docs): update help docs for zarf connect to add clarity by [@​chaospuppy](https://togithub.com/chaospuppy) in [https://github.com/defenseunicorns/zarf/pull/2662](https://togithub.com/defenseunicorns/zarf/pull/2662) - chore!: remove logging from init package by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2625](https://togithub.com/defenseunicorns/zarf/pull/2625) - chore: patch CVE-2024-6104 by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2669](https://togithub.com/defenseunicorns/zarf/pull/2669) - chore: patch CVE-2024-35255 by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2670](https://togithub.com/defenseunicorns/zarf/pull/2670) - chore: patch CVE-2024-6257 by [@​lucasrod16](https://togithub.com/lucasrod16) in [https://github.com/defenseunicorns/zarf/pull/2671](https://togithub.com/defenseunicorns/zarf/pull/2671) - docs: data injection by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2668](https://togithub.com/defenseunicorns/zarf/pull/2668) - feat: flux HelmRepo & OCIRepo support in Zarf Agent by [@​cmwylie19](https://togithub.com/cmwylie19) in [https://github.com/defenseunicorns/zarf/pull/2005](https://togithub.com/defenseunicorns/zarf/pull/2005) - refactor: make lint use more accessible data type by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2660](https://togithub.com/defenseunicorns/zarf/pull/2660) - fix: remove helpers v1 by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2679](https://togithub.com/defenseunicorns/zarf/pull/2679) - refactor: test and cleanup injector by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2629](https://togithub.com/defenseunicorns/zarf/pull/2629) - refactor: remove use message.Fatal in cmd package by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2664](https://togithub.com/defenseunicorns/zarf/pull/2664) - ci: cleanup windows github action by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2673](https://togithub.com/defenseunicorns/zarf/pull/2673) - refactor: remove message.Fatal and spinner.Fatal by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2676](https://togithub.com/defenseunicorns/zarf/pull/2676) - ci: add merge groups by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2680](https://togithub.com/defenseunicorns/zarf/pull/2680) - ci: remove dependency review merge queue and add label merge queue by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2688](https://togithub.com/defenseunicorns/zarf/pull/2688) - refactor: remove warnings property from packager by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2687](https://togithub.com/defenseunicorns/zarf/pull/2687) - refactor: remove sbom view files property from packager by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2695](https://togithub.com/defenseunicorns/zarf/pull/2695) - fix: remove ignore label when adopting resource by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2699](https://togithub.com/defenseunicorns/zarf/pull/2699) - fix: revert fix: remove ignore label when adopting resource by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2711](https://togithub.com/defenseunicorns/zarf/pull/2711) - ci: run e2e tests by [@​AustinAbro321](https://togithub.com/AustinAbro321) in [https://github.com/defenseunicorns/zarf/pull/2710](https://togithub.com/defenseunicorns/zarf/pull/2710) - refactor: test and refactor split file by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2708](https://togithub.com/defenseunicorns/zarf/pull/2708) - refactor: remove unused message functions and verbose logging by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2712](https://togithub.com/defenseunicorns/zarf/pull/2712) - refactor: connect command list printing by [@​phillebaba](https://togithub.com/phillebaba) in [https://github.com/defenseunicorns/zarf/pull/2703](https://togithub.com/defenseunicorns/zarf/pull/2703) - docs: add contributing doc to root and add tsc by [@​salaxander](https://togithub.com/salaxander) in [https://github.com/defenseunicorns/zarf/pull/2706](https://togithub.com/defenseunicorns/zarf/pull/2706) - fix: remove unpinned image warning in lint for cosign signatures by [@​jasonwashburn](https://togithub.com/jasonwashburn) in [https://github.com/defenseunicorns/zarf/pull/2681](https://togithub.com/defenseunicorns/zarf/pull/2681) #### New Contributors - [@​joelmccoy](https://togithub.com/joelmccoy) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2639](https://togithub.com/defenseunicorns/zarf/pull/2639) - [@​chaospuppy](https://togithub.com/chaospuppy) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2662](https://togithub.com/defenseunicorns/zarf/pull/2662) - [@​jasonwashburn](https://togithub.com/jasonwashburn) made their first contribution in [https://github.com/defenseunicorns/zarf/pull/2681](https://togithub.com/defenseunicorns/zarf/pull/2681) **Full Changelog**: https://github.com/defenseunicorns/zarf/compare/v0.35.0...v0.36.0
github/codeql-action (github/codeql-action) ### [`v3.25.13`](https://togithub.com/github/codeql-action/compare/v3.25.12...v3.25.13) [Compare Source](https://togithub.com/github/codeql-action/compare/v3.25.12...v3.25.13) ### [`v3.25.12`](https://togithub.com/github/codeql-action/compare/v3.25.11...v3.25.12) [Compare Source](https://togithub.com/github/codeql-action/compare/v3.25.11...v3.25.12)
mattermost/mattermost-plugin-ai (mattermost/mattermost-plugin-ai) ### [`v0.8.3`](https://togithub.com/mattermost/mattermost-plugin-ai/releases/tag/v0.8.3) [Compare Source](https://togithub.com/mattermost/mattermost-plugin-ai/compare/v0.8.2...v0.8.3) Fixes build system producing incorrect packages. No functional changes from v0.8.2
renovatebot/pre-commit-hooks (renovatebot/pre-commit-hooks) ### [`v37.440.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.440.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.440.0...37.440.4) See https://github.com/renovatebot/renovate/releases/tag/37.440.4 for more changes ### [`v37.440.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.440.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.439.0...37.440.0) See https://github.com/renovatebot/renovate/releases/tag/37.440.0 for more changes ### [`v37.439.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.439.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.438.4...37.439.0) See https://github.com/renovatebot/renovate/releases/tag/37.439.0 for more changes ### [`v37.438.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.438.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.438.2...37.438.4) See https://github.com/renovatebot/renovate/releases/tag/37.438.4 for more changes ### [`v37.438.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.438.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.438.0...37.438.2) See https://github.com/renovatebot/renovate/releases/tag/37.438.2 for more changes ### [`v37.438.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.438.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.437.3...37.438.0) See https://github.com/renovatebot/renovate/releases/tag/37.438.0 for more changes ### [`v37.437.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.437.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.437.2...37.437.3) See https://github.com/renovatebot/renovate/releases/tag/37.437.3 for more changes ### [`v37.437.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.437.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.437.0...37.437.2) See https://github.com/renovatebot/renovate/releases/tag/37.437.2 for more changes ### [`v37.437.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.437.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.434.3...37.437.0) See https://github.com/renovatebot/renovate/releases/tag/37.437.0 for more changes ### [`v37.434.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.434.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.434.2...37.434.3) See https://github.com/renovatebot/renovate/releases/tag/37.434.3 for more changes ### [`v37.434.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.434.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.434.0...37.434.2) See https://github.com/renovatebot/renovate/releases/tag/37.434.2 for more changes ### [`v37.434.0`](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.433.2...37.434.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.433.2...37.434.0) ### [`v37.433.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.433.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.433.1...37.433.2) See https://github.com/renovatebot/renovate/releases/tag/37.433.2 for more changes ### [`v37.433.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.433.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.433.0...37.433.1) See https://github.com/renovatebot/renovate/releases/tag/37.433.1 for more changes ### [`v37.433.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.433.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.432.0...37.433.0) See https://github.com/renovatebot/renovate/releases/tag/37.433.0 for more changes ### [`v37.432.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.432.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.7...37.432.0) See https://github.com/renovatebot/renovate/releases/tag/37.432.0 for more changes ### [`v37.431.7`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.7) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.6...37.431.7) See https://github.com/renovatebot/renovate/releases/tag/37.431.7 for more changes ### [`v37.431.6`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.6) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.5...37.431.6) See https://github.com/renovatebot/renovate/releases/tag/37.431.6 for more changes ### [`v37.431.5`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.5) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.4...37.431.5) See https://github.com/renovatebot/renovate/releases/tag/37.431.5 for more changes ### [`v37.431.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.2...37.431.4) See https://github.com/renovatebot/renovate/releases/tag/37.431.4 for more changes ### [`v37.431.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.431.0...37.431.2) See https://github.com/renovatebot/renovate/releases/tag/37.431.2 for more changes ### [`v37.431.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.431.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.430.0...37.431.0) See https://github.com/renovatebot/renovate/releases/tag/37.431.0 for more changes ### [`v37.430.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.430.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.429.1...37.430.0) See https://github.com/renovatebot/renovate/releases/tag/37.430.0 for more changes ### [`v37.429.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.429.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.429.0...37.429.1) See https://github.com/renovatebot/renovate/releases/tag/37.429.1 for more changes ### [`v37.429.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.429.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.428.3...37.429.0) See https://github.com/renovatebot/renovate/releases/tag/37.429.0 for more changes ### [`v37.428.3`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.428.3) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.428.2...37.428.3) See https://github.com/renovatebot/renovate/releases/tag/37.428.3 for more changes ### [`v37.428.2`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.428.2) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.428.1...37.428.2) See https://github.com/renovatebot/renovate/releases/tag/37.428.2 for more changes ### [`v37.428.1`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.428.1) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.428.0...37.428.1) See https://github.com/renovatebot/renovate/releases/tag/37.428.1 for more changes ### [`v37.428.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.428.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.427.0...37.428.0) See https://github.com/renovatebot/renovate/releases/tag/37.428.0 for more changes ### [`v37.427.0`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.427.0) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.426.5...37.427.0) See https://github.com/renovatebot/renovate/releases/tag/37.427.0 for more changes ### [`v37.426.5`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.426.5) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.426.4...37.426.5) See https://github.com/renovatebot/renovate/releases/tag/37.426.5 for more changes ### [`v37.426.4`](https://togithub.com/renovatebot/pre-commit-hooks/releases/tag/37.426.4) [Compare Source](https://togithub.com/renovatebot/pre-commit-hooks/compare/37.426.2...37.426.4) See https://github.com/renovatebot/renovate/releases/tag/37.426.4 for more changes
step-security/harden-runner (step-security/harden-runner) ### [`v2.9.0`](https://togithub.com/step-security/harden-runner/releases/tag/v2.9.0) [Compare Source](https://togithub.com/step-security/harden-runner/compare/v2.8.1...v2.9.0) ##### What's Changed Release v2.9.0 by [@​h0x0er](https://togithub.com/h0x0er) and [@​varunsh-coder](https://togithub.com/varunsh-coder) in [https://github.com/step-security/harden-runner/pull/435](https://togithub.com/step-security/harden-runner/pull/435) This release includes: - Enterprise Tier - Telemetry Upload Enhancement: For the enterprise tier, this change helps overcome size constraints, allowing for more reliable telemetry uploads from the Harden-Runner agent to the StepSecurity backend API. No configuration change is needed to enable this. - Harden-Runner Agent Authentication: The Harden-Runner agent now uses a per-job key to authenticate to the StepSecurity backend API to submit telemetry. This change prevents the submission of telemetry data anonymously for a given job, improving the integrity of the data collection process. No configuration change is needed to enable this. - README Update: A Table of Contents has been added to the README file to improve navigation. This makes it easier for users to find the information they need quickly. - Dependency Update: Updated the `braces` npm package dependency to a non-vulnerable version. The vulnerability in `braces` did not affect the Harden Runner Action **Full Changelog**: https://github.com/step-security/harden-runner/compare/v2...v2.9.0
--- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://togithub.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://www.mend.io/free-developer-tools/renovate/). View the [repository job log](https://developer.mend.io/github/defenseunicorns/uds-package-mattermost). --------- Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: Wayne Starr Release-As: v9.10.1-uds.0 --- .github/workflows/codeql.yaml | 6 +++--- .github/workflows/commitlint.yaml | 2 +- .github/workflows/dependencyreview.yaml | 4 ++-- .github/workflows/lint.yaml | 2 +- .github/workflows/scorecard.yaml | 2 +- .github/workflows/tag-and-release.yaml | 6 +++--- .github/workflows/test.yaml | 8 ++++---- .pre-commit-config.yaml | 4 ++-- plugins/Dockerfile | 2 +- tasks.yaml | 10 +++++----- tasks/publish.yaml | 8 ++++---- tests/auth.setup.ts | 2 +- 12 files changed, 28 insertions(+), 28 deletions(-) diff --git a/.github/workflows/codeql.yaml b/.github/workflows/codeql.yaml index c1b2c127..7c6e8ad6 100644 --- a/.github/workflows/codeql.yaml +++ b/.github/workflows/codeql.yaml @@ -33,13 +33,13 @@ jobs: # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@b611370bb5703a7efb587f9d136a52ea24c5c38c # v3.25.11 + uses: github/codeql-action/init@2d790406f505036ef40ecba973cc774a50395aac # v3.25.13 with: languages: ${{ matrix.language }} - name: Autobuild - uses: github/codeql-action/autobuild@b611370bb5703a7efb587f9d136a52ea24c5c38c # v3.25.11 + uses: github/codeql-action/autobuild@2d790406f505036ef40ecba973cc774a50395aac # v3.25.13 - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@b611370bb5703a7efb587f9d136a52ea24c5c38c # v3.25.11 + uses: github/codeql-action/analyze@2d790406f505036ef40ecba973cc774a50395aac # v3.25.13 with: category: "/language:${{matrix.language}}" diff --git a/.github/workflows/commitlint.yaml b/.github/workflows/commitlint.yaml index 07157a4a..35017ed1 100644 --- a/.github/workflows/commitlint.yaml +++ b/.github/workflows/commitlint.yaml @@ -8,4 +8,4 @@ on: jobs: validate: name: Validate - uses: defenseunicorns/uds-common/.github/workflows/commitlint.yaml@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/workflows/commitlint.yaml@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 diff --git a/.github/workflows/dependencyreview.yaml b/.github/workflows/dependencyreview.yaml index 1792f018..f072eaba 100644 --- a/.github/workflows/dependencyreview.yaml +++ b/.github/workflows/dependencyreview.yaml @@ -17,11 +17,11 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 + uses: step-security/harden-runner@0d381219ddf674d61a7572ddd19d7941e271515c # v2.9.0 with: egress-policy: audit - name: 'Checkout Repository' uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 - name: 'Dependency Review' - uses: actions/dependency-review-action@72eb03d02c7872a771aacd928f3123ac62ad6d3a # v4.3.3 + uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 diff --git a/.github/workflows/lint.yaml b/.github/workflows/lint.yaml index 5dfa891e..b214c499 100644 --- a/.github/workflows/lint.yaml +++ b/.github/workflows/lint.yaml @@ -20,7 +20,7 @@ jobs: fetch-depth: 0 - name: Environment setup - uses: defenseunicorns/uds-common/.github/actions/setup@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/setup@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: registry1Username: ${{ secrets.IRON_BANK_ROBOT_USERNAME }} registry1Password: ${{ secrets.IRON_BANK_ROBOT_PASSWORD }} diff --git a/.github/workflows/scorecard.yaml b/.github/workflows/scorecard.yaml index 4610e8d0..a7234cde 100644 --- a/.github/workflows/scorecard.yaml +++ b/.github/workflows/scorecard.yaml @@ -45,6 +45,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@b611370bb5703a7efb587f9d136a52ea24c5c38c # v3.25.11 + uses: github/codeql-action/upload-sarif@2d790406f505036ef40ecba973cc774a50395aac # v3.25.13 with: sarif_file: results.sarif diff --git a/.github/workflows/tag-and-release.yaml b/.github/workflows/tag-and-release.yaml index 19645aad..d09347db 100644 --- a/.github/workflows/tag-and-release.yaml +++ b/.github/workflows/tag-and-release.yaml @@ -43,7 +43,7 @@ jobs: - uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 - name: Environment setup - uses: defenseunicorns/uds-common/.github/actions/setup@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/setup@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: registry1Username: ${{ secrets.IRON_BANK_ROBOT_USERNAME }} registry1Password: ${{ secrets.IRON_BANK_ROBOT_PASSWORD }} @@ -61,10 +61,10 @@ jobs: - name: Debug Output if: ${{ always() }} - uses: defenseunicorns/uds-common/.github/actions/debug-output@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/debug-output@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 - name: Save logs if: always() - uses: defenseunicorns/uds-common/.github/actions/save-logs@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/save-logs@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: suffix: ${{ matrix.flavor }}-${{ matrix.architecture }}-${{ github.run_id }}-${{ github.run_attempt }} diff --git a/.github/workflows/test.yaml b/.github/workflows/test.yaml index b7e4907f..aa680bf9 100644 --- a/.github/workflows/test.yaml +++ b/.github/workflows/test.yaml @@ -46,25 +46,25 @@ jobs: uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 - name: Environment setup - uses: defenseunicorns/uds-common/.github/actions/setup@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/setup@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: registry1Username: ${{ secrets.IRON_BANK_ROBOT_USERNAME }} registry1Password: ${{ secrets.IRON_BANK_ROBOT_PASSWORD }} ghToken: ${{ secrets.GITHUB_TOKEN }} - name: Test - uses: defenseunicorns/uds-common/.github/actions/test@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/test@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: flavor: ${{ matrix.flavor }} type: ${{ matrix.type }} - name: Debug Output if: ${{ always() }} - uses: defenseunicorns/uds-common/.github/actions/debug-output@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/debug-output@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 - name: Save logs if: always() - uses: defenseunicorns/uds-common/.github/actions/save-logs@772b3337950b7c8e0882c527263684306bba7ce4 # v0.7.1 + uses: defenseunicorns/uds-common/.github/actions/save-logs@91515ef86914334356c35ffb4b2c2c5fb4d19174 # v0.9.0 with: suffix: ${{ matrix.type }}-${{ matrix.flavor }}-${{ github.run_id }}-${{ github.run_attempt }} diff --git a/.pre-commit-config.yaml b/.pre-commit-config.yaml index abfbb90a..9fcdc292 100644 --- a/.pre-commit-config.yaml +++ b/.pre-commit-config.yaml @@ -41,7 +41,7 @@ repos: args: [ "--schemafile", - "https://raw.githubusercontent.com/defenseunicorns/zarf/v0.35.0/zarf.schema.json", + "https://raw.githubusercontent.com/defenseunicorns/zarf/v0.36.1/zarf.schema.json", "--no-cache" ] - repo: https://github.com/golangci/golangci-lint @@ -49,6 +49,6 @@ repos: hooks: - id: golangci-lint - repo: https://github.com/renovatebot/pre-commit-hooks - rev: 37.426.2 + rev: 37.440.4 hooks: - id: renovate-config-validator diff --git a/plugins/Dockerfile b/plugins/Dockerfile index 8a7cd72d..3f29981c 100644 --- a/plugins/Dockerfile +++ b/plugins/Dockerfile @@ -1,7 +1,7 @@ FROM cgr.dev/chainguard/busybox:latest # renovate: datasource=github-tags depName=mattermost/mattermost-plugin-ai versioning=semver -ENV MATTERMOST_AI_PLUGIN_VERSION=0.8.2 +ENV MATTERMOST_AI_PLUGIN_VERSION=0.8.3 # renovate: datasource=github-tags depName=mattermost/mattermost-plugin-gitlab versioning=semver ENV MATTERMOST_GITLAB_PLUGIN_VERSION=1.9.1 diff --git a/tasks.yaml b/tasks.yaml index 18ee126c..4192e2b2 100644 --- a/tasks.yaml +++ b/tasks.yaml @@ -2,11 +2,11 @@ includes: - cleanup: ./tasks/cleanup.yaml - dependencies: ./tasks/dependencies.yaml - test: ./tasks/test.yaml - - create: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/create.yaml - - lint: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/lint.yaml - - pull: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/pull.yaml - - deploy: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/deploy.yaml - - setup: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/setup.yaml + - create: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/create.yaml + - lint: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/lint.yaml + - pull: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/pull.yaml + - deploy: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/deploy.yaml + - setup: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/setup.yaml tasks: - name: default diff --git a/tasks/publish.yaml b/tasks/publish.yaml index 6c47b6fa..51f0a7da 100644 --- a/tasks/publish.yaml +++ b/tasks/publish.yaml @@ -1,11 +1,11 @@ includes: - dependencies: ./dependencies.yaml - test: ./test.yaml - - create: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/create.yaml - - deploy: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/deploy.yaml + - create: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/create.yaml + - deploy: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/deploy.yaml # TODO: @marshall007 - upstream logic into uds-common, tracking: https://github.com/defenseunicorns/uds-common/issues/178 - # - publish: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/publish.yaml - - setup: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.7.1/tasks/setup.yaml + # - publish: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/publish.yaml + - setup: https://raw.githubusercontent.com/defenseunicorns/uds-common/v0.9.0/tasks/setup.yaml tasks: # Slightly modified version of uds-common `publish:package`: diff --git a/tests/auth.setup.ts b/tests/auth.setup.ts index 15726816..25ce4c79 100644 --- a/tests/auth.setup.ts +++ b/tests/auth.setup.ts @@ -7,7 +7,7 @@ setup('authenticate', async ({ page, context, baseURL }) => { await page.getByRole("link", { name: "View in Browser" }).click(); await page.getByRole("link", { name: "Gitlab Icon GitLab" }).click(); await page.getByLabel("Username or email").fill("doug"); - await page.getByLabel("Password").fill("unicorn123!@#"); + await page.getByLabel("Password").fill("unicorn123!@#UN"); await page.getByRole("button", { name: "Log In" }).click(); // ensure auth cookies were set