dependabot[bot]
a3f194a8d1
build(deps): bump the actions group across 1 directory with 7 updates
...
Bumps the actions group with 7 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [actions/checkout](https://github.com/actions/checkout ) | `4.2.2` | `4.3.1` |
| [aws-actions/configure-aws-credentials](https://github.com/aws-actions/configure-aws-credentials ) | `4.0.2` | `4.3.1` |
| [slackapi/slack-github-action](https://github.com/slackapi/slack-github-action ) | `1.27.0` | `1.27.1` |
| [actions/upload-artifact](https://github.com/actions/upload-artifact ) | `4.6.0` | `4.6.2` |
| [actions/github-script](https://github.com/actions/github-script ) | `7.0.1` | `7.1.0` |
| [actions/download-artifact](https://github.com/actions/download-artifact ) | `4.1.8` | `4.3.0` |
| [ncipollo/release-action](https://github.com/ncipollo/release-action ) | `1.15.0` | `1.21.0` |
Updates `actions/checkout` from 4.2.2 to 4.3.1
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/11bd71901bbe5b1630ceea73d27597364c9af683...34e114876b0b11c390a56381ad16ebd13914f8d5 )
Updates `aws-actions/configure-aws-credentials` from 4.0.2 to 4.3.1
- [Release notes](https://github.com/aws-actions/configure-aws-credentials/releases )
- [Changelog](https://github.com/aws-actions/configure-aws-credentials/blob/main/CHANGELOG.md )
- [Commits](https://github.com/aws-actions/configure-aws-credentials/compare/e3dd6a429d7300a6a4c196c26e071d42e0343502...7474bc4690e29a8392af63c5b98e7449536d5c3a )
Updates `slackapi/slack-github-action` from 1.27.0 to 1.27.1
- [Release notes](https://github.com/slackapi/slack-github-action/releases )
- [Changelog](https://github.com/slackapi/slack-github-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/slackapi/slack-github-action/compare/37ebaef184d7626c5f204ab8d3baff4262dd30f0...fcfb566f8b0aab22203f066d80ca1d7e4b5d05b3 )
Updates `actions/upload-artifact` from 4.6.0 to 4.6.2
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08...ea165f8d65b6e75b540449e92b4886f43607fa02 )
Updates `actions/github-script` from 7.0.1 to 7.1.0
- [Release notes](https://github.com/actions/github-script/releases )
- [Commits](https://github.com/actions/github-script/compare/60a0d83039c74a4aee543508d2ffcb1c3799cdea...f28e40c7f34bde8b3046d885e986cb6290c5673b )
Updates `actions/download-artifact` from 4.1.8 to 4.3.0
- [Release notes](https://github.com/actions/download-artifact/releases )
- [Commits](https://github.com/actions/download-artifact/compare/fa0a91b85d4f404e444e00e005971372dc801d16...d3f86a106a0bac45b974a628896c90dbdf5c8093 )
Updates `ncipollo/release-action` from 1.15.0 to 1.21.0
- [Release notes](https://github.com/ncipollo/release-action/releases )
- [Commits](https://github.com/ncipollo/release-action/compare/cdcc88a9acf3ca41c16c37bb7d21b9ad48560d87...339a81892b84b4eeb0f6e744e4574d79d0d9b8dd )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: 4.3.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions
- dependency-name: aws-actions/configure-aws-credentials
dependency-version: 4.3.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions
- dependency-name: slackapi/slack-github-action
dependency-version: 1.27.1
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: actions
- dependency-name: actions/upload-artifact
dependency-version: 4.6.2
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: actions
- dependency-name: actions/github-script
dependency-version: 7.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions
- dependency-name: actions/download-artifact
dependency-version: 4.3.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions
- dependency-name: ncipollo/release-action
dependency-version: 1.21.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-03 06:56:15 +00:00
hashicorp-tsccr[bot]
ea9d02d596
Result of tsccr-helper -log-level=info gha update .github/
2025-01-20 17:25:44 -05:00
hashicorp-tsccr[bot]
863f3b0422
Result of tsccr-helper -log-level=info gha update .
2024-07-01 12:49:51 -04:00
hashicorp-tsccr[bot]
4bd7e951b7
Result of tsccr-helper -log-level=info gha update .
2024-06-03 14:20:36 -04:00
Wilken Rivera
5e043ab3a0
Bump required actions to address Node.js 16 deprecation issue ( #12958 )
...
* Bump required actions to address Node.js 16 deprecation issue
* Update all tsccr approved actions
```shell
tsccr-helper gha update -latest .
```
2024-05-07 12:59:45 -04:00
Wilken Rivera
5f47c99ec4
Bump actions/checkout to address Node.js 16 deprecation issues
2024-05-07 10:39:37 -04:00
Wilken Rivera
74b5c2aa56
issue-comment-created: Add guard for labels
...
The action currently fails when trying to remove the stale or waiting-reply labels from issues
that do not actually contain the labels in question. This update adds a guard clause to only run the
action on issues containing at least one of the labels.
2023-07-24 13:52:17 -04:00
hashicorp-tsccr[bot] and hashicorp-tsccr[bot]
0194d839b0
Result of tsccr-helper -log-level=info -pin-all-workflows . ( #12507 )
...
Co-authored-by: hashicorp-tsccr[bot] <hashicorp-tsccr[bot]@users.noreply.github.com>
2023-07-19 13:20:14 -04:00
hashicorp-tsccr[bot] and hashicorp-tsccr[bot]
3ac1179841
Result of tsccr-helper -pin-all-workflows . ( #12381 )
...
Co-authored-by: hashicorp-tsccr[bot] <hashicorp-tsccr[bot]@users.noreply.github.com>
2023-04-27 14:55:22 -04:00
Wilken Rivera and neilnaveen
cc5898022a
update action permissions ( #11837 )
...
* chore: Set permissions for GitHub actions
Restrict the GitHub token permissions only to the required ones; this way, even if the attackers will succeed in compromising your workflow, they won’t be able to do much.
- Included permissions for the action. https://github.com/ossf/scorecard/blob/main/docs/checks.md#token-permissions
https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#permissions
https://docs.github.com/en/actions/using-jobs/assigning-permissions-to-jobs
[Keeping your GitHub Actions and workflows secure Part 1: Preventing pwn requests](https://securitylab.github.com/research/github-actions-preventing-pwn-requests/ )
Signed-off-by: neilnaveen <[email protected] >
* Update permissions for newly added actions
* Remove deleted actions
Co-authored-by: neilnaveen <[email protected] >
2022-06-14 12:08:39 -04:00
Wilken Rivera
1aa7a1b3f8
workflows/issue-comment-created.yml: Add GH token input
...
Addresses reported error at
https://github.com/hashicorp/packer/runs/2722241524?check_suite_focus=true
2021-06-01 20:45:34 -04:00
Wilken Rivera
0a05b834d7
remove hashibot ( #11053 )
...
* Replace `closed_issue_locker` HashiBot action with GitHub action
Related to: #11043
* Replace with GitHub action
* Replace with GitHub action
2021-05-27 12:58:58 -04:00