Skip to content

chore(deps): bump the minor-gh-actions group across 1 directory with 5 updates#146

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/minor-gh-actions-9fef6ce985
Closed

chore(deps): bump the minor-gh-actions group across 1 directory with 5 updates#146
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/minor-gh-actions-9fef6ce985

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Aug 19, 2025

Bumps the minor-gh-actions group with 5 updates in the / directory:

Package From To
jfrog/setup-jfrog-cli 4.5.6 4.5.13
jfrog/frogbot 2.26.1 2.27.2
sonarsource/sonarqube-scan-action 5.2.0 5.3.0
sonarsource/sonarqube-quality-gate-action 1.1.0 1.2.0
goreleaser/goreleaser-action 6.3.0 6.4.0

Updates jfrog/setup-jfrog-cli from 4.5.6 to 4.5.13

Release notes

Sourced from jfrog/setup-jfrog-cli's releases.

v4.5.13

What's Changed

Improvements 🌱

Bug Fixes 🛠

New Contributors

Full Changelog: jfrog/setup-jfrog-cli@v4...v4.5.13

v4.5.12

What's Changed

Improvements 🌱

New Contributors

Full Changelog: jfrog/setup-jfrog-cli@v4...v4.5.12

v4.5.11

What's Changed

Bug Fixes 🛠

Full Changelog: jfrog/setup-jfrog-cli@v4...v4.5.11

v4.5.10

What's Changed

Bug Fixes 🛠

Full Changelog: jfrog/setup-jfrog-cli@v4...v4.5.10

v4.5.9

... (truncated)

Commits

Updates jfrog/frogbot from 2.26.1 to 2.27.2

Release notes

Sourced from jfrog/frogbot's releases.

v2.27.2

What's Changed

Bug Fixes 🛠

New Contributors

Full Changelog: jfrog/frogbot@v2...v2.27.2

v2.27.1

What's Changed

Improvements 🌱

New Contributors

Full Changelog: jfrog/frogbot@v2...v2.27.1

v2.27.0

What's Changed

Exciting New Features 🎉

Bug Fixes 🛠

Full Changelog: jfrog/frogbot@v2...v2.27.0

v2.26.3

What's Changed

Improvements 🌱

New Contributors

Full Changelog: jfrog/frogbot@v2...v2.26.3

v2.26.2

... (truncated)

Commits

Updates sonarsource/sonarqube-scan-action from 5.2.0 to 5.3.0

Release notes

Sourced from sonarsource/sonarqube-scan-action's releases.

v5.3.0

What's Changed

New Contributors

Full Changelog: SonarSource/sonarqube-scan-action@v5.2.0...v5.3.0

Commits
  • 8c71dc0 SQSCANGHA-98 Update SonarScanner CLI to 7.2.0.5079 (#196)
  • ef211f9 SQSCANGHA-97 Use /usr/bin/env for shebang (#193)
  • 74f62c9 BUILD-8073 Migrate public repositories workflows to large runners
  • c8aa051 SQSCANGHA-83 Avoid unbound variable error on parameter expansion (#192)
  • bfe63be SQSCANGHA-95 Update CODEOWNERS (#190)
  • See full diff in compare view

Updates sonarsource/sonarqube-quality-gate-action from 1.1.0 to 1.2.0

Release notes

Sourced from sonarsource/sonarqube-quality-gate-action's releases.

v1.2.0

What's Changed

Full Changelog: SonarSource/sonarqube-quality-gate-action@v1.1.0...v1.2.0

Commits
  • cf038b0 BUILD-8073 Migrate public repositories workflows to large runners
  • df91423 Add Jira integration
  • adc518a SC-19792 Change code owner
  • 5a8df80 SQRP-122 Reference SonarQube Community Build (#61)
  • 2a53a0f SQQGGHA-9 Revert action name to avoid unexpected URL change
  • 424137d SQQGGHA-9 Use new SonarQube (Server, Cloud) product names
  • 07d1da2 Update README.md to consider the correct polling timeout property
  • 721debf Update README.md to checkout v4
  • 8406f4f BUILD-6088 Create SECURITY.md
  • dc2f7b0 Add a polling timeout (#50)
  • Additional commits viewable in compare view

Updates goreleaser/goreleaser-action from 6.3.0 to 6.4.0

Release notes

Sourced from goreleaser/goreleaser-action's releases.

v6.4.0

What's Changed

New Contributors

Full Changelog: goreleaser/goreleaser-action@v6.3.0...v6.4.0

Commits
  • e435ccd feat: retry downloading releases json (#503)
  • 2ff5850 chore(deps): bump undici from 5.28.5 to 5.29.0 (#496)
  • 9a6cd01 fix: do not get releases.json if version is specific (#502)
  • a386515 chore(deps): bump brace-expansion from 1.1.11 to 1.1.12 (#498)
  • ca48102 chore(deps): bump semver from 7.7.1 to 7.7.2 (#495)
  • 0931acf fix: support .config directory for goreleaser config files (#500)
  • 90c43f2 ci: set contents read as default workflow permissions (#494)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…5 updates

Bumps the minor-gh-actions group with 5 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [jfrog/setup-jfrog-cli](https://github.com/jfrog/setup-jfrog-cli) | `4.5.6` | `4.5.13` |
| [jfrog/frogbot](https://github.com/jfrog/frogbot) | `2.26.1` | `2.27.2` |
| [sonarsource/sonarqube-scan-action](https://github.com/sonarsource/sonarqube-scan-action) | `5.2.0` | `5.3.0` |
| [sonarsource/sonarqube-quality-gate-action](https://github.com/sonarsource/sonarqube-quality-gate-action) | `1.1.0` | `1.2.0` |
| [goreleaser/goreleaser-action](https://github.com/goreleaser/goreleaser-action) | `6.3.0` | `6.4.0` |



Updates `jfrog/setup-jfrog-cli` from 4.5.6 to 4.5.13
- [Release notes](https://github.com/jfrog/setup-jfrog-cli/releases)
- [Commits](jfrog/setup-jfrog-cli@f748a05...2bc6e55)

Updates `jfrog/frogbot` from 2.26.1 to 2.27.2
- [Release notes](https://github.com/jfrog/frogbot/releases)
- [Commits](jfrog/frogbot@e99f970...b4b7505)

Updates `sonarsource/sonarqube-scan-action` from 5.2.0 to 5.3.0
- [Release notes](https://github.com/sonarsource/sonarqube-scan-action/releases)
- [Commits](SonarSource/sonarqube-scan-action@2500896...8c71dc0)

Updates `sonarsource/sonarqube-quality-gate-action` from 1.1.0 to 1.2.0
- [Release notes](https://github.com/sonarsource/sonarqube-quality-gate-action/releases)
- [Commits](SonarSource/sonarqube-quality-gate-action@d304d05...cf038b0)

Updates `goreleaser/goreleaser-action` from 6.3.0 to 6.4.0
- [Release notes](https://github.com/goreleaser/goreleaser-action/releases)
- [Commits](goreleaser/goreleaser-action@9c156ee...e435ccd)

---
updated-dependencies:
- dependency-name: jfrog/setup-jfrog-cli
  dependency-version: 4.5.13
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-gh-actions
- dependency-name: jfrog/frogbot
  dependency-version: 2.27.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-gh-actions
- dependency-name: sonarsource/sonarqube-scan-action
  dependency-version: 5.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-gh-actions
- dependency-name: sonarsource/sonarqube-quality-gate-action
  dependency-version: 1.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-gh-actions
- dependency-name: goreleaser/goreleaser-action
  dependency-version: 6.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-gh-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 19, 2025
@dependabot dependabot Bot requested a review from a team as a code owner August 19, 2025 05:00
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 19, 2025
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Sep 15, 2025

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Sep 16, 2025

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot dependabot Bot deleted the dependabot/github_actions/minor-gh-actions-9fef6ce985 branch September 16, 2025 21:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Development

Successfully merging this pull request may close these issues.

1 participant