Releases: github/dependabot-action
Releases · github/dependabot-action
v2.29.0
What's Changed
- credential type is not a secret by @jakecoffman in #1517
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250618164131 to v2.0.20250701191801 in /docker by @dependabot[bot] in #1511
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250715192211 to v2.0.20250716173616 in /docker by @dependabot[bot] in #1518
- handle NPM metadata missing registry key by @jakecoffman in #1519
- extract registry from url for other ecosystems by @jakecoffman in #1520
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250716173616 to v2.0.20250717140017 in /docker by @dependabot[bot] in #1521
- remove automerge by @jakecoffman in #1515
- set index-url from url by @jakecoffman in #1522
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250717140017 to v2.0.20250724172018 in /docker by @dependabot[bot] in #1525
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250724172018 to v2.0.20250731100605 in /docker by @dependabot[bot] in #1527
- Add path to npm registry definition by @pavera in #1531
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250731100605 to v2.0.20250804193157 in /docker by @dependabot[bot] in #1529
- Bump actions/create-github-app-token from 2.0.6 to 2.1.1 by @dependabot[bot] in #1533
- Bump actions/checkout from 4 to 5 by @dependabot[bot] in #1532
- Updating updater images to the version 20250904090707 by @thavaahariharangit in #1535
Full Changelog: v2...v2.29.0
v2.28.0
What's Changed
- fix 403s, registry creds probably not needed by @jakecoffman in #1498
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250602172812 to v2.0.20250618164131 in /docker by @dependabot in #1501
- generate credentials metadata by @jakecoffman in #1502
- Use Registry Credentials when passed to env by @jurre in #1497
- Run
update-ca-certificatesasrootby @JamieMagee in #1505 - Bump the dependabot-core-images group in /docker with 23 updates by @JamieMagee in #1508
- Add
vcpkgandrust-toolchainecosystem support by @JamieMagee in #1509 - Bump the dependabot-core-images group in /docker with 25 updates by @dependabot in #1513
- v2.28.0 by @jakecoffman in #1514
Full Changelog: v2...v2.28.0
v2.26.0
What's Changed
- Bump eslint-import-resolver-typescript from 3.8.3 to 4.2.2 by @dependabot in #1439
- Remove unnecessary hardcoding of
refby @jeffwidman in #1456 - Enable caching of
npm install/npm ciforsetup-nodeaction by @jeffwidman in #1457 - fix detached head state on push by @jakecoffman in #1464
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250404141843 to v2.0.20250425201519 in /docker by @dependabot in #1465
- Bump dockerode from 4.0.5 to 4.0.6 in the prod-dependencies group by @dependabot in #1460
- Bump @actions/github from 6.0.0 to 6.0.1 in the prod-dependencies group by @dependabot in #1471
- Bump dependabot/fetch-metadata from 2.3.0 to 2.4.0 by @dependabot in #1470
- Bump the dev-dependencies group across 1 directory with 14 updates by @dependabot in #1468
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250501191828 to v2.0.20250510074035 in /docker by @dependabot in #1472
- Update certificate to support python 3.13 by @thavaahariharangit in #1475
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250510074035 to v2.0.20250515192846 in /docker by @dependabot in #1477
- Switch from PAT to federated secret for pulling ghcr images by @jeffwidman in #1478
- Bump commander from 13.1.0 to 14.0.0 by @dependabot in #1480
- Bump lint-staged from 15.5.2 to 16.0.0 by @dependabot in #1473
- Switch to using an App token instead of a PAT by @jeffwidman in #1442
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250515192846 to v2.0.20250521082831 in /docker by @dependabot in #1482
- add a manually run build workflow by @jakecoffman in #1486
- Bump the dev-dependencies group across 1 directory with 9 updates by @dependabot in #1485
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250521082831 to v2.0.20250522155011 in /docker by @dependabot in #1483
- Bump undici from 5.28.5 to 5.29.0 in the npm_and_yarn group by @dependabot in #1476
- Bump actions/create-github-app-token from 1.11.6 to 2.0.6 by @dependabot in #1484
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250522155011 to v2.0.20250602172812 in /docker by @dependabot in #1490
- v2.26.0 by @thavaahariharangit in #1491
Full Changelog: v2...v2.26.0
v2.25.0
What's Changed
- Implement feature to capture metrics inside Dependabot Actions to post to Dependabot API by @honeyankit in #1428
- Adding helm ecosystem image by @robaiken in #1430
- Bump commander from 12.1.0 to 13.1.0 by @dependabot in #1398
- Bump the dev-dependencies group across 1 directory with 5 updates by @dependabot in #1434
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250310190033 to v2.0.20250320211425 in /docker by @dependabot in #1433
- Bump the dependabot-core-images group in /docker with 23 updates by @dependabot in #1432
- Bump eslint from 8.57.0 to 9.22.0 by @dependabot in #1424
- Make typescript compile to
"es2022"by @jeffwidman in #1435 - Remove deprecated command invocation by @jeffwidman in #1436
- Remove unused
fetch-metadatastep by @jeffwidman in #1441 - Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250320211425 to v2.0.20250404141843 in /docker by @dependabot in #1448
- Bump dockerode from 4.0.4 to 4.0.5 in the prod-dependencies group by @dependabot in #1445
- Bump the dependabot-core-images group in /docker with 23 updates by @dependabot in #1451
- Bump the dependabot-core-images group in /docker with 23 updates by @dependabot in #1452
- v2.25.0 by @jakecoffman in #1454
Full Changelog: v2...v2.25.0
v2.24.0
What's Changed
- Add instructions for manually upgrading on GHES by @jeffwidman in #1402
- Bump the dependabot-core-images group across 1 directory with 19 updates by @dependabot in #1404
- Revert "Bump the dependabot-core-images group across 1 directory with 19 updates" by @rickreyhsig in #1405
- Add Backoff and Retry Mechanism for Image Pull by @honeyankit in #1409
- Adding Docker Compose ecosystem images by @robaiken in #1410
- Add the bun ecosystem by @markhallen in #1411
- Add the uv ecosystem by @markhallen in #1414
- Bump undici from 5.28.4 to 5.28.5 in the npm_and_yarn group by @dependabot in #1397
- Bump the npm_and_yarn group with 4 updates by @dependabot in #1418
- Bump the dependabot-core-images group across 1 directory with 22 updates by @dependabot in #1420
- Bump the dev-dependencies group across 1 directory with 11 updates by @dependabot in #1419
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250128153834 to v2.0.20250228224058 in /docker by @dependabot in #1415
- Bump dependabot/fetch-metadata from 2.2.0 to 2.3.0 by @dependabot in #1388
- Bump dockerode from 4.0.2 to 4.0.4 in the prod-dependencies group across 1 directory by @dependabot in #1384
- Bump eslint-config-prettier from 9.1.0 to 10.1.1 by @dependabot in #1423
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250228224058 to v2.0.20250310190033 in /docker by @dependabot in #1425
- Bump the dependabot-core-images group in /docker with 22 updates by @dependabot in #1421
- v2.24.0 by @honeyankit in #1427
New Contributors
- @rickreyhsig made their first contribution in #1405
- @robaiken made their first contribution in #1410
- @markhallen made their first contribution in #1411
Full Changelog: v2...v2.24.0
v2.23.0
What's Changed
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20250106164350 to v2.0.20250128153834 in /docker by @dependabot in #1390
- Bump the dependabot-core-images group across 1 directory with 19 updates by @dependabot in #1391
- Revert "Bump the dependabot-core-images group across 1 directory with 19 updates" by @kbukum1 in #1392
- Bump the dependabot-core-images group across 1 directory with 19 updates by @dependabot in #1395
New Contributors
Full Changelog: v2...v2.23.0
v2.22.0
What's Changed
- Bump the dev-dependencies group with 2 updates by @dependabot in #1351
- Bump the dependabot-core-images group across 1 directory with 19 updates by @dependabot in #1355
- Bump eslint-plugin-github from 4.10.2 to 5.1.4 by @dependabot in #1352
- Bump @types/node from 20.12.7 to 22.10.1 by @dependabot in #1353
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20241126032308 to v2.0.20241211065819 in /docker by @dependabot in #1357
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20241211065819 to v2.0.20241211194452 in /docker by @dependabot in #1359
- Set the test timeout to 15 seconds by @jeffwidman in #1363
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20241211194452 to v2.0.20241213020825 in /docker by @dependabot in #1364
- Bump the dependabot-core-images group in /docker with 19 updates by @dependabot in #1366
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20241213020825 to v2.0.20250106164350 in /docker by @dependabot in #1376
- v2.22.0 by @Nishnha in #1379
Full Changelog: v2...v2.22.0
v2.21.0
What's Changed
- Bump the dependabot-core-images group across 1 directory with 18 updates by @dependabot in #1335
- Bump the dependabot-core-images group in /docker with 17 updates by @dependabot in #1336
- Add
dotnet-sdkecosystem support by @JamieMagee in #1338 - Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20241004183849 to v2.0.20241126032308 in /docker by @dependabot in #1343
- Bump the prod-dependencies group across 1 directory with 3 updates by @dependabot in #1317
- Bump the dependabot-core-images group in /docker with 19 updates by @dependabot in #1347
- Bump eslint-plugin-jest from 27.9.0 to 28.9.0 by @dependabot in #1346
- Bump the npm_and_yarn group across 1 directory with 2 updates by @dependabot in #1348
- Bump the dev-dependencies group across 1 directory with 10 updates by @dependabot in #1345
New Contributors
- @JamieMagee made their first contribution in #1338
Full Changelog: v2...v2.21.0
v2.20.0
What's Changed
- Bump the dependabot-core-images group across 1 directory with 18 updates by @dependabot in #1332
Full Changelog: v2...v2.20.0
v2.19.0
What's Changed
- Bump the dependabot-core-images group across 1 directory with 17 updates by @dependabot in #1316
- Bump github/dependabot-update-job-proxy/dependabot-update-job-proxy from v2.0.20240919194919 to v2.0.20241004183849 in /docker by @dependabot in #1319
- Adding support to devcontainers by @thavaahariharangit in #1324
- Creating new release version v2.19.0 with the latest in the main by @thavaahariharangit in #1329
New Contributors
- @thavaahariharangit made their first contribution in #1324
Full Changelog: v2...v2.19.0