Skip to content

Commit 916c027

Browse files
chore(deps): update github workflows (#6733)
> ℹ️ **Note** > > This PR body was truncated due to platform limits. This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [actions/checkout](https://redirect.github.com/actions/checkout) | | major | `v6.0.3` → `v7.0.1` | | [actions/checkout](https://redirect.github.com/actions/checkout) | action | major | `v6.0.3` → `v7.0.1` | | [actions/setup-java](https://redirect.github.com/actions/setup-java) ([changelog](https://redirect.github.com/actions/setup-java/compare/be666c2fcd27ec809703dec50e508c2fdc7f6654..b6effb05e454b25005698d916606bdc6ffcbf961)) | | digest | `be666c2` → `b6effb0` | | [actions/setup-java](https://redirect.github.com/actions/setup-java) ([changelog](https://redirect.github.com/actions/setup-java/compare/be666c2fcd27ec809703dec50e508c2fdc7f6654..b6effb05e454b25005698d916606bdc6ffcbf961)) | action | digest | `be666c2` → `b6effb0` | | [actions/setup-node](https://redirect.github.com/actions/setup-node) | action | major | `v6.4.0` → `v7.0.0` | | [actions/setup-python](https://redirect.github.com/actions/setup-python) | action | major | `v6` → `v7` | | [anthropics/claude-code-action](https://redirect.github.com/anthropics/claude-code-action) | action | patch | `v1.0.142` → `v1.0.191` | | [astral-sh/setup-uv](https://redirect.github.com/astral-sh/setup-uv) | | major | `v8.2.0` → `v10.0.0` | | [astral-sh/setup-uv](https://redirect.github.com/astral-sh/setup-uv) | action | major | `v8.2.0` → `v10.0.0` | | [getsentry/action-enforce-license-compliance](https://redirect.github.com/getsentry/action-enforce-license-compliance) ([changelog](https://redirect.github.com/getsentry/action-enforce-license-compliance/compare/48236a773346cb6552a7bda1ee370d2797365d87..d0aa91b82375e45135e96c02f17ce3b8002867cd)) | action | digest | `48236a7` → `d0aa91b` | | [getsentry/codecov-action](https://redirect.github.com/getsentry/codecov-action) ([changelog](https://redirect.github.com/getsentry/codecov-action/compare/d90e69cdf071dfbb0430159125321dc09c424d4c..66554aa51d8656c657e233a9e98bcb18e95f2c9a)) | action | digest | `d90e69c` → `66554aa` | | [getsentry/craft](https://redirect.github.com/getsentry/craft) | action | minor | `v2.26.9` → `2.30.1` | | [getsentry/craft](https://redirect.github.com/getsentry/craft) ([changelog](https://redirect.github.com/getsentry/craft/compare/6143e76379c342e247687c4ab5c83d8b900cc273..cd1e8294061fd970b40d98b77aaa109cb1e00e78)) | action | digest | `6143e76` → `cd1e829` | | ghcr.io/getsentry/image-mirror-library-postgres | | major | `17-alpine` → `18-alpine` | | ghcr.io/getsentry/image-mirror-library-postgres | service | major | `17-alpine` → `18-alpine` | | [node](https://redirect.github.com/actions/node-versions) | uses-with | major | `20` → `24` | --- > [!WARNING] > Some dependencies could not be looked up. Check the [Dependency Dashboard](../issues/6715) for more information. --- ### Release Notes <details> <summary>actions/checkout (actions/checkout)</summary> ### [`v7.0.1`](https://redirect.github.com/actions/checkout/blob/HEAD/CHANGELOG.md#v701) [Compare Source](https://redirect.github.com/actions/checkout/compare/v7.0.0...v7.0.1) - Bump github/codeql-action from 3 to 4 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2475](https://redirect.github.com/actions/checkout/pull/2475) - Bump actions/setup-node from 4 to 6 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2477](https://redirect.github.com/actions/checkout/pull/2477) - Bump docker/build-push-action from 6.5.0 to 7.2.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2478](https://redirect.github.com/actions/checkout/pull/2478) - Bump docker/login-action from 3.3.0 to 4.2.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2479](https://redirect.github.com/actions/checkout/pull/2479) - Bump actions/checkout from 6 to 7 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2488](https://redirect.github.com/actions/checkout/pull/2488) - Bump actions/upload-artifact from 4 to 7 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2476](https://redirect.github.com/actions/checkout/pull/2476) - eslint 9 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2474](https://redirect.github.com/actions/checkout/pull/2474) - Bump the minor-actions-dependencies group with 2 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2499](https://redirect.github.com/actions/checkout/pull/2499) - skip running unsafe pr check if input is default by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2518](https://redirect.github.com/actions/checkout/pull/2518) - trim only ascii whitespace for branch by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2521](https://redirect.github.com/actions/checkout/pull/2521) - escape values passed to --unset by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2530](https://redirect.github.com/actions/checkout/pull/2530) ### [`v7.0.0`](https://redirect.github.com/actions/checkout/blob/HEAD/CHANGELOG.md#v700) [Compare Source](https://redirect.github.com/actions/checkout/compare/v7.0.0...v7.0.0) - Block checking out fork PR for pull\_request\_target and workflow\_run by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2454](https://redirect.github.com/actions/checkout/pull/2454) - Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the minor-actions-dependencies group across 1 directory by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2458](https://redirect.github.com/actions/checkout/pull/2458) - Bump flatted from 3.3.1 to 3.4.2 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2460](https://redirect.github.com/actions/checkout/pull/2460) - Bump js-yaml from 4.1.0 to 4.2.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2461](https://redirect.github.com/actions/checkout/pull/2461) - Bump [@&#8203;actions/core](https://redirect.github.com/actions/core) and [@&#8203;actions/tool-cache](https://redirect.github.com/actions/tool-cache) and Remove uuid by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2459](https://redirect.github.com/actions/checkout/pull/2459) - upgrade module to esm and update dependencies by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2463](https://redirect.github.com/actions/checkout/pull/2463) - Bump the minor-npm-dependencies group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2462](https://redirect.github.com/actions/checkout/pull/2462) ### [`v7`](https://redirect.github.com/actions/checkout/blob/HEAD/CHANGELOG.md#v700) [Compare Source](https://redirect.github.com/actions/checkout/compare/v6.1.0...v7.0.0) - Block checking out fork PR for pull\_request\_target and workflow\_run by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2454](https://redirect.github.com/actions/checkout/pull/2454) - Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the minor-actions-dependencies group across 1 directory by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2458](https://redirect.github.com/actions/checkout/pull/2458) - Bump flatted from 3.3.1 to 3.4.2 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2460](https://redirect.github.com/actions/checkout/pull/2460) - Bump js-yaml from 4.1.0 to 4.2.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2461](https://redirect.github.com/actions/checkout/pull/2461) - Bump [@&#8203;actions/core](https://redirect.github.com/actions/core) and [@&#8203;actions/tool-cache](https://redirect.github.com/actions/tool-cache) and Remove uuid by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2459](https://redirect.github.com/actions/checkout/pull/2459) - upgrade module to esm and update dependencies by [@&#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in [#&#8203;2463](https://redirect.github.com/actions/checkout/pull/2463) - Bump the minor-npm-dependencies group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\[bot] in [#&#8203;2462](https://redirect.github.com/actions/checkout/pull/2462) ### [`v6.1.0`](https://redirect.github.com/actions/checkout/compare/v6.0.3...v6.1.0) [Compare Source](https://redirect.github.com/actions/checkout/compare/v6.0.3...v6.1.0) </details> <details> <summary>actions/setup-node (actions/setup-node)</summary> ### [`v7.0.0`](https://redirect.github.com/actions/setup-node/releases/tag/v7.0.0) [Compare Source](https://redirect.github.com/actions/setup-node/compare/v7.0.0...v7.0.0) ##### What's Changed ##### Enhancements: - Add cache-primary-key and cache-matched-key as outputs by [@&#8203;gowridurgad](https://redirect.github.com/gowridurgad) in [#&#8203;1577](https://redirect.github.com/actions/setup-node/pull/1577) - Migrate to ESM and upgrade dependencies by [@&#8203;gowridurgad](https://redirect.github.com/gowridurgad) in [#&#8203;1574](https://redirect.github.com/actions/setup-node/pull/1574) ##### Bug fixes: - Remove dummy NODE\_AUTH\_TOKEN export by [@&#8203;gowridurgad](https://redirect.github.com/gowridurgad) in [#&#8203;1558](https://redirect.github.com/actions/setup-node/pull/1558) - Only use `mirrorToken` in `getManifest` if it's provided by [@&#8203;deiga](https://redirect.github.com/deiga) in [#&#8203;1548](https://redirect.github.com/actions/setup-node/pull/1548) ##### Documentation updates: - Add documentation for publishing to npm with Trusted Publisher (OIDC) by [@&#8203;chiranjib-swain](https://redirect.github.com/chiranjib-swain) in [#&#8203;1536](https://redirect.github.com/actions/setup-node/pull/1536) - docs: Update restore-only cache documentation by [@&#8203;priya-kinthali](https://redirect.github.com/priya-kinthali) in [#&#8203;1550](https://redirect.github.com/actions/setup-node/pull/1550) - docs: Update caching recommendations to mitigate cache poisoning risks by [@&#8203;chiranjib-swain](https://redirect.github.com/chiranjib-swain) in [#&#8203;1567](https://redirect.github.com/actions/setup-node/pull/1567) ##### Dependency update: - Upgrade [@&#8203;actions/cache](https://redirect.github.com/actions/cache) to 5.1.0, log cache write denied by [@&#8203;jasongin](https://redirect.github.com/jasongin) in [#&#8203;1569](https://redirect.github.com/actions/setup-node/pull/1569) ##### New Contributors - [@&#8203;chiranjib-swain](https://redirect.github.com/chiranjib-swain) made their first contribution in [#&#8203;1536](https://redirect.github.com/actions/setup-node/pull/1536) - [@&#8203;deiga](https://redirect.github.com/deiga) made their first contribution in [#&#8203;1548](https://redirect.github.com/actions/setup-node/pull/1548) - [@&#8203;jasongin](https://redirect.github.com/jasongin) made their first contribution in [#&#8203;1569](https://redirect.github.com/actions/setup-node/pull/1569) **Full Changelog**: <https://github.com/actions/setup-node/compare/v6...v7.0.0> ### [`v7`](https://redirect.github.com/actions/setup-node/compare/v6.5.0...v7.0.0) [Compare Source](https://redirect.github.com/actions/setup-node/compare/v6.5.0...v7.0.0) ### [`v6.5.0`](https://redirect.github.com/actions/setup-node/releases/tag/v6.5.0) [Compare Source](https://redirect.github.com/actions/setup-node/compare/v6.4.0...v6.5.0) ##### What's Changed - Update [@&#8203;actions/cache](https://redirect.github.com/actions/cache) to 5.1.0 and add security overrides for undici and fast-xml-parser by [@&#8203;HarithaVattikuti](https://redirect.github.com/HarithaVattikuti) in [#&#8203;1579](https://redirect.github.com/actions/setup-node/pull/1579) **Full Changelog**: <https://github.com/actions/setup-node/compare/v6.4.0...v6.5.0> </details> <details> <summary>actions/setup-python (actions/setup-python)</summary> ### [`v7.0.0`](https://redirect.github.com/actions/setup-python/compare/v6.3.0...v7.0.0) [Compare Source](https://redirect.github.com/actions/setup-python/compare/v7.0.0...v7.0.0) ### [`v7`](https://redirect.github.com/actions/setup-python/compare/v6.3.0...v7.0.0) [Compare Source](https://redirect.github.com/actions/setup-python/compare/v6.3.0...v7.0.0) </details> <details> <summary>anthropics/claude-code-action (anthropics/claude-code-action)</summary> ### [`v1.0.191`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.190...v1.0.191) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.190...v1.0.191) ### [`v1.0.190`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.190) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.189...v1.0.190) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.190> ### [`v1.0.189`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.188...v1.0.189) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.188...v1.0.189) ### [`v1.0.188`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.187...v1.0.188) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.187...v1.0.188) ### [`v1.0.187`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.187) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.186...v1.0.187) #### What's Changed - Redact common credential patterns from published run output by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1595](https://redirect.github.com/anthropics/claude-code-action/pull/1595) - Scope the config snapshot to files inside the working tree by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1596](https://redirect.github.com/anthropics/claude-code-action/pull/1596) - Run checkout auth cleanup when API commit signing is enabled by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1597](https://redirect.github.com/anthropics/claude-code-action/pull/1597) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.187> ### [`v1.0.186`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.185...v1.0.186) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.185...v1.0.186) ### [`v1.0.185`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.185) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.184...v1.0.185) #### What's Changed - Derive trigger timestamps for issues and pull\_request events by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1592](https://redirect.github.com/anthropics/claude-code-action/pull/1592) - Pin bun config for MCP server processes by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1589](https://redirect.github.com/anthropics/claude-code-action/pull/1589) - Match downloaded images to their source URLs by asset identifier by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1588](https://redirect.github.com/anthropics/claude-code-action/pull/1588) - Check collaborator permissions for workflow\_run events by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1590](https://redirect.github.com/anthropics/claude-code-action/pull/1590) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.185> ### [`v1.0.184`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.184) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.183...v1.0.184) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.184> ### [`v1.0.183`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.183) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.182...v1.0.183) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.183> ### [`v1.0.182`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.182) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.181...v1.0.182) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.182> ### [`v1.0.181`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.180...v1.0.181) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.180...v1.0.181) ### [`v1.0.180`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.180) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.179...v1.0.180) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.180> ### [`v1.0.179`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.178...v1.0.179) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.178...v1.0.179) ### [`v1.0.178`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.177...v1.0.178) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.177...v1.0.178) ### [`v1.0.177`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.176...v1.0.177) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.176...v1.0.177) ### [`v1.0.176`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.175...v1.0.176) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.175...v1.0.176) ### [`v1.0.175`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.175) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.174...v1.0.175) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.175> ### [`v1.0.174`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.174) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.173...v1.0.174) #### What's Changed - fix(sanitizer): redact GitHub user-to-server (ghu\_) tokens by [@&#8203;NickNojiri](https://redirect.github.com/NickNojiri) in [#&#8203;1502](https://redirect.github.com/anthropics/claude-code-action/pull/1502) #### New Contributors - [@&#8203;NickNojiri](https://redirect.github.com/NickNojiri) made their first contribution in [#&#8203;1502](https://redirect.github.com/anthropics/claude-code-action/pull/1502) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.174> ### [`v1.0.173`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.173) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.172...v1.0.173) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.173> ### [`v1.0.172`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.172) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.171...v1.0.172) #### What's Changed - fix(sdk): fail step when result has is\_error:true despite success subtype by [@&#8203;syf2211](https://redirect.github.com/syf2211) in [#&#8203;1496](https://redirect.github.com/anthropics/claude-code-action/pull/1496) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.172> ### [`v1.0.171`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.171) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.170...v1.0.171) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.171> ### [`v1.0.170`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.170) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.169...v1.0.170) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.170> ### [`v1.0.169`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.169) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.168...v1.0.169) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.169> ### [`v1.0.168`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.168) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.167...v1.0.168) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.168> ### [`v1.0.167`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.167) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.166...v1.0.167) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.167> ### [`v1.0.166`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.166) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.165...v1.0.166) ##### What's Changed - Drop buffered inline comment when it is posted live ([#&#8203;1405](https://redirect.github.com/anthropics/claude-code-action/issues/1405)) by [@&#8203;archievi](https://redirect.github.com/archievi) in [#&#8203;1412](https://redirect.github.com/anthropics/claude-code-action/pull/1412) - Use modern noreply email for co-author trailers by [@&#8203;tarunag10](https://redirect.github.com/tarunag10) in [#&#8203;1369](https://redirect.github.com/anthropics/claude-code-action/pull/1369) - fix(restore): handle symlinked CLAUDE.md paths during config snapshot by [@&#8203;syf2211](https://redirect.github.com/syf2211) in [#&#8203;1441](https://redirect.github.com/anthropics/claude-code-action/pull/1441) - fix: preserve repeated add-dir flags in claude args by [@&#8203;Jerry2003826](https://redirect.github.com/Jerry2003826) in [#&#8203;1256](https://redirect.github.com/anthropics/claude-code-action/pull/1256) - fix: propagate curl failures in install pipeline by [@&#8203;akhilesharora](https://redirect.github.com/akhilesharora) in [#&#8203;1241](https://redirect.github.com/anthropics/claude-code-action/pull/1241) - chore: fix prettier formatting by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1463](https://redirect.github.com/anthropics/claude-code-action/pull/1463) ##### New Contributors - [@&#8203;archievi](https://redirect.github.com/archievi) made their first contribution in [#&#8203;1412](https://redirect.github.com/anthropics/claude-code-action/pull/1412) - [@&#8203;syf2211](https://redirect.github.com/syf2211) made their first contribution in [#&#8203;1441](https://redirect.github.com/anthropics/claude-code-action/pull/1441) - [@&#8203;akhilesharora](https://redirect.github.com/akhilesharora) made their first contribution in [#&#8203;1241](https://redirect.github.com/anthropics/claude-code-action/pull/1241) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.166> ### [`v1.0.165`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.165) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.164...v1.0.165) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.165> ### [`v1.0.164`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.164) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.163...v1.0.164) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.164> ### [`v1.0.163`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.163) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.162...v1.0.163) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.163> ### [`v1.0.162`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.161...v1.0.162) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.161...v1.0.162) ### [`v1.0.161`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.161) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.160...v1.0.161) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.161> ### [`v1.0.160`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.159...v1.0.160) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.159...v1.0.160) ### [`v1.0.159`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.159) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.158...v1.0.159) #### What's Changed - fix: bound app token revocation cleanup by [@&#8203;tarunag10](https://redirect.github.com/tarunag10) in [#&#8203;1437](https://redirect.github.com/anthropics/claude-code-action/pull/1437) #### New Contributors - [@&#8203;tarunag10](https://redirect.github.com/tarunag10) made their first contribution in [#&#8203;1437](https://redirect.github.com/anthropics/claude-code-action/pull/1437) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.159> ### [`v1.0.158`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.158) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.157...v1.0.158) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.158> ### [`v1.0.157`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.156...v1.0.157) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.156...v1.0.157) ### [`v1.0.156`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.155...v1.0.156) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.155...v1.0.156) ### [`v1.0.155`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.154...v1.0.155) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.154...v1.0.155) ### [`v1.0.154`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.153...v1.0.154) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.153...v1.0.154) ### [`v1.0.153`](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.152...v1.0.153) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.152...v1.0.153) ### [`v1.0.152`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.152) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.151...v1.0.152) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.152> ### [`v1.0.151`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.151) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.150...v1.0.151) #### What's Changed - fix: skip workflow validation token exchange failures by [@&#8203;Ryanoonan](https://redirect.github.com/Ryanoonan) in [#&#8203;1417](https://redirect.github.com/anthropics/claude-code-action/pull/1417) #### New Contributors - [@&#8203;Ryanoonan](https://redirect.github.com/Ryanoonan) made their first contribution in [#&#8203;1417](https://redirect.github.com/anthropics/claude-code-action/pull/1417) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.151> ### [`v1.0.150`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.150) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.149...v1.0.150) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.150> ### [`v1.0.149`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.149) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.148...v1.0.149) #### What's Changed - fix(parse-sdk-options): prevent shell-quote from collapsing unquoted Bash(X:\*) rules to bare Bash by [@&#8203;alexglynn](https://redirect.github.com/alexglynn) in [#&#8203;1350](https://redirect.github.com/anthropics/claude-code-action/pull/1350) - fix(mcp): align allowed-tools parser with SDK option parser by [@&#8203;bymle](https://redirect.github.com/bymle) in [#&#8203;1373](https://redirect.github.com/anthropics/claude-code-action/pull/1373) #### New Contributors - [@&#8203;alexglynn](https://redirect.github.com/alexglynn) made their first contribution in [#&#8203;1350](https://redirect.github.com/anthropics/claude-code-action/pull/1350) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.149> ### [`v1.0.148`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.148) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.147...v1.0.148) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.148> ### [`v1.0.147`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.147) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.146...v1.0.147) #### What's Changed - Add pr-stamp-sweep review workflow by [@&#8203;ashwin-ant](https://redirect.github.com/ashwin-ant) in [#&#8203;1409](https://redirect.github.com/anthropics/claude-code-action/pull/1409) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.147> ### [`v1.0.146`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.146) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.145...v1.0.146) #### What's Changed - test: add unit tests for parseGitHubContext and context type guards by [@&#8203;mateuscmtropical](https://redirect.github.com/mateuscmtropical) in [#&#8203;1404](https://redirect.github.com/anthropics/claude-code-action/pull/1404) - docs(faq): correct rebase FAQ to match actual behavior by [@&#8203;bymle](https://redirect.github.com/bymle) in [#&#8203;1370](https://redirect.github.com/anthropics/claude-code-action/pull/1370) - fix: fall back to inherited env for auth when inputs are empty by [@&#8203;kirsanium](https://redirect.github.com/kirsanium) in [#&#8203;1342](https://redirect.github.com/anthropics/claude-code-action/pull/1342) - fix: break SDK iterator after result message to prevent hang in pull\_request runs by [@&#8203;scobbe](https://redirect.github.com/scobbe) in [#&#8203;1339](https://redirect.github.com/anthropics/claude-code-action/pull/1339) - Pin setup-bun binary for post-steps by [@&#8203;kiwigitops](https://redirect.github.com/kiwigitops) in [#&#8203;1365](https://redirect.github.com/anthropics/claude-code-action/pull/1365) - fix: clear stale claude-prompts dir before each write by [@&#8203;kyungilpark](https://redirect.github.com/kyungilpark) in [#&#8203;1288](https://redirect.github.com/anthropics/claude-code-action/pull/1288) - Include labels in formatContext() output for issues and PRs by [@&#8203;joshpayne-joby](https://redirect.github.com/joshpayne-joby) in [#&#8203;1298](https://redirect.github.com/anthropics/claude-code-action/pull/1298) - fix(sanitizer): match attribute quotes by type to avoid mangling content by [@&#8203;bymle](https://redirect.github.com/bymle) in [#&#8203;1371](https://redirect.github.com/anthropics/claude-code-action/pull/1371) - docs: fix execution file parsing example by [@&#8203;looooown2006](https://redirect.github.com/looooown2006) in [#&#8203;1297](https://redirect.github.com/anthropics/claude-code-action/pull/1297) - fix(image-downloader): detect image type from magic bytes, not URL extension by [@&#8203;pmespresso](https://redirect.github.com/pmespresso) in [#&#8203;1396](https://redirect.github.com/anthropics/claude-code-action/pull/1396) #### New Contributors - [@&#8203;mateuscmtropical](https://redirect.github.com/mateuscmtropical) made their first contribution in [#&#8203;1404](https://redirect.github.com/anthropics/claude-code-action/pull/1404) - [@&#8203;bymle](https://redirect.github.com/bymle) made their first contribution in [#&#8203;1370](https://redirect.github.com/anthropics/claude-code-action/pull/1370) - [@&#8203;kirsanium](https://redirect.github.com/kirsanium) made their first contribution in [#&#8203;1342](https://redirect.github.com/anthropics/claude-code-action/pull/1342) - [@&#8203;scobbe](https://redirect.github.com/scobbe) made their first contribution in [#&#8203;1339](https://redirect.github.com/anthropics/claude-code-action/pull/1339) - [@&#8203;kiwigitops](https://redirect.github.com/kiwigitops) made their first contribution in [#&#8203;1365](https://redirect.github.com/anthropics/claude-code-action/pull/1365) - [@&#8203;kyungilpark](https://redirect.github.com/kyungilpark) made their first contribution in [#&#8203;1288](https://redirect.github.com/anthropics/claude-code-action/pull/1288) - [@&#8203;joshpayne-joby](https://redirect.github.com/joshpayne-joby) made their first contribution in [#&#8203;1298](https://redirect.github.com/anthropics/claude-code-action/pull/1298) - [@&#8203;looooown2006](https://redirect.github.com/looooown2006) made their first contribution in [#&#8203;1297](https://redirect.github.com/anthropics/claude-code-action/pull/1297) - [@&#8203;pmespresso](https://redirect.github.com/pmespresso) made their first contribution in [#&#8203;1396](https://redirect.github.com/anthropics/claude-code-action/pull/1396) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.146> ### [`v1.0.145`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.145) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.144...v1.0.145) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.145> ### [`v1.0.144`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.144) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.143...v1.0.144) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.144> ### [`v1.0.143`](https://redirect.github.com/anthropics/claude-code-action/releases/tag/v1.0.143) [Compare Source](https://redirect.github.com/anthropics/claude-code-action/compare/v1.0.142...v1.0.143) #### What's Changed - Drop --tsconfig-override from Bun invocations to avoid runtime crash by [@&#8203;chsmc-ant](https://redirect.github.com/chsmc-ant) in [#&#8203;1315](https://redirect.github.com/anthropics/claude-code-action/pull/1315) #### New Contributors - [@&#8203;chsmc-ant](https://redirect.github.com/chsmc-ant) made their first contribution in [#&#8203;1315](https://redirect.github.com/anthropics/claude-code-action/pull/1315) **Full Changelog**: <https://github.com/anthropics/claude-code-action/compare/v1...v1.0.143> </details> <details> <summary>astral-sh/setup-uv (astral-sh/setup-uv)</summary> ### [`v10.0.0`](https://redirect.github.com/astral-sh/setup-uv/releases/tag/v10.0.0): 🌈 Disable automatic caching for sensitive events and new QOL features [Compare Source](https://redirect.github.com/astral-sh/setup-uv/compare/v9.0.0...v10.0.0) ##### Changes Another breaking release, directly after v9.0.0 but we think the added security justifies that. ##### Extra security by default If you use the default `enable-cache: auto` this will now **DISABLE THE CACHE** to protect against cache poisoning for the following events: - `pull_request_target` - `workflow_run` - `release` You can read the full reasoning in [#&#8203;984](https://redirect.github.com/astral-sh/setup-uv/issues/984) ##### `version: latest-known` ```yaml - name: Install the latest version of uv known to setup-uv uses: astral-sh/setup-uv@v10.0.0 with: version: "latest-known" ``` This will now install the latest version with a checksum that is known by this action. The [known `uv` checksums](https://redirect.github.com/astral-sh/setup-uv/blob/4f6036f71cec78afb113b323f220c9185d983c12/src/download/checksum/known-checksums.ts) are automatically updated but will take a release of this action to take effect. You won't be always using the latest & greatest but you will have an extra level of security. ##### Read python version from `.tool-versions` ```yaml - name: Install uv based on the version defined in .tool-versions and also set python uses: astral-sh/setup-uv@v10.0.0 with: version-file: "pyproject.toml" ``` Will now also set the python version if it is defined in `.tool-versions`. You can read the details [in the docs](https://redirect.github.com/astral-sh/setup-uv/blob/main/docs/advanced-version-configuration.md#install-a-version-defined-in-a-requirements-or-config-file) ##### 🚨 Breaking changes - Disable automatic caching for sensitive events [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;992](https://redirect.github.com/astral-sh/setup-uv/issues/992)) ##### 🐛 Bug fixes - Reject paths in .tool-versions [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;1007](https://redirect.github.com/astral-sh/setup-uv/issues/1007)) ##### 🚀 Enhancements - Read Python version from .tool-versions [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;996](https://redirect.github.com/astral-sh/setup-uv/issues/996)) - Add latest-known version selector [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;993](https://redirect.github.com/astral-sh/setup-uv/issues/993)) ##### 🧰 Maintenance - Require pull requests for Dependabot rollups [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;1005](https://redirect.github.com/astral-sh/setup-uv/issues/1005)) - ci: pin Alpine container image [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;995](https://redirect.github.com/astral-sh/setup-uv/issues/995)) - chore: update known checksums for 0.12.3 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;991](https://redirect.github.com/astral-sh/setup-uv/issues/991)) - chore: update known checksums for 0.12.2 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;985](https://redirect.github.com/astral-sh/setup-uv/issues/985)) - chore: update known checksums for 0.12.1 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;982](https://redirect.github.com/astral-sh/setup-uv/issues/982)) - chore: update known checksums for 0.12.0 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;981](https://redirect.github.com/astral-sh/setup-uv/issues/981)) - chore: update known checksums for 0.11.31/0.11.32 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;972](https://redirect.github.com/astral-sh/setup-uv/issues/972)) ##### 📚 Documentation - docs: update version references to v9.0.0 @&#8203;[github-actions\[bot\]](https://redirect.github.com/apps/github-actions) ([#&#8203;971](https://redirect.github.com/astral-sh/setup-uv/issues/971)) ##### ⬆️ Dependency updates - chore(deps): roll up Dependabot updates [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;1013](https://redirect.github.com/astral-sh/setup-uv/issues/1013)) - chore(deps): roll up Dependabot updates [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;1004](https://redirect.github.com/astral-sh/setup-uv/issues/1004)) - chore(deps): roll up Dependabot updates [@&#8203;eifinger](https://redirect.github.com/eifinger) ([#&#8203;994](https://redirect.github.com/astral-sh/setup-uv/issues/994)) - chore(deps): bump zizmorcore/zizmor-action from 0.5.7 to 0.6.0 @&#8203;[dependabot\[bot\]](https://redirect.github.com/apps/dependabot) ([#&#8203;976](https://redirect.github.com/astral-sh/setup-uv/issues/976)) - chore(deps): bump actions/checkout from 7.0.0 to 7.0.1 @&#8203;[dependabot\[bot\]](https://redirect.github.com/apps/dependabot) ([#&#8203;980](https://redirect.github.com/astral-sh/setup-uv/issues/980)) ### [`v9.0.0`](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.2...v9.0.0) [Compare Source](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.2...v9.0.0) ### [`v8.3.2`](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.1...v8.3.2) [Compare Source](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.1...v8.3.2) ### [`v8.3.1`](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.0...v8.3.1) [Compare Source](https://redirect.github.com/astral-sh/setup-uv/compare/v8.3.0...v8.3.1) ### [`v8.3.0`](https://redirect.github.com/astral-sh/setup-uv/compare/v8.2.0...v8.3.0) [Compare Source](https://redirect.github.com/astral-sh/setup-uv/compare/v8.2.0...v8.3.0) </details> <details> <summary>getsentry/craft (getsentry/craft)</summary> ### [`v2.30.1`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2301) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.30.0...2.30.1) ##### Bug Fixes 🐛 - (vercel) Pass prebuilt output directory by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;868](https://redirect.github.com/getsentry/craft/pull/868) ### [`v2.30.0`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2300) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.29.0...2.30.0) ##### New Features ✨ - (vercel) Allow project ID in target config by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;867](https://redirect.github.com/getsentry/craft/pull/867) ### [`v2.29.0`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2290) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.28.0...2.29.0) ##### New Features ✨ - (targets) Add vercel deploy target by [@&#8203;jared-outpost](https://redirect.github.com/jared-outpost) in [#&#8203;865](https://redirect.github.com/getsentry/craft/pull/865) ##### Bug Fixes 🐛 - (deps) Bump vulnerable packages and add overrides by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;866](https://redirect.github.com/getsentry/craft/pull/866) ##### Documentation 📚 - Document Cloudflare token permissions by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;863](https://redirect.github.com/getsentry/craft/pull/863) ### [`v2.28.0`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2280) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.27.2...2.28.0) ##### New Features ✨ - (aws-lambda-layer) Add CompatibleArchitectures and per-region failure improvements by [@&#8203;pabloDeputter](https://redirect.github.com/pabloDeputter) in [#&#8203;861](https://redirect.github.com/getsentry/craft/pull/861) ### [`v2.27.2`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2272) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.27.1...2.27.2) ##### Bug Fixes 🐛 - (commit-on-git) Use proper username and pass for by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;862](https://redirect.github.com/getsentry/craft/pull/862) ### [`v2.27.1`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2271) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.27.0...2.27.1) ##### Bug Fixes 🐛 - (crates) Recognize more already-published error messages by [@&#8203;szokeasaurusrex](https://redirect.github.com/szokeasaurusrex) in [#&#8203;859](https://redirect.github.com/getsentry/craft/pull/859) ### [`v2.27.0`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#2270) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.14...2.27.0) ##### New Features ✨ - (targets) Add cloudflare deploy target by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;843](https://redirect.github.com/getsentry/craft/pull/843) - Prefix-aware read paths for monorepo multi-product releases by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;847](https://redirect.github.com/getsentry/craft/pull/847) ##### Bug Fixes 🐛 - (cloudflare) Default to worker, optional account id, infer prod branch by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;846](https://redirect.github.com/getsentry/craft/pull/846) - (crates) Ignore dev dependencies when ordering packages by [@&#8203;szokeasaurusrex](https://redirect.github.com/szokeasaurusrex) in [#&#8203;858](https://redirect.github.com/getsentry/craft/pull/858) - Bump postcss to ^8.5.18 (high-severity Dependabot alert) by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;855](https://redirect.github.com/getsentry/craft/pull/855) - Resolve 9 Dependabot security alerts by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;854](https://redirect.github.com/getsentry/craft/pull/854) ##### Documentation 📚 - Adopt the Sentry Starlight theme by [@&#8203;sentry-junior](https://redirect.github.com/sentry-junior) in [#&#8203;849](https://redirect.github.com/getsentry/craft/pull/849) ##### Internal Changes 🔧 ##### Deps Dev - Bump tar from 7.5.16 to 7.5.19 by [@&#8203;dependabot](https://redirect.github.com/dependabot) in [#&#8203;852](https://redirect.github.com/getsentry/craft/pull/852) - Bump js-yaml from 4.2.0 to 4.3.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot) in [#&#8203;853](https://redirect.github.com/getsentry/craft/pull/853) - Bump shell-quote from 1.8.4 to 1.9.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot) in [#&#8203;851](https://redirect.github.com/getsentry/craft/pull/851) ##### Other - (deps) Bump sharp from 0.33.5 to 0.35.0 in /docs by [@&#8203;dependabot](https://redirect.github.com/dependabot) in [#&#8203;850](https://redirect.github.com/getsentry/craft/pull/850) ### [`v2.26.14`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#22614) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.13...2.26.14) ##### Bug Fixes 🐛 ##### Deps - Bump js-yaml to >=4.2.0 to resolve GHSA-h67p-54hq-rp68 by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;841](https://redirect.github.com/getsentry/craft/pull/841) - Bump [@&#8203;babel/core](https://redirect.github.com/babel/core) to ^7.29.6 to resolve GHSA-4x5r-pxfx-6jf8 by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;839](https://redirect.github.com/getsentry/craft/pull/839) ### [`v2.26.13`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#22613) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.12...2.26.13) ##### Internal Changes 🔧 - Upgrade to Node 24.18.0 (LTS Krypton) by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;838](https://redirect.github.com/getsentry/craft/pull/838) ### [`v2.26.12`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#22612) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.11...2.26.12) ##### Bug Fixes 🐛 - Pin Node to 22.23.1 to avoid node-fetch premature-close regression by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;837](https://redirect.github.com/getsentry/craft/pull/837) ### [`v2.26.11`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#22611) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.10...2.26.11) ##### Bug Fixes 🐛 - Resolve 10 Dependabot security alerts by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;836](https://redirect.github.com/getsentry/craft/pull/836) ##### Internal Changes 🔧 - (deps-dev) Bump esbuild from 0.25.12 to 0.28.1 by [@&#8203;dependabot](https://redirect.github.com/dependabot) in [#&#8203;834](https://redirect.github.com/getsentry/craft/pull/834) ### [`v2.26.10`](https://redirect.github.com/getsentry/craft/blob/HEAD/CHANGELOG.md#22610) [Compare Source](https://redirect.github.com/getsentry/craft/compare/2.26.9...2.26.10) ##### Bug Fixes 🐛 - Bump shell-quote 1.7.3 → ^1.8.4 (GHSA-w7jw-789q-3m8p) by [@&#8203;BYK](https://redirect.github.com/BYK) in [#&#8203;833](https://redirect.github.com/getsentry/craft/pull/833) </details> <details> <summary>actions/node-versions (node)</summary> ### [`v24.19.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.19.0-30872449280): 24.19.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.18.1-30508414346...24.19.0-30872449280) Node.js 24.19.0 ### [`v24.18.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.18.1-30508414346): 24.18.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.18.0-28070977815...24.18.1-30508414346) Node.js 24.18.1 ### [`v24.18.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.18.0-28070977815): 24.18.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.17.0-27765711116...24.18.0-28070977815) Node.js 24.18.0 ### [`v24.17.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.17.0-27765711116): 24.17.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.16.0-26265092718...24.17.0-27765711116) Node.js 24.17.0 ### [`v24.16.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.16.0-26265092718): 24.16.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.15.0-24511264946...24.16.0-26265092718) Node.js 24.16.0 ### [`v24.15.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.15.0-24511264946): 24.15.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.14.1-23521883727...24.15.0-24511264946) Node.js 24.15.0 ### [`v24.14.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.14.1-23521883727): 24.14.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.14.0-22380502845...24.14.1-23521883727) Node.js 24.14.1 ### [`v24.14.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.14.0-22380502845): 24.14.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.13.1-21889660756...24.14.0-22380502845) Node.js 24.14.0 ### [`v24.13.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.13.1-21889660756): 24.13.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.13.0-20981653924...24.13.1-21889660756) Node.js 24.13.1 ### [`v24.13.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.13.0-20981653924): 24.13.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.12.0-20140960970...24.13.0-20981653924) Node.js 24.13.0 ### [`v24.12.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.12.0-20140960970): 24.12.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.11.1-19282993875...24.12.0-20140960970) Node.js 24.12.0 ### [`v24.11.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.11.1-19282993875): 24.11.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.11.0-18894910158...24.11.1-19282993875) Node.js 24.11.1 ### [`v24.11.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.11.0-18894910158): 24.11.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.10.0-18453495281...24.11.0-18894910158) Node.js 24.11.0 ### [`v24.10.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.10.0-18453495281): 24.10.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.9.0-18024003193...24.10.0-18453495281) Node.js 24.10.0 ### [`v24.9.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.9.0-18024003193): 24.9.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.8.0-17630522236...24.9.0-18024003193) Node.js 24.9.0 ### [`v24.8.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.8.0-17630522236): 24.8.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.7.0-17283839804...24.8.0-17630522236) Node.js 24.8.0 ### [`v24.7.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.7.0-17283839804): 24.7.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.6.0-16980723897...24.7.0-17283839804) Node.js 24.7.0 ### [`v24.6.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.6.0-16980723897): 24.6.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.5.0-16666195981...24.6.0-16980723897) Node.js 24.6.0 ### [`v24.5.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.5.0-16666195981): 24.5.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.4.1-16309768053...24.5.0-16666195981) Node.js 24.5.0 ### [`v24.4.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.4.1-16309768053): 24.4.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.4.0-16210503505...24.4.1-16309768053) Node.js 24.4.1 ### [`v24.4.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.4.0-16210503505): 24.4.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.3.0-15866716565...24.4.0-16210503505) Node.js 24.4.0 ### [`v24.3.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.3.0-15866716565): 24.3.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.2.0-15549907769...24.3.0-15866716565) Node.js 24.3.0 ### [`v24.2.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.2.0-15549907769): 24.2.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.1.0-15177436545...24.2.0-15549907769) Node.js 24.2.0 ### [`v24.1.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.1.0-15177436545): 24.1.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.0.2-15035852679...24.1.0-15177436545) Node.js 24.1.0 ### [`v24.0.2`](https://redirect.github.com/actions/node-versions/releases/tag/24.0.2-15035852679): 24.0.2 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.0.1-14928016774...24.0.2-15035852679) Node.js 24.0.2 ### [`v24.0.1`](https://redirect.github.com/actions/node-versions/releases/tag/24.0.1-14928016774): 24.0.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/24.0.0-14863421234...24.0.1-14928016774) Node.js 24.0.1 ### [`v24.0.0`](https://redirect.github.com/actions/node-versions/releases/tag/24.0.0-14863421234): 24.0.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/22.23.2-30508424155...24.0.0-14863421234) Node.js 24.0.0 ### [`v22.23.2`](https://redirect.github.com/actions/node-versions/releases/tag/22.23.2-30508424155): 22.23.2 [Compare Source](https://redirect.github.com/actions/node-versions/compare/22.23.1-28070984979...22.23.2-30508424155) Node.js 22.23.2 ### [`v22.23.1`](https://redirect.github.com/actions/node-versions/releases/tag/22.23.1-28070984979): 22.23.1 [Compare Source](https://redirect.github.com/actions/node-versions/compare/22.23.0-27765725320...22.23.1-28070984979) Node.js 22.23.1 ### [`v22.23.0`](https://redirect.github.com/actions/node-versions/releases/tag/22.23.0-27765725320): 22.23.0 [Compare Source](https://redirect.github.com/actions/node-versions/compare/22.22.3-25838401827...22.23.0-27765725320) Node.js 22.23.0 ### [`v22.22.3`](https://redirect.github.com/actions/node-versions/releases/tag/22.22.3-25838401827): 22.22.3 [Compare Source](https://redirect.github.com/actions/node-versions/compare/22.22.2-23521889093...22.22.3-25838401827) Node.js 22.22.3 ### [`v22.22.2`](https://redirect.github.com/actions/node-versions/releases/tag/22.22.2-23521889093): 22.22.2 [Compare Source](https://redirect.gi > ✂ **Note** > > PR body was truncated to here. </details> --- ### Configuration 📅 **Schedule**: (UTC) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://redirect.github.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/getsentry/sentry-python). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My4yNDIuMiIsInVwZGF0ZWRJblZlciI6IjQ0LjI0LjAiLCJ0YXJnZXRCcmFuY2giOiJtYXN0ZXIiLCJsYWJlbHMiOltdfQ==--> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 parent 4ada8f1 commit 916c027

25 files changed

Lines changed: 60 additions & 60 deletions

‎.github/workflows/ai-integration-test.yml‎

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -19,17 +19,17 @@ jobs:
1919

2020
steps:
2121
- name: Setup Python
22-
uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6
22+
uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7
2323
with:
2424
python-version: 3.14t
2525

2626
- name: Setup Node.js
27-
uses: actions/setup-node@48b55a011bda9f5d6aeb4c2d9c7362e8dae4041e # v6.4.0
27+
uses: actions/setup-node@820762786026740c76f36085b0efc47a31fe5020 # v7.0.0
2828
with:
29-
node-version: '20'
29+
node-version: '24'
3030

3131
- name: Checkout repo
32-
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
32+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
3333
with:
3434
token: ${{ secrets.GITHUB_TOKEN }}
3535

‎.github/workflows/changelog-preview.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,6 +15,6 @@ permissions:
1515

1616
jobs:
1717
changelog-preview:
18-
uses: getsentry/craft/.github/workflows/changelog-preview.yml@6143e76379c342e247687c4ab5c83d8b900cc273 # v2
18+
uses: getsentry/craft/.github/workflows/changelog-preview.yml@cd1e8294061fd970b40d98b77aaa109cb1e00e78 # v2
1919
secrets:
2020
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}

‎.github/workflows/ci.yml‎

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,9 @@ jobs:
2222
timeout-minutes: 10
2323

2424
steps:
25-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
25+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
2626
- name: Install uv
27-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
27+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
2828
with:
2929
python-version: 3.14
3030

@@ -46,9 +46,9 @@ jobs:
4646
timeout-minutes: 10
4747

4848
steps:
49-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
49+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
5050
- name: Install uv
51-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
51+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
5252
with:
5353
python-version: 3.14
5454
- name: Build Packages
@@ -71,9 +71,9 @@ jobs:
7171
timeout-minutes: 10
7272

7373
steps:
74-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
74+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
7575
- name: Install uv
76-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
76+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
7777
with:
7878
python-version: 3.14
7979

‎.github/workflows/enforce-license-compliance.yml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,6 +18,6 @@ jobs:
1818
runs-on: ubuntu-latest
1919
steps:
2020
- name: 'Enforce License Compliance'
21-
uses: getsentry/action-enforce-license-compliance@48236a773346cb6552a7bda1ee370d2797365d87 # main
21+
uses: getsentry/action-enforce-license-compliance@d0aa91b82375e45135e96c02f17ce3b8002867cd # main
2222
with:
2323
fossa_api_key: ${{ secrets.FOSSA_API_KEY }}

‎.github/workflows/flaky-test-detector.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ jobs:
5151
environment: AI Integrations Tests
5252

5353
steps:
54-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
54+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
5555

5656
# --- Step A: deterministic collection of UNTRUSTED CI logs -----------
5757
# Runs with the read-only GITHUB_TOKEN. No LLM here. Writes failure logs
@@ -108,7 +108,7 @@ jobs:
108108
# and the repo, and writes the issue body to flaky-issue-body.md.
109109
- name: Analyze logs and summarize flaky tests
110110
if: steps.collect.outputs.collected != '0'
111-
uses: anthropics/claude-code-action@11ba60486e4aec9ddfeafcf4bb3f00b028ac2c16 # v1.0.142
111+
uses: anthropics/claude-code-action@239e3a730883eeb5c53db12b0fc9573b3024b126 # v1.0.191
112112
with:
113113
anthropic_api_key: ${{ secrets.ANTHROPIC_API_KEY }}
114114
github_token: ${{ github.token }}

‎.github/workflows/release.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -26,12 +26,12 @@ jobs:
2626
with:
2727
app-id: ${{ vars.SENTRY_RELEASE_BOT_CLIENT_ID }}
2828
private-key: ${{ secrets.SENTRY_RELEASE_BOT_PRIVATE_KEY }}
29-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
29+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
3030
with:
3131
token: ${{ steps.token.outputs.token }}
3232
fetch-depth: 0
3333
- name: Prepare release
34-
uses: getsentry/craft@6143e76379c342e247687c4ab5c83d8b900cc273 # v2.26.9
34+
uses: getsentry/craft@cd1e8294061fd970b40d98b77aaa109cb1e00e78 # 2.30.1
3535
env:
3636
GITHUB_TOKEN: ${{ steps.token.outputs.token }}
3737
with:

‎.github/workflows/test-integrations-agents.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -24,9 +24,9 @@ jobs:
2424
TOX_UV_PYTHON_PREFERENCE: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && 'only-system' || 'managed' }}
2525
container: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && format('python:{0}', matrix.python-version) || null }}
2626
steps:
27-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
27+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
2828
- name: Install uv
29-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
29+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
3030
with:
3131
enable-cache: false
3232
- name: Mark workspace safe for git (3.6/3.7 container)

‎.github/workflows/test-integrations-ai-workflow.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -24,9 +24,9 @@ jobs:
2424
TOX_UV_PYTHON_PREFERENCE: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && 'only-system' || 'managed' }}
2525
container: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && format('python:{0}', matrix.python-version) || null }}
2626
steps:
27-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
27+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
2828
- name: Install uv
29-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
29+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
3030
with:
3131
enable-cache: false
3232
- name: Mark workspace safe for git (3.6/3.7 container)

‎.github/workflows/test-integrations-ai.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -24,9 +24,9 @@ jobs:
2424
TOX_UV_PYTHON_PREFERENCE: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && 'only-system' || 'managed' }}
2525
container: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && format('python:{0}', matrix.python-version) || null }}
2626
steps:
27-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
27+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
2828
- name: Install uv
29-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
29+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
3030
with:
3131
enable-cache: false
3232
- name: Mark workspace safe for git (3.6/3.7 container)

‎.github/workflows/test-integrations-cloud.yml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -28,9 +28,9 @@ jobs:
2828
TOX_UV_PYTHON_PREFERENCE: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && 'only-system' || 'managed' }}
2929
container: ${{ (matrix.python-version == '3.6' || matrix.python-version == '3.7') && format('python:{0}', matrix.python-version) || null }}
3030
steps:
31-
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
31+
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
3232
- name: Install uv
33-
uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0
33+
uses: astral-sh/setup-uv@ae62891fec2bb8e7d6c99fc78c9fec3a63790f8d # v10.0.0
3434
with:
3535
enable-cache: false
3636
- name: Mark workspace safe for git (3.6/3.7 container)

0 commit comments

Comments
 (0)