Skip to content

chore(deps): update ferrlabs/.github digest to 5ff5438 - #254

Open
ferrlabs-renovate[bot] wants to merge 1 commit into
mainfrom
renovate/ferrlabs-actions
Open

ferrlabs-renovate[bot] wants to merge 1 commit into
mainfrom
renovate/ferrlabs-actions

Conversation

@ferrlabs-renovate

@ferrlabs-renovate ferrlabs-renovate Bot commented Sep 6, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
FerrLabs/.github (changelog) workflow digest 2ea76625ff5438

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

@ferrlabs-renovate
ferrlabs-renovate Bot enabled auto-merge (squash) September 6, 2026 15:02
Comment thread .github/workflows/ci.yml Fixed
Comment thread .github/workflows/renovate-rebase.yml Fixed
Comment thread .github/workflows/security-scan.yml Fixed
@github-actions

github-actions Bot commented Sep 6, 2026

Copy link
Copy Markdown

SonarQube — aucune nouvelle issue

Comparaison entre le projet bac à sable de cette PR et la branche par défaut : SonarQube Community n'analyse pas les PR, ce delta est calculé côté CI. Détail

@ferrfleet ferrfleet Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Uneventful: digest-only bump of FerrLabs/.github reusable workflows (2ea7662 → 15286b3), same job/input shape across all five callers. All 19 checks green.

@ferrlabs-renovate ferrlabs-renovate Bot changed the title chore(deps): update ferrlabs/.github digest to 15286b3 chore(deps): update ferrlabs/.github digest to fba6f4b Sep 7, 2026
@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch from 46c9e4e to 2b2f9ef Compare September 7, 2026 07:30
Comment thread .github/workflows/ci.yml Fixed
Comment thread .github/workflows/renovate-rebase.yml Fixed
Comment thread .github/workflows/security-scan.yml Fixed

@ferrfleet ferrfleet Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Follow-up: PR was rebased to a newer digest since my last approval (2ea7662 → 15286b3), now 2ea7662 → fba6f4b. Re-checked what's new in that range for FerrLabs/.github:

  • #327 (docker RUN descriptor limit) — already covered by the prior approval.
  • #330 (github actions bump) — only touches reusable-ci-rust.yml, reusable-release-rust.yml, reusable-ferrflow-release.yml (dtolnay/rust-toolchain digest bump, gated behind hashFiles('**/Cargo.toml') != ''), renovate.yml, workflow-templates/ci-rust.yml. This repo is Go-only, no Cargo.toml, so that step never runs here.
  • #334 (concurrency group disambiguation) — touches reusable-ci-node.yml and reusable-sonarqube-scan.yml. This repo's reusable-ci-go.yml call pins its internal sonar call to a separate fixed digest (2883414f...), unrelated to this bump, so no effect.

Nothing in the new range touches reusable-ci-go.yml, reusable-pr-title.yml, reusable-renovate-dispatch.yml, or reusable-security-scan.yml beyond the pin itself. All 19 checks green. Still uneventful.

@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch from 2b2f9ef to 8cb41b2 Compare September 7, 2026 08:05
@ferrlabs-renovate ferrlabs-renovate Bot changed the title chore(deps): update ferrlabs/.github digest to fba6f4b chore(deps): update ferrlabs/.github digest to 539e9ac Sep 7, 2026
Comment thread .github/workflows/ci.yml Fixed
Comment thread .github/workflows/renovate-rebase.yml Fixed
Comment thread .github/workflows/security-scan.yml Fixed
@ferrlabs-renovate ferrlabs-renovate Bot changed the title chore(deps): update ferrlabs/.github digest to 539e9ac chore(deps): update ferrlabs/.github digest to 84f4447 Sep 7, 2026
@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch from 8cb41b2 to 4bc079b Compare September 7, 2026 12:17
Comment thread .github/workflows/ci.yml Fixed
Comment thread .github/workflows/renovate-rebase.yml Fixed
Comment thread .github/workflows/security-scan.yml Fixed

@ferrfleet ferrfleet Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Follow-up: digest moved again since my last approval (fba6f4b → 84f4447). Two new commits in range:

  • #331 bumps the pinned FerrLabs/FerrFlow action inside reusable-ferrflow-release.yml to v7.20.1. This repo's release.yml only passes dry-run and has no Cargo.toml, so it exercises the same job path as before, just a newer action pin.
  • #335 (pnpm-version follows packageManager) only touches reusable-ci-astro.yml and reusable-ci-node.yml, neither used here.

Nothing in the new range touches the five workflows this repo calls beyond the pin bump itself. All 19 checks green. Still uneventful.

@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch 3 times, most recently from 6f9fa7f to af9fccf Compare September 14, 2026 12:32
@ferrlabs-renovate ferrlabs-renovate Bot changed the title chore(deps): update ferrlabs/.github digest to 84f4447 chore(deps): update ferrlabs/.github digest to c2ba2d8 Sep 14, 2026
Comment thread .github/workflows/ci.yml Fixed
Comment thread .github/workflows/renovate-rebase.yml Fixed
Comment thread .github/workflows/security-scan.yml Fixed
@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch 3 times, most recently from ea08575 to cff9126 Compare September 16, 2026 21:15
@ferrlabs-renovate ferrlabs-renovate Bot changed the title chore(deps): update ferrlabs/.github digest to c2ba2d8 chore(deps): update ferrlabs/.github digest to 5ff5438 Sep 16, 2026
Comment thread .github/workflows/ci.yml
pull-requests: write
name: CI
uses: FerrLabs/.github/.github/workflows/reusable-ci-go.yml@2ea766256b2f8a92114638a0eb8f54967e9bca25 # main
uses: FerrLabs/.github/.github/workflows/reusable-ci-go.yml@5ff54383dc6676f79163dab1dc4cb7c29f7cd8de # main
Comment thread .github/workflows/renovate-rebase.yml Fixed
scan:
name: Secrets + CVE
uses: FerrLabs/.github/.github/workflows/reusable-security-scan.yml@2ea766256b2f8a92114638a0eb8f54967e9bca25 # main
uses: FerrLabs/.github/.github/workflows/reusable-security-scan.yml@5ff54383dc6676f79163dab1dc4cb7c29f7cd8de # main

@ferrfleet ferrfleet Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Follow-up: digest moved again since my last approval (84f4447 → 5ff5438). Four new commits in FerrLabs/.github in that range:

  • #338 sccache fix — touches setup-sccache/action.yml and reusable-ci-rust.yml only. This repo is Go-only, doesn't call the rust reusable, no effect.
  • #337 FerrFlow action bump (v7.20.1 → v7.21.1) inside reusable-ferrflow-release.yml — pin-only change, same shape as previous approvals. release.yml here only passes dry-run, same job path.
  • #336 github actions bump — the only line touching a workflow this repo calls is a codeql-action/upload-sarif pin bump in reusable-security-scan.yml (5 occurrences, all pin-only). The rest of that commit (renovate.yml, reusable-docker-build.yml, scorecard.yml) isn't used here.
  • #332 pnpm v12 — touches ci-astro.yml/ci-node.yml templates only, not used here.

No input/output/behavior change to any of the five workflows this repo calls. Checks: mostly green; CI/Build, SonarQube analysis and kind smoke test were still in progress at review time with no failures reported. Still uneventful.

@ferrlabs-renovate
ferrlabs-renovate Bot force-pushed the renovate/ferrlabs-actions branch from cff9126 to 5c021a0 Compare September 17, 2026 11:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant