Skip to content

chore(deps): bump the all group with 2 updates - #1972

Open
dependabot[bot] wants to merge 1 commit into
release-v0.29.xfrom
dependabot/github_actions/release-v0.29.x/all-106d6fac16
Open

dependabot[bot] wants to merge 1 commit into
release-v0.29.xfrom
dependabot/github_actions/release-v0.29.x/all-106d6fac16

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 16, 2026

Copy link
Copy Markdown
Contributor

Bumps the all group with 2 updates: chainguard-dev/actions/kind-diag and zizmorcore/zizmor-action.

Updates chainguard-dev/actions/kind-diag from 1.6.34 to 1.6.35

Release notes

Sourced from chainguard-dev/actions/kind-diag's releases.

v1.6.35

What's Changed

Full Changelog: chainguard-dev/actions@v1.6.34...v1.6.35

Commits
  • 142d22e build(deps): bump the actions group across 8 directories with 8 updates (#1031)
  • 15451dd build(deps): bump step-security/harden-runner from 2.20.1 to 2.21.1 (#1032)
  • 0b85f3b build(deps): bump the actions group across 8 directories with 10 updates (#1029)
  • a2ef676 Update Go version from 1.26 to 1.27 (#1030)
  • 327340d Omit empty sbom-format from Verify invocation (#1028)
  • See full diff in compare view

Updates zizmorcore/zizmor-action from 0.6.3 to 0.6.4

Release notes

Sourced from zizmorcore/zizmor-action's releases.

v0.6.4

Sponsorship is appreciated!

zizmor 1.30.1 is now the default version.

Release notes: zizmorcore/zizmor-action#1301

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

@dependabot dependabot Bot added dependencies Used by dependabot - identifies all PRs created by dependabot kind/misc Categorizes issue or PR as a miscellaneuous one. ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesnt merit a release note. labels Sep 16, 2026
@tekton-robot

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
To complete the pull request process, please assign infernus01 after the PR has been reviewed.
You can assign the PR to them by writing /assign @infernus01 in a comment when ready.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@tekton-robot tekton-robot added the size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. label Sep 16, 2026
Bumps the all group with 2 updates: [chainguard-dev/actions/kind-diag](https://github.com/chainguard-dev/actions) and [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action).


Updates `chainguard-dev/actions/kind-diag` from 1.6.34 to 1.6.35
- [Release notes](https://github.com/chainguard-dev/actions/releases)
- [Commits](chainguard-dev/actions@a9d4aa7...142d22e)

Updates `zizmorcore/zizmor-action` from 0.6.3 to 0.6.4
- [Release notes](https://github.com/zizmorcore/zizmor-action/releases)
- [Commits](zizmorcore/zizmor-action@70fb788...cc914d7)

---
updated-dependencies:
- dependency-name: chainguard-dev/actions/kind-diag
  dependency-version: 1.6.35
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all
- dependency-name: zizmorcore/zizmor-action
  dependency-version: 0.6.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all
...

Signed-off-by: dependabot[bot] <support@github.com>
@anithapriyanatarajan
anithapriyanatarajan force-pushed the dependabot/github_actions/release-v0.29.x/all-106d6fac16 branch from ff5a63d to 186c3c6 Compare September 17, 2026 01:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Used by dependabot - identifies all PRs created by dependabot kind/misc Categorizes issue or PR as a miscellaneuous one. ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesnt merit a release note. size/XS Denotes a PR that changes 0-9 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant