Commit Graph

176 Commits

Author SHA1 Message Date
Kevin Dangoor 2be53d9e6d Update from upstream 'main' into main-sync 2025-05-22 16:23:52 -04:00
Kevin Dangoor b275d12641 Merge pull request #114 from advanced-security/contrib-5.0
Bump the tag mentioned in the contrib doc to v5
2025-05-21 14:53:43 -04:00
Kevin Dangoor bdc082b320 Bump the tag mentioned in the contrib doc to v5 2025-05-21 14:04:55 -04:00
Kevin Dangoor 2c65a53e24 Merge pull request #110 from advanced-security/juxtin/file-centric-manifests
Stop aggregating manifests in multi-module projects
2025-05-21 13:56:28 -04:00
Kevin Dangoor aa342c187f Merge branch 'main' into juxtin/file-centric-manifests 2025-05-21 12:37:29 -04:00
Kevin Dangoor f86e5bfc17 README updates for v5.0.0 2025-05-21 12:35:36 -04:00
Kevin Dangoor fe8d4d650a Merge pull request #113 from advanced-security/dangoor/413
Bump version number to 4.1.3
2025-05-19 17:51:44 -04:00
Kevin Dangoor 05a8a347d6 Bump version number to 4.1.3 2025-05-19 17:09:37 -04:00
Kevin Dangoor 5d790318e6 Merge pull request #112 from advanced-security/workflow-permissions
Set workflow permissions
2025-05-19 13:05:25 -04:00
Kevin Dangoor 66812695c4 Set workflow permissions 2025-05-16 17:30:56 -04:00
Kevin Dangoor 4b6fc92adc Merge pull request #111 from advanced-security/dependabot/npm_and_yarn/npm_and_yarn-06dd3a6abc
Bump the npm_and_yarn group across 1 directory with 4 updates
2025-05-16 17:23:24 -04:00
dependabot[bot] a82c97775c Bump the npm_and_yarn group across 1 directory with 4 updates
Bumps the npm_and_yarn group with 2 updates in the / directory: [vitest](https://github.com/vitest-dev/vitest/tree/HEAD/packages/vitest) and [undici](https://github.com/nodejs/undici).


Updates `vitest` from 1.6.1 to 3.1.3
- [Release notes](https://github.com/vitest-dev/vitest/releases)
- [Commits](https://github.com/vitest-dev/vitest/commits/v3.1.3/packages/vitest)

Updates `esbuild` from 0.21.5 to 0.25.4
- [Release notes](https://github.com/evanw/esbuild/releases)
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG-2024.md)
- [Commits](https://github.com/evanw/esbuild/compare/v0.21.5...v0.25.4)

Updates `undici` from 5.28.4 to 5.29.0
- [Release notes](https://github.com/nodejs/undici/releases)
- [Commits](https://github.com/nodejs/undici/compare/v5.28.4...v5.29.0)

Updates `vite` from 5.4.16 to 6.3.5
- [Release notes](https://github.com/vitejs/vite/releases)
- [Changelog](https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md)
- [Commits](https://github.com/vitejs/vite/commits/v6.3.5/packages/vite)

---
updated-dependencies:
- dependency-name: vitest
  dependency-version: 3.1.3
  dependency-type: direct:development
  dependency-group: npm_and_yarn
- dependency-name: esbuild
  dependency-version: 0.25.4
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: undici
  dependency-version: 5.29.0
  dependency-type: indirect
  dependency-group: npm_and_yarn
- dependency-name: vite
  dependency-version: 6.3.5
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-05-16 21:21:46 +00:00
Kevin Dangoor fd44dd789a Merge pull request #101 from advanced-security/dependabot/npm_and_yarn/octokit/request-8.4.1
Bump @octokit/request from 8.4.0 to 8.4.1
2025-05-16 17:20:05 -04:00
Kevin Dangoor b08977e686 Merge pull request #100 from advanced-security/dependabot/npm_and_yarn/octokit/request-error-5.1.1
Bump @octokit/request-error from 5.1.0 to 5.1.1
2025-05-16 17:19:33 -04:00
Kevin Dangoor 0fdf861094 Merge pull request #98 from advanced-security/dependabot/npm_and_yarn/octokit/endpoint-9.0.6
Bump @octokit/endpoint from 9.0.5 to 9.0.6
2025-05-16 17:19:11 -04:00
Kevin Dangoor dc41d4a792 Merge pull request #97 from advanced-security/dependabot/npm_and_yarn/tar-fs-2.1.2
Bump tar-fs from 2.1.1 to 2.1.2
2025-05-16 17:18:45 -04:00
Kevin Dangoor 1f5918021f Merge pull request #95 from advanced-security/dependabot/npm_and_yarn/octokit/plugin-paginate-rest-9.2.2
Bump @octokit/plugin-paginate-rest from 9.2.1 to 9.2.2
2025-05-16 17:18:20 -04:00
Justin Holguín 69b8872e09 Update wording in error message
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
2025-05-15 09:09:03 -07:00
Justin Holguín e11bd00d83 Remove debug line
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
2025-05-15 09:08:06 -07:00
Justin Holguín b737283803 Update version to 5.0.0 since this has breaking changes 2025-05-14 22:58:01 +00:00
Justin Holguín 3059e7f9fa Minor tweaks 2025-05-14 22:53:15 +00:00
Justin Holguín 06796b833d Do not aggregate manifest files in multi-module projects
Also remove snapshot-dependency-file-name and snapshot-dependency-file-name options, since they no longer make sense
2025-05-14 22:46:16 +00:00
Indigo 0ac7fe97bd Merge pull request #11 from actions/weekly-sync-branch
Merge branch 'main' into weekly-sync-branch
2025-05-14 06:51:58 -07:00
Indigo f79a6b5f42 Merge branch 'main' into weekly-sync-branch 2025-05-13 18:52:21 +00:00
Indigo 4fa0fa1ad1 Merge pull request #10 from actions/indigok-patch-1
Create CODEOWNERS
2025-05-12 12:30:45 -07:00
Indigo 7bd449e03d Create CODEOWNERS 2025-05-12 11:54:02 -07:00
Indigo 137cf9a223 Merge pull request #8 from actions/indigok-patch-1
Add PR permissions to Sync workflow
2025-05-12 10:58:11 -07:00
Indigo de71a529fc Add PR permissions 2025-05-12 08:12:15 -07:00
Indigo 477eb3e4cc Merge pull request #7 from actions/indigok-patch-1
Switch sync action to a PR flow
2025-05-12 08:08:53 -07:00
Indigo e7f955d71a Switch to a PR flow 2025-05-09 14:05:25 -07:00
Indigo 0da6b94cc8 Merge pull request #6 from actions/indigok-patch-1
Create action to sync upstream
2025-05-09 11:35:41 -07:00
Indigo cbd81244d8 Keep file ext consistent 2025-05-09 08:34:45 -07:00
Indigo ab28f47bd2 Update sync-fork.yaml 2025-05-09 08:29:40 -07:00
Indigo 99b170e015 Create action to sync upstream 2025-05-09 07:52:18 -07:00
Justin Holguín 4bf8a28b00 Merge pull request #108 from advanced-security/juxtin/release-docs
Update release docs to include release artifacts
2025-04-07 09:32:51 -07:00
Justin Holguín e457a508a1 Update release docs to include release artifacts 2025-04-07 16:25:07 +00:00
Justin Holguín aeab9f8852 Merge pull request #106 from advanced-security/juxtin/prep-412
Update version to 4.1.2 and update release instructions
2025-04-04 13:01:39 -07:00
Justin Holguín bc43a53a41 Update step numbers 2025-04-04 17:52:50 +00:00
Justin Holguín 8ec6a0b12e Add note about running npm build 2025-04-04 17:52:04 +00:00
Justin Holguín 8c8c37cf51 Merge branch 'main' into juxtin/prep-412 2025-04-04 10:49:59 -07:00
Justin Holguín 4ccf7bf0a3 Update version to 4.1.2 and update release instructions 2025-04-04 17:45:46 +00:00
Paul Hodgkinson 517058e819 Merge branch 'main' into dependabot/npm_and_yarn/octokit/endpoint-9.0.6 2025-04-04 18:33:33 +01:00
Paul Hodgkinson 88fbf083ed Merge branch 'main' into dependabot/npm_and_yarn/octokit/request-error-5.1.1 2025-04-04 18:33:19 +01:00
Paul Hodgkinson d5e8c459a7 Merge branch 'main' into dependabot/npm_and_yarn/octokit/request-8.4.1 2025-04-04 18:33:06 +01:00
Paul Hodgkinson fd85cdd6fc Merge branch 'main' into dependabot/npm_and_yarn/octokit/plugin-paginate-rest-9.2.2 2025-04-04 18:32:56 +01:00
Paul Hodgkinson 5736c58c85 Merge branch 'main' into dependabot/npm_and_yarn/tar-fs-2.1.2 2025-04-04 18:32:20 +01:00
Justin Holguín 973a8cf442 Merge pull request #104 from advanced-security/juxtin/prep-412
Prep for next release
2025-04-04 08:32:05 -07:00
Justin Holguín 48f232b0d1 Update dist files 2025-04-03 22:03:26 +00:00
Justin Holguín 769e1e8558 Prepare for 4.1.2 release 2025-04-03 18:34:20 +00:00
Justin Holguín 298a804769 Upgrade version of Maven plugin
See https://github.com/ferstl/depgraph-maven-plugin
2025-04-03 18:33:47 +00:00