Mike McQuaid
|
10525781b3
|
workflows/docker: remove unneeded packages permission.
|
2024-11-15 18:24:29 +00:00 |
|
Mike McQuaid
|
e98fae8512
|
workflows/docker: improve step names.
Co-authored-by: Markus Reiter <me@reitermark.us>
|
2024-11-15 17:15:04 +00:00 |
|
Mike McQuaid
|
fb03a29ec6
|
workflows/docker: use GitHub Packages for caching.
The GitHub Actions caching seems to not be very performant and is
exploding our cache storage usage.
|
2024-11-15 16:14:48 +00:00 |
|
dependabot[bot]
|
c902795ec5
|
build(deps): bump codecov/codecov-action from 4.6.0 to 5.0.0
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 4.6.0 to 5.0.0.
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](b9fd7d16f6...968872560f)
---
updated-dependencies:
- dependency-name: codecov/codecov-action
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-14 18:19:26 +00:00 |
|
William Woodruff
|
981d980991
|
actionlint: suppress zizmor's exit code
Signed-off-by: William Woodruff <william@yossarian.net>
|
2024-11-11 22:09:25 -07:00 |
|
dependabot[bot]
|
810760ff69
|
build(deps): bump ruby/setup-ruby from 1.201.0 to 1.202.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.201.0 to 1.202.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](46ca53beb3...a2bbe5b1b2)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-09 19:04:07 +00:00 |
|
dependabot[bot]
|
1b4db24c41
|
build(deps): bump ruby/setup-ruby from 1.200.0 to 1.201.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.200.0 to 1.201.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](217c988b8c...46ca53beb3)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-07 15:53:18 +00:00 |
|
dependabot[bot]
|
9864f1b521
|
build(deps): bump actions/attest-build-provenance from 1.4.3 to 1.4.4
Bumps [actions/attest-build-provenance](https://github.com/actions/attest-build-provenance) from 1.4.3 to 1.4.4.
- [Release notes](https://github.com/actions/attest-build-provenance/releases)
- [Changelog](https://github.com/actions/attest-build-provenance/blob/main/RELEASE.md)
- [Commits](1c608d11d6...ef244123eb)
---
updated-dependencies:
- dependency-name: actions/attest-build-provenance
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-06 14:47:48 +00:00 |
|
dependabot[bot]
|
6053cf73a2
|
build(deps): bump ruby/setup-ruby from 1.199.0 to 1.200.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.199.0 to 1.200.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](7d3497fd78...217c988b8c)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-05 16:05:39 +00:00 |
|
Mike McQuaid
|
5bf31cbe65
|
workflows/tests: tweak update-test name.
|
2024-11-04 09:13:49 +00:00 |
|
Michka Popoff
|
2f73ca19b6
|
ci: move to ubuntu latest
Add coverage test using ubuntu 24.04
Not changing the default build CI version for core yet.
|
2024-11-03 22:55:30 +01:00 |
|
dependabot[bot]
|
9f90e25d9d
|
build(deps): bump ruby/setup-ruby from 1.198.0 to 1.199.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.198.0 to 1.199.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](98aefb3c83...7d3497fd78)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-11-01 12:40:52 +00:00 |
|
dependabot[bot]
|
850a84d319
|
build(deps): bump ruby/setup-ruby from 1.197.0 to 1.198.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.197.0 to 1.198.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](7bae1d00b5...98aefb3c83)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-31 18:53:27 +00:00 |
|
Bo Anderson
|
03c422ddb7
|
Merge pull request #18666 from Homebrew/vendor-version-template-injections
workflows/vendor-version: fix `template-injection` warnings
|
2024-10-30 17:19:16 +00:00 |
|
Bo Anderson
|
44608084a7
|
Merge pull request #18667 from Homebrew/pkg-installer-template-injection
workflows/pkg-installer: fix `template-injection` warnings
|
2024-10-30 17:18:53 +00:00 |
|
Bo Anderson
|
37aab1f5d5
|
Merge pull request #18668 from Homebrew/fix-artipacked
workflows: fix `artipacked` warning
|
2024-10-30 17:18:37 +00:00 |
|
BrewTestBot
|
cce778ed82
|
stale-issues.yml: update to match main configuration
|
2024-10-30 14:36:05 +00:00 |
|
Carlo Cabrera
|
2ec174ffb7
|
workflows: fix artipacked warning
Fixes https://github.com/Homebrew/brew/security/code-scanning/32
Fixes https://github.com/Homebrew/brew/security/code-scanning/33
Fixes https://github.com/Homebrew/brew/security/code-scanning/42
|
2024-10-30 22:29:01 +08:00 |
|
Carlo Cabrera
|
fbfbc8df29
|
workflows/pkg-installer: fix template-injection warnings
Fixes https://github.com/Homebrew/brew/security/code-scanning/34
Fixes https://github.com/Homebrew/brew/security/code-scanning/35
Fixes https://github.com/Homebrew/brew/security/code-scanning/36
Fixes https://github.com/Homebrew/brew/security/code-scanning/37
Fixes https://github.com/Homebrew/brew/security/code-scanning/38
Fixes https://github.com/Homebrew/brew/security/code-scanning/39
|
2024-10-30 22:25:23 +08:00 |
|
Carlo Cabrera
|
6bddbb5cf3
|
workflows/vendor-version: fix template-injection warnings
Fixes https://github.com/Homebrew/brew/security/code-scanning/40
Fixes https://github.com/Homebrew/brew/security/code-scanning/41
|
2024-10-30 22:20:14 +08:00 |
|
Carlo Cabrera
|
dbe271a597
|
workflows/actionlint: run zizmor
Port of Homebrew/homebrew-core#195961.
See https://github.com/woodruffw/zizmor.
|
2024-10-30 11:32:23 +08:00 |
|
dependabot[bot]
|
9ccd3e1de1
|
build(deps): bump actions/checkout from 4.2.1 to 4.2.2
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.1 to 4.2.2.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](eef61447b9...11bd71901b)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-23 18:19:06 +00:00 |
|
Patrick Linnane
|
8ee026bebb
|
Merge pull request #18607 from Homebrew/dependabot/github_actions/github/codeql-action-3.27.0
|
2024-10-22 10:20:25 -07:00 |
|
dependabot[bot]
|
5e94280d87
|
build(deps): bump github/codeql-action from 3.26.13 to 3.27.0
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.13 to 3.27.0.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](f779452ac5...662472033e)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 17:08:33 +00:00 |
|
dependabot[bot]
|
97533abb6a
|
build(deps): bump actions/cache from 4.1.1 to 4.1.2
Bumps [actions/cache](https://github.com/actions/cache) from 4.1.1 to 4.1.2.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](3624ceb22c...6849a64899)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-22 17:08:27 +00:00 |
|
dependabot[bot]
|
1e6ef71c2a
|
build(deps): bump ruby/setup-ruby from 1.196.0 to 1.197.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.196.0 to 1.197.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](f269373437...7bae1d00b5)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-18 17:16:54 +00:00 |
|
Ruoyu Zhong
|
d6591d4fd6
|
Merge pull request #18563 from Homebrew/dependabot/github_actions/github/codeql-action-3.26.13
build(deps): bump github/codeql-action from 3.26.12 to 3.26.13
|
2024-10-15 03:30:31 +08:00 |
|
dependabot[bot]
|
832356bafa
|
build(deps): bump github/codeql-action from 3.26.12 to 3.26.13
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.12 to 3.26.13.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](c36620d31a...f779452ac5)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-14 19:19:37 +00:00 |
|
dependabot[bot]
|
0361188c1a
|
build(deps): bump actions/attest-build-provenance from 1.3.3 to 1.4.3
Bumps [actions/attest-build-provenance](https://github.com/actions/attest-build-provenance) from 1.3.3 to 1.4.3.
- [Release notes](https://github.com/actions/attest-build-provenance/releases)
- [Changelog](https://github.com/actions/attest-build-provenance/blob/main/RELEASE.md)
- [Commits](5e9cb68e95...1c608d11d6)
---
updated-dependencies:
- dependency-name: actions/attest-build-provenance
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-14 19:19:34 +00:00 |
|
Sean Molenaar
|
78573231af
|
fix: only scope permissions to build job
|
2024-10-13 15:49:59 +02:00 |
|
Sean Molenaar
|
8eae9ee730
|
feat: add attestation to the pkg installer
|
2024-10-12 12:24:14 +02:00 |
|
dependabot[bot]
|
1c24322ff0
|
build(deps): bump actions/upload-artifact in the artifacts group
Bumps the artifacts group with 1 update: [actions/upload-artifact](https://github.com/actions/upload-artifact).
Updates `actions/upload-artifact` from 4.4.2 to 4.4.3
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](84480863f2...b4b15b8c7c)
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: artifacts
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-09 18:40:51 +00:00 |
|
dependabot[bot]
|
f2149eede8
|
build(deps): bump actions/upload-artifact in the artifacts group
Bumps the artifacts group with 1 update: [actions/upload-artifact](https://github.com/actions/upload-artifact).
Updates `actions/upload-artifact` from 4.4.1 to 4.4.2
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](604373da63...84480863f2)
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: artifacts
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-08 19:19:53 +00:00 |
|
dependabot[bot]
|
8c6b7253c5
|
build(deps): bump actions/cache from 4.1.0 to 4.1.1
Bumps [actions/cache](https://github.com/actions/cache) from 4.1.0 to 4.1.1.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](2cdf405574...3624ceb22c)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-08 18:18:01 +00:00 |
|
Ruoyu Zhong
|
6975eaa2cf
|
Merge pull request #18527 from Homebrew/dependabot/github_actions/ruby/setup-ruby-1.196.0
build(deps): bump ruby/setup-ruby from 1.195.0 to 1.196.0
|
2024-10-08 03:00:16 +08:00 |
|
Ruoyu Zhong
|
403a99ad8f
|
Merge pull request #18526 from Homebrew/dependabot/github_actions/github/codeql-action-3.26.12
build(deps): bump github/codeql-action from 3.26.11 to 3.26.12
|
2024-10-08 02:58:28 +08:00 |
|
Ruoyu Zhong
|
94ac16e1cd
|
Merge pull request #18523 from Homebrew/dependabot/github_actions/artifacts-6e3919dcd2
build(deps): bump actions/upload-artifact from 4.4.0 to 4.4.1 in the artifacts group
|
2024-10-08 02:58:14 +08:00 |
|
dependabot[bot]
|
ee51030e91
|
build(deps): bump ruby/setup-ruby from 1.195.0 to 1.196.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.195.0 to 1.196.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](086ffb1a20...f269373437)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-07 18:50:26 +00:00 |
|
dependabot[bot]
|
5ac829ac62
|
build(deps): bump github/codeql-action from 3.26.11 to 3.26.12
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.11 to 3.26.12.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](6db8d6351f...c36620d31a)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-07 18:20:35 +00:00 |
|
dependabot[bot]
|
b212bb496b
|
build(deps): bump actions/checkout from 4.2.0 to 4.2.1
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.0 to 4.2.1.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](d632683dd7...eef61447b9)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-07 18:20:29 +00:00 |
|
dependabot[bot]
|
30fb09d82e
|
build(deps): bump actions/upload-artifact in the artifacts group
Bumps the artifacts group with 1 update: [actions/upload-artifact](https://github.com/actions/upload-artifact).
Updates `actions/upload-artifact` from 4.4.0 to 4.4.1
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](50769540e7...604373da63)
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: artifacts
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-07 18:20:26 +00:00 |
|
dependabot[bot]
|
c1f9f4d401
|
build(deps): bump ruby/setup-ruby from 1.194.0 to 1.195.0
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.194.0 to 1.195.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](c04af2bb72...086ffb1a20)
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-06 23:13:44 +00:00 |
|
dependabot[bot]
|
badec7d66b
|
build(deps): bump actions/cache from 4.0.2 to 4.1.0
Bumps [actions/cache](https://github.com/actions/cache) from 4.0.2 to 4.1.0.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](0c45773b62...2cdf405574)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-05 15:54:27 +00:00 |
|
Patrick Linnane
|
1e29665e62
|
Merge pull request #18505 from Homebrew/dependabot/github_actions/docker/setup-buildx-action-3.7.1
|
2024-10-04 07:13:41 -07:00 |
|
dependabot[bot]
|
9fd0d9e720
|
build(deps): bump github/codeql-action from 3.26.10 to 3.26.11
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.10 to 3.26.11.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](e2b3eafc8d...6db8d6351f)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-04 13:59:37 +00:00 |
|
dependabot[bot]
|
6d23d4bdfd
|
build(deps): bump docker/setup-buildx-action from 3.7.0 to 3.7.1
Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 3.7.0 to 3.7.1.
- [Release notes](https://github.com/docker/setup-buildx-action/releases)
- [Commits](8026d2bc36...c47758b77c)
---
updated-dependencies:
- dependency-name: docker/setup-buildx-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-04 13:59:32 +00:00 |
|
dependabot[bot]
|
1efa41e704
|
build(deps): bump docker/setup-buildx-action from 3.6.1 to 3.7.0
Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 3.6.1 to 3.7.0.
- [Release notes](https://github.com/docker/setup-buildx-action/releases)
- [Commits](988b5a0280...8026d2bc36)
---
updated-dependencies:
- dependency-name: docker/setup-buildx-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-03 18:03:50 +00:00 |
|
Mike McQuaid
|
5ac34f5348
|
Merge pull request #18462 from Homebrew/ci_macos_15
github/workflows: use macos-15 GitHub Actions runners.
|
2024-10-02 16:06:52 +01:00 |
|
dependabot[bot]
|
27fa613b4f
|
build(deps): bump codecov/codecov-action from 4.5.0 to 4.6.0
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 4.5.0 to 4.6.0.
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](e28ff129e5...b9fd7d16f6)
---
updated-dependencies:
- dependency-name: codecov/codecov-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-10-01 16:20:18 +00:00 |
|
Ruoyu Zhong
|
2184406bd8
|
Merge pull request #18469 from Homebrew/dependabot/github_actions/github/codeql-action-3.26.10
build(deps): bump github/codeql-action from 3.26.9 to 3.26.10
|
2024-10-01 03:03:01 +08:00 |
|