| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Sorry, something went wrong.
|
|
||
| - name: Install the latest version of uv | ||
| uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0 | ||
| uses: astral-sh/setup-uv@fac544c07dec837d0ccb6301d7b5580bf5edae39 # v8.2.0 |
| uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3 | ||
| - name: "Install PHP" | ||
| uses: "shivammathur/setup-php@7c071dfe9dc99bdf297fa79cb49ea005b9fcadbc" # v2.37.1 | ||
| uses: "shivammathur/setup-php@f3e473d116dcccaddc5834248c87452386958240" # 2.37.2 |
|
|
||
| - name: "Install PHP" | ||
| uses: "shivammathur/setup-php@7c071dfe9dc99bdf297fa79cb49ea005b9fcadbc" # v2.37.1 | ||
| uses: "shivammathur/setup-php@f3e473d116dcccaddc5834248c87452386958240" # 2.37.2 |
| uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3 | ||
| - name: "Install PHP" | ||
| uses: "shivammathur/setup-php@7c071dfe9dc99bdf297fa79cb49ea005b9fcadbc" # v2.37.1 | ||
| uses: "shivammathur/setup-php@f3e473d116dcccaddc5834248c87452386958240" # 2.37.2 |
|
|
||
| - name: "Create release" | ||
| uses: softprops/action-gh-release@b4309332981a82ec1c5618f44dd2e27cc8bfbfda # v3.0.0 | ||
| uses: softprops/action-gh-release@718ea10b132b3b2eba29c1007bb80653f286566b # v3.0.1 |
| egress-policy: audit | ||
|
|
||
| - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 | ||
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 |
| egress-policy: audit | ||
|
|
||
| - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 | ||
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 |
| - name: 'Get previous tag' | ||
| id: previous_tag | ||
| uses: "WyriHaximus/github-action-get-previous-tag@61819f33034117e6c686e6a31dba995a85afc9de" # v2.0.0 | ||
| uses: "WyriHaximus/github-action-get-previous-tag@83f26fea93bc7efcbca2eb5591f5eaaf66b8f206" # v2.1.0 |
| - name: "Commit changes" | ||
| if: github.event_name != 'pull_request' | ||
| uses: "stefanzweifel/git-auto-commit-action@04702edda442b2e678b25b537cec683a1493fcb9" # v7.1.0 | ||
| uses: "stefanzweifel/git-auto-commit-action@4a55954c782fc1ea30b9056cd3e7a2b40ca8887d" # v7.2.0 |
| Back | FazBrowse Home | New Git URL |
This PR contains the following updates:
Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
WyriHaximus/github-action-get-previous-tag (WyriHaximus/github-action-get-previous-tag)v2.1.0
Compare Source
v2.1.0
Bug 🐞
Dependencies 📦
Enhancement ✨
- 91: Replace therussiankid92/gat with nick-fields/assert-action. thanks to @WyriHaximus
actions/checkout (actions/checkout)v7.0.1
Compare Source
- Skip running unsafe pr check if input is default by @aiqiaoy in #2518
- Trim only ascii whitespace for branch by @aiqiaoy in #2521
- Escape values passed to --unset by @aiqiaoy in #2530
- Various dependency updates
astral-sh/setup-uv (astral-sh/setup-uv)v8.3.2: 🌈 update known checksums for 0.11.28
Compare Source
Changes
Just a maintenance release
🧰 Maintenance
📚 Documentation
⬆️ Dependency updates
v8.3.1: 🌈 update known checksums for 0.11.27
Compare Source
Changes
Just a maintenance release
🧰 Maintenance
📚 Documentation
v8.3.0: 🌈 Support uv.lock as a version-file source
Compare Source
Changes
Thanks to @somaz94 you can now use the pinned version of uv itself in uv.lock. It gets picked up automatically.
If you have pinned another version of uv in your uv.lock you can use the inputs version or version-source to override this.
🐛 Bug fixes
🚀 Enhancements
🧰 Maintenance
📚 Documentation
⬆️ Dependency updates
v8.2.0: 🌈 New inputs quiet and download-from-astral-mirror
Compare Source
Changes
This release brings two new inputs and a few bug fixes.
New inputs
Lets talk about the new inputs first.
quiet
Pretty simple. It turns of all info loggings. Useful if you use this in a composite action and are not interested in all the details.
In the upcoming releases we will add log groups to fully implement support for "less noise"
download-from-astral-mirror
In some cases you may want to directly use the fallback of checking for available versions and downloading releases from GitHub instead of using the astral.sh mirror. Setting download-from-astral-mirror: false allows you to do that.
Bugfixes
When using the astral.sh mirror to query available versions and download releases (done by default) we now stop sending the GitHub token in the header. The mirror never looked at it but we shouldn't be handing out that data even if it is just a short lived token.
All other bugfixes try to limit the impact of failed GitHub queries due to retries and other faults.
We couldn't pinpoint all rootcauses yet but added more logging for error cases to track them down.
🐛 Bug fixes
🚀 Enhancements
🧰 Maintenance
⬆️ Dependency updates
- chore(deps): roll up dependabot updates @eifinger (#903)
- chore(deps): roll up dependabot updates @eifinger (#901)
- chore(deps): bump release-drafter/release-drafter from 7.3.0 to 7.3.1 @dependabot[bot] (#900)
- chore(deps): bump eifinger/actionlint-action from 1.10.1 to 1.10.2 @dependabot[bot] (#842)
- chore(deps): bump github/codeql-action from 4.35.4 to 4.36.0 @dependabot[bot] (#893)
- chore(deps): bump zizmorcore/zizmor-action from 0.5.5 to 0.5.6 @dependabot[bot] (#891)
- chore(deps): bump release-drafter/release-drafter from 7.2.0 to 7.3.0 @dependabot[bot] (#884)
- chore(deps): bump zizmorcore/zizmor-action from 0.5.3 to 0.5.5 @dependabot[bot] (#888)
- chore(deps): bump github/codeql-action from 4.35.3 to 4.35.4 @dependabot[bot] (#881)
- chore(deps): bump github/codeql-action from 4.32.2 to 4.35.3 @dependabot[bot] (#875)
- chore(deps): bump actions/setup-node from 6.3.0 to 6.4.0 @dependabot[bot] (#866)
- chore(deps): bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 @dependabot[bot] (#864)
- chore(deps): bump peter-evans/create-pull-request from 8.1.0 to 8.1.1 @dependabot[bot] (#863)
github/codeql-action (github/codeql-action)v4.38.3
Compare Source
v4.38.2
Compare Source
v4.38.1
Compare Source
v4.38.0
Compare Source
v4.37.9
Compare Source
v4.37.8
Compare Source
No user facing changes.
v4.37.7
Compare Source
v4.37.6
Compare Source
v4.37.5
Compare Source
v4.37.4
Compare Source
v4.37.3
Compare Source
No user facing changes.
v4.37.2
Compare Source
v4.37.1
Compare Source
v4.37.0
Compare Source
v4.36.3
Compare Source
No user facing changes.
v4.36.2
Compare Source
v4.36.1
Compare Source
No user facing changes.
shivammathur/setup-php (shivammathur/setup-php)v2.40.0
Compare Source
Changelog
Added support for Ubuntu 26.04 (ubuntu-26.04). (#1083)
Added support for pinning tools to SHA-256 and SHA-512 checksums. (#1098, #1099)
Fixed support for Couchbase, Oracle, and IBM extensions on Ubuntu 26.04. (#1123)
Added support for cpx. (#1104)
Improved PHP installation on macOS using cached builds from shivammathur/php-darwin. This should improve the setup-php runtime from around a minute to 5-10s.
Improved Homebrew extension installation, timeout handling, and retries. (#1120)
Improved PHP installation on Windows using release manifests and cached builds from shivammathur/php-builder-windows.
Improved caching and validation of versioned extensions on Linux, macOS, and Windows. (#1108)
Added opt-in support for cached PHP builds on Blacksmith and Depot runners using use_builds_cache environment variable. This is currently experimental and uses the builds cache that we maintain for GitHub hosted runners. (#1056, #1129)
Switched to Homebrew extension packages for Lua and GEOS extensions on supported macOS PHP versions.
Deprecated support for Intel macOS and macOS 14 arm64 runners. It is recommended to upgrade to arm64 based macOS runners (macos-15 or newer). (#1112)
Updated Node.js dependencies and internal GitHub Actions workflows.
For the complete list of changes, please refer to the Full Changelog
Thanks @kmaeda-rakus, @jrfnl, @WendellAdriel, @damiantw, @ibrahimlawal-paystack, @Perlence, and @Sainan for the contributions.
Follow for updates
v2.37.2
Compare Source
Changelog
Fixed macOS setup by marking shivammathur/php and shivammathur/extensions as trusted taps.
Switched to Visual Studio 18 (vs18) builds for PHP 8.6 on Windows.
Improved looking up environment variables.
Tightened security in internal GitHub action workflows.
Updated Node.js dependencies.
For the complete list of changes, please refer to the Full Changelog
Follow for updates
v3.0.3
Compare Source
3.0.3 is a maintenance release with updated dependencies. It also safely
classifies malformed GitHub API errors to avoid secondary failures (#822).
What's Changed
Bug fixes 🐛
Other Changes 🔄
v3.0.2
Compare Source
3.0.2 is a patch release focused on release reliability and compatibility. It
reuses existing draft releases when publishing prereleases, supports replacing
release assets on Gitea, hardens streamed asset uploads, and provides clearer
release-creation diagnostics. It also includes TypeScript, coverage, and tooling
maintenance merged since 3.0.1.
This release fixes #795, #438, and #803. The upload transport hardening covers the
historical failure reported in #790, although current hosted Node 24 runners did
not reproduce it naturally. The diagnostics work is related to #786 and does not
claim a reproducible release-creation fix.
What's Changed
Exciting New Features 🎉
Bug fixes 🐛
Other Changes 🔄
v3.0.1
Compare Source
3.0.1
- maintenance release with updated dependencies
stefanzweifel/git-auto-commit-action (stefanzweifel/git-auto-commit-action)v7.2.0
Compare Source
Added
Fixed
Dependency Updates
- Bump actions/checkout from 6 to 7 (#409) [@dependabot[bot]](https://github.com/@[dependabot[bot]](https://github.com/apps/dependabot))
- Bump release-drafter/release-drafter from 6 to 7 (#403) [@dependabot[bot]](https://github.com/@[dependabot[bot]](https://github.com/apps/dependabot))
step-security/harden-runner (step-security/harden-runner)v2.22.1
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.22.0...v2.22.1
v2.22.0
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.21.1...v2.22.0
v2.21.1
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.21.0...v2.21.1
v2.21.0
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.20.1...v2.21.0
v2.20.1
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.20.0...v2.20.1
v2.20.0
Compare Source
What's Changed
Full Changelog: step-security/harden-runner@v2.19.4...v2.20.0
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.