Azure / ShieldGuard

Enables best security practices for your project from day zero.
MIT License
8 stars 6 forks source link

chore(deps): bump github.com/open-policy-agent/conftest from 0.51.0 to 0.53.0 in /sg #111

Closed dependabot[bot] closed 2 months ago

dependabot[bot] commented 2 months ago

Bumps github.com/open-policy-agent/conftest from 0.51.0 to 0.53.0.

Release notes

Sourced from github.com/open-policy-agent/conftest's releases.

v0.53.0

Changelog

OPA Changes

  • 96470c21f2ea92baa66aa8c50b07b008af222bc3: build(deps): bump github.com/open-policy-agent/opa from 0.64.1 to 0.65.0 (#953) (@​dependabot[bot])

Other Changes

  • c33a50c853001998e47c3057ceb755ccb7f8d6c3: build(deps): bump alpine from 3.19.1 to 3.20.0 (#951) (@​dependabot[bot])
  • 31700e1d9edd66e177043d3886b19c5d428c3e11: build(deps): bump cuelang.org/go from 0.8.1 to 0.9.0 (#956) (@​dependabot[bot])
  • 525f071514279dd545a82fd4e3a085d84d869274: build(deps): bump github.com/BurntSushi/toml from 1.3.2 to 1.4.0 (#950) (@​dependabot[bot])
  • eeef9e250063002d81b0402fbf885468c590bc7f: build(deps): bump github.com/CycloneDX/cyclonedx-go from 0.8.0 to 0.9.0 (#954) (@​dependabot[bot])
  • 30b373416df2cafc147c4f3bd3c601f66c53128f: build(deps): bump golang from 1.22.2-alpine to 1.22.3-alpine (#949) (@​dependabot[bot])
  • 493cfd55b0a2745d918d3564f7a8b64c0ba776e8: tests: extend hcl cases: tag verification (#955) (@​boranx)

v0.52.0

Changelog

OPA Changes

  • c8ca3585dfe99647c0ca039b03522bd83e0ca357: build(deps): bump github.com/open-policy-agent/opa from 0.63.0 to 0.64.0 (#943) (@​dependabot[bot])
  • 9b082a11765d408ffdddbf365bd0fdd990d87461: build(deps): bump github.com/open-policy-agent/opa from 0.64.0 to 0.64.1 (#947) (@​dependabot[bot])

Other Changes

  • 8f13bf6a82dbb7db38e1ca1a3cddba4f608dbee2: build(deps): bump cuelang.org/go from 0.8.0 to 0.8.1 (#937) (@​dependabot[bot])
  • 37b04d6036f6a146cc2c38e29769ad245c4607e6: build(deps): bump github.com/docker/docker from v25.0.3+incompatible to v25.0.5+incompatible (#932) (@​robmonct)
  • 1b3cc13b4d5e8d99a7a124672046605d1c33d0bc: build(deps): bump github.com/hashicorp/go-getter from 1.7.3 to 1.7.4 (#948) (@​dependabot[bot])
  • 28d92a408f9d39d01dd85e0055f05f36e09bbf7f: build(deps): bump github.com/moby/buildkit from 0.13.1 to 0.13.2 (#944) (@​dependabot[bot])
  • 4ab6feaed04fa44e1de39e9c823728bfdf906867: build(deps): bump github.com/spdx/tools-golang from 0.5.3 to 0.5.4 (#941) (@​dependabot[bot])
  • c6bd5a541a1526f9ade5e02b41dc11725c97c47c: build(deps): bump golang from 1.22.1-alpine to 1.22.2-alpine (#938) (@​dependabot[bot])
  • 298d74aeade4b4462961fa3c7f1d44a90d7a49d8: ci: Allow Dependabot to update github.com/hashicorp/go-getter (#946) (@​jalseth)
Commits
  • 493cfd5 tests: extend hcl cases: tag verification (#955)
  • 31700e1 build(deps): bump cuelang.org/go from 0.8.1 to 0.9.0 (#956)
  • eeef9e2 build(deps): bump github.com/CycloneDX/cyclonedx-go from 0.8.0 to 0.9.0 (#954)
  • 96470c2 build(deps): bump github.com/open-policy-agent/opa from 0.64.1 to 0.65.0 (#953)
  • c33a50c build(deps): bump alpine from 3.19.1 to 3.20.0 (#951)
  • 525f071 build(deps): bump github.com/BurntSushi/toml from 1.3.2 to 1.4.0 (#950)
  • 30b3734 build(deps): bump golang from 1.22.2-alpine to 1.22.3-alpine (#949)
  • 9b082a1 build(deps): bump github.com/open-policy-agent/opa from 0.64.0 to 0.64.1 (#947)
  • 1b3cc13 build(deps): bump github.com/hashicorp/go-getter from 1.7.3 to 1.7.4 (#948)
  • 298d74a ci: Allow Dependabot to update github.com/hashicorp/go-getter (#946)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)