SchwarzIT / node-red-chart

Node-red Helm Chart
Apache License 2.0
40 stars 25 forks source link

chore(deps): update ossf/scorecard-action action to v2.0.6 #165

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 1 year ago

Mend Renovate

This PR contains the following updates:

Package Type Update Change
ossf/scorecard-action action patch v2.0.4 -> v2.0.6

Release Notes

ossf/scorecard-action ### [`v2.0.6`](https://togithub.com/ossf/scorecard-action/releases/tag/v2.0.6) [Compare Source](https://togithub.com/ossf/scorecard-action/compare/v2.0.5...v2.0.6) #### What's Changed - Fix - Broken dockerfile by [@​naveensrinivasan](https://togithub.com/naveensrinivasan) in [https://github.com/ossf/scorecard-action/pull/979](https://togithub.com/ossf/scorecard-action/pull/979) **Full Changelog**: https://github.com/ossf/scorecard-action/compare/v2.0.5...v2.0.6 ### [`v2.0.5`](https://togithub.com/ossf/scorecard-action/releases/tag/v2.0.5) [Compare Source](https://togithub.com/ossf/scorecard-action/compare/v2.0.4...v2.0.5) #### What's Changed - Remove trailing space from example by [@​jamacku](https://togithub.com/jamacku) in [https://github.com/ossf/scorecard-action/pull/955](https://togithub.com/ossf/scorecard-action/pull/955) - :seedling: Bump actions/cache from 3.0.8 to 3.0.10 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/956](https://togithub.com/ossf/scorecard-action/pull/956) - :seedling: Bump github/codeql-action from 2.1.25 to 2.1.26 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/957](https://togithub.com/ossf/scorecard-action/pull/957) - :seedling: Bump step-security/harden-runner from 1.4.5 to 1.5.0 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/958](https://togithub.com/ossf/scorecard-action/pull/958) - :seedling: Bump debian from `5cf1d98` to `b46fc4e` by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/959](https://togithub.com/ossf/scorecard-action/pull/959) - :seedling: Bump github.com/sigstore/cosign from 1.12.1 to 1.13.0 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/962](https://togithub.com/ossf/scorecard-action/pull/962) - :seedling: Upgrade to go 1.19 by [@​naveensrinivasan](https://togithub.com/naveensrinivasan) in [https://github.com/ossf/scorecard-action/pull/961](https://togithub.com/ossf/scorecard-action/pull/961) - :seedling: Bump github.com/spf13/cobra from 1.5.0 to 1.6.0 by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/967](https://togithub.com/ossf/scorecard-action/pull/967) - :seedling: Bump golang from `c2a98a5` to `b850621` by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/966](https://togithub.com/ossf/scorecard-action/pull/966) - :seedling: Bump golang from `b850621` to `25de7b6` by [@​dependabot](https://togithub.com/dependabot) in [https://github.com/ossf/scorecard-action/pull/968](https://togithub.com/ossf/scorecard-action/pull/968) - New release for Scorecard v4.8.0 by [@​naveensrinivasan](https://togithub.com/naveensrinivasan) in [https://github.com/ossf/scorecard-action/pull/969](https://togithub.com/ossf/scorecard-action/pull/969) #### New Contributors - [@​jamacku](https://togithub.com/jamacku) made their first contribution in [https://github.com/ossf/scorecard-action/pull/955](https://togithub.com/ossf/scorecard-action/pull/955) **Full Changelog**: https://github.com/ossf/scorecard-action/compare/v2.0.4...v2.0.5

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.