advanced-security / cocoapods-dependency-submission-action

CocoaPods Lockfile Dependency Submission Action
MIT License
4 stars 3 forks source link

Bump the production-dependencies group with 1 update #32

Closed dependabot[bot] closed 6 months ago

dependabot[bot] commented 6 months ago

Bumps the production-dependencies group with 1 update: ghastoolkit.

Updates ghastoolkit from 0.11.8 to 0.12.2

Release notes

Sourced from ghastoolkit's releases.

v0.12.2

What's Changed

Full Changelog: https://github.com/GeekMasher/ghastoolkit/compare/0.12.1...0.12.2

0.12.1

What's Changed

Full Changelog: https://github.com/GeekMasher/ghastoolkit/compare/0.12.0...0.12.1

v0.12.0

What's Changed

Full Changelog: https://github.com/GeekMasher/ghastoolkit/compare/0.11.9...0.12.0

v0.11.9

What's Changed

Full Changelog: https://github.com/GeekMasher/ghastoolkit/compare/0.11.8...0.11.9

Commits
  • 7d49b7b Merge pull request #203 from GeekMasher/octokit-errors-improve
  • 31dd871 feat: Impove octokit error handling
  • d4b72ae Merge pull request #202 from GeekMasher/octokit-errors-msg
  • 7744dc7 feat(deps): Update deps
  • 20344e1 feat: Add tests and small changes
  • 8bd64f2 fix: String issue
  • 40145a7 feat: Add error output for documentation url
  • 6473e9b feat(version): v0.12.1
  • db33970 fix: Solve issue with what key is used to find errors
  • 76ebdea Merge pull request #201 from GeekMasher/v0120
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions
github-actions[bot] commented 6 months ago

Dependency Review

✅ No vulnerabilities or license issues found.

Snapshot Warnings

⚠️: No snapshots were found for the head SHA 1e62bbade00b836d4c4794824a514588975f01f9.

Ensure that dependencies are being submitted on PR branches and consider enabling retry-on-snapshot-warnings. See the documentation for more information and troubleshooting advice.

Scanned Manifest Files

Pipfile.lock
  • ghastoolkit@0.12.2
  • urllib3@2.2.1
  • ghastoolkit@0.11.8
  • urllib3@2.2.0