Closed dependabot[bot] closed 2 months ago
Hello @franknli, @jorgepiloto, @Revathyvenugopal162, @MaxJPRey! This PR was created by dependabot and has not been updated in the last 30 days. Could you please review it?
If you want this repository to be excluded from this automated process, please let us know by filling in the opt-out request form.
Bumps bandit from 1.7.8 to 1.7.9.
Release notes
Sourced from bandit's releases.
Commits
691f465
Supportconfigfile
in.bandit
file (#1052)f1a397e
Bump docker/build-push-action from 5.3.0 to 5.4.0 (#1144)049eba0
Guard against empty call argument list (#1146)ad56c78
[pre-commit.ci] pre-commit autoupdate (#1145)2dd4cb5
[pre-commit.ci] pre-commit autoupdate (#1143)313cae7
Bump docker/login-action from 3.1.0 to 3.2.0 (#1142)3fa1e25
Ensure sarif extra is included as part of doc build (#1139)8b659fb
Add a sponsor section to README (#1137)30cada5
[pre-commit.ci] pre-commit autoupdate (#1135)dbb4161
Updates banner logo so it renders well in dark mode (#1134)You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show