ericcornelissen / svgo-action

Automatically run SVGO with GitHub Actions
MIT License
30 stars 5 forks source link

Dependency Dashboard #412

Open renovate[bot] opened 3 years ago

renovate[bot] commented 3 years ago

This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.

Awaiting Schedule

These updates are awaiting their schedule. Click on a checkbox to get an update now.

Detected dependencies

dockerfile
.devcontainer/Dockerfile
github-actions
.github/workflows/audit.yml
.github/workflows/check.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `krzema12/github-actions-typing v1.0.2@c1af3441a3e80d0010be36aa0874f157a15f6a7f` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `github/codeql-action v3.24.9@1b1aada464948af03b950897e5eb522f92603cc2` - `github/codeql-action v3.24.9@1b1aada464948af03b950897e5eb522f92603cc2` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `asdf-vm/actions v3.0.2@05e0d2ed97b598bfce82fd30daf324ae0c4570e6` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `actions/cache v4.0.2@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9` - `codecov/codecov-action v4.1.1@c16abc29c95fcf9174b58eb7e1abf4c866893bc8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `actions/cache v4.0.2@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04`
.github/workflows/config-codecov.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `ericcornelissen/codecov-config-validator-action v1.0.2@bbb3f8ef45de6f6ce57ea8d566940bdd78b4814a` - `ubuntu 22.04`
.github/workflows/labeler.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/labeler v5.0.0@8558fd74291d67161a8a78ce36a881fa63b766a9` - `ubuntu 22.04`
.github/workflows/monthly.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `tibdex/github-app-token v2.1.0@3beb63f4bd073e61482598c45c71c1019b59b73a` - `peter-evans/create-pull-request v6.0.2@70a41aba780001da0a30141984ae2a0c95d8704e` - `ubuntu 22.04`
.github/workflows/nightly.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `tibdex/github-app-token v2.1.0@3beb63f4bd073e61482598c45c71c1019b59b73a` - `ericcornelissen/tool-versions-update-action v1.1.1@12883acb5088f717cb11c3b1f45857256fe9bf0b` - `ubuntu 22.04`
.github/workflows/publish.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `actions/github-script v7.0.1@60a0d83039c74a4aee543508d2ffcb1c3799cdea` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `sigstore/cosign-installer v3.4.0@e1523de7571e31dbe865fd2e80c5c7c23ae71eb4` - `ncipollo/release-action v1.14.0@2c591bcc8ecdcd2db72b97d6147f871fcd833ba5` - `ubuntu 22.04` - `ubuntu 22.04` - `ubuntu 22.04`
.github/workflows/release.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `tibdex/github-app-token v2.1.0@3beb63f4bd073e61482598c45c71c1019b59b73a` - `peter-evans/create-pull-request v6.0.2@70a41aba780001da0a30141984ae2a0c95d8704e` - `ubuntu 22.04`
.github/workflows/reusable-audit.yml - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `gitleaks/gitleaks-action v2.3.4@e6dab246340401bf53eec993b8f05aebe80ac636` - `step-security/harden-runner v2.7.0@63c24ba6bd7ba022e95695ff85de572c04a18142` - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `actions/setup-node v4.0.2@60edb5dd545a775178f52524783378180af0d1f8` - `ubuntu 22.04` - `ubuntu 22.04`
.github/workflows/semgrep.yml - `actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11` - `github/codeql-action v3.24.9@1b1aada464948af03b950897e5eb522f92603cc2` - `ubuntu 22.04`
npm
package.json - `@actions/core 1.10.1` - `@actions/github 6.0.0` - `@actions/glob 0.4.0` - `eval 0.1.8` - `import-cwd 3.0.0` - `svgo-v2 2.8.0` - `svgo-v3 3.2.0` - `@commitlint/cli 19.2.1` - `@commitlint/config-conventional 19.1.0` - `@rollup/plugin-commonjs 25.0.7` - `@rollup/plugin-json 6.1.0` - `@rollup/plugin-node-resolve 15.2.3` - `@rollup/plugin-terser 0.4.4` - `@rollup/plugin-typescript 11.1.6` - `@stryker-mutator/core 8.2.6` - `@stryker-mutator/jest-runner 8.2.6` - `@stryker-mutator/typescript-checker 8.2.6` - `@types/jest 29.5.12` - `@types/jest-when 3.5.5` - `@types/node 20.12.2` - `@typescript-eslint/eslint-plugin 7.4.0` - `@typescript-eslint/parser 7.4.0` - `better-npm-audit 3.7.3` - `editorconfig-checker 5.1.5` - `eslint 8.57.0` - `eslint-plugin-import 2.29.1` - `eslint-plugin-jest 27.9.0` - `eslint-plugin-json 3.1.0` - `eslint-plugin-markdown 4.0.1` - `eslint-plugin-mocha 10.4.1` - `eslint-plugin-security 2.1.1` - `eslint-plugin-yml 1.13.2` - `husky 9.0.11` - `is-ci 3.0.1` - `jest 29.7.0` - `jest-when 3.6.0` - `knip 5.7.0` - `licensee 10.0.0` - `lockfile-lint 4.13.2` - `markdownlint-cli 0.39.0` - `rollup 4.13.2` - `ts-jest 29.1.2` - `type-coverage 2.27.2` - `typescript 5.4.3` - `node >=20.0.0` - `npm >=8.1.2`
nvm
.nvmrc - `node 20`

sesam commented 2 years ago

@ericcornelissen Maybe this is a good week to check and merge some security (and other?) updates? 😄 Thanks for svgo-action, it's good stuff!

ericcornelissen commented 2 years ago

Thanks for notifying me @sesam :smiley:

I checked the security item's checkbox earlier this week and then happily forgot about it expecting a Pull Request notification - which never came. Turns out this dashboard isn't very trustworthy...

Anyway, applying patches now and releases (for both v1 and v2) will be out later today. Both v1 and v2 have been updated with the latest patches (see v1.3.13 and v2.1.5).