intelops / scsctl

Tool for automating Vulnerability Risk Management and Software Supply Chain Security Measures
Apache License 2.0
4 stars 2 forks source link

Bump zod and renovate #70

Closed dependabot[bot] closed 6 months ago

dependabot[bot] commented 9 months ago

Bumps zod to 3.22.4 and updates ancestor dependency renovate. These dependencies need to be updated together.

Updates zod from 3.22.2 to 3.22.4

Release notes

Sourced from zod's releases.

v3.22.4

Commits:

  • d931ea3f0f15a6ae64f5f68e3c03912dffb2269d Lint
  • 8e634bd600093b7161487bed705279c892395118 Fix prettier
  • 4018d88f0e94992b2987428c4fda387b99ae2a53 docs: add @​sanity-typed/zod to ecosystem (#2731)
  • 15ba5a4d4cb5be5af23771de0ba1346b4ba20a0e docs: add zod-sandbox to README ecosystem links (#2707)
  • 699ccae13b875d4fcadac268fd789c93b6ce8aef Export jsdoc with @deprecated when building (#2717)
  • dfe3719eae250ab3eca2d276da6c292867899cc6 Fix sanity-typed links (#2840)
  • cd7991e04a550868bfcb5b5d46e5eb5bc7edf5f3 fix ulid regex (#2225)
  • 7cb4ba2f85dd6b28290dda5de80ed54dfd2a793c Remove stalebot
  • 9340fd51e48576a75adc919bff65dbc4a5d4c99b Lazy emojiRegex
  • e7a9b9b3033991be6b4225f1be21da39c250bbb0 3.22.4

v3.22.3

Commits:

  • 1e23990bcdd33d1e81b31e40e77a031fcfd87ce1 Commit
  • 9bd3879b482f139fd03d5025813ee66a04195cdd docs: remove obsolete text about readonly types (#2676)
  • f59be093ec21430d9f32bbcb628d7e39116adf34 clarify datetime ISO 8601 (#2673)
  • 64dcc8e2b16febe48fa8e3c82c47c92643e6c9e3 Update sponsors
  • 18115a8f128680b4526df58ce96deab7dce93b93 Formatting
  • 28c19273658b164c53c149785fa7a8187c428ad4 Update sponsors
  • ad2ee9ccf723c4388158ff6b8669c2a6cdc85643 2718 Updated Custom Schemas documentation example to use type narrowing (#2778)
  • ae0f7a2c15e7741ee1b23c03a3bfb9acebd86551 docs: update ref to discriminated-unions docs (#2485)
  • 2ba00fe2377f4d53947a84b8cdb314a63bbd6dd4 [2609] fix ReDoS vulnerability in email regex (#2824)
  • 1e61d76cdec05de9271fc0df58798ddf9ce94923 3.22.3
Commits


Updates renovate from 36.78.8 to 37.127.0

Release notes

Sourced from renovate's releases.

37.127.0

37.127.0 (2024-01-08)

Features

  • managers/ocb: add new manager for OpenTelemetryCollectorBuilder (#26509) (b14661f)

Miscellaneous Chores

  • deps: update dependency aws-sdk-client-mock to v3.0.1 (#26548) (5f24ab9)

37.126.4

37.126.4 (2024-01-08)

Bug Fixes

  • datasource/docker: add cache decorator to getDockerHubTags (#26546) (b33d09c)

37.126.3

37.126.3 (2024-01-08)

Bug Fixes

  • helmv3: add --force-update when adding a repo (#26512) (085ef7c)

Documentation

  • update references to renovate/renovate to v37.126.2 (#26539) (d79115b)

Miscellaneous Chores

37.126.2

37.126.2 (2024-01-07)

Bug Fixes

  • containerbase: support ranges in flutter and dart sdks (#26535) (290e157)

37.126.1

37.126.1 (2024-01-06)

... (truncated)

Commits
  • b14661f feat(managers/ocb): add new manager for OpenTelemetryCollectorBuilder (#26509)
  • 5f24ab9 chore(deps): update dependency aws-sdk-client-mock to v3.0.1 (#26548)
  • b33d09c fix(datasource/docker): add cache decorator to getDockerHubTags (#26546)
  • 085ef7c fix(helmv3): add --force-update when adding a repo (#26512)
  • 60fa5f6 chore(deps): lock file maintenance (#26540)
  • d79115b docs: update references to renovate/renovate to v37.126.2 (#26539)
  • d39e107 chore(deps): update dependency @​swc/core to v1.3.102 (#26536)
  • 290e157 fix(containerbase): support ranges in flutter and dart sdks (#26535)
  • a17713c fix(manager/pip-compile): mark GitTagsDatasource as supported (#26504)
  • da8396e feat(manager/gradle): add support for micronaut plugin (#26519)
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/intelops/scsctl/network/alerts).
github-actions[bot] commented 7 months ago

Stale pull request message

dependabot[bot] commented 6 months ago

OK, I won't notify you again about this release, but will get in touch when a new version is available.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.