spf13 / viper

Go configuration with fangs
MIT License
26.29k stars 2.01k forks source link

build(deps): bump actions/dependency-review-action from 4.2.4 to 4.2.5 #1796

Closed dependabot[bot] closed 2 months ago

dependabot[bot] commented 3 months ago

Bumps actions/dependency-review-action from 4.2.4 to 4.2.5.

Release notes

Sourced from actions/dependency-review-action's releases.

4.2.5

What's Changed

Full Changelog: https://github.com/actions/dependency-review-action/compare/v4.2.4...v4.2.5

Commits
  • 5bbc3ba bumping version
  • c59184a Merge pull request #722 from actions/remove-warn-default
  • 54c0657 Merge pull request #728 from actions/dependabot/npm_and_yarn/eslint-8.57.0
  • 21941b5 Bump eslint from 8.56.0 to 8.57.0
  • 651d22c Revert default values in action.yml to fix external configs.
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
github-actions[bot] commented 3 months ago

πŸ‘‹ Thanks for contributing to Viper! You are awesome! πŸŽ‰

A maintainer will take a look at your pull request shortly. πŸ‘€

In the meantime: We are working on Viper v2 and we would love to hear your thoughts about what you like or don't like about Viper, so we can improve or fix those issues.

⏰ If you have a couple minutes, please take some time and share your thoughts: https://forms.gle/R6faU74qPRPAzchZ9

πŸ“£ If you've already given us your feedback, you can still help by spreading the news, either by sharing the above link or telling people about this on Twitter:

https://twitter.com/sagikazarmark/status/1306904078967074816

Thank you! ❀️