Skip to content

Commit aa8cf95

Browse files
build(deps): bump the actions group across 1 directory with 6 updates (#4967)
Bumps the actions group with 6 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github/gh-aw-actions/setup](https://github.com/github/gh-aw-actions) | `0.82.8` | `0.83.4` | | [actions/checkout](https://github.com/actions/checkout) | `6` | `7` | | [github/gh-aw-actions/setup-cli](https://github.com/github/gh-aw-actions) | `0.82.8` | `0.83.4` | | [actions/setup-dotnet](https://github.com/actions/setup-dotnet) | `5` | `6` | | [github/gh-aw](https://github.com/github/gh-aw) | `0.81.6` | `0.83.1` | | [jdx/mise-action](https://github.com/jdx/mise-action) | `4.2.0` | `4.2.3` | Updates `github/gh-aw-actions/setup` from 0.82.8 to 0.83.4 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/github/gh-aw-actions/releases">github/gh-aw-actions/setup's releases</a>.</em></p> <blockquote> <h2>v0.83.4</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.4</code>.</p> <h2>v0.83.3</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.3</code>.</p> <h2>v0.83.2</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.2</code>.</p> <h2>v0.83.1</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.1</code>.</p> <h2>v0.83.0</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.0</code>.</p> <h2>v0.82.15</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.15</code>.</p> <h2>v0.82.14</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.14</code>.</p> <h2>v0.82.13</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.13</code>.</p> <h2>v0.82.12</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.12</code>.</p> <h2>v0.82.11</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.11</code>.</p> <h2>v0.82.10</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.10</code>.</p> <h2>v0.82.9</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.9</code>.</p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/github/gh-aw-actions/commit/e89c65e17eb281bbd5ff2ff9e9199a03e96654c7"><code>e89c65e</code></a> chore: sync actions from gh-aw@v0.83.4 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/200">#200</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/6f8e8ef27dc666d7945cf450b3a16b8872092c94"><code>6f8e8ef</code></a> chore: sync actions from gh-aw@v0.83.3 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/199">#199</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/39143c7eb25e92c0ab748285770483709db03c05"><code>39143c7</code></a> chore: sync actions from gh-aw@v0.83.2 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/198">#198</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/294c5709d8981a4c0ef436fa9136548a1f3781c4"><code>294c570</code></a> chore: upgrade and recompile agentic workflows to v0.83.1 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/197">#197</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/5727e6fd3be3ec32595784b22ffb188d6368972a"><code>5727e6f</code></a> chore: upgrade daily-runtime-threat-scan workflow to gh-aw v0.82.14 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/196">#196</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/8bdba8075360648fe6802302a5b4e016361dc6ac"><code>8bdba80</code></a> chore: sync actions from gh-aw@v0.83.1 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/194">#194</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/34802437a0cba2fd1352d1f1bb02c18a78b56b31"><code>3480243</code></a> chore: sync actions from gh-aw@v0.83.0 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/193">#193</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/511cb6dc1490b20c33a5494ee6d70e0d603ba5bc"><code>511cb6d</code></a> chore: sync actions from gh-aw@v0.82.15 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/192">#192</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/b6d1443e05b8716267fa19425b99aa4f12006b4a"><code>b6d1443</code></a> chore: sync actions from gh-aw@v0.82.14 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/191">#191</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/a5d8b7df9d4f9137bedb3d074d0a0b005f1e1996"><code>a5d8b7d</code></a> chore: sync actions from gh-aw@v0.82.13 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/190">#190</a>)</li> <li>Additional commits viewable in <a href="https://github.com/github/gh-aw-actions/compare/99d9d888952ee25fce70c6b3120ca490d7d8da95...e89c65e17eb281bbd5ff2ff9e9199a03e96654c7">compare view</a></li> </ul> </details> <br /> Updates `actions/checkout` from 6 to 7 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/checkout/releases">actions/checkout's releases</a>.</em></p> <blockquote> <h2>v7.0.0</h2> <h2>What's Changed</h2> <ul> <li>block checking out fork pr for pull_request_target and workflow_run by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2454">actions/checkout#2454</a></li> <li>Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the minor-actions-dependencies group across 1 directory by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/checkout/pull/2458">actions/checkout#2458</a></li> <li>Bump flatted from 3.3.1 to 3.4.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/checkout/pull/2460">actions/checkout#2460</a></li> <li>Bump js-yaml from 4.1.0 to 4.2.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/checkout/pull/2461">actions/checkout#2461</a></li> <li>Bump <code>@​actions/core</code> and <code>@​actions/tool-cache</code> and Remove uuid by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/checkout/pull/2459">actions/checkout#2459</a></li> <li>upgrade module to esm and update dependencies by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2463">actions/checkout#2463</a></li> <li>Bump the minor-npm-dependencies group across 1 directory with 3 updates by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/checkout/pull/2462">actions/checkout#2462</a></li> <li>getting ready for checkout v7 release by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2464">actions/checkout#2464</a></li> <li>update error wording by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2467">actions/checkout#2467</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> made their first contribution in <a href="https://redirect.github.com/actions/checkout/pull/2454">actions/checkout#2454</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/checkout/compare/v6.0.3...v7.0.0">https://github.com/actions/checkout/compare/v6.0.3...v7.0.0</a></p> <h2>v6.1.0</h2> <h2>What's Changed</h2> <ul> <li><strong>[BREAKING]</strong> backport <code>allow-unsafe-pr-checkout</code> to v6 by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2500">actions/checkout#2500</a></li> <li>backport fixes to releases-v6 by <a href="https://github.com/aiqiaoy"><code>@​aiqiaoy</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2527">actions/checkout#2527</a></li> </ul> <p><a href="https://github.blog/changelog/2026-06-18-safer-pull_request_target-defaults-for-github-actions-checkout/">https://github.blog/changelog/2026-06-18-safer-pull_request_target-defaults-for-github-actions-checkout/</a> for more details about this breaking change</p> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/checkout/compare/v6.0.3...v6.1.0">https://github.com/actions/checkout/compare/v6.0.3...v6.1.0</a></p> <h2>v6.0.3</h2> <h2>What's Changed</h2> <ul> <li>Update changelog by <a href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2357">actions/checkout#2357</a></li> <li>fix: expand merge commit SHA regex and add SHA-256 test cases by <a href="https://github.com/yaananth"><code>@​yaananth</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2414">actions/checkout#2414</a></li> <li>Fix checkout init for SHA-256 repositories by <a href="https://github.com/yaananth"><code>@​yaananth</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2439">actions/checkout#2439</a></li> <li>Update changelog for v6.0.3 by <a href="https://github.com/yaananth"><code>@​yaananth</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2446">actions/checkout#2446</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/yaananth"><code>@​yaananth</code></a> made their first contribution in <a href="https://redirect.github.com/actions/checkout/pull/2414">actions/checkout#2414</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/checkout/compare/v6...v6.0.3">https://github.com/actions/checkout/compare/v6...v6.0.3</a></p> <h2>v6.0.2</h2> <h2>What's Changed</h2> <ul> <li>Add orchestration_id to git user-agent when ACTIONS_ORCHESTRATION_ID is set by <a href="https://github.com/TingluoHuang"><code>@​TingluoHuang</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2355">actions/checkout#2355</a></li> <li>Fix tag handling: preserve annotations and explicit fetch-tags by <a href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2356">actions/checkout#2356</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/checkout/compare/v6.0.1...v6.0.2">https://github.com/actions/checkout/compare/v6.0.1...v6.0.2</a></p> <h2>v6.0.1</h2> <h2>What's Changed</h2> <ul> <li>Update all references from v5 and v4 to v6 by <a href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2314">actions/checkout#2314</a></li> <li>Add worktree support for persist-credentials includeIf by <a href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2327">actions/checkout#2327</a></li> <li>Clarify v6 README by <a href="https://github.com/ericsciple"><code>@​ericsciple</code></a> in <a href="https://redirect.github.com/actions/checkout/pull/2328">actions/checkout#2328</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/checkout/commit/3d3c42e5aac5ba805825da76410c181273ba90b1"><code>3d3c42e</code></a> prep v7.0.1 release (<a href="https://redirect.github.com/actions/checkout/issues/2531">#2531</a>)</li> <li><a href="https://github.com/actions/checkout/commit/28802689a136bfcdb721715abd713740beecbe07"><code>2880268</code></a> escape values passed to --unset (<a href="https://redirect.github.com/actions/checkout/issues/2530">#2530</a>)</li> <li><a href="https://github.com/actions/checkout/commit/12cd2235efa0937479335606d7c3ac9f6c0973b1"><code>12cd223</code></a> trim only ascii whitespace for branch (<a href="https://redirect.github.com/actions/checkout/issues/2521">#2521</a>)</li> <li><a href="https://github.com/actions/checkout/commit/62661c4e71a304b2823ed026347b8d34c3eac541"><code>62661c4</code></a> skip running unsafe pr check if input is default (<a href="https://redirect.github.com/actions/checkout/issues/2518">#2518</a>)</li> <li><a href="https://github.com/actions/checkout/commit/e8d4307400f9427dba7cb98e488d6ab85f1cec5f"><code>e8d4307</code></a> Bump the minor-actions-dependencies group with 2 updates (<a href="https://redirect.github.com/actions/checkout/issues/2499">#2499</a>)</li> <li><a href="https://github.com/actions/checkout/commit/631c942040754b6e095e929c1677c07e10ed4f87"><code>631c942</code></a> eslint 9 (<a href="https://redirect.github.com/actions/checkout/issues/2474">#2474</a>)</li> <li><a href="https://github.com/actions/checkout/commit/4f1f4aec02e41874fa0262ea8ff5172d7978ad1e"><code>4f1f4ae</code></a> Bump actions/upload-artifact from 4 to 7 (<a href="https://redirect.github.com/actions/checkout/issues/2476">#2476</a>)</li> <li><a href="https://github.com/actions/checkout/commit/ba097532fb203f7e88c9c3c0b899b49469908a92"><code>ba09753</code></a> Bump actions/checkout from 6 to 7 (<a href="https://redirect.github.com/actions/checkout/issues/2488">#2488</a>)</li> <li><a href="https://github.com/actions/checkout/commit/b9e0990d219a03df7633c93f6f005a8fecbcab22"><code>b9e0990</code></a> Bump docker/login-action from 3.3.0 to 4.2.0 (<a href="https://redirect.github.com/actions/checkout/issues/2479">#2479</a>)</li> <li><a href="https://github.com/actions/checkout/commit/e8cb398be4a550817e382abf69e4c12c76fce1f2"><code>e8cb398</code></a> Bump docker/build-push-action from 6.5.0 to 7.2.0 (<a href="https://redirect.github.com/actions/checkout/issues/2478">#2478</a>)</li> <li>Additional commits viewable in <a href="https://github.com/actions/checkout/compare/v6...v7">compare view</a></li> </ul> </details> <br /> Updates `github/gh-aw-actions/setup-cli` from 0.82.8 to 0.83.4 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/github/gh-aw-actions/releases">github/gh-aw-actions/setup-cli's releases</a>.</em></p> <blockquote> <h2>v0.83.4</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.4</code>.</p> <h2>v0.83.3</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.3</code>.</p> <h2>v0.83.2</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.2</code>.</p> <h2>v0.83.1</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.1</code>.</p> <h2>v0.83.0</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.83.0</code>.</p> <h2>v0.82.15</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.15</code>.</p> <h2>v0.82.14</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.14</code>.</p> <h2>v0.82.13</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.13</code>.</p> <h2>v0.82.12</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.12</code>.</p> <h2>v0.82.11</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.11</code>.</p> <h2>v0.82.10</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.10</code>.</p> <h2>v0.82.9</h2> <p>Sync of actions from <a href="https://github.com/github/gh-aw">gh-aw</a> at <code>v0.82.9</code>.</p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/github/gh-aw-actions/commit/e89c65e17eb281bbd5ff2ff9e9199a03e96654c7"><code>e89c65e</code></a> chore: sync actions from gh-aw@v0.83.4 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/200">#200</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/6f8e8ef27dc666d7945cf450b3a16b8872092c94"><code>6f8e8ef</code></a> chore: sync actions from gh-aw@v0.83.3 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/199">#199</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/39143c7eb25e92c0ab748285770483709db03c05"><code>39143c7</code></a> chore: sync actions from gh-aw@v0.83.2 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/198">#198</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/294c5709d8981a4c0ef436fa9136548a1f3781c4"><code>294c570</code></a> chore: upgrade and recompile agentic workflows to v0.83.1 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/197">#197</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/5727e6fd3be3ec32595784b22ffb188d6368972a"><code>5727e6f</code></a> chore: upgrade daily-runtime-threat-scan workflow to gh-aw v0.82.14 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/196">#196</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/8bdba8075360648fe6802302a5b4e016361dc6ac"><code>8bdba80</code></a> chore: sync actions from gh-aw@v0.83.1 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/194">#194</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/34802437a0cba2fd1352d1f1bb02c18a78b56b31"><code>3480243</code></a> chore: sync actions from gh-aw@v0.83.0 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/193">#193</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/511cb6dc1490b20c33a5494ee6d70e0d603ba5bc"><code>511cb6d</code></a> chore: sync actions from gh-aw@v0.82.15 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/192">#192</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/b6d1443e05b8716267fa19425b99aa4f12006b4a"><code>b6d1443</code></a> chore: sync actions from gh-aw@v0.82.14 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/191">#191</a>)</li> <li><a href="https://github.com/github/gh-aw-actions/commit/a5d8b7df9d4f9137bedb3d074d0a0b005f1e1996"><code>a5d8b7d</code></a> chore: sync actions from gh-aw@v0.82.13 (<a href="https://redirect.github.com/github/gh-aw-actions/issues/190">#190</a>)</li> <li>Additional commits viewable in <a href="https://github.com/github/gh-aw-actions/compare/99d9d888952ee25fce70c6b3120ca490d7d8da95...e89c65e17eb281bbd5ff2ff9e9199a03e96654c7">compare view</a></li> </ul> </details> <br /> Updates `actions/setup-dotnet` from 5 to 6 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/setup-dotnet/releases">actions/setup-dotnet's releases</a>.</em></p> <blockquote> <h2>v6.0.0</h2> <h2>What's Changed</h2> <ul> <li>Migrate to ESM and upgrade dependencies by <a href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/752">actions/setup-dotnet#752</a></li> <li>Bump actions/checkout from 6.0.3 to 7.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/actions/setup-dotnet/pull/751">actions/setup-dotnet#751</a></li> <li>chore(deps): bump <code>@​actions/cache</code> to 6.2.0 by <a href="https://github.com/philip-gai"><code>@​philip-gai</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/756">actions/setup-dotnet#756</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/philip-gai"><code>@​philip-gai</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-dotnet/pull/756">actions/setup-dotnet#756</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/setup-dotnet/compare/v5...v6.0.0">https://github.com/actions/setup-dotnet/compare/v5...v6.0.0</a></p> <h2>v5.4.0</h2> <h2>What's Changed</h2> <h3>Enhancements</h3> <ul> <li>Pin actions to commit SHAs in workflows by <a href="https://github.com/priya-kinthali"><code>@​priya-kinthali</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/744">actions/setup-dotnet#744</a></li> <li>Expand the CSC problem matcher to light up more errors on GitHub. by <a href="https://github.com/StephenCleary"><code>@​StephenCleary</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/717">actions/setup-dotnet#717</a></li> <li>Improve global.json SDK version validation for rollForward by <a href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/742">actions/setup-dotnet#742</a></li> </ul> <blockquote> <p>The action now validates the <code>sdk.version</code> field in <code>global.json</code> when <code>rollForward</code> is specified. The version must be a fully-qualified SDK version (e.g., <code>8.0.100</code>, <code>10.0.100</code>). Wildcard versions (e.g., <code>10.0.*</code>) and runtime-style versions (e.g., <code>8.0.0</code>) will now fail. See the <a href="https://learn.microsoft.com/en-us/dotnet/core/tools/global-json#version">.NET SDK version specification</a> for details.</p> </blockquote> <h3>Documentation</h3> <ul> <li>Docs(action): Explicitly mark all optional inputs with required: false by <a href="https://github.com/kranthipoturaju"><code>@​kranthipoturaju</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/737">actions/setup-dotnet#737</a></li> </ul> <h3>Bug Fixes</h3> <ul> <li>Fix global.json creation command by <a href="https://github.com/michal2612"><code>@​michal2612</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/694">actions/setup-dotnet#694</a></li> </ul> <h3>Dependency Updates</h3> <ul> <li>Upgrade <code>@​actions/cache</code> to 5.1.0, log cache write denied by <a href="https://github.com/jasongin"><code>@​jasongin</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/746">actions/setup-dotnet#746</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/jasongin"><code>@​jasongin</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-dotnet/pull/746">actions/setup-dotnet#746</a></li> <li><a href="https://github.com/michal2612"><code>@​michal2612</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-dotnet/pull/694">actions/setup-dotnet#694</a></li> <li><a href="https://github.com/kranthipoturaju"><code>@​kranthipoturaju</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-dotnet/pull/737">actions/setup-dotnet#737</a></li> <li><a href="https://github.com/StephenCleary"><code>@​StephenCleary</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-dotnet/pull/717">actions/setup-dotnet#717</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/setup-dotnet/compare/v5.3.0...v5.4.0">https://github.com/actions/setup-dotnet/compare/v5.3.0...v5.4.0</a></p> <h2>v5.3.0</h2> <h2>What's Changed</h2> <h3>Enhancements</h3> <ul> <li>Add dotnet-version: latest support with dotnet-channel input by <a href="https://github.com/mahabaleshwars"><code>@​mahabaleshwars</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/730">actions/setup-dotnet#730</a></li> <li>Support global.json's rollForward latest* variants by <a href="https://github.com/js6pak"><code>@​js6pak</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/538">actions/setup-dotnet#538</a></li> <li>Improve version resolution by <a href="https://github.com/akoeplinger"><code>@​akoeplinger</code></a> in <a href="https://redirect.github.com/actions/setup-dotnet/pull/560">actions/setup-dotnet#560</a></li> </ul> <h3>Dependency Updates</h3> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/setup-dotnet/commit/a98b56852c35b8e3190ac28c8c2271da59106c68"><code>a98b568</code></a> chore(deps): bump <code>@​actions/cache</code> to 6.2.0 (<a href="https://redirect.github.com/actions/setup-dotnet/issues/756">#756</a>)</li> <li><a href="https://github.com/actions/setup-dotnet/commit/afb2931642fd907238eb71bce2da0dcc910b3553"><code>afb2931</code></a> Bump actions/checkout from 6.0.3 to 7.0.0 (<a href="https://redirect.github.com/actions/setup-dotnet/issues/751">#751</a>)</li> <li><a href="https://github.com/actions/setup-dotnet/commit/6df8cefd1440cf9313e76b8fdb8aaf90cfa745a3"><code>6df8cef</code></a> Migrate to ESM and upgrade dependencies (<a href="https://redirect.github.com/actions/setup-dotnet/issues/752">#752</a>)</li> <li>See full diff in <a href="https://github.com/actions/setup-dotnet/compare/v5...v6">compare view</a></li> </ul> </details> <br /> Updates `github/gh-aw` from 0.81.6 to 0.83.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/github/gh-aw/releases">github/gh-aw's releases</a>.</em></p> <blockquote> <h2>v0.83.1</h2> <h2>🌟 Release Highlights</h2> <p>This release expands the <code>gh aw compile</code> security pipeline with container vulnerability scanning, license auditing, and YAML linting — while delivering a wave of reliability fixes across the compiler, harness, and PR review workflows.</p> <h3>✨ What's New</h3> <ul> <li><strong>Container vulnerability scanning with Grype</strong> — <code>gh aw compile</code> now runs <a href="https://github.com/anchore/grype">Grype</a> to detect CVEs in <code>gh-*</code> workflow container images before deployment. (<a href="https://redirect.github.com/github/gh-aw/pull/47474">#47474</a>)</li> <li><strong>SBOM generation with Syft</strong> — New <code>--syft</code> flag on <code>gh aw compile</code> produces a Software Bill of Materials for container images. (<a href="https://redirect.github.com/github/gh-aw/pull/47515">#47515</a>)</li> <li><strong>License scanning with Grant</strong> — <code>gh aw compile</code> can now audit container image licenses via <a href="https://github.com/anchore/grant">Grant</a>. (<a href="https://redirect.github.com/github/gh-aw/pull/47516">#47516</a>)</li> <li><strong>YAML linting as a static validator</strong> — <code>yamllint</code> is now integrated into the compile-time validation pipeline, catching YAML errors early. (<a href="https://redirect.github.com/github/gh-aw/pull/47507">#47507</a>)</li> <li><strong>Daily firewall container security scan</strong> — Automated daily scanning keeps the firewall container image clean. (<a href="https://redirect.github.com/github/gh-aw/pull/47407">#47407</a>)</li> <li><strong>GitHub suggestion syntax in PR reviews</strong> — The PR reviewer now emits proper GitHub suggestion blocks instead of plain code snippets, making review feedback directly applicable. (<a href="https://redirect.github.com/github/gh-aw/pull/47508">#47508</a>)</li> <li><strong><code>aw.yml</code> surfaced in add-wizard</strong> — The add-wizard now shows existing <code>aw.yml</code> config before prompting for engine setup, reducing accidental overwrites. (<a href="https://redirect.github.com/github/gh-aw/pull/47462">#47462</a>)</li> <li><strong>Private registry container substitutions</strong> — Container image substitutions for private registries are now supported. (<a href="https://redirect.github.com/github/gh-aw/pull/47374">#47374</a>)</li> </ul> <h3>🐛 Bug Fixes &amp; Improvements</h3> <ul> <li><strong>Flow-sensitive <code>no-unsafe-catch-error-property</code> linter</strong> — The rule now respects branch dominance and source order, eliminating false positives in complex control flow. (<a href="https://redirect.github.com/github/gh-aw/pull/47534">#47534</a>)</li> <li><strong>Hardened <code>report_incomplete</code> signal handling</strong> — Fixes a crash when <code>incomplete_signals</code> is missing or empty. (<a href="https://redirect.github.com/github/gh-aw/pull/47533">#47533</a>)</li> <li><strong>Expression precedence preserved in <code>stringsjoinone</code> autofix</strong> — Autofix replacements no longer silently change operator precedence. (<a href="https://redirect.github.com/github/gh-aw/pull/47482">#47482</a>)</li> <li><strong>Job-level permission shorthands preserved</strong> — Custom and safe jobs now correctly retain shorthand permission declarations through the compiler. (<a href="https://redirect.github.com/github/gh-aw/pull/47471">#47471</a>)</li> <li><strong>Critical CVE cleared</strong> — Upgraded <code>gh-aw-firewall</code> v0.27.37 → v0.27.38 to resolve a critical CVE gate. (<a href="https://redirect.github.com/github/gh-aw/pull/47469">#47469</a>)</li> <li><strong>Harness startup retry extended to push events</strong> — Fixes missing retry logic on push-triggered runs and improves Turns=0 driver-handoff diagnostics. (<a href="https://redirect.github.com/github/gh-aw/pull/47384">#47384</a>)</li> <li><strong>Safe-outputs PR review robustness</strong> — Inline comment anchors that are partially invalid no longer cause review failures. (<a href="https://redirect.github.com/github/gh-aw/pull/47356">#47356</a>) Self-authored PRs now receive <code>COMMENT</code> instead of <code>REQUEST_CHANGES</code>. (<a href="https://redirect.github.com/github/gh-aw/pull/47400">#47400</a>)</li> <li><strong>16 CLI consistency fixes</strong> — Resolved a batch of flag, output, and error-message inconsistencies across CLI commands. (<a href="https://redirect.github.com/github/gh-aw/pull/47337">#47337</a>)</li> </ul> <h3>📚 Documentation</h3> <ul> <li>Clarified compiler-managed skill installation under <code>.github/aw</code>. (<a href="https://redirect.github.com/github/gh-aw/pull/47480">#47480</a>)</li> <li>Added missing <code>meta</code>/<code>terminal</code> safe-output types to the designer mapping table. (<a href="https://redirect.github.com/github/gh-aw/pull/47506">#47506</a>)</li> </ul> <blockquote> <p>Generated by <a href="https://github.com/github/gh-aw/actions/runs/30004500689">🚀 Release</a> · sonnet46 22.2 AIC · ⊞ 7.9K</p> </blockquote> <!-- raw HTML omitted --> <hr /> <h2>What's Changed</h2> <ul> <li>[dead-code] chore: remove dead functions — 5 functions removed by <a href="https://github.com/github-actions"><code>@​github-actions</code></a>[bot] in <a href="https://redirect.github.com/github/gh-aw/pull/47339">github/gh-aw#47339</a></li> <li>fix: use html/template to resolve unsafe-quoting alert in bootstrap page renderer by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47333">github/gh-aw#47333</a></li> <li>fix: resolve 16 CLI consistency issues from 2026-07-22 inspection by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47337">github/gh-aw#47337</a></li> <li>Scope Tidy workflow to scheduled/explicit runs to eliminate push-driven API bursts by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47353">github/gh-aw#47353</a></li> <li>Align glossary and documentation workflows on shared AI Coding Dictionary guidance by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47358">github/gh-aw#47358</a></li> <li>Explore Git AI integration opportunities by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47360">github/gh-aw#47360</a></li> <li>pkg/cli tests: migrate <code>assert.NoError</code> to <code>require.NoError</code> for fail-fast error handling by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47355">github/gh-aw#47355</a></li> <li>Mitigate safe-outputs review failures when inline comment anchors are partially invalid by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47356">github/gh-aw#47356</a></li> <li>Auto-Triage: deterministically classify machine-generated aggregate reports by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47373">github/gh-aw#47373</a></li> <li>Add regression coverage for PR review path-resolution fallback by <a href="https://github.com/pelikhan"><code>@​pelikhan</code></a> with <a href="https://github.com/Copilot"><code>@​Copilot</code></a> in <a href="https://redirect.github.com/github/gh-aw/pull/47380">github/gh-aw#47380</a></li> <li>[linter-miner] feat(linters): add stringbytesroundtrip linter by <a href="https://github.com/github-actions"><code>@​github-actions</code></a>[bot] in <a href="https://redirect.github.com/github/gh-aw/pull/47375">github/gh-aw#47375</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/github/gh-aw/commit/6268b9870d9f3bd9ce7526cb9d9cac988ffcfa35"><code>6268b98</code></a> docs: update glossary with grant, syft, yamllint scanner terms (<a href="https://redirect.github.com/github/gh-aw/issues/47548">#47548</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/0f71e5b829a60d687c7b37e6ef1e45a6488acc9f"><code>0f71e5b</code></a> Make no-unsafe-catch-error-property flow-sensitive to branch dominance and so...</li> <li><a href="https://github.com/github/gh-aw/commit/56fad0f2a5c5912882faeb5094ef08394ca91833"><code>56fad0f</code></a> Harden report_incomplete issue handling when <code>incomplete_signals</code> is missing/...</li> <li><a href="https://github.com/github/gh-aw/commit/30e222dadf31d306615b204175ca95650a7061b2"><code>30e222d</code></a> [eslint-miner] eslint: add no-err-stack-then-string-fallback rule (<a href="https://redirect.github.com/github/gh-aw/issues/47541">#47541</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/128d4e9893be1d1a2e4deedbc0d7259233eb8b44"><code>128d4e9</code></a> Add Grant license scanning to <code>gh aw compile</code> (<a href="https://redirect.github.com/github/gh-aw/issues/47516">#47516</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/e17be1c11c74651ad2d644b63fd802a609aebbf9"><code>e17be1c</code></a> Add yamllint as a static analysis validator (<a href="https://redirect.github.com/github/gh-aw/issues/47507">#47507</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/8e87e118e976c284a3fe57ead4feb3f345bc7305"><code>8e87e11</code></a> [instructions] Bring token-optimization.md under 400-line limit (<a href="https://redirect.github.com/github/gh-aw/issues/47537">#47537</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/8127be0d38f8deedf0cfc93c4529a9f602694466"><code>8127be0</code></a> Add <code>--syft</code> container scan support to <code>gh aw compile</code> (<a href="https://redirect.github.com/github/gh-aw/issues/47515">#47515</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/c180c1b78121ee7b8adb7740e818db1e86009ecc"><code>c180c1b</code></a> Add add-wizard integration coverage for manifest bootstrap ordering (<a href="https://redirect.github.com/github/gh-aw/issues/47517">#47517</a>)</li> <li><a href="https://github.com/github/gh-aw/commit/0d9637f0f59bec44e75de33d33943c2bc607e634"><code>0d9637f</code></a> docs: add missing meta/terminal safe-output types to designer mapping table (...</li> <li>Additional commits viewable in <a href="https://github.com/github/gh-aw/compare/v0.81.6...v0.83.1">compare view</a></li> </ul> </details> <br /> Updates `jdx/mise-action` from 4.2.0 to 4.2.3 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/jdx/mise-action/releases">jdx/mise-action's releases</a>.</em></p> <blockquote> <h2>v4.2.3: Restore mise PATH propagation</h2> <p>A patch release that restores mise's PATH propagation to subsequent workflow steps — without reintroducing the full-PATH snapshot behavior that v4.2.1 fixed.</p> <h2>Fixed</h2> <h3>Export mise PATH entries to subsequent steps (<a href="https://redirect.github.com/jdx/mise-action/pull/575">#575</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a></h3> <p>v4.2.1 stopped exporting the complete <code>PATH</code> returned by <code>mise env --json</code> into <code>GITHUB_ENV</code>, which correctly prevented snapshotting the runner's environment into subsequent steps. However, that also dropped mise-produced PATH entries — tool shims, <code>[env] _.path</code> directories, and similar — that workflows relied on after the setup step. See <a href="https://redirect.github.com/jdx/mise-action/issues/565">#565</a>.</p> <p>The action now computes only the <strong>prefix</strong> that mise prepended to the existing <code>PATH</code> and forwards those directories individually through <code>GITHUB_PATH</code>. This preserves mise's configured ordering, composes cleanly with PATH changes from other actions, and never persists the runner's full <code>PATH</code> through <code>GITHUB_ENV</code>. The dotenv fallback path (used with older mise versions) also strips <code>PATH=</code> lines and re-derives additions from <code>mise env --json</code>.</p> <p>A new <code>export_path</code> input (default <code>true</code>) lets workflows keep regular <code>env</code> exports while opting out of PATH changes:</p> <pre lang="yaml"><code>- uses: jdx/mise-action@v4 with: export_path: false # keep env vars, skip mise PATH additions </code></pre> <p><strong>Full Changelog</strong>: <a href="https://github.com/jdx/mise-action/compare/v4.2.2...v4.2.3">https://github.com/jdx/mise-action/compare/v4.2.2...v4.2.3</a></p> <h2>v4.2.2: Zstd tar fallback for older runners</h2> <p>A small patch release that fixes archive selection on runners with an older <code>tar</code> and corrects a stale default in the README.</p> <h2>Fixed</h2> <h3>Verify <code>tar</code> supports Zstd before picking <code>.tar.zst</code> (<a href="https://redirect.github.com/jdx/mise-action/pull/569">#569</a> by <a href="https://github.com/JackMyers001"><code>@​JackMyers001</code></a></h3> <p>The action previously chose the <code>.tar.zst</code> mise archive whenever <code>zstd --version</code> succeeded, then extracted it with <code>tar --zstd</code>. On RHEL 8-compatible runners that ship <code>zstd</code> 1.4.4 alongside GNU <code>tar</code> 1.30, the <code>--zstd</code> option isn't recognized and installation failed.</p> <p>Detection now runs both checks:</p> <pre><code>zstd --version tar --zstd --version </code></pre> <p>If either fails, the action falls back to the <code>.tar.gz</code> archive. No configuration change is required — existing workflows on affected runners just start working again. Fixes <a href="https://redirect.github.com/jdx/mise-action/issues/568">#568</a>.</p> <h2>Documentation</h2> <ul> <li>Update the <code>cache_key_prefix</code> example in the README to reflect the current default of <code>mise-v1</code> (previously documented as <code>mise-v0</code>) (<a href="https://redirect.github.com/jdx/mise-action/pull/570">#570</a> by <a href="https://github.com/muzimuzhi"><code>@​muzimuzhi</code></a>).</li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/JackMyers001"><code>@​JackMyers001</code></a> made their first contribution in <a href="https://redirect.github.com/jdx/mise-action/pull/569">#569</a></li> <li><a href="https://github.com/muzimuzhi"><code>@​muzimuzhi</code></a> made their first contribution in <a href="https://redirect.github.com/jdx/mise-action/pull/570">#570</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/jdx/mise-action/compare/v4.2.1...v4.2.2">https://github.com/jdx/mise-action/compare/v4.2.1...v4.2.2</a></p> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/jdx/mise-action/blob/main/CHANGELOG.md">jdx/mise-action's changelog</a>.</em></p> <blockquote> <h1>Changelog</h1> <hr /> <h2><a href="https://github.com/jdx/mise-action/compare/v4.2.2..v4.2.3">4.2.3</a> - 2026-07-24</h2> <h3>🐛 Bug Fixes</h3> <ul> <li>export mise path entries to subsequent steps (<a href="https://redirect.github.com/jdx/mise-action/issues/575">#575</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/575">#575</a></li> </ul> <hr /> <h2><a href="https://github.com/jdx/mise-action/compare/v4.2.1..v4.2.2">4.2.2</a> - 2026-07-24</h2> <h3>🐛 Bug Fixes</h3> <ul> <li><strong>(release-plz)</strong> exit when git-cliff produces no version bump (<a href="https://redirect.github.com/jdx/mise-action/issues/566">#566</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/566">#566</a></li> <li>ensure <code>tar</code> supports Zstd (<a href="https://redirect.github.com/jdx/mise-action/issues/569">#569</a>) by <a href="https://github.com/JackMyers001"><code>@​JackMyers001</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/569">#569</a></li> </ul> <h3>📚 Documentation</h3> <ul> <li>update default value of <code>cache_key_prefix</code> (<a href="https://redirect.github.com/jdx/mise-action/issues/570">#570</a>) by <a href="https://github.com/muzimuzhi"><code>@​muzimuzhi</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/570">#570</a></li> </ul> <h3>New Contributors</h3> <ul> <li><a href="https://github.com/muzimuzhi"><code>@​muzimuzhi</code></a> made their first contribution in <a href="https://redirect.github.com/jdx/mise-action/pull/570">#570</a></li> <li><a href="https://github.com/JackMyers001"><code>@​JackMyers001</code></a> made their first contribution in <a href="https://redirect.github.com/jdx/mise-action/pull/569">#569</a></li> </ul> <hr /> <h2><a href="https://github.com/jdx/mise-action/compare/v4.2.0..v4.2.1">4.2.1</a> - 2026-07-16</h2> <h3>🐛 Bug Fixes</h3> <ul> <li>verify mise downloads with signed checksums (<a href="https://redirect.github.com/jdx/mise-action/issues/548">#548</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/548">#548</a></li> <li>exclude PATH from environment export (<a href="https://redirect.github.com/jdx/mise-action/issues/556">#556</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/556">#556</a></li> </ul> <h3>🔍 Other Changes</h3> <ul> <li>Enable Entire for Codex (<a href="https://redirect.github.com/jdx/mise-action/issues/529">#529</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/529">#529</a></li> </ul> <h3>⚙️ Miscellaneous Tasks</h3> <ul> <li><strong>(ci)</strong> automate weekly releases (<a href="https://redirect.github.com/jdx/mise-action/issues/557">#557</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/557">#557</a></li> <li><strong>(release)</strong> skip ai reviews for release prs (<a href="https://redirect.github.com/jdx/mise-action/issues/549">#549</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/549">#549</a></li> </ul> <hr /> <h2><a href="https://github.com/jdx/mise-action/compare/v4.1.0..v4.2.0">4.2.0</a> - 2026-06-17</h2> <h3>🚀 Features</h3> <ul> <li>support bootstrap mode (<a href="https://redirect.github.com/jdx/mise-action/issues/522">#522</a>) by <a href="https://github.com/jdx"><code>@​jdx</code></a> in <a href="https://redirect.github.com/jdx/mise-action/pull/522">#522</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/jdx/mise-action/commit/9e7f7633ff6f6d6048a9418a68d48f288f50eb14"><code>9e7f763</code></a> chore: release v4.2.3 (<a href="https://redirect.github.com/jdx/mise-action/issues/578">#578</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/0f8563785e70e54dca8048fea170aa8724b5470c"><code>0f85637</code></a> fix: export mise path entries to subsequent steps (<a href="https://redirect.github.com/jdx/mise-action/issues/575">#575</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/a24c37558aed0ce7f5bbd98aa69c714201402256"><code>a24c375</code></a> chore(deps): migrate to aube lockfile (<a href="https://redirect.github.com/jdx/mise-action/issues/576">#576</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/f10502fc09dadecfefb962fff68ce77213930204"><code>f10502f</code></a> chore: release v4.2.2 (<a href="https://redirect.github.com/jdx/mise-action/issues/567">#567</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/5df6b79829f8220a0c9d91f2943a030155adb035"><code>5df6b79</code></a> chore(deps): update zizmorcore/zizmor-action action to v0.6.0 (<a href="https://redirect.github.com/jdx/mise-action/issues/574">#574</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/be707ecdeaf88b565eacb466b4a76bf378c94dd8"><code>be707ec</code></a> chore(deps): update jdx/mise-action action to v4.2.1 (<a href="https://redirect.github.com/jdx/mise-action/issues/572">#572</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/d0f7879e382fb84c4eabb58874329c8d4b4654a9"><code>d0f7879</code></a> chore(deps): update github/codeql-action action to v4.37.1 (<a href="https://redirect.github.com/jdx/mise-action/issues/571">#571</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/fc371b785e25187fe8939adbfca8b55874df247a"><code>fc371b7</code></a> docs: update default value of <code>cache_key_prefix</code> (<a href="https://redirect.github.com/jdx/mise-action/issues/570">#570</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/5c77551fad58f7b38c7cd1fabec52ef652968bed"><code>5c77551</code></a> fix: ensure <code>tar</code> supports Zstd (<a href="https://redirect.github.com/jdx/mise-action/issues/569">#569</a>)</li> <li><a href="https://github.com/jdx/mise-action/commit/a63ca4f21410f6d76a7bba6b6787d34cf15541f2"><code>a63ca4f</code></a> fix(release-plz): exit when git-cliff produces no version bump (<a href="https://redirect.github.com/jdx/mise-action/issues/566">#566</a>)</li> <li>Additional commits viewable in <a href="https://github.com/jdx/mise-action/compare/e6a8b3978addb5a52f2b4cd9d91eafa7f0ab959d...9e7f7633ff6f6d6048a9418a68d48f288f50eb14">compare view</a></li> </ul> </details> <br /> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 51207aa commit aa8cf95

6 files changed

Lines changed: 30 additions & 30 deletions

File tree

.github/workflows/agentics-maintenance.yml

Lines changed: 21 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -96,7 +96,7 @@ jobs:
9696
pull-requests: write
9797
steps:
9898
- name: Setup Scripts
99-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
99+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
100100
with:
101101
destination: ${{ runner.temp }}/gh-aw/actions
102102

@@ -134,7 +134,7 @@ jobs:
134134
actions: write
135135
steps:
136136
- name: Setup Scripts
137-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
137+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
138138
with:
139139
destination: ${{ runner.temp }}/gh-aw/actions
140140

@@ -158,12 +158,12 @@ jobs:
158158
operation: ${{ steps.record.outputs.operation }}
159159
steps:
160160
- name: Checkout repository
161-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
161+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
162162
with:
163163
persist-credentials: false
164164

165165
- name: Setup Scripts
166-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
166+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
167167
with:
168168
destination: ${{ runner.temp }}/gh-aw/actions
169169

@@ -178,7 +178,7 @@ jobs:
178178
await main();
179179
180180
- name: Install gh-aw
181-
uses: github/gh-aw-actions/setup-cli@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
181+
uses: github/gh-aw-actions/setup-cli@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
182182
with:
183183
version: v0.80.9
184184

@@ -210,7 +210,7 @@ jobs:
210210
pull-requests: write
211211
steps:
212212
- name: Setup Scripts
213-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
213+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
214214
with:
215215
destination: ${{ runner.temp }}/gh-aw/actions
216216

@@ -249,14 +249,14 @@ jobs:
249249
run_url: ${{ steps.record.outputs.run_url }}
250250
steps:
251251
- name: Checkout actions folder
252-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
252+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
253253
with:
254254
sparse-checkout: |
255255
actions
256256
persist-credentials: false
257257

258258
- name: Setup Scripts
259-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
259+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
260260
with:
261261
destination: ${{ runner.temp }}/gh-aw/actions
262262

@@ -297,12 +297,12 @@ jobs:
297297
issues: write
298298
steps:
299299
- name: Checkout repository
300-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
300+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
301301
with:
302302
persist-credentials: false
303303

304304
- name: Setup Scripts
305-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
305+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
306306
with:
307307
destination: ${{ runner.temp }}/gh-aw/actions
308308

@@ -317,7 +317,7 @@ jobs:
317317
await main();
318318
319319
- name: Install gh-aw
320-
uses: github/gh-aw-actions/setup-cli@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
320+
uses: github/gh-aw-actions/setup-cli@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
321321
with:
322322
version: v0.80.9
323323

@@ -343,12 +343,12 @@ jobs:
343343
issues: write
344344
steps:
345345
- name: Checkout repository
346-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
346+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
347347
with:
348348
persist-credentials: false
349349

350350
- name: Setup Scripts
351-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
351+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
352352
with:
353353
destination: ${{ runner.temp }}/gh-aw/actions
354354

@@ -363,7 +363,7 @@ jobs:
363363
await main();
364364
365365
- name: Install gh-aw
366-
uses: github/gh-aw-actions/setup-cli@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
366+
uses: github/gh-aw-actions/setup-cli@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
367367
with:
368368
version: v0.80.9
369369

@@ -448,12 +448,12 @@ jobs:
448448
issues: write
449449
steps:
450450
- name: Checkout repository
451-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
451+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
452452
with:
453453
persist-credentials: false
454454

455455
- name: Setup Scripts
456-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
456+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
457457
with:
458458
destination: ${{ runner.temp }}/gh-aw/actions
459459

@@ -468,7 +468,7 @@ jobs:
468468
await main();
469469
470470
- name: Install gh-aw
471-
uses: github/gh-aw-actions/setup-cli@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
471+
uses: github/gh-aw-actions/setup-cli@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
472472
with:
473473
version: v0.80.9
474474

@@ -545,7 +545,7 @@ jobs:
545545
issues: write
546546
steps:
547547
- name: Setup Scripts
548-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
548+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
549549
with:
550550
destination: ${{ runner.temp }}/gh-aw/actions
551551

@@ -577,12 +577,12 @@ jobs:
577577
issues: write
578578
steps:
579579
- name: Checkout repository
580-
uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0
580+
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
581581
with:
582582
persist-credentials: false
583583

584584
- name: Setup Scripts
585-
uses: github/gh-aw-actions/setup@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
585+
uses: github/gh-aw-actions/setup@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
586586
with:
587587
destination: ${{ runner.temp }}/gh-aw/actions
588588

@@ -597,7 +597,7 @@ jobs:
597597
await main();
598598
599599
- name: Install gh-aw
600-
uses: github/gh-aw-actions/setup-cli@99d9d888952ee25fce70c6b3120ca490d7d8da95 # v0.82.8
600+
uses: github/gh-aw-actions/setup-cli@e89c65e17eb281bbd5ff2ff9e9199a03e96654c7 # v0.83.4
601601
with:
602602
version: v0.80.9
603603

.github/workflows/ci-emitter-diff-go.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ jobs:
3838
# Fork PRs are intentionally skipped
3939
if: github.event.pull_request.head.repo.fork != true
4040
steps:
41-
- uses: actions/checkout@v6
41+
- uses: actions/checkout@v7
4242
with:
4343
fetch-depth: 0
4444
submodules: recursive

.github/workflows/ci-go.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ jobs:
1111
name: "Build"
1212
runs-on: ubuntu-latest
1313
steps:
14-
- uses: actions/checkout@v6
14+
- uses: actions/checkout@v7
1515
with:
1616
submodules: recursive
1717

@@ -32,7 +32,7 @@ jobs:
3232
matrix:
3333
go-version: ["1.26.1", "1.25.8"]
3434
steps:
35-
- uses: actions/checkout@v6
35+
- uses: actions/checkout@v7
3636
with:
3737
submodules: recursive
3838

@@ -77,7 +77,7 @@ jobs:
7777
needs: build
7878
runs-on: ubuntu-latest
7979
steps:
80-
- uses: actions/checkout@v6
80+
- uses: actions/checkout@v7
8181
with:
8282
submodules: recursive
8383

@@ -102,7 +102,7 @@ jobs:
102102
needs: build
103103
runs-on: ubuntu-latest
104104
steps:
105-
- uses: actions/checkout@v6
105+
- uses: actions/checkout@v7
106106
with:
107107
submodules: recursive
108108

.github/workflows/ci.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@ jobs:
4040
node-version: ${{ matrix.node-version }}
4141

4242
- name: Setup .NET
43-
uses: actions/setup-dotnet@v5
43+
uses: actions/setup-dotnet@v6
4444
with:
4545
dotnet-version: 8.0.x
4646

@@ -95,7 +95,7 @@ jobs:
9595
- uses: ./.github/actions/setup
9696

9797
- name: Setup .NET
98-
uses: actions/setup-dotnet@v5
98+
uses: actions/setup-dotnet@v6
9999
with:
100100
dotnet-version: 8.0.x
101101

.github/workflows/copilot-setup-steps.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,6 +13,6 @@ jobs:
1313
- name: Checkout repository
1414
uses: actions/checkout@v7
1515
- name: Install gh-aw extension
16-
uses: github/gh-aw/actions/setup-cli@v0.81.6
16+
uses: github/gh-aw/actions/setup-cli@v0.83.1
1717
with:
1818
version: v0.50.1

.github/workflows/nightly-e2e.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -92,7 +92,7 @@ jobs:
9292

9393
- name: Setup language runtime
9494
if: matrix.mise-install-args
95-
uses: jdx/mise-action@e6a8b3978addb5a52f2b4cd9d91eafa7f0ab959d # v4.2.0
95+
uses: jdx/mise-action@9e7f7633ff6f6d6048a9418a68d48f288f50eb14 # v4.2.3
9696
with:
9797
install_args: ${{ matrix.mise-install-args }}
9898

0 commit comments

Comments
 (0)