Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 10, 2025

Bumps google/osv-scanner-action from f8115f2f28022984d4e8070d2f0f85abcf6f3458 to 38fe5192f7462b770610c9cca5a8dafc05ad0c0f.

Commits
  • 38fe519 Merge pull request #60 from google/fix-remaining-skip-git
  • b1f70ce Fix: remove accidental skip git flag
  • 5b43447 Merge pull request #58 from renovate-bot/renovate/workflows
  • ef50e1b Merge pull request #59 from google/update-to-v2.0.0-beta2
  • 621a32c Remove skip git
  • 22402ff Update unified workflow example to point to v2.0.0-beta2 reusable workflows
  • 279b38d Update reusable workflows to point to v2.0.0-beta2 actions
  • b24d3df Update actions to use v2.0.0-beta2 osv-scanner image
  • 94abe36 chore(deps): update workflows
  • e6898c9 Merge pull request #57 from mullvad/support-checking-out-submodules
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [google/osv-scanner-action](https://github.com/google/osv-scanner-action) from f8115f2f28022984d4e8070d2f0f85abcf6f3458 to 38fe5192f7462b770610c9cca5a8dafc05ad0c0f.
- [Release notes](https://github.com/google/osv-scanner-action/releases)
- [Commits](google/osv-scanner-action@f8115f2...38fe519)

---
updated-dependencies:
- dependency-name: google/osv-scanner-action
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added area/dependencies Involves packages or other software that qsim depends on area/devops Involves build systems, Make files, Bazel files, continuous integration, and or other DevOps topics labels Mar 10, 2025
@mhucka mhucka enabled auto-merge March 10, 2025 23:20
@mhucka mhucka added this pull request to the merge queue Mar 10, 2025
Merged via the queue into master with commit ec74f00 Mar 10, 2025
19 checks passed
@mhucka mhucka deleted the dependabot/github_actions/google/osv-scanner-action-38fe5192f7462b770610c9cca5a8dafc05ad0c0f branch March 10, 2025 23:22
mhucka pushed a commit to mhucka/OpenFermion that referenced this pull request Sep 25, 2025
Bumps [google/osv-scanner-action](https://github.com/google/osv-scanner-action) from f8115f2f28022984d4e8070d2f0f85abcf6f3458 to 38fe5192f7462b770610c9cca5a8dafc05ad0c0f.
- [Release notes](https://github.com/google/osv-scanner-action/releases)
- [Commits](google/osv-scanner-action@f8115f2...38fe519)

---
updated-dependencies:
- dependency-name: google/osv-scanner-action
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area/dependencies Involves packages or other software that qsim depends on area/devops Involves build systems, Make files, Bazel files, continuous integration, and or other DevOps topics

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant