Bump the "repo-dependencies" group with 2 updates across multiple ecosystems#283
Bump the "repo-dependencies" group with 2 updates across multiple ecosystems#283dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Bumps the repo-dependencies group with 2 updates: [actions/setup-node](https://github.com/actions/setup-node) and [github/codeql-action](https://github.com/github/codeql-action). Updates `actions/setup-node` from 6.2.0 to 6.3.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@6044e13...53b8394) Updates `github/codeql-action` from 4.32.4 to 4.35.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@89a39a4...c10b806) build(deps): bump the repo-dependencies group with 11 updates Bumps the repo-dependencies group with 11 updates: | Package | From | To | | --- | --- | --- | | [@actions/core](https://github.com/actions/toolkit/tree/HEAD/packages/core) | `2.0.3` | `3.0.0` | | [@datadog/datadog-ci](https://github.com/DataDog/datadog-ci/tree/HEAD/packages/datadog-ci) | `5.9.0` | `5.11.0` | | [@datadog/datadog-ci-base](https://github.com/DataDog/datadog-ci/tree/HEAD/packages/base) | `5.9.0` | `5.11.0` | | [axios](https://github.com/axios/axios) | `1.13.6` | `1.14.0` | | [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) | `25.4.0` | `25.5.2` | | [eslint](https://github.com/eslint/eslint) | `9.39.4` | `10.2.0` | | [eslint-plugin-jest](https://github.com/jest-community/eslint-plugin-jest) | `29.15.0` | `29.15.1` | | [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) | `30.2.0` | `30.3.0` | | [ts-jest](https://github.com/kulshekhar/ts-jest) | `29.4.6` | `29.4.9` | | [typescript](https://github.com/microsoft/TypeScript) | `5.9.3` | `6.0.2` | | [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.57.0` | `8.58.0` | Updates `@actions/core` from 2.0.3 to 3.0.0 - [Changelog](https://github.com/actions/toolkit/blob/main/packages/core/RELEASES.md) - [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/core) Updates `@datadog/datadog-ci` from 5.9.0 to 5.11.0 - [Release notes](https://github.com/DataDog/datadog-ci/releases) - [Commits](https://github.com/DataDog/datadog-ci/commits/v5.11.0/packages/datadog-ci) Updates `@datadog/datadog-ci-base` from 5.9.0 to 5.11.0 - [Release notes](https://github.com/DataDog/datadog-ci/releases) - [Commits](https://github.com/DataDog/datadog-ci/commits/v5.11.0/packages/base) Updates `axios` from 1.13.6 to 1.14.0 - [Release notes](https://github.com/axios/axios/releases) - [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md) - [Commits](axios/axios@v1.13.6...v1.14.0) Updates `@types/node` from 25.4.0 to 25.5.2 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node) Updates `eslint` from 9.39.4 to 10.2.0 - [Release notes](https://github.com/eslint/eslint/releases) - [Commits](eslint/eslint@v9.39.4...v10.2.0) Updates `eslint-plugin-jest` from 29.15.0 to 29.15.1 - [Release notes](https://github.com/jest-community/eslint-plugin-jest/releases) - [Changelog](https://github.com/jest-community/eslint-plugin-jest/blob/main/CHANGELOG.md) - [Commits](jest-community/eslint-plugin-jest@v29.15.0...v29.15.1) Updates `jest` from 30.2.0 to 30.3.0 - [Release notes](https://github.com/jestjs/jest/releases) - [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md) - [Commits](https://github.com/jestjs/jest/commits/v30.3.0/packages/jest) Updates `ts-jest` from 29.4.6 to 29.4.9 - [Release notes](https://github.com/kulshekhar/ts-jest/releases) - [Changelog](https://github.com/kulshekhar/ts-jest/blob/main/CHANGELOG.md) - [Commits](kulshekhar/ts-jest@v29.4.6...v29.4.9) Updates `typescript` from 5.9.3 to 6.0.2 - [Release notes](https://github.com/microsoft/TypeScript/releases) - [Commits](microsoft/TypeScript@v5.9.3...v6.0.2) Updates `typescript-eslint` from 8.57.0 to 8.58.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.0/packages/typescript-eslint) --- updated-dependencies: - dependency-name: actions/setup-node dependency-version: 6.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: github/codeql-action dependency-version: 4.35.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: "@actions/core" dependency-version: 3.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: repo-dependencies - dependency-name: "@datadog/datadog-ci" dependency-version: 5.11.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: "@datadog/datadog-ci-base" dependency-version: 5.11.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: axios dependency-version: 1.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: "@types/node" dependency-version: 25.5.2 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: eslint dependency-version: 10.2.0 dependency-type: direct:development update-type: version-update:semver-major dependency-group: repo-dependencies - dependency-name: eslint-plugin-jest dependency-version: 29.15.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: repo-dependencies - dependency-name: jest dependency-version: 30.3.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: repo-dependencies - dependency-name: ts-jest dependency-version: 29.4.9 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: repo-dependencies - dependency-name: typescript dependency-version: 6.0.2 dependency-type: direct:development update-type: version-update:semver-major dependency-group: repo-dependencies - dependency-name: typescript-eslint dependency-version: 8.58.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: repo-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 43fa314ae5
ℹ️ About Codex in GitHub
Codex has been enabled to automatically review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
When you sign up for Codex through ChatGPT, Codex can also answer questions or update the PR, like "@codex address that feedback".
| "@datadog/datadog-ci": "5.11.0", | ||
| "@datadog/datadog-ci-base": "5.11.0", |
There was a problem hiding this comment.
Rebuild and commit dist after runtime dependency bump
This commit updates runtime packages (@datadog/datadog-ci/@datadog/datadog-ci-base) in package.json, but it does not update the bundled artifact that the action actually executes (runs.main: dist/index.js in action.yml). In this revision, dist/index.js still embeds @datadog/datadog-ci-base version 5.9.0, so users will continue running the old code despite the dependency bump, and the check-dist workflow’s rebuild/diff step is expected to detect uncommitted dist/ changes. Please regenerate and commit dist/ with the new dependency set.
Useful? React with 👍 / 👎.
Rebasing might not happen immediately, so don't worry if this takes some time.
Note: if you make any changes to this PR yourself, they will take precedence over the rebase.
Bumps the repo-dependencies group with 2 updates: actions/setup-node and github/codeql-action.
Updates
actions/setup-nodefrom 6.2.0 to 6.3.0Release notes
Sourced from actions/setup-node's releases.
Commits
53b8394Bump minimatch from 3.1.2 to 3.1.5 (#1498)54045abScope test lockfiles by package manager and update cache tests (#1495)c882bffReplace uuid with crypto.randomUUID() (#1378)774c1d6feat(node-version-file): support parsingdevEnginesfield (#1283)efcb663fix: remove hardcoded bearer (#1467)d02c89dFix npm audit issues (#1491)Updates
github/codeql-actionfrom 4.32.4 to 4.35.1Release notes
Sourced from github/codeql-action's releases.
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
c10b806Merge pull request #3782 from github/update-v4.35.1-d6d1743b8c5ffd06Update changelog for v4.35.1d6d1743Merge pull request #3781 from github/henrymercer/update-git-minimum-version65d2efaAdd changelog note2437b20Update minimum git version for overlay to 2.36.0ea5f719Merge pull request #3775 from github/dependabot/npm_and_yarn/node-forge-1.4.045ceeeaMerge pull request #3777 from github/mergeback/v4.35.0-to-main-b8bb9f2824448c9Rebuild7c51060Update changelog and version after v4.35.0b8bb9f2Merge pull request #3776 from github/update-v4.35.0-0078ad667Bumps the repo-dependencies group with 11 updates:
2.0.33.0.05.9.05.11.05.9.05.11.01.13.61.14.025.4.025.5.29.39.410.2.029.15.029.15.130.2.030.3.029.4.629.4.95.9.36.0.28.57.08.58.0Updates
@actions/corefrom 2.0.3 to 3.0.0Changelog
Sourced from
@actions/core's changelog.Commits
Updates
@datadog/datadog-cifrom 5.9.0 to 5.11.0Release notes
Sourced from
@datadog/datadog-ci's releases.... (truncated)
Commits
9f0d4b7v5.11.0d04ed25[security] Pin all direct dependencies to exact versions (#2195)05670b1v5.10.06fb2984Fix issues reported byknip:strict2c2279dRunyarn format+ final manual changes4927759v5.9.1Updates
@datadog/datadog-ci-basefrom 5.9.0 to 5.11.0Release notes
Sourced from
@datadog/datadog-ci-base's releases.... (truncated)
Commits
9f0d4b7v5.11.0d04ed25[security] Pin all direct dependencies to exact versions (#2195)b620ab7chore: Update Lambda layer versions (#2181)6635ec8feat(sourcemaps): support--commit-shato bypass git (#2164)05670b1v5.10.09cb78ef[dev] Fix unit test failing when no API/App keys set locally (#2182)2c2279dRunyarn format+ final manual changesd653665chore: Update Lambda layer versions (#2176)c554e4eImprove sourcemaps upload output formatting (#2171)5023233[SYNTH-24187] AddplanDryRunpublic API and--dry-runflag torun-tests...Updates
axiosfrom 1.13.6 to 1.14.0Release notes
Sourced from axios's releases.
Commits
46bee3dchore(release): prepare release 1.14.0 (#10563)518aff5chore: add AI Moderator workflow for spam detection (#10551)b7dfda3chore(sponsor): update sponsor block (#10557)9aa34d5fix: updated release flow to match the current flows (#10562)e9e5ebeUpdate packages to latest version (#10556)4d8931cfix: formidable dependency vulnerable to arbitrary (#7533)3a6f5c1chore(deps-dev): bump@babel/preset-env(#7531)bcfd299fix: bug axios breaks commonjs compatibility main entry (#7532)d6dcbfdfix: dependabot uses the correct labels (#7530)5dd7ba7chore: upgrade to latest ts (#7522)Install script changes
This version modifies
preparescript that runs during installation. Review the package contents before updating.Updates
@types/nodefrom 25.4.0 to 25.5.2Commits
Updates
eslintfrom 9.39.4 to 10.2.0Release notes
Sourced from eslint's releases.
... (truncated)
Commits
000128c10.2.01988fadBuild: changelog update for 10.2.0542cb3efix: update first-party dependencies (#20714)a2af743docs: addlanguageto configuration objects (#20712)845f23fdocs: Update README5fbcf59docs: removesourceTypefrom ts playground link (#20477)8702a47docs: Update READMEddeadeddocs: Update README8120e30refactor: extract no unmodified loop condition (#20679)46e8469chore: update dependency markdownlint-cli2 to ^0.22.0 (#20697)Updates
eslint-plugin-jestfrom 29.15.0 to 29.15.1Release notes
Sourced from eslint-plugin-jest's releases.
Changelog
Sourced from eslint-plugin-jest's changelog.
Commits
d5192dfchore(release): 29.15.1 [skip ci]0498c1efix: allow TypeScript@7 in peer dependency (#1949)75fe794chore(deps): update workflows (#1938)83d02cfchore(deps): lock file maintenance (#1947)58e2463chore(deps): update yarn to v4.13.0 (#1943)e990f13chore(deps): lock file maintenance (#1941)627ea11chore(deps): lock file maintenance (#1939)3a46f86chore(deps): lock file maintenance (#1937)674466echore(deps): lock file maintenance (#1936)d360ff0chore(deps): lock file maintenance (#1935)Updates
jestfrom 30.2.0 to 30.3.0Release notes
Sourced from