Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: zgosalvez/github-actions-ensure-sha-pinned-actions
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: v3
Choose a base ref
...
head repository: zgosalvez/github-actions-ensure-sha-pinned-actions
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: v4.0.0
Choose a head ref
  • 10 commits
  • 19 files changed
  • 3 contributors

Commits on Sep 27, 2025

  1. Bump @vercel/ncc from 0.38.3 to 0.38.4 (#257)

    Bumps [@vercel/ncc](https://github.com/vercel/ncc) from 0.38.3 to 0.38.4.
    - [Release notes](https://github.com/vercel/ncc/releases)
    - [Commits](vercel/ncc@0.38.3...0.38.4)
    
    ---
    updated-dependencies:
    - dependency-name: "@vercel/ncc"
      dependency-version: 0.38.4
      dependency-type: direct:development
      update-type: version-update:semver-patch
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    cae7e06 View commit details
    Browse the repository at this point in the history
  2. Bump actions/checkout from 4.2.2 to 5.0.0 (#253)

    * Bump actions/checkout from 4.2.2 to 5.0.0
    
    Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.2 to 5.0.0.
    - [Release notes](https://github.com/actions/checkout/releases)
    - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
    - [Commits](actions/checkout@11bd719...08c6903)
    
    ---
    updated-dependencies:
    - dependency-name: actions/checkout
      dependency-version: 5.0.0
      dependency-type: direct:production
      update-type: version-update:semver-major
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    
    * Update action.yml
    
    ---------
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    Co-authored-by: Zennon Gosalvez <[email protected]>
    dependabot[bot] and zgosalvez authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    74db6f0 View commit details
    Browse the repository at this point in the history
  3. Bump eslint from 9.26.0 to 9.36.0 (#256)

    Bumps [eslint](https://github.com/eslint/eslint) from 9.26.0 to 9.36.0.
    - [Release notes](https://github.com/eslint/eslint/releases)
    - [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md)
    - [Commits](eslint/eslint@v9.26.0...v9.36.0)
    
    ---
    updated-dependencies:
    - dependency-name: eslint
      dependency-version: 9.36.0
      dependency-type: direct:development
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    f1328f7 View commit details
    Browse the repository at this point in the history
  4. Bump jest from 29.7.0 to 30.1.3 (#255)

    Bumps [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) from 29.7.0 to 30.1.3.
    - [Release notes](https://github.com/jestjs/jest/releases)
    - [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md)
    - [Commits](https://github.com/jestjs/jest/commits/v30.1.3/packages/jest)
    
    ---
    updated-dependencies:
    - dependency-name: jest
      dependency-version: 30.1.3
      dependency-type: direct:development
      update-type: version-update:semver-major
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    e839297 View commit details
    Browse the repository at this point in the history
  5. Bump actions/cache from 4.2.3 to 4.2.4 (#252)

    Bumps [actions/cache](https://github.com/actions/cache) from 4.2.3 to 4.2.4.
    - [Release notes](https://github.com/actions/cache/releases)
    - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
    - [Commits](actions/cache@5a3ec84...0400d5f)
    
    ---
    updated-dependencies:
    - dependency-name: actions/cache
      dependency-version: 4.2.4
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    d952774 View commit details
    Browse the repository at this point in the history
  6. Bump zgosalvez/github-actions-get-action-runs-using-version (#234)

    Bumps [zgosalvez/github-actions-get-action-runs-using-version](https://github.com/zgosalvez/github-actions-get-action-runs-using-version) from 2.0.22 to 2.0.24.
    - [Release notes](https://github.com/zgosalvez/github-actions-get-action-runs-using-version/releases)
    - [Commits](zgosalvez/github-actions-get-action-runs-using-version@77c146d...0a8dcac)
    
    ---
    updated-dependencies:
    - dependency-name: zgosalvez/github-actions-get-action-runs-using-version
      dependency-version: 2.0.24
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    2783169 View commit details
    Browse the repository at this point in the history
  7. Bump stefanzweifel/git-auto-commit-action from 5.2.0 to 6.0.1 (#242)

    Bumps [stefanzweifel/git-auto-commit-action](https://github.com/stefanzweifel/git-auto-commit-action) from 5.2.0 to 6.0.1.
    - [Release notes](https://github.com/stefanzweifel/git-auto-commit-action/releases)
    - [Changelog](https://github.com/stefanzweifel/git-auto-commit-action/blob/master/CHANGELOG.md)
    - [Commits](stefanzweifel/git-auto-commit-action@b863ae1...778341a)
    
    ---
    updated-dependencies:
    - dependency-name: stefanzweifel/git-auto-commit-action
      dependency-version: 6.0.1
      dependency-type: direct:production
      update-type: version-update:semver-major
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    12cd4d2 View commit details
    Browse the repository at this point in the history
  8. Bump yaml from 2.7.1 to 2.8.1 (#248)

    * Bump yaml from 2.7.1 to 2.8.1
    
    Bumps [yaml](https://github.com/eemeli/yaml) from 2.7.1 to 2.8.1.
    - [Release notes](https://github.com/eemeli/yaml/releases)
    - [Commits](eemeli/yaml@v2.7.1...v2.8.1)
    
    ---
    updated-dependencies:
    - dependency-name: yaml
      dependency-version: 2.8.1
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    
    * Apply `npm run prepare` changes
    
    ---------
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    Co-authored-by: Zennon Gosalvez <[email protected]>
    dependabot[bot] and zgosalvez authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    bdf825c View commit details
    Browse the repository at this point in the history
  9. Bump brace-expansion from 1.1.11 to 1.1.12 (#258)

    Bumps [brace-expansion](https://github.com/juliangruber/brace-expansion) from 1.1.11 to 1.1.12.
    - [Release notes](https://github.com/juliangruber/brace-expansion/releases)
    - [Commits](juliangruber/brace-expansion@1.1.11...v1.1.12)
    
    ---
    updated-dependencies:
    - dependency-name: brace-expansion
      dependency-version: 1.1.12
      dependency-type: indirect
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    574bec8 View commit details
    Browse the repository at this point in the history
  10. fix #116: support composite actions (#239)

    * fix #116: support composite actions
    
    * improve parsing error
    
    * trigger workflow
    
    * Revert "trigger workflow"
    
    This reverts commit cdda5ad.
    
    * specify repository name to handle validation on fork
    
    * Update index.js.map
    
    * Update index.js.map
    
    ---------
    
    Co-authored-by: Zennon Gosalvez <[email protected]>
    atchertchian and zgosalvez authored Sep 27, 2025
    Configuration menu
    Copy the full SHA
    9e9574e View commit details
    Browse the repository at this point in the history
Loading