chore(deps): bump gitleaks/gitleaks-action from 2.3.9 to 3.0.0 - #708
chore(deps): bump gitleaks/gitleaks-action from 2.3.9 to 3.0.0#708dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [gitleaks/gitleaks-action](https://github.com/gitleaks/gitleaks-action) from 2.3.9 to 3.0.0. - [Release notes](https://github.com/gitleaks/gitleaks-action/releases) - [Commits](gitleaks/gitleaks-action@ff98106...e0c47f4) --- updated-dependencies: - dependency-name: gitleaks/gitleaks-action dependency-version: 3.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
Blocked merge diagnosis — blocked |
Up to standards ✅🟢 Issues
|
🔥 Roast & verdict: CLOSE (this is a regression, not an upgrade)Dependabot, this is the third time you've tried to hand me a footgun. 🎯 What it does: bumps Why it's a trap: This repo already fixed this exact failure in PR #643 / plans/115. The workflow file you're editing literally has a comment one line above your diff saying:
The release notes' claim that v3 has "no changes to inputs, outputs, or behavior" is technically cute but irrelevant — the behavior that matters (the license gate) is unchanged in v3, and this is an organization-owned repo (
There is no Verdict: Negative value. Reverts a documented maintainer decision. Closing.
|
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps gitleaks/gitleaks-action from 2.3.9 to 3.0.0.
Release notes
Sourced from gitleaks/gitleaks-action's releases.
Commits
e0c47f4chore: migrate to Node 24 runtime (v3)bf2dc8eMerge pull request #191 from Olexandr88/patch-1b71323bUpdate README.md9c66aa9Update README.md186c3feCreate FUNDING.ymlDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)