From cb9d1422ebe1bde4fc9b2e5e8a1967433615f0e8 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 3 Jun 2026 23:54:54 +0000 Subject: [PATCH 1/2] chore: github actions update(deps): bump actions/checkout Bumps the version-updates group in /.github/workflows with 1 update: [actions/checkout](https://github.com/actions/checkout). Updates `actions/checkout` from 6 to 6.0.2 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v6...v6.0.2) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: 6.0.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: version-updates ... Signed-off-by: dependabot[bot] --- .github/workflows/action-validator.yaml | 2 +- .github/workflows/agents-validate.yaml | 2 +- .github/workflows/codeql.yaml | 2 +- .github/workflows/dependabot-autobump.yaml | 2 +- .github/workflows/docs-bump.yaml | 2 +- .github/workflows/go-coverage-report.yaml | 2 +- .github/workflows/release.yml | 4 ++-- .github/workflows/static-checks.yaml | 4 ++-- 8 files changed, 10 insertions(+), 10 deletions(-) diff --git a/.github/workflows/action-validator.yaml b/.github/workflows/action-validator.yaml index 95c074d9..90f8d754 100644 --- a/.github/workflows/action-validator.yaml +++ b/.github/workflows/action-validator.yaml @@ -19,7 +19,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 with: submodules: true diff --git a/.github/workflows/agents-validate.yaml b/.github/workflows/agents-validate.yaml index 7067ff38..a493c7b3 100644 --- a/.github/workflows/agents-validate.yaml +++ b/.github/workflows/agents-validate.yaml @@ -28,7 +28,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 with: submodules: true diff --git a/.github/workflows/codeql.yaml b/.github/workflows/codeql.yaml index 62ea6c4c..85f1d097 100644 --- a/.github/workflows/codeql.yaml +++ b/.github/workflows/codeql.yaml @@ -56,7 +56,7 @@ jobs: # your codebase is analyzed, see https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages steps: - name: Checkout repository - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL diff --git a/.github/workflows/dependabot-autobump.yaml b/.github/workflows/dependabot-autobump.yaml index 8526004c..4b77a290 100644 --- a/.github/workflows/dependabot-autobump.yaml +++ b/.github/workflows/dependabot-autobump.yaml @@ -28,7 +28,7 @@ jobs: pull-requests: write steps: - name: Checkout repository - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 with: # Checkout the PR branch (head ref) not the target branch ref: ${{ github.event.pull_request.head.ref }} diff --git a/.github/workflows/docs-bump.yaml b/.github/workflows/docs-bump.yaml index 64d26217..46f69605 100644 --- a/.github/workflows/docs-bump.yaml +++ b/.github/workflows/docs-bump.yaml @@ -16,7 +16,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout repository - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 - name: Install yq uses: mikefarah/yq@v4.53.2 diff --git a/.github/workflows/go-coverage-report.yaml b/.github/workflows/go-coverage-report.yaml index 09679c83..a8060e8c 100644 --- a/.github/workflows/go-coverage-report.yaml +++ b/.github/workflows/go-coverage-report.yaml @@ -34,7 +34,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout repository - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 - name: Setup Go uses: actions/setup-go@v6 diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index ebdc87e2..e0f4f9d1 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -42,7 +42,7 @@ jobs: generated_at: ${{ steps.meta.outputs.generated_at }} steps: - name: Checkout target - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 with: fetch-depth: 0 ref: ${{ github.event_name == 'workflow_dispatch' && (inputs.target_commitish != '' && inputs.target_commitish || github.sha) || github.sha }} @@ -113,7 +113,7 @@ jobs: actions: read steps: - name: Checkout candidate commit - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 with: fetch-depth: 0 ref: ${{ needs.preflight.outputs.target_sha }} diff --git a/.github/workflows/static-checks.yaml b/.github/workflows/static-checks.yaml index d060e56d..d5b2ab62 100644 --- a/.github/workflows/static-checks.yaml +++ b/.github/workflows/static-checks.yaml @@ -30,7 +30,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 - name: Install shellcheck, shfmt, and zsh run: | @@ -149,7 +149,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@v6 + uses: actions/checkout@v6.0.2 - name: Run actionlint uses: rhysd/actionlint@v1.7.12 From 12ca5d5bb8f3e30bb6578de29ea43e669435e534 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" Date: Wed, 3 Jun 2026 23:55:07 +0000 Subject: [PATCH 2/2] chore: auto-bump version and update CHANGELOG for Dependabot PR --- CHANGELOG.md | 4 ++++ bsctl/static/resources/constants.yaml | 2 +- resources/version.yaml | 2 +- 3 files changed, 6 insertions(+), 2 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 4543fc03..5b031fa8 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -4,6 +4,10 @@ The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), --- +## [0.1.35] - 2026-06-03 +### Changed +- Bump actions/checkout from 6 to 6.0.2 + ## [0.1.34] - 2026-05-29 ### Changed - Bump github/codeql-action from 4.35.5 to 4.36.0 diff --git a/bsctl/static/resources/constants.yaml b/bsctl/static/resources/constants.yaml index de6eb9c2..a7762c1c 100644 --- a/bsctl/static/resources/constants.yaml +++ b/bsctl/static/resources/constants.yaml @@ -1,2 +1,2 @@ # BasicSetupCliVersion - constant for semantic versioning -BasicSetupCliVersion: "0.1.34" +BasicSetupCliVersion: "0.1.35" diff --git a/resources/version.yaml b/resources/version.yaml index 3dd267f8..f1267505 100644 --- a/resources/version.yaml +++ b/resources/version.yaml @@ -1,2 +1,2 @@ # BasicSetupCliVersion - primary version source for releases and docs bump automation -BasicSetupCliVersion: "0.1.34" +BasicSetupCliVersion: "0.1.35"