chore(deps): update ci dependencies#349
Conversation
Greptile SummaryRoutine CI dependency updates generated by Renovate: digest bumps for Confidence Score: 5/5Safe to merge — all changes are pinned digest/version bumps with no logic modifications. No code logic is changed; only CI action digests and a Docker image digest are updated by Renovate. The pypa/gh-action-pypi-publish minor bump (v1.14.0) only enables verbose and print-hash by default, which are already explicitly set in the workflow. No files require special attention. Important Files Changed
Flowchart%%{init: {'theme': 'neutral'}}%%
flowchart TD
A[Renovate Bot] --> B[Digest bump: docker/build-push-action v7]
A --> C[Digest bump: softprops/action-gh-release v2]
A --> D[Minor bump: pypa/gh-action-pypi-publish v1.13→v1.14]
A --> E[Digest bump: ghcr.io/astral-sh/uv in Dockerfile]
B --> F[release.yml — no logic change]
C --> F
D --> F
E --> G[Dockerfile — no logic change]
Reviews (21): Last reviewed commit: "chore(deps): update ci dependencies" | Re-trigger Greptile |
23268e7 to
6399612
Compare
6399612 to
1789618
Compare
e11ead4 to
6f38c68
Compare
6f38c68 to
bf7c540
Compare
bf7c540 to
b3b7469
Compare
This PR contains the following updates:
d08e5c3→bcafcac90bbb3c→3b7b60av1.13.0→v1.14.0153bb8e→3bb1273Release Notes
pypa/gh-action-pypi-publish (pypa/gh-action-pypi-publish)
v1.14.0Compare Source
Audit your supply chain regularly!
✨ What's Changed
The main change in this release is that
verboseandprint-hashinputs are now on by default. This was contributed by @whitequark💰 in #397.📝 Docs
@woodruffw💰 updated the mentions of PEP 740 to stop implying that it might be experimental (it hasn't been for quite a while!) in #388 and @him2him2💰 brushed up some grammar in the README and SECURITY docs via #395.
🛠️ Internal Updates
@woodruffw💰 bumped
sigstoreandpypi-attestationsin the lock file (#391) and @webknjaz💰 added infra for using type annotations in the project (#381).💪 New Contributors
🪞 Full Diff: pypa/gh-action-pypi-publish@v1.13.0...v1.14.0
🧔♂️ Release Manager: @webknjaz 🇺🇦
🙏 Special Thanks to @facutuesca💰 and @woodruffw💰 for helping maintain this project when I can't!
💬 Discuss on Bluesky 🦋, on Mastodon 🐘 and on GitHub.
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.