Skip to content

Bump the actions-deps group with 2 updates - #50

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/actions-deps-32982675d1
Closed

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/actions-deps-32982675d1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 2, 2026

Copy link
Copy Markdown
Contributor

Bumps the actions-deps group with 2 updates: lfreleng-actions/github2gerrit-action and lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml.

Updates lfreleng-actions/github2gerrit-action from 2.2.1 to 2.4.0

Release notes

Sourced from lfreleng-actions/github2gerrit-action's releases.

v2.4.0

Downloads for this release

✨ New Features ✨

Links

v2.3.0

Downloads for this release

✨ New Features ✨

Links

v2.2.2

Downloads for this release

🐛 Bug Fixes 🐛

🔧 Maintenance 🔧

🎓 Code Quality 🎓

Links

Commits
  • df12d7f Merge pull request #455 from modeseven-lfreleng-actions/feat/scheduled-sweep
  • 56d3246 Feat: Sweep approved fork PRs on a schedule
  • 2fbfa39 Test: Share the reusable workflow test harness
  • a483c25 Merge pull request #454 from modeseven-lfreleng-actions/feat/sweep-fan-out-id...
  • edb2d7b Fix: Address Copilot review feedback
  • bced4e6 Feat: Fan bulk dispatch out to a job per PR
  • 48bbc46 Feat: Record fork transfers so sweeps skip them
  • 5f84610 Merge pull request #453 from lfreleng-actions/pre-commit-ci-update-config
  • e6edf55 Chore: pre-commit autoupdate
  • 047f4cd Merge pull request #449 from modeseven-lfreleng-actions/fix/gerrit-port-prece...
  • Additional commits viewable in compare view

Updates lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml from 0.7.0 to 0.9.0

Release notes

Sourced from lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml's releases.

v0.9.0

Downloads for this release

✨ New Features ✨

🔧 Maintenance 🔧

Links

v0.8.0

Downloads for this release

✨ New Features ✨

🔧 Maintenance 🔧

🎓 Code Quality 🎓

Links

Commits
  • 76ea523 Merge pull request #113 from modeseven-lfreleng-actions/test/validation-harness
  • 3bd6689 Docs: Name Python among scan_targets exceptions
  • ab0f5c6 Feat: Add a python build_type to the CLM lane
  • 4c88685 Test: Run the lanes' validation steps on every PR
  • 37d4e67 Merge pull request #112 from lfreleng-actions/dependabot/github_actions/githu...
  • 430b1ba Merge pull request #111 from lfreleng-actions/dependabot/github_actions/githu...
  • bb7e758 Merge pull request #110 from lfreleng-actions/dependabot/github_actions/lfrel...
  • 95377d3 Merge pull request #109 from lfreleng-actions/dependabot/github_actions/githu...
  • a12865c Merge pull request #108 from lfreleng-actions/dependabot/github_actions/lfrel...
  • 9d6aa08 CI(actions): Bump github/codeql-action/init from 4.37.9 to 4.38.0
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the actions-deps group with 2 updates: [lfreleng-actions/github2gerrit-action](https://github.com/lfreleng-actions/github2gerrit-action) and [lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml](https://github.com/lfreleng-actions/security-workflows).


Updates `lfreleng-actions/github2gerrit-action` from 2.2.1 to 2.4.0
- [Release notes](https://github.com/lfreleng-actions/github2gerrit-action/releases)
- [Commits](lfreleng-actions/github2gerrit-action@eda09b8...df12d7f)

Updates `lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml` from 0.7.0 to 0.9.0
- [Release notes](https://github.com/lfreleng-actions/security-workflows/releases)
- [Commits](lfreleng-actions/security-workflows@bdcf7d8...76ea523)

---
updated-dependencies:
- dependency-name: lfreleng-actions/github2gerrit-action
  dependency-version: 2.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions-deps
- dependency-name: lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml
  dependency-version: 0.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Oct 2, 2026
@github-actions

github-actions Bot commented Oct 2, 2026

Copy link
Copy Markdown

PR: #50
Mode: squash
Topic: GH-controller-50
Change-Ids:
I13d563c0b6f989c3446aa0f71ff3b6584d0a65db
Digest: 6dcead6d14bc
GitHub-Hash: fab5ad3edd3a0cf1

Note: This metadata is also included in the Gerrit commit message for reconciliation.

@github-actions

github-actions Bot commented Oct 2, 2026

Copy link
Copy Markdown

Change raised in Gerrit by GitHub2Gerrit: https://git.opendaylight.org/gerrit/c/controller/+/126618

odl-github pushed a commit that referenced this pull request Oct 2, 2026
Bumps the actions-deps group with 2 updates: [lfreleng-actions/github2gerrit-action](https://github.com/lfreleng-actions/github2gerrit-action) and [lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml](https://github.com/lfreleng-actions/security-workflows).
Updates `lfreleng-actions/github2gerrit-action` from 2.2.1 to 2.4.0
- [Release notes](https://github.com/lfreleng-actions/github2gerrit-action/releases)
- [Commits](lfreleng-actions/github2gerrit-action@eda09b8...df12d7f)
Updates `lfreleng-actions/security-workflows/.github/workflows/sonarqube-cloud.yaml` from 0.7.0 to 0.9.0
- [Release notes](https://github.com/lfreleng-actions/security-workflows/releases)
- [Commits](lfreleng-actions/security-workflows@bdcf7d8...76ea523)

Signed-off-by: dependabot[bot] <support@github.com>
Change-Id: I13d563c0b6f989c3446aa0f71ff3b6584d0a65db
GitHub-PR: #50
GitHub-Hash: fab5ad3edd3a0cf1
Signed-off-by: gh2gerrit <releng+odl-gh2gerrit@linuxfoundation.org>
@github-actions

github-actions Bot commented Oct 2, 2026

Copy link
Copy Markdown

Automated PR Closure

This pull request has been automatically closed by GitHub2Gerrit.

The corresponding Gerrit change has been accepted and merged ✅

The changes from this PR are now part of the main codebase in Gerrit.


This is an automated action performed by the GitHub2Gerrit tool.

@github-actions github-actions Bot closed this Oct 2, 2026
@dependabot @github

dependabot Bot commented on behalf of github Oct 2, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot
dependabot Bot deleted the dependabot/github_actions/actions-deps-32982675d1 branch October 2, 2026 09:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Development

Successfully merging this pull request may close these issues.

0 participants