Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 30, 2022

Bumps gitleaks/gitleaks-action from 1.6.0 to 2.1.2.

Release notes

Sourced from gitleaks/gitleaks-action's releases.

v2.1.2

v2.1.1

What's New

  • Fixes 0 commit scans on initial PR commit #82

v2.1.0

What's new

v2.0.8

What's New

v2.0.7

What's Changed:

v2.0.6

What's New:

v2.0.5

What's New

  • Fix edge case on initial commit to repo when base and head refs are the same.

v2.0.4

What's New

v2.0.3

What's New

  • Use eventJson.commits for commit range rather than eventJson.before and eventJson.after. This fixes invalid revision range on push event errors.

v2.0.2

What's New

  • Fixed action.yml name so this action can be published on the marketplace

v2.0.1

What's New

  • Individual user accounts do not need to obtain a license key. 🎉
  • Added GITLEAKS_ENABLE_SUMMARY env var option to enable or disable Gitleaks-action job summaries (defaults to true)
  • Added GITLEAKS_ENABLE_UPLOAD_ARTIFACT env var option to enable or disable Gitleaks-action job artifact uploads (defaults to true)

v2.0.0

What's Changed

... (truncated)

Commits
  • 4036f30 Merge pull request #84 from gitleaks/bump-gitleaks-8_11_1
  • db7d6f3 bump gitleaks to latest version
  • d858f0e Merge pull request #82 from gitleaks/fix/update-git-log-for-prs
  • 6b27c02 update gitleaksignore, remove dummy secret
  • 030c71f attempting fix
  • aa6c132 Merge pull request #80 from gitleaks/feat/gitleaks-ignore
  • 5ebd61c address some of andrew's comments
  • 65810de bump gitleaks dependency, update comments to ignore via fingerprint
  • f65dee2 Merge pull request #79 from gitleaks/fix/update-git-log-for-prs
  • cf4faf3 update git log options
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [gitleaks/gitleaks-action](https://github.com/gitleaks/gitleaks-action) from 1.6.0 to 2.1.2.
- [Release notes](https://github.com/gitleaks/gitleaks-action/releases)
- [Commits](gitleaks/gitleaks-action@v1.6.0...v2.1.2)

---
updated-dependencies:
- dependency-name: gitleaks/gitleaks-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 30, 2022
@mocsharp
Copy link
Collaborator

@dependabot ignore this major version

@dependabot dependabot bot closed this Aug 30, 2022
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Aug 30, 2022

OK, I won't notify you about version 2.x.x again, unless you re-open this PR or update to a 2.x.x release yourself.

@dependabot dependabot bot deleted the dependabot/github_actions/gitleaks/gitleaks-action-2.1.2 branch August 30, 2022 23:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants