Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 12, 2025

Bumps step-security/changed-files from 45.0.1 to 46.0.5.

Release notes

Sourced from step-security/changed-files's releases.

v46.0.5

What's Changed

New Contributors

Full Changelog: step-security/changed-files@v45...v46.0.5

Commits
  • 95b56da ci: remove unnecessary workflows/ steps (#57)
  • 60058f6 unused workflows/steps deleted
  • eb71416 revert workflow changes
  • e152d5b fix: Security updates (#54)
  • a373b15 chore: Cherry-picked changes from upstream (#53)
  • f2de462 chore: Cherry-picked changes from upstream (#52)
  • 31ad786 cherry pick and guard dog workflow added (#48)
  • 98d7c47 [StepSecurity] Apply security best practices (#47)
  • 52f7569 Merge pull request #15 from step-security-bot/stepsecurity_remediation_174250...
  • cdb3cda [StepSecurity] ci: Harden GitHub Actions
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [step-security/changed-files](https://github.com/step-security/changed-files) from 45.0.1 to 46.0.5.
- [Release notes](https://github.com/step-security/changed-files/releases)
- [Commits](step-security/changed-files@3dbe17c...95b56da)

---
updated-dependencies:
- dependency-name: step-security/changed-files
  dependency-version: 46.0.5
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@aws-cdk-automation aws-cdk-automation requested a review from a team May 12, 2025 11:02
@github-actions github-actions bot added the p2 label May 12, 2025
@codecov
Copy link

codecov bot commented May 12, 2025

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 83.99%. Comparing base (2aafbf8) to head (00afeaf).
Report is 1 commits behind head on main.

Additional details and impacted files
@@           Coverage Diff           @@
##             main   #34422   +/-   ##
=======================================
  Coverage   83.99%   83.99%           
=======================================
  Files         121      121           
  Lines        6934     6934           
  Branches     1164     1164           
=======================================
  Hits         5824     5824           
  Misses        999      999           
  Partials      111      111           
Flag Coverage Δ
suite.unit 83.99% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

Components Coverage Δ
packages/aws-cdk ∅ <ø> (∅)
packages/aws-cdk-lib/core 83.99% <ø> (ø)
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@aws-cdk-automation
Copy link
Collaborator

AWS CodeBuild CI Report

  • CodeBuild project: AutoBuildv2Project1C6BFA3F-wQm2hXv2jqQv
  • Commit ID: 00afeaf
  • Result: SUCCEEDED
  • Build Logs (available for 30 days)

Powered by github-codebuild-logs, available on the AWS Serverless Application Repository

@mergify
Copy link
Contributor

mergify bot commented May 12, 2025

Thanks Dependabot!

@mergify mergify bot merged commit 5432367 into main May 12, 2025
32 checks passed
@mergify mergify bot deleted the dependabot/github_actions/step-security/changed-files-46.0.5 branch May 12, 2025 11:34
@github-actions
Copy link
Contributor

Comments on closed issues and PRs are hard for our team to see.
If you need help, please open a new issue that references this one.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators May 12, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant