dependabot[bot]
|
39fdca2da5
|
Bump ossf/scorecard-action from 2.1.3 to 2.2.0 (#1073)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.3 to 2.2.0.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](80e868c13c...08b4669551 )
---
updated-dependencies:
- dependency-name: ossf/scorecard-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-06-30 13:07:56 -04:00 |
dependabot[bot]
|
353e9fdbd4
|
Bump github/codeql-action from 2.1.22 to 2.20.1 (#1074)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.22 to 2.20.1.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v2.1.22...f6e388ebf0efc915c6c5b165b019ee61a6746a38)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-06-30 13:07:41 -04:00 |
StepSecurity Bot
|
e04a53dda3
|
[StepSecurity] ci: Harden GitHub Actions (#1067)
Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
|
2023-06-24 17:08:11 -04:00 |
dependabot[bot]
|
c646f494bb
|
Bump actions/checkout from 3.5.2 to 3.5.3 (#1064)
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.5.2 to 3.5.3.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](8e5e7e5ab8...c85c95e3d7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-06-09 12:41:08 -04:00 |
Gary Gregory
|
119623760e
|
Add comment
|
2023-06-03 07:36:42 -04:00 |
dependabot[bot]
|
ac17f1ed7e
|
Bump actions/checkout from 3.5.0 to 3.5.2
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.5.0 to 3.5.2.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](8f4b7f8486...8e5e7e5ab8 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-04-14 18:52:10 +02:00 |
dependabot[bot]
|
6434086689
|
Bump ossf/scorecard-action from 2.1.2 to 2.1.3 (#1046)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.2 to 2.1.3.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](e38b1902ae...80e868c13c )
---
updated-dependencies:
- dependency-name: ossf/scorecard-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-04-01 07:09:08 -04:00 |
dependabot[bot]
|
3197d4f967
|
Bump actions/setup-java from 3.10.0 to 3.11.0
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 3.10.0 to 3.11.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v3.10.0...v3.11.0)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-03-31 18:02:27 +02:00 |
dependabot[bot]
|
079db15da8
|
Bump actions/checkout from 3.4.0 to 3.5.0
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.4.0 to 3.5.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](24cb908017...8f4b7f8486 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-03-24 17:03:17 +01:00 |
dependabot[bot]
|
7201f954ce
|
Bump actions/cache from 3.3.0 to 3.3.1
Bumps [actions/cache](https://github.com/actions/cache) from 3.3.0 to 3.3.1.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.3.0...v3.3.1)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-03-17 17:05:41 +01:00 |
dependabot[bot]
|
a7d535cfdb
|
Bump actions/checkout from 3.3.0 to 3.4.0
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.3.0 to 3.4.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](ac59398561...24cb908017 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-03-17 17:05:24 +01:00 |
dependabot[bot]
|
bb1311dc0d
|
Bump actions/cache from 3.2.6 to 3.3.0 (#1037)
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.6 to 3.3.0.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.6...v3.3.0)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-03-10 14:22:35 -05:00 |
dependabot[bot]
|
588a20b27f
|
Bump actions/cache from 3.2.5 to 3.2.6 (#1034)
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.5 to 3.2.6.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.5...v3.2.6)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-02-24 11:43:42 -05:00 |
dependabot[bot]
|
91ccf53c7d
|
Bump actions/cache from 3.2.4 to 3.2.5
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.4 to 3.2.5.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.4...v3.2.5)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-02-10 17:04:28 +01:00 |
dependabot[bot]
|
b5b9079996
|
Bump actions/setup-java from 3.9.0 to 3.10.0
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 3.9.0 to 3.10.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v3.9.0...v3.10.0)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-02-10 17:02:18 +01:00 |
dependabot[bot]
|
5971023a9a
|
Bump actions/cache from 3.2.3 to 3.2.4
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.3 to 3.2.4.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.3...v3.2.4)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-02-03 16:25:28 +01:00 |
dependabot[bot]
|
94cea56cb8
|
Bump actions/cache from 3.2.2 to 3.2.3 (#1019)
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.2 to 3.2.3.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.2...v3.2.3)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-01-13 11:36:07 -05:00 |
dependabot[bot]
|
ac2062d939
|
Bump actions/checkout from 3.2.0 to 3.3.0 (#1014)
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.2.0 to 3.3.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](755da8c3cf...ac59398561 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-01-06 13:33:28 -05:00 |
dependabot[bot]
|
123e923310
|
Bump actions/upload-artifact from 3.1.1 to 3.1.2 (#1013)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 3.1.1 to 3.1.2.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](83fd05a356...0b7f8abb15 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2023-01-06 13:33:12 -05:00 |
dependabot[bot]
|
78b4f09d0b
|
Bump actions/cache from 3.2.1 to 3.2.2 (#1004)
Bumps [actions/cache](https://github.com/actions/cache) from 3.2.1 to 3.2.2.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.2.1...v3.2.2)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-30 10:06:38 -05:00 |
dependabot[bot]
|
a657173683
|
Bump ossf/scorecard-action from 2.1.0 to 2.1.2 (#1003)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.0 to 2.1.2.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](937ffa90d7...e38b1902ae )
---
updated-dependencies:
- dependency-name: ossf/scorecard-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-23 14:19:25 -05:00 |
dependabot[bot]
|
a2837a972c
|
Bump actions/cache from 3.0.11 to 3.2.1
Bumps [actions/cache](https://github.com/actions/cache) from 3.0.11 to 3.2.1.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.0.11...v3.2.1)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-12-23 18:33:45 +01:00 |
dependabot[bot]
|
dc8019912b
|
Bump actions/checkout from 3.1.0 to 3.2.0 (#997)
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.1.0 to 3.2.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](93ea575cb5...755da8c3cf )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-16 10:55:10 -05:00 |
dependabot[bot]
|
5e92add2fc
|
Bump actions/setup-java from 3.8.0 to 3.9.0 (#998)
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 3.8.0 to 3.9.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v3.8.0...v3.9.0)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-16 10:54:55 -05:00 |
dependabot[bot]
|
0303bd62f9
|
Bump ossf/scorecard-action from 2.0.6 to 2.1.0 (#999)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.0.6 to 2.1.0.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](99c53751e0...937ffa90d7 )
---
updated-dependencies:
- dependency-name: ossf/scorecard-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-16 10:54:40 -05:00 |
dependabot[bot]
|
9a766623ae
|
Bump actions/setup-java from 3.6.0 to 3.8.0 (#996)
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 3.6.0 to 3.8.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v3.6.0...v3.8.0)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-12-09 10:10:34 -05:00 |
Gary Gregory
|
c92aa75f35
|
Undo Bump actions/setup-java from 3.6.0 to 3.7.0
|
2022-12-06 06:52:42 -05:00 |
Gary Gregory
|
22c3574a05
|
Bump actions/setup-java from 3.6.0 to 3.7.0 #126
|
2022-12-01 22:04:16 -05:00 |
Gary Gregory
|
32b4f30733
|
Add GHitHub robots file
|
2022-11-19 18:00:18 -05:00 |
dependabot[bot]
|
70a0de74d3
|
Bump actions/upload-artifact from 3.1.0 to 3.1.1 (#985)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 3.1.0 to 3.1.1.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](3cea537223...83fd05a356 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-10-30 14:59:59 -04:00 |
Gary Gregory
|
b4ef495751
|
Bump Scorecards from 1 to 2
|
2022-10-23 15:41:29 -04:00 |
dependabot[bot]
|
1c1e482e5a
|
Bump actions/setup-java from 3.5.1 to 3.6.0
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 3.5.1 to 3.6.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v3.5.1...v3.6.0)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-10-22 16:19:52 +13:00 |
dependabot[bot]
|
c5917dc030
|
Bump actions/cache from 3.0.10 to 3.0.11 (#970)
Bumps [actions/cache](https://github.com/actions/cache) from 3.0.10 to 3.0.11.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.0.10...v3.0.11)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-10-14 13:23:26 -04:00 |
Sebb
|
b6d39a4257
|
Don't persist credentials unnecessarily
|
2022-10-08 15:23:43 +01:00 |
Gary Gregory
|
912682d0bb
|
Set to level permissions to 'read'
|
2022-10-07 20:09:42 -04:00 |
dependabot[bot]
|
862f537846
|
Bump actions/cache from 3.0.9 to 3.0.10
Bumps [actions/cache](https://github.com/actions/cache) from 3.0.9 to 3.0.10.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.0.9...v3.0.10)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-10-08 11:25:48 +13:00 |
dependabot[bot]
|
74ff229b56
|
Bump actions/checkout from 3.0.2 to 3.1.0
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.0.2 to 3.1.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v3.0.2...93ea575cb5d8a053eaa0ac8fa3b40d7e05a33cc8)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-10-08 11:18:03 +13:00 |
Gary Gregory
|
5cf676b5b9
|
Bump actions/setup-java from 3 to 3.5.1
|
2022-10-01 14:52:28 -04:00 |
dependabot[bot]
|
8488f01f89
|
Bump actions/cache from 3.0.8 to 3.0.9
Bumps [actions/cache](https://github.com/actions/cache) from 3.0.8 to 3.0.9.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v3.0.8...v3.0.9)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-10-01 16:05:17 +13:00 |
Gary Gregory
|
b548be5f64
|
Use GitHub cache for CodeQL
|
2022-09-22 08:49:41 -04:00 |
Gary Gregory
|
10cd60c87d
|
Use read-all permissions for GitHub workflow
|
2022-09-12 10:23:46 -07:00 |
Gary Gregory
|
4e5cda0dcf
|
Make workflow readonly
|
2022-09-12 10:11:48 -07:00 |
Gary Gregory
|
a55a922f81
|
Add same scorecards-analysis.yml as Apache Log4j (except for branches)
|
2022-09-12 09:42:46 -07:00 |
Gary Gregory
|
a0234a6cad
|
Bump actions/checkout from 3 to 3.0.2.
|
2022-09-06 09:32:42 -07:00 |
Gary Gregory
|
75f35d6dc0
|
Bump actions/cache from 3.0.7 to 3.0.8
|
2022-08-22 15:25:44 -04:00 |
Gary Gregory
|
969a9d9f11
|
Bump actions/cache from 3.0.6 to 3.0.7
|
2022-08-12 07:17:39 -04:00 |
Gary Gregory
|
43658a2785
|
Bump actions/cache from 3.0.5 to 3.0.6
|
2022-08-05 08:39:34 -04:00 |
Gary Gregory
|
744d3d1634
|
Update GitHub builds to use Temurin
|
2022-07-29 08:40:18 -04:00 |
Gary Gregory
|
e18a744880
|
Bump actions/cache 3.0.4 to 3.0.5
|
2022-07-15 20:15:14 -04:00 |
Gary Gregory
|
351df93276
|
Bump actions/cache 3.0.4 to 3.0.5
|
2022-07-15 08:37:57 -04:00 |
Gary Gregory
|
edb7a6775a
|
Add GitHub coverage.yml.
|
2022-06-08 12:37:01 -04:00 |
Gary Gregory
|
80b36f1ea6
|
Bump actions/cache from 3.0.3 to 3.0.4
|
2022-06-07 14:00:29 -04:00 |
Gary Gregory
|
330ba4d932
|
Bump actions/cache from 3.0.2 to 3.0.3
|
2022-05-31 16:37:13 -04:00 |
Gary Gregory
|
0bf7b5380f
|
Set permissions to read for coverage
|
2022-05-26 12:10:11 -04:00 |
Gary Gregory
|
3e67d33d25
|
Add coverage.yml
|
2022-05-26 08:22:58 -04:00 |
Varun Sharma
|
711782470f
|
ci: add GitHub token permissions
|
2022-05-20 16:24:18 +12:00 |
dependabot[bot]
|
505f76724c
|
Bump github/codeql-action from 1 to 2 (#886)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 1 to 2.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v1...v2)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-05-01 14:09:07 -04:00 |
Gary Gregory
|
0b51bc7bee
|
Bump actions/cache from 3 to 3.0.2
|
2022-04-12 08:43:41 -04:00 |
dependabot[bot]
|
dded8fd504
|
Bump actions/setup-java from 2 to 3
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 2 to 3.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v2...v3)
---
updated-dependencies:
- dependency-name: actions/setup-java
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2022-04-09 09:39:02 +12:00 |
dependabot[bot]
|
35f3293b50
|
Bump actions/cache from 2.1.7 to 3 (#867)
Bumps [actions/cache](https://github.com/actions/cache) from 2.1.7 to 3.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.7...v3)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-03-25 08:48:07 -07:00 |
dependabot[bot]
|
bddebf5cd3
|
Bump actions/checkout from 2 to 3 (#859)
Bumps [actions/checkout](https://github.com/actions/checkout) from 2 to 3.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2...v3)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2022-03-04 10:16:57 -05:00 |
Gary Gregory
|
184e20697b
|
Add CodeQL and see what it says.
|
2022-01-30 15:04:16 -05:00 |
Rob Tompkins
|
ac37c4a46a
|
update(dependabot): daily -> weekly;friday
|
2021-12-29 11:59:41 -05:00 |
dependabot[bot]
|
2e6b228355
|
Bump actions/cache from 2.1.6 to 2.1.7
Bumps [actions/cache](https://github.com/actions/cache) from 2.1.6 to 2.1.7.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.6...v2.1.7)
---
updated-dependencies:
- dependency-name: actions/cache
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2021-11-24 13:45:43 +13:00 |
dependabot[bot]
|
6004a7d954
|
Bump actions/checkout from 2.3.5 to 2.4.0 (#825)
Bumps [actions/checkout](https://github.com/actions/checkout) from 2.3.5 to 2.4.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2.3.5...v2.4.0)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-11-12 08:00:23 -05:00 |
dependabot[bot]
|
b8b052e55b
|
Bump actions/checkout from 2.3.4 to 2.3.5 (#819)
Bumps [actions/checkout](https://github.com/actions/checkout) from 2.3.4 to 2.3.5.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2.3.4...v2.3.5)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-10-22 14:38:57 -04:00 |
Gary Gregory
|
b153aca877
|
Update GitHub build from Java 16 to 17.
Update GitHub build from Java 17-EA to 18-EA but comment it (not there
yet).
|
2021-09-28 11:18:19 -04:00 |
Gary Gregory
|
8d30dfb09f
|
AdoptOpenJDK is moving to the Eclipse Foundation and rebranding as
Eclipse Temurin.
|
2021-08-29 00:18:52 -04:00 |
dependabot[bot]
|
8abcc1a54c
|
Bump actions/cache from 2.1.5 to 2.1.6 (#764)
Bumps [actions/cache](https://github.com/actions/cache) from 2.1.5 to 2.1.6.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.5...v2.1.6)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-06-22 08:44:02 -04:00 |
Gary Gregory
|
a5d4660eed
|
Allow Java 16 to fail to allow Java 8 and 11 to run until we know what's
wrong on Java 16.
|
2021-04-19 08:41:55 -04:00 |
Gary Gregory
|
07f7143092
|
Allow Java 16 to fail to allow Java 8 and 11 to run until we know what's
wrong on Java 16.
|
2021-04-19 08:39:40 -04:00 |
Gary Gregory
|
6ad3961b3f
|
Bump actions/setup-java from v1.4.3 to v2.
Update changes.xml for recent PRs.
|
2021-04-18 18:47:19 -04:00 |
dependabot[bot]
|
f0ed760004
|
Bump actions/cache from v2.1.4 to v2.1.5 (#742)
Bumps [actions/cache](https://github.com/actions/cache) from v2.1.4 to v2.1.5.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.4...1a9e2138d905efd099035b49d8b7a3888c653ca8)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-04-18 18:39:32 -04:00 |
Gary Gregory
|
69c9593cc1
|
Replace GitHub build for Java 15 with Java 16 and drop Java 16-ea.
|
2021-03-17 15:49:49 -04:00 |
dependabot[bot]
|
dd9a45ea45
|
Bump actions/cache from v2 to v2.1.4 (#710)
Bumps [actions/cache](https://github.com/actions/cache) from v2 to v2.1.4.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2...26968a09c0ea4f3e233fdddbafd1166051a095f6)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-02-10 17:09:22 -05:00 |
Gary Gregory
|
b5680c55f3
|
Add Java 17-EA to the GitHub build.
|
2020-12-29 19:13:52 -05:00 |
dependabot[bot]
|
553e192aac
|
Bump actions/checkout from v2.3.3 to v2.3.4 (#639)
Bumps [actions/checkout](https://github.com/actions/checkout) from v2.3.3 to v2.3.4.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2.3.3...5a4ac9002d0be2fb38bd78e4b4dbde5606d7042f)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2020-11-06 09:42:09 -05:00 |
Rob Tompkins
|
69598f5b30
|
Merge pull request #619 from apache/dependabot/github_actions/actions/checkout-v2.3.3
Bump actions/checkout from v2.3.2 to v2.3.3
|
2020-10-01 10:14:37 -04:00 |
dependabot[bot]
|
737f32a06c
|
Bump actions/setup-java from v1.4.2 to v1.4.3
Bumps [actions/setup-java](https://github.com/actions/setup-java) from v1.4.2 to v1.4.3.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v1.4.2...d202f5dbf7256730fb690ec59f6381650114feb2)
Signed-off-by: dependabot[bot] <support@github.com>
|
2020-10-01 06:01:33 +00:00 |
dependabot[bot]
|
4a5cfd3368
|
Bump actions/checkout from v2.3.2 to v2.3.3
Bumps [actions/checkout](https://github.com/actions/checkout) from v2.3.2 to v2.3.3.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2.3.2...a81bbbf8298c0fa03ea29cdc473d45769f953675)
Signed-off-by: dependabot[bot] <support@github.com>
|
2020-09-24 05:53:46 +00:00 |
Gary Gregory
|
8e0a8f2298
|
Replace Java 14 with Java 15 as the latest Java version to test. Use
Jaav 16 EA as the EA version to test.
|
2020-09-19 15:46:59 -04:00 |
Gary Gregory
|
649dedbbe8
|
Trigger a GitHub build on pull requests.
|
2020-08-31 21:25:40 -04:00 |
dependabot[bot]
|
0823b7568f
|
Bump actions/setup-java from v1.4.0 to v1.4.2 (#612)
Bumps [actions/setup-java](https://github.com/actions/setup-java) from v1.4.0 to v1.4.2.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](https://github.com/actions/setup-java/compare/v1.4.0...8bb50d97d6b4d316daf284fdf8eafbfc988421fc)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2020-08-30 11:33:46 -04:00 |
Gary Gregory
|
600f0c8a1d
|
Cache ~/.m2 dir for GitHub builds.
|
2020-08-10 21:16:35 -04:00 |
dependabot[bot]
|
301c91f6e6
|
Bump actions/checkout from v2.3.1 to v2.3.2 (#601)
Bumps [actions/checkout](https://github.com/actions/checkout) from v2.3.1 to v2.3.2.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v2.3.1...2036a08e25fa78bbd946711a407b529a0a1204bf)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2020-08-10 12:01:27 -04:00 |
Gary Gregory
|
c5af087b58
|
Add --no-transfer-progress to CI builds.
|
2020-08-05 09:39:05 -04:00 |
Gary Gregory
|
3b7d72e6cf
|
Use the POM defaultGoal so that Travis and GitHub run the same builds.
|
2020-07-31 09:16:50 -04:00 |
Gary Gregory
|
cf0bc2b5db
|
Add Java 16-ea.
|
2020-07-26 17:28:00 -04:00 |
Gary Gregory
|
5bc1287eae
|
Add Java 16-ea.
|
2020-07-26 17:27:27 -04:00 |
Gary Gregory
|
ccca0a0179
|
GitHub action for Java 15-ea.
|
2020-07-26 17:18:56 -04:00 |
Gary Gregory
|
cb4d8afe45
|
GitHub actions/setup-java@v1 -> actions/setup-java@v1.4.0
|
2020-07-26 17:06:27 -04:00 |
dependabot[bot]
|
7a23f14229
|
Bump actions/checkout from v1 to v2.3.1 (#588)
Bumps [actions/checkout](https://github.com/actions/checkout) from v1 to v2.3.1.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v1...28c7f3d2b5162b5ddd3dfd9a45aa55eaf396478b)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2020-07-23 10:59:23 -04:00 |
Gary Gregory
|
7474e5db7a
|
Trying to let Java 15-ea be only 'experimental'.
|
2020-07-23 10:49:38 -04:00 |
Gary Gregory
|
4e9460413a
|
Java 16-ea appears to not be supported by GitHub yet.
|
2020-07-22 11:14:21 -04:00 |
Gary Gregory
|
eb3d1f5da5
|
Allow Java early access builds to fail.
|
2020-07-22 10:59:54 -04:00 |
Gary Gregory
|
88dbef45ae
|
Add early access builds to GitHub builds.
|
2020-07-22 10:36:44 -04:00 |
Gary Gregory
|
d0e22083ca
|
Drop Java 12 and 13 from GitHub builds.
|
2020-07-22 10:36:02 -04:00 |
Gary Gregory
|
a8c4c01366
|
Add missing header.
|
2020-07-22 10:29:37 -04:00 |
Sean C. Sullivan
|
35495dc8d9
|
enable Dependabot v2
|
2020-07-22 07:00:59 -07:00 |
Gary Gregory
|
f544897e49
|
Test major Java versions with GitHub actions as documented on
https://github.com/actions/setup-java
# WARNING: head commit changed in the meantime
@Deprecated
|
2020-05-30 11:00:18 -04:00 |
pascalschumacher
|
93701c9ad7
|
Replace Java 12 and 13 builds with Java 14.
|
2020-03-21 15:26:48 +01:00 |
Gary Gregory
|
e7c6c5b66b
|
[LANG-1406] StringIndexOutOfBoundsException in
StringUtils.replaceIgnoreCase
Fix dead store issue found by SpotBugs and enforce SpotBugs on CI
builds.
|
2019-09-11 09:57:28 -04:00 |
Gary Gregory
|
54a5224e0c
|
Addded javadoc:javadoc -Ddoclint=all; note this will not fail if a
public element is missing a Javadoc.
|
2019-09-05 12:20:07 -04:00 |
Gary Gregory
|
5e5e61fb53
|
Add support for GitHub CI build through GitHub "Actions".
|
2019-09-05 11:58:15 -04:00 |