dependabot[bot]
ccd661b429
build(deps): bump github/codeql-action
...
Bumps the github-actions-dependencies group with 1 update: [github/codeql-action](https://github.com/github/codeql-action ).
Updates `github/codeql-action` from 4.35.1 to 4.35.2
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v4.35.1...v4.35.2 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.35.2
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 14:54:14 +00:00
dependabot[bot]
86940418c7
build(deps): bump the github-actions-dependencies group with 2 updates
...
Bumps the github-actions-dependencies group with 2 updates: [actions/cache](https://github.com/actions/cache ) and [j178/prek-action](https://github.com/j178/prek-action ).
Updates `actions/cache` from 5.0.4 to 5.0.5
- [Release notes](https://github.com/actions/cache/releases )
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md )
- [Commits](https://github.com/actions/cache/compare/668228422ae6a00e4ad889ee87cd7109ec5666a7...27d5ce7f107fe9357f9df03efb73ab90386fccae )
Updates `j178/prek-action` from 2.0.1 to 2.0.2
- [Release notes](https://github.com/j178/prek-action/releases )
- [Commits](https://github.com/j178/prek-action/compare/53276d8b0d10f8b6672aa85b4588c6921d0370cc...cbc2f23eb5539cf20d82d1aabd0d0ecbcc56f4e3 )
---
updated-dependencies:
- dependency-name: actions/cache
dependency-version: 5.0.5
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions-dependencies
- dependency-name: j178/prek-action
dependency-version: 2.0.2
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-20 17:20:54 +00:00
dependabot[bot]
eb51c63196
build(deps): bump github/codeql-action
...
Bumps the github-actions-dependencies group with 1 update: [github/codeql-action](https://github.com/github/codeql-action ).
Updates `github/codeql-action` from 4 to 4.35.1
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v4...v4.35.1 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.35.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-17 14:53:59 +00:00
dependabot[bot]
c43eba8979
build(deps): bump softprops/action-gh-release
...
Bumps the github-actions-dependencies group with 1 update: [softprops/action-gh-release](https://github.com/softprops/action-gh-release ).
Updates `softprops/action-gh-release` from 2 to 2.6.1
- [Release notes](https://github.com/softprops/action-gh-release/releases )
- [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md )
- [Commits](https://github.com/softprops/action-gh-release/compare/v2...v3 )
---
updated-dependencies:
- dependency-name: softprops/action-gh-release
dependency-version: 2.6.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 16:11:02 +00:00
John Bampton
ebed2d32a2
gha: pin workflows to hash
2026-04-11 17:51:28 +10:00
dependabot[bot]
c394525da6
build(deps): bump super-linter/super-linter
...
Bumps the github-actions-dependencies group with 1 update: [super-linter/super-linter](https://github.com/super-linter/super-linter ).
Updates `super-linter/super-linter` from 8.5.0 to 8.6.0
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.5.0...v8.6.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.6.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-08 14:54:46 +00:00
John Bampton
a6aa0fdb24
Dependabot: add cooldown to pre-commit ecosystem
2026-04-01 00:46:24 +10:00
dependabot[bot]
d50932c50f
build(deps): bump j178/prek-action
...
Bumps the github-actions-dependencies group with 1 update: [j178/prek-action](https://github.com/j178/prek-action ).
Updates `j178/prek-action` from 1 to 2
- [Release notes](https://github.com/j178/prek-action/releases )
- [Commits](https://github.com/j178/prek-action/compare/v1...v2 )
---
updated-dependencies:
- dependency-name: j178/prek-action
dependency-version: '2'
dependency-type: direct:production
update-type: version-update:semver-major
dependency-group: github-actions-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-25 14:54:41 +00:00
John Bampton
55ef8e1728
Update workflows
2026-03-18 17:57:05 +10:00
John Bampton
9bdf998faa
Add pre-commit ecosystem to Dependabot
...
Group dependabot updates to reduce repo noise
Add descriptive group labels
https://github.blog/changelog/2026-03-10-dependabot-now-supports-pre-commit-hooks/
https://docs.github.com/en/code-security/reference/supply-chain-security/dependabot-options-reference#package-ecosystem-
2026-03-12 16:59:11 +10:00
Yukihiro "Matz" Matsumoto
b34b7206f9
Merge pull request #6738 from jbampton/add-manual-hooks-workflow
2026-03-12 14:20:02 +09:00
Yukihiro "Matz" Matsumoto
628cf498a7
pre-commit: remove markdown-link-check hook
...
External link checkers are inherently flaky in CI due to
websites blocking automated requests (e.g. 403 errors).
Also remove JSON hooks (pretty-format-json, check-json)
since no JSON files remain in the repository.
Co-authored-by: Claude <noreply@anthropic.com >
2026-03-12 11:32:37 +09:00
John Bampton
626b2fa469
Put manual hooks in separate workflow file
2026-03-11 10:29:57 +10:00
dependabot[bot]
fcb665b88c
build(deps): bump actions/upload-artifact from 6 to 7
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 6 to 7.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-05 14:52:19 +00:00
Yukihiro "Matz" Matsumoto
3b9784a263
mlc_config.json: add retry and accept 502 as alive status
...
GitHub sometimes returns transient 502 errors for valid URLs,
causing false positives in CI markdown link checks.
Co-authored-by: Claude <noreply@anthropic.com >
2026-02-25 15:12:57 +09:00
Yukihiro "Matz" Matsumoto
e49479feaa
mlc_config.json: ignore iso.org links in markdown-link-check
...
iso.org blocks automated HTTP requests with 403 Forbidden.
Also update the ISO 30170 URLs to current format in README.md
and CONTRIBUTING.md.
Co-authored-by: Claude <noreply@anthropic.com >
2026-02-18 15:41:55 +09:00
dependabot[bot]
f88d8e3edf
build(deps): bump super-linter/super-linter from 8.4.0 to 8.5.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.4.0 to 8.5.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.4.0...v8.5.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.5.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-02-16 15:58:59 +00:00
Yukihiro "Matz" Matsumoto
cac1c99c6c
pre-commit.yml: remove duplicate --color=always argument
...
The prek-action already passes --color=always internally,
so passing it again via extra-args causes a CLI error.
Co-authored-by: Claude <noreply@anthropic.com >
2026-02-14 10:23:34 +09:00
Yukihiro "Matz" Matsumoto
638a18dfe7
replace pre-commit with prek
...
prek is a faster, Rust-based drop-in replacement for pre-commit.
It reads the same .pre-commit-config.yaml with no changes needed.
Co-authored-by: Claude <noreply@anthropic.com >
2026-02-10 11:14:53 +09:00
dependabot[bot]
a883abe025
build(deps): bump super-linter/super-linter from 8.3.2 to 8.4.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.3.2 to 8.4.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.3.2...v8.4.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.4.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-02-04 14:52:31 +00:00
dependabot[bot]
5dbce935d8
build(deps): bump actions/cache from 4 to 5
...
Bumps [actions/cache](https://github.com/actions/cache ) from 4 to 5.
- [Release notes](https://github.com/actions/cache/releases )
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md )
- [Commits](https://github.com/actions/cache/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/cache
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-01-08 14:59:52 +00:00
Yukihiro "Matz" Matsumoto
ad5301970f
Merge pull request #6694 from katafrakt/mirb-cosmopolitan
2026-01-08 12:58:09 +09:00
John Bampton
6d5de7b3c1
[CI] Dependabot: add a cooldown period for new releases
...
Enforces security best practices by requiring a minimum age for new dependency releases before they are automatically updated by Dependabot.
This practice, known as a "cooldown period," helps mitigate supply chain attacks by allowing time for frequently published malicious packages to be identified.
https://docs.github.com/en/code-security/dependabot/working-with-dependabot/dependabot-options-reference#cooldown-
2026-01-08 01:02:15 +10:00
Paweł Świątkowski
1881a904a4
Add Cosmopolitan build to CI
2026-01-05 01:04:21 +01:00
dependabot[bot]
b55169fbce
build(deps): bump super-linter/super-linter from 8.3.1 to 8.3.2
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.3.1 to 8.3.2.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.3.1...v8.3.2 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.3.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-25 14:01:13 +00:00
dependabot[bot]
68a488def0
build(deps): bump super-linter/super-linter from 8.3.0 to 8.3.1
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.3.0 to 8.3.1.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.3.0...v8.3.1 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.3.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-16 14:01:16 +00:00
dependabot[bot]
9ecaf0699c
build(deps): bump actions/upload-artifact from 5 to 6
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 5 to 6.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-15 14:01:58 +00:00
dependabot[bot]
d755e2bc1b
build(deps): bump actions/cache from 4 to 5
...
Bumps [actions/cache](https://github.com/actions/cache ) from 4 to 5.
- [Release notes](https://github.com/actions/cache/releases )
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md )
- [Commits](https://github.com/actions/cache/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/cache
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-12 14:01:27 +00:00
Yukihiro "Matz" Matsumoto
2341b7ebf5
Merge pull request #6679 from jbampton/pre-commit-autoupdate
2025-12-08 10:06:02 +09:00
John Bampton
dbca200bc7
Fix markdown-link-check ignore 2 URL patterns
2025-12-07 11:00:17 +10:00
John Bampton
9835bf8473
Put ls-lint and pre-commit in separate workflow files
...
Standardizes all workflows into separate files.
Minor clean up of workflow name and add a docs link
2025-12-07 09:50:27 +10:00
John Bampton
58264bedee
gha: run pre-commit with --color=always
...
Minor enhancement for the GHA CI.
refs https://github.com/apache/cloudstack/pull/11977
2025-12-05 23:21:58 +10:00
dependabot[bot]
b7b61fdbe5
build(deps): bump super-linter/super-linter from 8.2.1 to 8.3.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.2.1 to 8.3.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.2.1...v8.3.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.3.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-02 14:01:29 +00:00
John Bampton
88bc3c130f
Merge branch 'master' into manual-hooks
2025-11-28 05:43:37 +10:00
dependabot[bot]
f05a284cab
build(deps): bump actions/checkout from 5 to 6
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 5 to 6.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-11-21 14:01:22 +00:00
dependabot[bot]
2a59e639b1
build(deps): bump actions/upload-artifact from 4 to 5
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 4 to 5.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-27 14:50:04 +00:00
Yukihiro "Matz" Matsumoto
f1e2ab03fb
ci: remove interactive claude workflow
...
removed due to same OIDC authentication failures as claude-code-review.
workflow can be re-added when the action is more stable.
Co-authored-by: Claude <noreply@anthropic.com >
2025-10-27 09:01:43 +09:00
Yukihiro "Matz" Matsumoto
4220ab449c
ci: remove claude code review workflow
...
removed due to persistent OIDC authentication failures in the beta action.
workflow can be re-added when the action is more stable.
Co-authored-by: Claude <noreply@anthropic.com >
2025-10-27 08:58:42 +09:00
dependabot[bot]
a6720afed9
build(deps): bump super-linter/super-linter from 8.2.0 to 8.2.1
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.2.0 to 8.2.1.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.2.0...v8.2.1 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.2.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-17 14:01:50 +00:00
dependabot[bot]
768ea3afbe
build(deps): bump github/codeql-action from 3 to 4
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 3 to 4.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v3...v4 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: '4'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-08 14:01:47 +00:00
dependabot[bot]
adccd54fad
build(deps): bump super-linter/super-linter from 8.1.0 to 8.2.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.1.0 to 8.2.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.1.0...v8.2.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.2.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-01 14:02:06 +00:00
dependabot[bot]
7d0b5de384
build(deps): bump actions/labeler from 5 to 6
...
Bumps [actions/labeler](https://github.com/actions/labeler ) from 5 to 6.
- [Release notes](https://github.com/actions/labeler/releases )
- [Commits](https://github.com/actions/labeler/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/labeler
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-09-05 14:02:16 +00:00
dependabot[bot]
d342de94b6
build(deps): bump super-linter/super-linter from 8.0.0 to 8.1.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 8.0.0 to 8.1.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v8.0.0...v8.1.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-08-21 14:42:08 +00:00
dependabot[bot]
14024d9072
build(deps): bump actions/checkout from 4 to 5
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 4 to 5.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-08-11 20:58:54 +00:00
John Bampton
a35b7d537a
pre-commit: run markdown-link-check, oxipng, prettier manually
...
The "manual" stage in pre-commit refers to a specific hook stage designed for hooks that are not intended to run automatically during a standard git commit operation. Instead, these hooks are meant to be triggered explicitly by a user, typically when performing a full repository scan or a specific check.
This speeds up the standard `pre-commit run --all-files` run by not running these two hooks.
Both hooks are time consuming
Can run the manual hooks with:
`pre-commit run --all-files --hook-stage manual`
Add pre-commit manual stage run on CI to keep full coverage
2025-07-31 01:58:47 +10:00
John Bampton
ab379e1229
Add CodeQL Analysis for GitHub Actions
...
https://docs.github.com/en/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning-with-codeql#about-codeql
2025-07-27 01:08:23 +10:00
dependabot[bot]
037a3dbf38
build(deps): bump super-linter/super-linter from 7.4.0 to 8.0.0
...
Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter ) from 7.4.0 to 8.0.0.
- [Release notes](https://github.com/super-linter/super-linter/releases )
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md )
- [Commits](https://github.com/super-linter/super-linter/compare/v7.4.0...v8.0.0 )
---
updated-dependencies:
- dependency-name: super-linter/super-linter
dependency-version: 8.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-07-18 14:34:40 +00:00
John Bampton
b229bb65c4
Run pre-commit and fix lint errors
2025-07-09 21:12:08 +10:00
Yukihiro "Matz" Matsumoto
1b35ea5f93
Claude Code Review workflow
2025-07-08 16:46:23 +09:00
Yukihiro "Matz" Matsumoto
2258cdc3fc
Claude PR Assistant workflow
2025-07-08 16:46:21 +09:00