Skip to content

ci: bump the actions group across 1 directory with 4 updates - #20

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions-38a36f66b2
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions-38a36f66b2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 31, 2026

Copy link
Copy Markdown
Contributor

Bumps the actions group with 4 updates in the / directory: bounded-systems/.github/.github/workflows/_claim-sweep.yml, bounded-systems/ci-workflows/.github/workflows/osv-scan.yml, bounded-systems/.github/.github/actions/broker-gh-token and bounded-systems/.github/.github/workflows/_pr-claim.yml.

Updates bounded-systems/.github/.github/workflows/_claim-sweep.yml from 14c1a9b3ade8bb6416f46c890eda21823647da09 to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c

Commits
  • 1716efd ci: adopt auto-merge, so a green PR here merges without waiting for a person ...
  • 848335c CLAUDE.md: name scripts/ and its runner in the pre-push commands (#419)
  • 5e180d1 conformance: name the rulesets a row's gate-absent should be attributed to (#...
  • 6a70979 cold-hook-coverage: gate the SessionStart declarations against the cold path ...
  • bb2589a claim-ceremony: say WHICH 403 it was, so nobody re-derives the transport agai...
  • a0330ae _auto-merge: gated means a CI context is required — the claim alone is not a ...
  • 2080f24 PRs open ready, not draft: retire the draft convention (#400)
  • 8851780 conformance: the legacy armer is no longer org-managed, and no longer reporte...
  • d63837a selftest: the reference caller triggers on merge_group, and conformance measu...
  • eccc232 claim-ceremony: announce through the injecting proxy, and never send the sent...
  • Additional commits viewable in compare view

Updates bounded-systems/ci-workflows/.github/workflows/osv-scan.yml from 0.1.4 to 0.1.5

Commits

Updates bounded-systems/.github/.github/actions/broker-gh-token from 63fb16d135258a3acfbfe4ceb4db5c2a17f7dc1f to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c

Commits
  • 1716efd ci: adopt auto-merge, so a green PR here merges without waiting for a person ...
  • 848335c CLAUDE.md: name scripts/ and its runner in the pre-push commands (#419)
  • 5e180d1 conformance: name the rulesets a row's gate-absent should be attributed to (#...
  • 6a70979 cold-hook-coverage: gate the SessionStart declarations against the cold path ...
  • bb2589a claim-ceremony: say WHICH 403 it was, so nobody re-derives the transport agai...
  • a0330ae _auto-merge: gated means a CI context is required — the claim alone is not a ...
  • 2080f24 PRs open ready, not draft: retire the draft convention (#400)
  • 8851780 conformance: the legacy armer is no longer org-managed, and no longer reporte...
  • d63837a selftest: the reference caller triggers on merge_group, and conformance measu...
  • eccc232 claim-ceremony: announce through the injecting proxy, and never send the sent...
  • Additional commits viewable in compare view

Updates bounded-systems/.github/.github/workflows/_pr-claim.yml from bc4cb7dada47cc59eed416372a4851201bd6f503 to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c

Commits
  • 1716efd ci: adopt auto-merge, so a green PR here merges without waiting for a person ...
  • 848335c CLAUDE.md: name scripts/ and its runner in the pre-push commands (#419)
  • 5e180d1 conformance: name the rulesets a row's gate-absent should be attributed to (#...
  • 6a70979 cold-hook-coverage: gate the SessionStart declarations against the cold path ...
  • bb2589a claim-ceremony: say WHICH 403 it was, so nobody re-derives the transport agai...
  • a0330ae _auto-merge: gated means a CI context is required — the claim alone is not a ...
  • 2080f24 PRs open ready, not draft: retire the draft convention (#400)
  • 8851780 conformance: the legacy armer is no longer org-managed, and no longer reporte...
  • d63837a selftest: the reference caller triggers on merge_group, and conformance measu...
  • eccc232 claim-ceremony: announce through the injecting proxy, and never send the sent...
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 31, 2026
@dependabot dependabot Bot changed the title ci: bump the actions group with 4 updates ci: bump the actions group across 1 directory with 4 updates Sep 1, 2026
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions-38a36f66b2 branch from 3f84b2f to e6036e9 Compare September 1, 2026 22:10
Bumps the actions group with 4 updates in the / directory: [bounded-systems/.github/.github/workflows/_claim-sweep.yml](https://github.com/bounded-systems/.github), [bounded-systems/ci-workflows/.github/workflows/osv-scan.yml](https://github.com/bounded-systems/ci-workflows), [bounded-systems/.github/.github/actions/broker-gh-token](https://github.com/bounded-systems/.github) and [bounded-systems/.github/.github/workflows/_pr-claim.yml](https://github.com/bounded-systems/.github).


Updates `bounded-systems/.github/.github/workflows/_claim-sweep.yml` from 14c1a9b3ade8bb6416f46c890eda21823647da09 to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c
- [Release notes](https://github.com/bounded-systems/.github/releases)
- [Commits](bounded-systems/.github@14c1a9b...1716efd)

Updates `bounded-systems/ci-workflows/.github/workflows/osv-scan.yml` from 0.1.4 to 0.1.5
- [Commits](bounded-systems/ci-workflows@30978ba...fb7ca62)

Updates `bounded-systems/.github/.github/actions/broker-gh-token` from 63fb16d135258a3acfbfe4ceb4db5c2a17f7dc1f to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c
- [Release notes](https://github.com/bounded-systems/.github/releases)
- [Commits](bounded-systems/.github@63fb16d...1716efd)

Updates `bounded-systems/.github/.github/workflows/_pr-claim.yml` from bc4cb7dada47cc59eed416372a4851201bd6f503 to 1716efd3a3cc81ba97e0ff2be0f9a0a0ebd6574c
- [Release notes](https://github.com/bounded-systems/.github/releases)
- [Commits](bounded-systems/.github@bc4cb7d...1716efd)

---
updated-dependencies:
- dependency-name: bounded-systems/.github/.github/actions/broker-gh-token
  dependency-version: 4f465d0bffbee609309468a541853095aefab6ad
  dependency-type: direct:production
  dependency-group: actions
- dependency-name: bounded-systems/.github/.github/workflows/_claim-sweep.yml
  dependency-version: 4f465d0bffbee609309468a541853095aefab6ad
  dependency-type: direct:production
  dependency-group: actions
- dependency-name: bounded-systems/.github/.github/workflows/_pr-claim.yml
  dependency-version: 4f465d0bffbee609309468a541853095aefab6ad
  dependency-type: direct:production
  dependency-group: actions
- dependency-name: bounded-systems/ci-workflows/.github/workflows/osv-scan.yml
  dependency-version: 0.1.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions-38a36f66b2 branch from e6036e9 to c24859a Compare September 14, 2026 23:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

Status: Todo

Development

Successfully merging this pull request may close these issues.

0 participants