Bump dependabot-omnibus from 0.220.0 to 0.221.0
Bumps dependabot-omnibus from 0.220.0 to 0.221.0.
Release notes
Sourced from dependabot-omnibus's releases.
v0.221.0
What's Changed
- v0.220.0 by
@dependabot-core-action-automation
in dependabot/dependabot-core#7428- Target latest Python versions - 3.11.4, 3.10.12, 3.9.17, 3.8.17, 3.7.17 by
@phillipuniverse
in dependabot/dependabot-core#7412- exclude patterns for grouped updates by
@Nishnha
in dependabot/dependabot-core#7402- Add a newline after the group intro by
@Nishnha
in dependabot/dependabot-core#7401- Use ruby:3.1.4-bullseye by
@Nishnha
in dependabot/dependabot-core#7442- Fix edge case when updating Actions with mixed versions by
@deivid-rodriguez
in dependabot/dependabot-core#7410- [Grouped Updates] Cleaner management of the update dependency list by
@brrygrdn
in dependabot/dependabot-core#7414- [Grouped Updates] The VendorUpdater class watermarks DependencyFile objects it creates by
@brrygrdn
in dependabot/dependabot-core#7433- [Updater] Extract creation of new group Pull Requests into a discrete class by
@brrygrdn
in dependabot/dependabot-core#7354- [Updater] Avoid mis-representing a Dependency Group as a Dependency in error handling by
@brrygrdn
in dependabot/dependabot-core#7359- build(deps): bump Terraform to 1.5.0 by
@HorizonNet
in dependabot/dependabot-core#7439- Remove pnpm experiment flag by
@mctofu
in dependabot/dependabot-core#7453- Roll pub. Use dart 3 for running helpers. by
@sigurdm
in dependabot/dependabot-core#7417- Look in parent directories for nuget.config files by
@jmarolf
in dependabot/dependabot-core#7342- Remove
persistent_gems_after_clean
workaround by@jurre
in dependabot/dependabot-core#7296- Add
DEPENDABOT
environment variable for users by@shu-mutou
in dependabot/dependabot-core#7407- Bump debug from 1.7.2 to 1.8.0 in /updater by
@dependabot
in dependabot/dependabot-core#7316- Add workspace experiment to maintain state between updates and capture success/failure of each by
@bdragon
in dependabot/dependabot-core#6693- Add missing final EOL by
@deivid-rodriguez
in dependabot/dependabot-core#7456- Add sanitization to BranchNamer::DependencyGroupStrategy by
@TomNaessens
in dependabot/dependabot-core#7452- Remove duplicated ENV by
@deivid-rodriguez
in dependabot/dependabot-core#7455- Instantiate less dependencies by
@deivid-rodriguez
in dependabot/dependabot-core#7459- Fix actions updates when inconsistent casing is used by
@deivid-rodriguez
in dependabot/dependabot-core#7462- Revert "Pin CodeQL version (#7275)" by
@deivid-rodriguez
in dependabot/dependabot-core#7465- Update Bundler to 2.4.14 by
@deivid-rodriguez
in dependabot/dependabot-core#7429- Configure git with ENV by
@deivid-rodriguez
in dependabot/dependabot-core#7467- Update ecosystem READMEs with recommended setup by
@deivid-rodriguez
in dependabot/dependabot-core#7472- Fix flaky spec by
@deivid-rodriguez
in dependabot/dependabot-core#7474- NPM: fix GitHub registry not working when path is specified by
@jakecoffman
in dependabot/dependabot-core#7468- Remove simplecov by
@deivid-rodriguez
in dependabot/dependabot-core#7473- [Grouped Updates] Avoid passing non-manifest file changes between group updates by
@brrygrdn
in dependabot/dependabot-core#7404- build(deps): bump PNPM from 8.3.1 to 8.6.4 by
@yeikel
in dependabot/dependabot-core#7330- Add support for Directory.Packages.props file as entrypoint by
@TobiasLaving
in dependabot/dependabot-core#7086- Add smoke tests for go, npm and bundler+vendoring by
@brrygrdn
in dependabot/dependabot-core#7486- Use table summary for large groups of dependencies by
@bdragon
in dependabot/dependabot-core#7463- build(deps): bump Terraform from 1.5.0 to 1.5.2 by
@yeikel
in dependabot/dependabot-core#7493- Stop recording the
ecosystem
param by@jeffwidman
in dependabot/dependabot-core#7492- Only record ecosystem versions when flag set by
@jeffwidman
in dependabot/dependabot-core#7516- Update the
hex.pm/orgs/dependabot
token by@jeffwidman
in dependabot/dependabot-core#7532- Stop exposing real account tokens in plaintext by
@jeffwidman
in dependabot/dependabot-core#7533- Switch to using the new
record_ecosystem_versions
endpoint. by@jeffwidman
in dependabot/dependabot-core#7517- Fix CodeQL warning by
@deivid-rodriguez
in dependabot/dependabot-core#7531- Use the new
inputs
API by@jeffwidman
in dependabot/dependabot-core#7550- v0.221.0 by
@dependabot-core-action-automation
in dependabot/dependabot-core#7554New Contributors
@jmarolf
made their first contribution in dependabot/dependabot-core#7342@shu-mutou
made their first contribution in dependabot/dependabot-core#7407
... (truncated)
Commits
-
be74670
Merge pull request #7554 from dependabot/bump-to-v0.221.0 -
b20ca32
v0.221.0 -
8f44395
Use the newinputs
API (#7550) -
6e39f38
Merge pull request #7531 from dependabot/deivid-rodriguez/codeql-warnings -
f8baa1b
Fix CodeQL warning -
a061724
Remove comment hard to keep up to date -
781783f
Switch to therecord_ecosystem_versions
endpoint (#7517) -
8b4e7c7
Stop exposing real account tokens in plaintext (#7533) -
df6e81c
Update thehex.pm/orgs/dependabot
token (#7532) -
cd72277
Only record ecosystem versions when flag set (#7516) - Additional commits viewable in compare view
Dependabot commands
You can trigger Dependabot actions by commenting on this MR
-
@dependabot-bot recreate
will recreate this MR rewriting all the manual changes and resolving conflicts