Skip to content

Bump the actions group with 3 updates#79

Merged
ezio-melotti merged 1 commit into
mainfrom
dependabot/github_actions/actions-e0215cb4f2
Jun 3, 2026
Merged

Bump the actions group with 3 updates#79
ezio-melotti merged 1 commit into
mainfrom
dependabot/github_actions/actions-e0215cb4f2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Jun 3, 2026

Bumps the actions group with 3 updates: tox-dev/action-pre-commit-uv, hynek/build-and-inspect-python-package and codecov/codecov-action.

Updates tox-dev/action-pre-commit-uv from 1.0.3 to 1.0.4

Release notes

Sourced from tox-dev/action-pre-commit-uv's releases.

v1.0.4

Update to node24-compatible dependencies (actions/cache v5, astral-sh/setup-uv v8.1.0)

Commits
  • 41a04ab Bump astral-sh/setup-uv from 7.6.0 to 8.1.0 in the actions group (#27)
  • 3c0e45b 🐛 fix(ci): repair pre-commit config and remaining zizmor findings (#26)
  • d8eb059 Add zizmor pre-commit hook and fix security issues (#25)
  • 1df94c3 ✨ feat(action): add uv-install input and auto-detect uvx (#24)
  • 90369ff 🐛 fix(action): skip uv install when already present (#23)
  • c10240f Standardize .github files to .yaml suffix
  • be138e6 Add missing .github config files
  • 1e144f4 Move SECURITY.md to .github/SECURITY.md (#20)
  • def5367 Add security policy
  • ec0f589 Add permissions to workflows (#19)
  • Additional commits viewable in compare view

Updates hynek/build-and-inspect-python-package from 2.17.0 to 2.18.0

Release notes

Sourced from hynek/build-and-inspect-python-package's releases.

v2.18.0

Added

  • New input: skip-sdist to skip building the source distribution. #228
Changelog

Sourced from hynek/build-and-inspect-python-package's changelog.

Changelog

All notable changes to this project will be documented in this file.

The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.

Unreleased

2.18.0 - 2026-05-11

Added

  • New input: skip-sdist to skip building the source distribution. #228

2.17.0 - 2026-03-27

Fixed

  • The action now passes Zizmor in pedantic mode. #212

2.16.0 - 2026-03-26

Added

  • New input: include-free-threaded When set to 'true', free-threaded Python siblings (for example, 3.14t) are included in the version outputs for Python 3.14 and later, inserted inline after each matching version. #208

2.15.0 - 2026-03-19

Added

  • The Python version used to build the package can now be configured using the python-version input. #191

Changed

  • Pick Python version explictly instead of "3.x" to prevent incompatibily problems like #182 in the future.

... (truncated)

Commits

Updates codecov/codecov-action from 6.0.0 to 6.0.1

Release notes

Sourced from codecov/codecov-action's releases.

v6.0.1

What's Changed

Full Changelog: codecov/codecov-action@v6.0.0...v6.0.1

Changelog

Sourced from codecov/codecov-action's changelog.

v5.5.2

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.1..v5.5.2

v5.5.1

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.5.0..v5.5.1

v5.5.0

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.4.3..v5.5.0

v5.4.3

What's Changed

Full Changelog: https://github.com/codecov/codecov-action/compare/v5.4.2..v5.4.3

v5.4.2

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the actions group with 3 updates: [tox-dev/action-pre-commit-uv](https://github.com/tox-dev/action-pre-commit-uv), [hynek/build-and-inspect-python-package](https://github.com/hynek/build-and-inspect-python-package) and [codecov/codecov-action](https://github.com/codecov/codecov-action).


Updates `tox-dev/action-pre-commit-uv` from 1.0.3 to 1.0.4
- [Release notes](https://github.com/tox-dev/action-pre-commit-uv/releases)
- [Commits](tox-dev/action-pre-commit-uv@246b665...41a04ab)

Updates `hynek/build-and-inspect-python-package` from 2.17.0 to 2.18.0
- [Release notes](https://github.com/hynek/build-and-inspect-python-package/releases)
- [Changelog](https://github.com/hynek/build-and-inspect-python-package/blob/main/CHANGELOG.md)
- [Commits](hynek/build-and-inspect-python-package@fe0a0fb...d44ca7d)

Updates `codecov/codecov-action` from 6.0.0 to 6.0.1
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](codecov/codecov-action@57e3a13...e79a696)

---
updated-dependencies:
- dependency-name: tox-dev/action-pre-commit-uv
  dependency-version: 1.0.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: actions
- dependency-name: hynek/build-and-inspect-python-package
  dependency-version: 2.18.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: codecov/codecov-action
  dependency-version: 6.0.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 3, 2026
@ezio-melotti ezio-melotti merged commit 99f9828 into main Jun 3, 2026
22 checks passed
@ezio-melotti ezio-melotti deleted the dependabot/github_actions/actions-e0215cb4f2 branch June 3, 2026 10:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant