Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 23, 2023

Bumps ossf/scorecard-action from 2.1.3 to 2.2.0.

Release notes

Sourced from ossf/scorecard-action's releases.

v2.2.0

What's Changed

Scorecard Result Viewer

Thanks to contributions from @​cynthia-sg and @​tegioz at CLOMonitor, there is a new Scorecard Result visualization page at https://securityscorecards.dev/viewer/?uri=<project-url>.

As an example, you can see our own score visualized here Checkout our README to learn how to link your README badge to the new visualization page.

Publishing Results

This release contains two fixes which will improve the user experience when publish_results is true

Docs

New Contributors

Full Changelog: ossf/scorecard-action@v2.1.3...v2.2.0

Commits
  • 08b4669 🌱 Bump docker tag to for v2.2.0 release. (#1194)
  • 3c7470f 📖 Update README badge link to use new uri param. (#1185)
  • a164dbc 🌱 Bump github.com/ossf/scorecard/v4 from v4.10.5 to v4.11.0 (#1192)
  • 597960e 📖 Update README to accept fine-grained tokens (#1175)
  • 8808ed2 🌱 Retry external network calls when publishing results (#1191)
  • 0eed6cb 🌱 Bump golang.org/x/net from 0.10.0 to 0.11.0
  • 6c6335c 🌱 Bump github/codeql-action from 2.3.6 to 2.20.0
  • 7f1baf3 📖 Switch recommended badge link to the new viewer. (#1176)
  • df98bbc 🌱 Bump actions/checkout from 3.5.2 to 3.5.3
  • 75886d4 🌱 Bump golangci/golangci-lint-action from 3.5.0 to 3.6.0 (#1172)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.3 to 2.2.0.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](ossf/scorecard-action@80e868c...08b4669)

---
updated-dependencies:
- dependency-name: ossf/scorecard-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added autosubmit Merge PR when tree becomes green via auto submit App c: contributor-productivity Team-specific productivity, code health, technical debt. team-infra Owned by Infrastructure team labels Jun 23, 2023
@dependabot dependabot bot requested a review from godofredoc June 23, 2023 21:58
@auto-submit auto-submit bot removed the autosubmit Merge PR when tree becomes green via auto submit App label Jun 26, 2023
@auto-submit
Copy link
Contributor

auto-submit bot commented Jun 26, 2023

auto label is removed for flutter/flutter, pr: 129453, Mergeability of pull request flutter/flutter/129453 could not be determined at time of merge..

@ricardoamador ricardoamador added the autosubmit Merge PR when tree becomes green via auto submit App label Jun 26, 2023
@auto-submit auto-submit bot merged commit 96a2c05 into master Jun 26, 2023
@auto-submit auto-submit bot deleted the dependabot/github_actions/ossf/scorecard-action-2.2.0 branch June 26, 2023 18:42
engine-flutter-autoroll added a commit to engine-flutter-autoroll/packages that referenced this pull request Jun 26, 2023
auto-submit bot pushed a commit to flutter/packages that referenced this pull request Jun 26, 2023
Roll Flutter from 042c036 to 96a2c05 (60 revisions)

flutter/flutter@042c036...96a2c05

2023-06-26 49699333+dependabot[bot]@users.noreply.github.com Bump ossf/scorecard-action from 2.1.3 to 2.2.0 (flutter/flutter#129453)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from 63582320d20e to 4032a9bc964e (2 revisions) (flutter/flutter#129569)
2023-06-26 hans.muller@gmail.com Updated TextMagnifierExampleApp to M3 (flutter/flutter#129381)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from debee7cece49 to 63582320d20e (3 revisions) (flutter/flutter#129563)
2023-06-26 tessertaha@gmail.com Fix `AnimatedList` & `AnimatedGrid` doesn't apply `MediaQuery` padding (flutter/flutter#129556)
2023-06-26 godofredoc@google.com Process only specific labels. (flutter/flutter#129475)
2023-06-26 engine-flutter-autoroll@skia.org Roll Packages from d041934 to 6b70804 (7 revisions) (flutter/flutter#129559)
2023-06-26 ian@hixie.ch Make bug templates more consistent (flutter/flutter#129460)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from be46101e952d to debee7cece49 (1 revision) (flutter/flutter#129544)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from 88ff46e1efc1 to be46101e952d (2 revisions) (flutter/flutter#129540)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from 317673b3278a to 88ff46e1efc1 (1 revision) (flutter/flutter#129534)
2023-06-26 engine-flutter-autoroll@skia.org Roll Flutter Engine from 593e1d9a9cf5 to 317673b3278a (3 revisions) (flutter/flutter#129531)
2023-06-25 engine-flutter-autoroll@skia.org Roll Flutter Engine from 5178e8ab7764 to 593e1d9a9cf5 (1 revision) (flutter/flutter#129514)
2023-06-25 engine-flutter-autoroll@skia.org Roll Flutter Engine from 100f6fc854b4 to 5178e8ab7764 (1 revision) (flutter/flutter#129508)
2023-06-25 engine-flutter-autoroll@skia.org Roll Flutter Engine from a9f446e25f0c to 100f6fc854b4 (1 revision) (flutter/flutter#129498)
2023-06-25 engine-flutter-autoroll@skia.org Roll Flutter Engine from 5b1b98305768 to a9f446e25f0c (1 revision) (flutter/flutter#129495)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 72c902ce3b81 to 5b1b98305768 (2 revisions) (flutter/flutter#129493)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from f2976add9414 to 72c902ce3b81 (1 revision) (flutter/flutter#129489)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 76a5e971dc09 to f2976add9414 (1 revision) (flutter/flutter#129487)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 79fd6beea087 to 76a5e971dc09 (1 revision) (flutter/flutter#129483)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 30ac9107f2f9 to 79fd6beea087 (1 revision) (flutter/flutter#129479)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from ee65380bf3fd to 30ac9107f2f9 (1 revision) (flutter/flutter#129476)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 240a86f40781 to ee65380bf3fd (2 revisions) (flutter/flutter#129474)
2023-06-24 godofredoc@google.com Fix issues with no response bot. (flutter/flutter#129470)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 5e6dcf959ea0 to 240a86f40781 (1 revision) (flutter/flutter#129473)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from 550bfedc8760 to 5e6dcf959ea0 (1 revision) (flutter/flutter#129468)
2023-06-24 engine-flutter-autoroll@skia.org Roll Flutter Engine from c1abd1f17ab1 to 550bfedc8760 (3 revisions) (flutter/flutter#129466)
2023-06-24 bdero@google.com [devicelab] Add platform view scroll benchmarks for Impeller on Android (flutter/flutter#129455)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from eca910dd5e3f to c1abd1f17ab1 (3 revisions) (flutter/flutter#129456)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from f8a39cb4dc56 to eca910dd5e3f (3 revisions) (flutter/flutter#129451)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from 74ef61859bdc to f8a39cb4dc56 (2 revisions) (flutter/flutter#129445)
2023-06-23 737941+loic-sharma@users.noreply.github.com Add CallbackShortcuts widget of the week video (flutter/flutter#129296)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from 060cd9c17df3 to 74ef61859bdc (3 revisions) (flutter/flutter#129444)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from cd30a48ef889 to 060cd9c17df3 (3 revisions) (flutter/flutter#129440)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from 27f3498286ff to cd30a48ef889 (4 revisions) (flutter/flutter#129437)
2023-06-23 godofredoc@google.com Add a devicelab test to recipes cq. (flutter/flutter#129411)
2023-06-23 paurakh011@gmail.com fix: Inconsistency of SelectionArea when scrolling (flutter/flutter#128765)
2023-06-23 katelovett@google.com Run misc test shard when examples/api/** change (flutter/flutter#129433)
2023-06-23 49699333+dependabot[bot]@users.noreply.github.com Bump ubuntu from `b795f8e` to `db8bf6f` in /dev/ci/docker_linux (flutter/flutter#128740)
2023-06-23 godofredoc@google.com Add r: timeout label to bugs/pr closed by no response bot. (flutter/flutter#129408)
2023-06-23 godofredoc@google.com Remove .github/move.yml. (flutter/flutter#129409)
2023-06-23 engine-flutter-autoroll@skia.org Roll Packages from 95bc1c6 to d041934 (6 revisions) (flutter/flutter#129429)
2023-06-23 engine-flutter-autoroll@skia.org Roll Flutter Engine from aca26b2afc27 to 27f3498286ff (16 revisions) (flutter/flutter#129421)
2023-06-23 godofredoc@google.com Add comments to .ci.yaml that were removed from recipes. (flutter/flutter#129321)
2023-06-23 godofredoc@google.com Update no response to use core action. (flutter/flutter#129405)
2023-06-23 xilaizhang@google.com Revert "[web] Migrate framework to fully use package:web" (flutter/flutter#129400)
...
engine-flutter-autoroll added a commit to engine-flutter-autoroll/packages that referenced this pull request Aug 16, 2023
engine-flutter-autoroll added a commit to engine-flutter-autoroll/packages that referenced this pull request Aug 17, 2023
engine-flutter-autoroll added a commit to engine-flutter-autoroll/packages that referenced this pull request Aug 17, 2023
engine-flutter-autoroll added a commit to engine-flutter-autoroll/packages that referenced this pull request Aug 17, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

autosubmit Merge PR when tree becomes green via auto submit App c: contributor-productivity Team-specific productivity, code health, technical debt. team-infra Owned by Infrastructure team

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants