Skip to content

⬆️ Update sigstore/gh-action-sigstore-python action to v3.0.1#599

Merged
renovate[bot] merged 1 commit into
mainfrom
renovate/sigstore-gh-action-sigstore-python-3.x
Jun 21, 2025
Merged

⬆️ Update sigstore/gh-action-sigstore-python action to v3.0.1#599
renovate[bot] merged 1 commit into
mainfrom
renovate/sigstore-gh-action-sigstore-python-3.x

Conversation

@renovate

@renovate renovate Bot commented Jun 21, 2025

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
sigstore/gh-action-sigstore-python action patch v3.0.0 -> v3.0.1

Release Notes

sigstore/gh-action-sigstore-python (sigstore/gh-action-sigstore-python)

v3.0.1

Compare Source

Changed
  • The minimum Python version supported by this action is now 3.9
    (#​155)
  • The action's Python dependencies are now fully pinned to specific versions
    (#​165)
Fixed
  • The rfc3161-client dependency has been upgraded to 1.0.3 to resolve
    a security vulnerability
    (#​182)

Configuration

📅 Schedule: Branch creation - "before 2am" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added dependencies Upgrade or downgrade of project dependencies. github_actions no-stale This issue or PR is exempted from the stable bot. labels Jun 21, 2025
@renovate renovate Bot force-pushed the renovate/sigstore-gh-action-sigstore-python-3.x branch from 9ec1f36 to c7c5b3e Compare June 21, 2025 05:00
@sonarqubecloud

Copy link
Copy Markdown

@renovate renovate Bot merged commit 17cc223 into main Jun 21, 2025
12 checks passed
@renovate renovate Bot deleted the renovate/sigstore-gh-action-sigstore-python-3.x branch June 21, 2025 08:40
@github-actions github-actions Bot locked and limited conversation to collaborators Jun 22, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

dependencies Upgrade or downgrade of project dependencies. github_actions no-stale This issue or PR is exempted from the stable bot.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants