From 913345f4a5ecc93fb1a06b808ad25a626fea613d Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Fri, 1 Nov 2024 10:19:14 +0000 Subject: [PATCH] chore(deps): update all non-major dependencies --- .github/workflows/deps-renovate.yaml | 4 ++-- .github/workflows/deps-review.yml | 2 +- .github/workflows/go-ci.yml | 2 +- .github/workflows/sec-codeql.yml | 8 ++++---- .github/workflows/sec-scorecard.yml | 4 ++-- .github/workflows/tpl-packaging.yml | 2 +- Dockerfile | 2 +- go.mod | 2 +- go.sum | 4 ++-- 9 files changed, 15 insertions(+), 15 deletions(-) diff --git a/.github/workflows/deps-renovate.yaml b/.github/workflows/deps-renovate.yaml index 3a74f58..92c3642 100644 --- a/.github/workflows/deps-renovate.yaml +++ b/.github/workflows/deps-renovate.yaml @@ -14,8 +14,8 @@ jobs: name: Check renovate config runs-on: ubuntu-latest steps: - - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4 + - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - name: Validate renovate config - uses: docker://renovate/renovate:latest@sha256:d2c8aa79acb5fd6014d988e1c49f262432df071a546f46ca3f3017a8c3d40964 + uses: docker://renovate/renovate:latest@sha256:c1befe2ce4ae15dc4437e9d88c55f8af171f99ac66e9130d68faaf0ccf441156 with: args: renovate-config-validator diff --git a/.github/workflows/deps-review.yml b/.github/workflows/deps-review.yml index 3dd6d42..d36452c 100644 --- a/.github/workflows/deps-review.yml +++ b/.github/workflows/deps-review.yml @@ -22,6 +22,6 @@ jobs: egress-policy: audit - name: 'Checkout Repository' - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1 + uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2 - name: 'Dependency Review' uses: actions/dependency-review-action@c74b580d73376b7750d3d2a50bfb8adc2c937507 # v3.1.5 diff --git a/.github/workflows/go-ci.yml b/.github/workflows/go-ci.yml index c4c3365..8a7ecfa 100644 --- a/.github/workflows/go-ci.yml +++ b/.github/workflows/go-ci.yml @@ -13,7 +13,7 @@ jobs: name: Lint And Test Code runs-on: ubuntu-latest steps: - - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4 + - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # v4 with: go-version-file: go.mod diff --git a/.github/workflows/sec-codeql.yml b/.github/workflows/sec-codeql.yml index 9d23eb6..c448d1c 100644 --- a/.github/workflows/sec-codeql.yml +++ b/.github/workflows/sec-codeql.yml @@ -22,7 +22,7 @@ jobs: contents: read runs-on: ubuntu-latest steps: - - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4 + - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # v4 with: go-version-file: go.mod @@ -38,11 +38,11 @@ jobs: ${{ runner.os }}-go- # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@083cd45dc7d463f048a5d0975943f0e19e9c9378 # v2 + uses: github/codeql-action/init@6a89f57882288b3d2f190cda65000eec9e9ebb7c # v2 with: languages: go # Autobuild attempts to build any compiled languages. - name: Autobuild - uses: github/codeql-action/autobuild@083cd45dc7d463f048a5d0975943f0e19e9c9378 # v2 + uses: github/codeql-action/autobuild@6a89f57882288b3d2f190cda65000eec9e9ebb7c # v2 - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@083cd45dc7d463f048a5d0975943f0e19e9c9378 # v2 + uses: github/codeql-action/analyze@6a89f57882288b3d2f190cda65000eec9e9ebb7c # v2 diff --git a/.github/workflows/sec-scorecard.yml b/.github/workflows/sec-scorecard.yml index c0784c4..80e6aad 100644 --- a/.github/workflows/sec-scorecard.yml +++ b/.github/workflows/sec-scorecard.yml @@ -25,7 +25,7 @@ jobs: steps: - name: "Checkout code" - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1 + uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2 with: persist-credentials: false @@ -61,6 +61,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@083cd45dc7d463f048a5d0975943f0e19e9c9378 # v2.26.13 + uses: github/codeql-action/upload-sarif@6a89f57882288b3d2f190cda65000eec9e9ebb7c # v2.27.0 with: sarif_file: results.sarif diff --git a/.github/workflows/tpl-packaging.yml b/.github/workflows/tpl-packaging.yml index ad353cd..98f6d27 100644 --- a/.github/workflows/tpl-packaging.yml +++ b/.github/workflows/tpl-packaging.yml @@ -38,7 +38,7 @@ jobs: pull-requests: write runs-on: ubuntu-latest steps: - - uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4 + - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # v4 with: go-version-file: go.mod diff --git a/Dockerfile b/Dockerfile index b9ef9b6..df22d2d 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,4 +1,4 @@ -FROM ubuntu:latest@sha256:d4f6f70979d0758d7a6f81e34a61195677f4f4fa576eaf808b79f17499fd93d1 as base +FROM ubuntu:latest@sha256:99c35190e22d294cdace2783ac55effc69d32896daaa265f0bbedbcde4fbe3e5 as base RUN useradd -u 1001 merger FROM scratch diff --git a/go.mod b/go.mod index b45caa2..f16e71c 100644 --- a/go.mod +++ b/go.mod @@ -10,7 +10,7 @@ require ( github.com/knadh/koanf/providers/file v0.1.0 github.com/knadh/koanf/v2 v2.1.1 github.com/stretchr/testify v1.9.0 - k8s.io/apimachinery v0.31.1 + k8s.io/apimachinery v0.31.2 k8s.io/kube-openapi v0.0.0-20241009091222-67ed5848f094 sigs.k8s.io/kustomize/kyaml v0.18.1 ) diff --git a/go.sum b/go.sum index 8e06e53..b522bac 100644 --- a/go.sum +++ b/go.sum @@ -149,8 +149,8 @@ gopkg.in/yaml.v2 v2.4.0/go.mod h1:RDklbk79AGWmwhnvt/jBztapEOGDOx6ZbXqjP6csGnQ= gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM= gopkg.in/yaml.v3 v3.0.1 h1:fxVm/GzAzEWqLHuvctI91KS9hhNmmWOoWu0XTYJS7CA= gopkg.in/yaml.v3 v3.0.1/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM= -k8s.io/apimachinery v0.31.1 h1:mhcUBbj7KUjaVhyXILglcVjuS4nYXiwC+KKFBgIVy7U= -k8s.io/apimachinery v0.31.1/go.mod h1:rsPdaZJfTfLsNJSQzNHQvYoTmxhoOEofxtOsF3rtsMo= +k8s.io/apimachinery v0.31.2 h1:i4vUt2hPK56W6mlT7Ry+AO8eEsyxMD1U44NR22CLTYw= +k8s.io/apimachinery v0.31.2/go.mod h1:rsPdaZJfTfLsNJSQzNHQvYoTmxhoOEofxtOsF3rtsMo= k8s.io/klog/v2 v2.130.1 h1:n9Xl7H1Xvksem4KFG4PYbdQCQxqc/tTUyrgXaOhHSzk= k8s.io/klog/v2 v2.130.1/go.mod h1:3Jpz1GvMt720eyJH1ckRHK1EDfpxISzJ7I9OYgaDtPE= k8s.io/kube-openapi v0.0.0-20241009091222-67ed5848f094 h1:MErs8YA0abvOqJ8gIupA1Tz6PKXYUw34XsGlA7uSL1k=