Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.
🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.
Detected Package Files
.github/workflows/codeql.yml
(github-actions).github/workflows/dependency-review.yml
(github-actions).github/workflows/licensed.yml
(github-actions).github/workflows/release-new-action-version.yml
(github-actions).github/workflows/scorecards.yml
(github-actions).github/workflows/test.yml
(github-actions)package.json
(npm)Configuration Summary
Based on the default config's presets, Renovate will:
fix
for dependencies andchore
for all others if semantic commits are in use.node_modules
,bower_components
,vendor
and various test/tests directories.🔡 Do you want to change how Renovate upgrades your dependencies? Add your custom config to
renovate.json
in this branch. Renovate will update the Pull Request description the next time it runs.What to Expect
With your current configuration, Renovate will create 20 Pull Requests:
Update dependency semver to v7.5.2 [SECURITY]
renovate/npm-semver-vulnerability
main
7.5.2
Update actions/setup-node action to v2.5.2
renovate/actions-setup-node-2.x
main
7c12f8017d5436eb855f1ed4399f037a36fbd9e8
Update actions/upload-artifact action to v3.1.3
renovate/actions-upload-artifact-3.x
main
a8a3f3ad30e3422c9c7b888a15615d19a852ae32
Update dependency @actions/core to v1.10.1
renovate/actions-core-1.x-lockfile
main
1.10.1
Update dependency @types/semver to v7.5.6
renovate/semver-7.x-lockfile
main
7.5.6
Update actions/checkout action to v3.6.0
renovate/actions-checkout-3.x
main
f43a0e5ff2bd294095638e18286ca9a3d1956744
Update dependency @octokit/plugin-rest-endpoint-methods to v7.2.3
renovate/octokit-monorepo
main
7.2.3
Update dependency @vercel/ncc to ^0.38.0
renovate/vercel-ncc-0.x
main
^0.38.0
Update github/codeql-action action to v2.22.11
renovate/github-codeql-action-2.x
main
03e7845b7bfcd5e7fb63d1ae8c61b0e791134fab
Update ossf/scorecard-action action to v2.3.1
renovate/ossf-scorecard-action-2.x
main
0864cf19026789058feabb7e87baa5f140aac736
Update actions/checkout action to v4
renovate/actions-checkout-4.x
main
b4ffde65f46336ab88eb53be808477a3936bae11
v4
Update actions/dependency-review-action action to v3
renovate/actions-dependency-review-action-3.x
main
01bc87099ba56df1e897b6874784491ea6309bc4
Update actions/setup-node action to v4
renovate/actions-setup-node-4.x
main
8f152de45cc393bb48ce5d89d36b731f54556e65
Update actions/upload-artifact action to v4
renovate/actions-upload-artifact-4.x
main
c7d193f32edcb7bfad88892161225aeda64e9392
Update dependency @actions/github to v6
renovate/actions-github-6.x
main
^6.0.0
Update dependency @actions/http-client to v2
renovate/actions-http-client-2.x
main
^2.0.0
Update dependency @octokit/plugin-rest-endpoint-methods to v10
renovate/major-octokit-monorepo
main
^10.0.0
Update dependency typescript to v5
renovate/typescript-5.x
main
^5.0.0
Update github/codeql-action action to v3
renovate/github-codeql-action-3.x
main
b374143c1149a9115d881581d29b8390bbcbb59c
Update jest monorepo to v29 (major)
renovate/major-jest-monorepo
main
^29.0.0
^29.0.0
^29.0.0
^29.0.0
🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or overwhelm the project. See docs for
prhourlylimit
for details.Warning
Please correct - or verify that you can safely ignore - these dependency lookup failures before you merge this PR.
Could not determine new digest for update (github-tags package nextlinux/harden-runner)
Files affected:
.github/workflows/codeql.yml
❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section.
If you need any further assistance then you can also request help here.
This PR has been generated by Mend Renovate. View repository job log here.