Skip to content

build(deps): Bump the actions group with 2 updates - #126

Merged
hyperpolymath merged 1 commit into
mainfrom
dependabot/github_actions/actions-2bc34e17cb
Oct 4, 2026
Merged

hyperpolymath merged 1 commit into
mainfrom
dependabot/github_actions/actions-2bc34e17cb

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 4, 2026

Copy link
Copy Markdown
Contributor

Bumps the actions group with 2 updates: GitGuardian/ggshield-action and SonarSource/sonarqube-scan-action.

Updates GitGuardian/ggshield-action from 1.54.0 to 1.55.0

Release notes

Sourced from GitGuardian/ggshield-action's releases.

v1.55.0

Changelog

Updated to ggshield 1.55.0.

Commits
  • 7f66d3b feat(action): update ggshield to 1.55.0
  • 4a703dc Merge pull request #24 from GitGuardian/nathanriviere/-/fix_readme_images
  • c4a07c2 docs: fix broken readme images by switching to jsdelivr cdn
  • See full diff in compare view

Updates SonarSource/sonarqube-scan-action from 8.2.2 to 8.3.0

Release notes

Sourced from SonarSource/sonarqube-scan-action's releases.

v8.3.0

What's Changed

New Contributors

Full Changelog: SonarSource/sonarqube-scan-action@v8.2.2...v8.3.0

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the actions group with 2 updates: [GitGuardian/ggshield-action](https://github.com/gitguardian/ggshield-action) and [SonarSource/sonarqube-scan-action](https://github.com/sonarsource/sonarqube-scan-action).


Updates `GitGuardian/ggshield-action` from 1.54.0 to 1.55.0
- [Release notes](https://github.com/gitguardian/ggshield-action/releases)
- [Commits](GitGuardian/ggshield-action@v1.54.0...v1.55.0)

Updates `SonarSource/sonarqube-scan-action` from 8.2.2 to 8.3.0
- [Release notes](https://github.com/sonarsource/sonarqube-scan-action/releases)
- [Commits](SonarSource/sonarqube-scan-action@v8.2.2...v8.3.0)

---
updated-dependencies:
- dependency-name: GitGuardian/ggshield-action
  dependency-version: 1.55.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: SonarSource/sonarqube-scan-action
  dependency-version: 8.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Oct 4, 2026
@coderabbitai

coderabbitai Bot commented Oct 4, 2026

Copy link
Copy Markdown
Contributor

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: Organization UI
  • Review profile: ASSERTIVE
  • Plan: Advanced
  • Run ID: 8f0df1ef-e55e-4220-8735-0436114c63c3

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.


- name: GitGuardian scan
uses: GitGuardian/ggshield-action@v1.54.0
uses: GitGuardian/ggshield-action@v1.55.0

- name: SonarQube scan
uses: SonarSource/sonarqube-scan-action@v8.2.2
uses: SonarSource/sonarqube-scan-action@v8.3.0
@hyperpolymath
hyperpolymath merged commit c8ec6e8 into main Oct 4, 2026
25 of 30 checks passed
@hyperpolymath
hyperpolymath deleted the dependabot/github_actions/actions-2bc34e17cb branch October 4, 2026 19:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants