This is an automated email from the ASF dual-hosted git repository.
dependabot[bot] pushed a commit to branch
dependabot/github_actions/github-actions-1072e98f5c
in repository https://gitbox.apache.org/repos/asf/iggy.git
commit fc79f06fa88bdc95f749a45342b2461809a29541
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
AuthorDate: Wed Sep 23 07:34:32 2026 +0000
chore(deps): Bump the github-actions group across 1 directory with 5 updates
Bumps the github-actions group with 5 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv) | `10.0.1` |
`10.1.0` |
| [taiki-e/install-action](https://github.com/taiki-e/install-action) |
`2.87.8` | `2.87.13` |
| [crate-ci/typos](https://github.com/crate-ci/typos) | `1.50.1` | `1.50.2`
|
| [codecov/codecov-action](https://github.com/codecov/codecov-action) |
`7.0.0` | `7.1.1` |
|
[docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) |
`4.2.0` | `4.4.1` |
Updates `astral-sh/setup-uv` from 10.0.1 to 10.1.0
- [Release notes](https://github.com/astral-sh/setup-uv/releases)
-
[Commits](https://github.com/astral-sh/setup-uv/compare/20cfd1bf945f4377ade1205e4dbc17946fc9a30d...bec219d24cd3e171d82865faccec33120bb574f4)
Updates `taiki-e/install-action` from 2.87.8 to 2.87.13
- [Release notes](https://github.com/taiki-e/install-action/releases)
-
[Changelog](https://github.com/taiki-e/install-action/blob/main/CHANGELOG.md)
-
[Commits](https://github.com/taiki-e/install-action/compare/v2.87.8...v2.87.13)
Updates `crate-ci/typos` from 1.50.1 to 1.50.2
- [Release notes](https://github.com/crate-ci/typos/releases)
- [Changelog](https://github.com/crate-ci/typos/blob/main/CHANGELOG.md)
- [Commits](https://github.com/crate-ci/typos/compare/v1.50.1...v1.50.2)
Updates `codecov/codecov-action` from 7.0.0 to 7.1.1
- [Release notes](https://github.com/codecov/codecov-action/releases)
-
[Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
-
[Commits](https://github.com/codecov/codecov-action/compare/v7.0.0...v7.1.1)
Updates `docker/setup-buildx-action` from 4.2.0 to 4.4.1
- [Release notes](https://github.com/docker/setup-buildx-action/releases)
-
[Commits](https://github.com/docker/setup-buildx-action/compare/bb05f3f5519dd87d3ba754cc423b652a5edd6d2c...f87e5991a6d7451dcb8d9637bfbc97413f497069)
---
updated-dependencies:
- dependency-name: astral-sh/setup-uv
dependency-version: 10.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions
- dependency-name: codecov/codecov-action
dependency-version: 7.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions
- dependency-name: crate-ci/typos
dependency-version: 1.50.2
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions
- dependency-name: docker/setup-buildx-action
dependency-version: 4.4.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: github-actions
- dependency-name: taiki-e/install-action
dependency-version: 2.87.13
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions
...
Signed-off-by: dependabot[bot] <[email protected]>
---
.github/workflows/_common.yml | 6 +++---
.github/workflows/_test.yml | 16 ++++++++--------
.github/workflows/_test_examples.yml | 2 +-
.github/workflows/coverage-baseline.yml | 20 ++++++++++----------
.github/workflows/post-merge.yml | 2 +-
.github/workflows/publish.yml | 2 +-
6 files changed, 24 insertions(+), 24 deletions(-)
diff --git a/.github/workflows/_common.yml b/.github/workflows/_common.yml
index 32af63ed5..de6c18d82 100644
--- a/.github/workflows/_common.yml
+++ b/.github/workflows/_common.yml
@@ -58,7 +58,7 @@ jobs:
- uses: actions/[email protected]
- name: Install uv
- uses: astral-sh/setup-uv@20cfd1bf945f4377ade1205e4dbc17946fc9a30d #
v10.0.1
+ uses: astral-sh/setup-uv@bec219d24cd3e171d82865faccec33120bb574f4 #
v10.1.0
- name: Check uv.lock files are in sync with pyproject.toml
run: ./scripts/ci/uv-lock-check.sh --check
@@ -93,7 +93,7 @@ jobs:
run: echo "version=$(cat .github/config/hawkeye.version)" >>
"$GITHUB_OUTPUT"
- name: Install HawkEye
- uses: taiki-e/[email protected]
+ uses: taiki-e/[email protected]
with:
tool: hawkeye@${{ steps.hawkeye-version.outputs.version }}
@@ -211,7 +211,7 @@ jobs:
with:
fetch-depth: 0
- name: Check typos
- uses: crate-ci/[email protected]
+ uses: crate-ci/[email protected]
summary:
name: Common checks summary
diff --git a/.github/workflows/_test.yml b/.github/workflows/_test.yml
index 8b1353afe..58ec5a3cc 100644
--- a/.github/workflows/_test.yml
+++ b/.github/workflows/_test.yml
@@ -112,7 +112,7 @@ jobs:
startsWith(inputs.component, 'rust') &&
startsWith(inputs.task, 'test-') &&
inputs.task != 'test-storage-compat'
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: codecov.json
@@ -125,7 +125,7 @@ jobs:
# Python SDK
- name: Set up Docker Buildx for Python
if: inputs.component == 'sdk-python' && inputs.task == 'test'
- uses:
docker/setup-buildx-action@bb05f3f5519dd87d3ba754cc423b652a5edd6d2c # v4.2.0
+ uses:
docker/setup-buildx-action@f87e5991a6d7451dcb8d9637bfbc97413f497069 # v4.4.1
- name: Run Python SDK task
if: inputs.component == 'sdk-python'
@@ -135,7 +135,7 @@ jobs:
- name: Upload Python coverage to Codecov
if: inputs.component == 'sdk-python' && inputs.task == 'test'
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/python-coverage.lcov
@@ -154,7 +154,7 @@ jobs:
- name: Upload PHP coverage to Codecov
if: inputs.component == 'sdk-php' && inputs.task == 'test'
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/php-coverage.lcov
@@ -176,7 +176,7 @@ jobs:
inputs.component == 'sdk-node' &&
(inputs.task == 'test' ||
inputs.task == 'e2e')
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: >-
@@ -200,7 +200,7 @@ jobs:
- name: Upload Go coverage to Codecov
if: inputs.component == 'sdk-go' && (inputs.task == 'test' ||
inputs.task == 'e2e')
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/${{ inputs.task == 'test' && 'go-coverage.out' ||
'go-coverage-e2e.out' }}
@@ -233,7 +233,7 @@ jobs:
- name: Upload Java coverage to Codecov
if: inputs.component == 'sdk-java' && inputs.task == 'test'
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/java-coverage/jacocoAggregated.xml
@@ -245,7 +245,7 @@ jobs:
- name: Upload C# coverage to Codecov
if: inputs.component == 'sdk-csharp' && (inputs.task == 'test' ||
startsWith(inputs.task, 'e2e'))
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: foreign/csharp/reports/coverage.cobertura.xml
diff --git a/.github/workflows/_test_examples.yml
b/.github/workflows/_test_examples.yml
index c5c48c8c1..28ebc7f0b 100644
--- a/.github/workflows/_test_examples.yml
+++ b/.github/workflows/_test_examples.yml
@@ -63,7 +63,7 @@ jobs:
- name: Setup uv
if: startsWith(inputs.component, 'examples-') && inputs.task ==
'examples-python'
- uses: astral-sh/setup-uv@20cfd1bf945f4377ade1205e4dbc17946fc9a30d #
v10.0.1
+ uses: astral-sh/setup-uv@bec219d24cd3e171d82865faccec33120bb574f4 #
v10.1.0
- name: Install PHP build dependencies
if: startsWith(inputs.component, 'examples-') && inputs.task ==
'examples-php'
diff --git a/.github/workflows/coverage-baseline.yml
b/.github/workflows/coverage-baseline.yml
index b7d0ddb7a..779fa591b 100644
--- a/.github/workflows/coverage-baseline.yml
+++ b/.github/workflows/coverage-baseline.yml
@@ -104,7 +104,7 @@ jobs:
free-disk-space-aggressive: "true"
- name: Install cargo-llvm-cov
- uses: taiki-e/[email protected]
+ uses: taiki-e/[email protected]
with:
tool: cargo-llvm-cov
@@ -141,7 +141,7 @@ jobs:
shell: bash
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: codecov.json
@@ -186,7 +186,7 @@ jobs:
log-file: ${{ steps.iggy.outputs.log_file }}
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files:
foreign/java/build/reports/jacoco/aggregate/jacocoAggregated.xml
@@ -271,7 +271,7 @@ jobs:
-- --retry-failed-tests 3
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files:
foreign/csharp/reports/unit/coverage.cobertura.xml,foreign/csharp/reports/integration/coverage.cobertura.xml
@@ -299,12 +299,12 @@ jobs:
save-cache: "false"
- name: Install cargo-llvm-cov
- uses: taiki-e/[email protected]
+ uses: taiki-e/[email protected]
with:
tool: cargo-llvm-cov
- name: Install uv
- uses: astral-sh/setup-uv@20cfd1bf945f4377ade1205e4dbc17946fc9a30d #
v10.0.1
+ uses: astral-sh/setup-uv@bec219d24cd3e171d82865faccec33120bb574f4 #
v10.1.0
- name: Install dependencies
run: |
@@ -395,7 +395,7 @@ jobs:
shell: bash
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/python-coverage.lcov
@@ -418,7 +418,7 @@ jobs:
task: test
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/php-coverage.lcov
@@ -485,7 +485,7 @@ jobs:
log-file: ${{ steps.iggy.outputs.log_file }}
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files:
reports/node-coverage/unit/lcov.info,reports/node-coverage/e2e/lcov.info
@@ -573,7 +573,7 @@ jobs:
log-file: ${{ steps.iggy.outputs.log_file }}
- name: Upload to Codecov
- uses: codecov/[email protected]
+ uses: codecov/[email protected]
with:
token: ${{ secrets.CODECOV_TOKEN }}
files: reports/go-coverage.out
diff --git a/.github/workflows/post-merge.yml b/.github/workflows/post-merge.yml
index feaaad1a3..2e6c22097 100644
--- a/.github/workflows/post-merge.yml
+++ b/.github/workflows/post-merge.yml
@@ -67,7 +67,7 @@ jobs:
# Pinned for the same reason as
.github/actions/rust/pre-merge/action.yml:
# 0.24 dropped the `-f json` edge-affected-images.sh relies on.
- name: Install cargo-rail
- uses: taiki-e/[email protected]
+ uses: taiki-e/[email protected]
with:
tool: [email protected]
diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml
index 3cfc78d9b..e8408f7ff 100644
--- a/.github/workflows/publish.yml
+++ b/.github/workflows/publish.yml
@@ -881,7 +881,7 @@ jobs:
path: ${{ runner.temp }}/digests
- name: Set up Docker Buildx
- uses:
docker/setup-buildx-action@bb05f3f5519dd87d3ba754cc423b652a5edd6d2c # v4.2.0
+ uses:
docker/setup-buildx-action@f87e5991a6d7451dcb8d9637bfbc97413f497069 # v4.4.1
- name: Login to Docker Hub
uses: ./.github/actions/utils/docker-login