Update DependencyTrack/gh-upload-sbom action to v4 #10

Open
renovate-bot wants to merge 1 commit from renovate/dependencytrack-gh-upload-sbom-4.x into main
Collaborator

This PR contains the following updates:

Package Type Update Change
DependencyTrack/gh-upload-sbom action major v3v4

⚠️ Warning

Some dependencies could not be looked up. Check the warning logs for more information.


Release Notes

DependencyTrack/gh-upload-sbom (DependencyTrack/gh-upload-sbom)

v4.0.0

Compare Source

What's Changed

Breaking Changes 🚨
Enhancements 🚀
Bug Fixes 🐛
Dependency Updates 🤖

New Contributors

Full Changelog: https://github.com/DependencyTrack/gh-upload-sbom/compare/v3...v4.0.0

v4.0

Compare Source

v4

Compare Source

v3.1.0

Compare Source

What's Changed

Enhancements 🚀
Other Changes

New Contributors

Full Changelog: https://github.com/DependencyTrack/gh-upload-sbom/compare/v3.0.0...v3.1.0


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [DependencyTrack/gh-upload-sbom](https://github.com/DependencyTrack/gh-upload-sbom) | action | major | `v3` → `v4` | --- > ⚠️ **Warning** > > Some dependencies could not be looked up. Check the warning logs for more information. --- ### Release Notes <details> <summary>DependencyTrack/gh-upload-sbom (DependencyTrack/gh-upload-sbom)</summary> ### [`v4.0.0`](https://github.com/DependencyTrack/gh-upload-sbom/releases/tag/v4.0.0) [Compare Source](https://github.com/DependencyTrack/gh-upload-sbom/compare/v4.0.0...v4.0.0) <!-- Release notes generated using configuration in .github/release.yml at v4.0.0 --> #### What's Changed ##### Breaking Changes 🚨 - chore: update action runtime to Node.js 24 by [@&#8203;diseku](https://github.com/diseku) in [#&#8203;56](https://github.com/DependencyTrack/gh-upload-sbom/pull/56) ##### Enhancements 🚀 - Add isLatest property by [@&#8203;tolobis](https://github.com/tolobis) in [#&#8203;55](https://github.com/DependencyTrack/gh-upload-sbom/pull/55) - Add proper CI automation and update distribution model by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;57](https://github.com/DependencyTrack/gh-upload-sbom/pull/57) - Add token output by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;60](https://github.com/DependencyTrack/gh-upload-sbom/pull/60) - Defensively mark api key as secret by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;62](https://github.com/DependencyTrack/gh-upload-sbom/pull/62) - Add support for project UUID output (requires DT v5) by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;63](https://github.com/DependencyTrack/gh-upload-sbom/pull/63) ##### Bug Fixes 🐛 - docs: Corrected the variables and code snippets by [@&#8203;sellisd](https://github.com/sellisd) in [#&#8203;50](https://github.com/DependencyTrack/gh-upload-sbom/pull/50) ##### Dependency Updates 🤖 - Bump esbuild from 0.25.12 to 0.28.0 in the npm-minor-patch group by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;58](https://github.com/DependencyTrack/gh-upload-sbom/pull/58) - Bump [@&#8203;actions/core](https://github.com/actions/core) from 1.11.1 to 3.0.1 by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;59](https://github.com/DependencyTrack/gh-upload-sbom/pull/59) - Bump esbuild from 0.28.0 to 0.28.1 by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;61](https://github.com/DependencyTrack/gh-upload-sbom/pull/61) #### New Contributors - [@&#8203;diseku](https://github.com/diseku) made their first contribution in [#&#8203;56](https://github.com/DependencyTrack/gh-upload-sbom/pull/56) - [@&#8203;tolobis](https://github.com/tolobis) made their first contribution in [#&#8203;55](https://github.com/DependencyTrack/gh-upload-sbom/pull/55) - [@&#8203;sellisd](https://github.com/sellisd) made their first contribution in [#&#8203;50](https://github.com/DependencyTrack/gh-upload-sbom/pull/50) **Full Changelog**: <https://github.com/DependencyTrack/gh-upload-sbom/compare/v3...v4.0.0> ### [`v4.0`](https://github.com/DependencyTrack/gh-upload-sbom/compare/v4.0.0...v4.0.0) [Compare Source](https://github.com/DependencyTrack/gh-upload-sbom/compare/v4.0.0...v4.0.0) ### [`v4`](https://github.com/DependencyTrack/gh-upload-sbom/compare/v3.1.0...v4.0.0) [Compare Source](https://github.com/DependencyTrack/gh-upload-sbom/compare/v3.1.0...v4.0.0) ### [`v3.1.0`](https://github.com/DependencyTrack/gh-upload-sbom/releases/tag/v3.1.0) [Compare Source](https://github.com/DependencyTrack/gh-upload-sbom/compare/v3...v3.1.0) <!-- Release notes generated using configuration in .github/release.yml at v3.1.0 --> #### What's Changed ##### Enhancements 🚀 - Use fetch instead of http by [@&#8203;entigo-mart-erlenheim](https://github.com/entigo-mart-erlenheim) in [#&#8203;35](https://github.com/DependencyTrack/gh-upload-sbom/pull/35) ##### Other Changes - patch: change example version to 3 in README.md by [@&#8203;aethernet](https://github.com/aethernet) in [#&#8203;32](https://github.com/DependencyTrack/gh-upload-sbom/pull/32) - feat: include tags when creating by [@&#8203;JCHacking](https://github.com/JCHacking) in [#&#8203;33](https://github.com/DependencyTrack/gh-upload-sbom/pull/33) - Add release notes config by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;37](https://github.com/DependencyTrack/gh-upload-sbom/pull/37) - Improve parameter descriptions by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;36](https://github.com/DependencyTrack/gh-upload-sbom/pull/36) - Unify action versions in examples by [@&#8203;nscuro](https://github.com/nscuro) in [#&#8203;38](https://github.com/DependencyTrack/gh-upload-sbom/pull/38) #### New Contributors - [@&#8203;aethernet](https://github.com/aethernet) made their first contribution in [#&#8203;32](https://github.com/DependencyTrack/gh-upload-sbom/pull/32) - [@&#8203;JCHacking](https://github.com/JCHacking) made their first contribution in [#&#8203;33](https://github.com/DependencyTrack/gh-upload-sbom/pull/33) - [@&#8203;entigo-mart-erlenheim](https://github.com/entigo-mart-erlenheim) made their first contribution in [#&#8203;35](https://github.com/DependencyTrack/gh-upload-sbom/pull/35) - [@&#8203;nscuro](https://github.com/nscuro) made their first contribution in [#&#8203;37](https://github.com/DependencyTrack/gh-upload-sbom/pull/37) **Full Changelog**: <https://github.com/DependencyTrack/gh-upload-sbom/compare/v3.0.0...v3.1.0> </details> --- ### Configuration 📅 **Schedule**: (UTC) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My4yMDQuMCIsInVwZGF0ZWRJblZlciI6IjQzLjIwNC4wIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6W119-->
Update DependencyTrack/gh-upload-sbom action to v4
All checks were successful
build-and-test / build (pull_request) Successful in 2m8s
87c700fb43
All checks were successful
build-and-test / build (pull_request) Successful in 2m8s
This pull request can be merged automatically.
You are not authorized to merge this pull request.
View command line instructions

Checkout

From your project repository, check out a new branch and test the changes.
git fetch -u origin renovate/dependencytrack-gh-upload-sbom-4.x:renovate/dependencytrack-gh-upload-sbom-4.x
git switch renovate/dependencytrack-gh-upload-sbom-4.x

Merge

Merge the changes and update on Forgejo.

Warning: The "Autodetect manual merge" setting is not enabled for this repository, you will have to mark this pull request as manually merged afterwards.

git switch main
git merge --no-ff renovate/dependencytrack-gh-upload-sbom-4.x
git switch renovate/dependencytrack-gh-upload-sbom-4.x
git rebase main
git switch main
git merge --ff-only renovate/dependencytrack-gh-upload-sbom-4.x
git switch renovate/dependencytrack-gh-upload-sbom-4.x
git rebase main
git switch main
git merge --no-ff renovate/dependencytrack-gh-upload-sbom-4.x
git switch main
git merge --squash renovate/dependencytrack-gh-upload-sbom-4.x
git switch main
git merge --ff-only renovate/dependencytrack-gh-upload-sbom-4.x
git switch main
git merge renovate/dependencytrack-gh-upload-sbom-4.x
git push origin main
Sign in to join this conversation.
No reviewers
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
phbaer/ha-birthday-calendar!10
No description provided.