Created by: dependabot[bot]
Bumps actions/dependency-review-action from 3.0.1 to 3.0.3.
Release notes
Sourced from actions/dependency-review-action's releases.
3.0.3
What's Changed
- Use cache in check-dist.yml by
@jongwooo
in actions/dependency-review-action#359- Fix Dependency Review API response error handling by
@felickz
in actions/dependency-review-action#370- Security updates
New Contributors
@jongwooo
made their first contribution in actions/dependency-review-action#359@felickz
made their first contribution in actions/dependency-review-action#370Full Changelog: https://github.com/actions/dependency-review-action/compare/v3...v3.0.3
3.0.2
This release fixes spelling errors actions/dependency-review-action#348 and upgrades dependencies to fix known vulnerabilities
Full Changelog: https://github.com/actions/dependency-review-action/compare/v3...v3.0.2
Commits
-
c090f4e
release for 3.0.3 -
42ee3c8
Merge pull request #370 from felickz/fix-request-error-handling -
6855e6e
Merge branch 'main' of gh into fix-request-error-handling -
efd7880
Merge pull request #375 from actions/dependabot/npm_and_yarn/octokit-2.0.11 -
e91b527
add json5 too -
f508195
Merge pull request #374 from actions/dependabot/npm_and_yarn/prettier-2.8.2 -
ef8bfce
linter suggestions -
31cb4e0
Merge branch 'main' into dependabot/npm_and_yarn/prettier-2.8.2 -
7920884
Merge pull request #373 from actions/dependabot/npm_and_yarn/eslint-plugin-je... -
aae0422
Bump eslint-plugin-jest from 27.1.7 to 27.2.1 - Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)