Repository navigation
build(deps): bump hashgraph-online/ai-plugin-scanner-action from 1.2.532 to 1.2.715 - #22
Conversation
Bumps [hashgraph-online/ai-plugin-scanner-action](https://github.com/hashgraph-online/ai-plugin-scanner-action) from 1.2.532 to 1.2.715. - [Release notes](https://github.com/hashgraph-online/ai-plugin-scanner-action/releases) - [Commits](hashgraph-online/ai-plugin-scanner-action@5d17bb2...20e0837) --- updated-dependencies: - dependency-name: hashgraph-online/ai-plugin-scanner-action dependency-version: 1.2.715 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
ECC Tools / Security EvidenceCommit: Security evidence gate passed (success) No security-sensitive scanner-evidence gap detected. Mode: enforce Scanned 1 changed file(s). No missing scanner-evidence signal was detected. Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / PR Risk TaxonomyCommit: PR taxonomy review recommended (neutral) Detected 2 PR taxonomy bucket(s): Security Evidence, CI/CD Recommendation. Scanned 1 changed file(s). Roadmap taxonomy buckets: Security EvidenceSecurity-sensitive changes should carry explicit scanner, code-scanning, or focused regression evidence. Signals:
Paths:
CI/CD RecommendationCI, dependency, coverage, and contract signals should be routed into follow-up checks or verification work. Signals:
Paths:
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / Reference Set ReadinessCommit: Reference set readiness gaps detected (neutral) Reference evidence present for 1/7 areas (14%) across 1 changed file(s). This check is based on files changed in this PR. Repository-level readiness is still reported by
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
|
Important Review skippedBot user detected. To trigger a single review, invoke the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Advanced Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
ECC Tools / Hosted Promotion ReadinessCommit: Hosted promotion readiness passed (success) No hosted promotion evidence gaps detected across 1 changed file(s); 0 corpus scenarios had matching evidence. This check compares PR file changes against the evaluator/RAG promotion corpus in No evaluator corpus scenarios matched this PR. Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / PR Config AuditCommit: No changed-config issues detected (success) Scanned 1 config file(s) present at this commit across 1 changed config path(s) and found no issues in the supported security rules. Changed config files:
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
ECC Tools / PR Harness AuditCommit: No harness issues detected (success) Scanned 1 changed config file(s) and found no harness issues. Changed config files:
Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission. |
|
Superseded by #23. |
Bumps hashgraph-online/ai-plugin-scanner-action from 1.2.532 to 1.2.715.
Release notes
Sourced from hashgraph-online/ai-plugin-scanner-action's releases.
... (truncated)
Commits
20e0837chore: publish action bundle v1.2.715 (plugin-scanner 3.7.4)0cf2e9cchore: publish action bundle v1.2.714 (plugin-scanner 3.7.3)987a3c1chore: publish action bundle v1.2.713 (plugin-scanner 3.7.2)9595abbchore: publish action bundle v1.2.712 (plugin-scanner 3.7.1)255627achore: publish action bundle v1.2.711 (plugin-scanner 3.7.0)0ab65ebchore: publish action bundle v1.2.710 (plugin-scanner 3.6.4)e0f4fdfchore: publish action bundle v1.2.709 (plugin-scanner 3.6.3)61cb9aachore: publish action bundle v1.2.708 (plugin-scanner 3.6.2)9d2fff4chore: publish action bundle v1.2.707 (plugin-scanner 3.6.1)ff72bdcchore: publish action bundle v1.2.706 (plugin-scanner 3.6.0)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)High-level PR Summary
This PR updates the
hashgraph-online/ai-plugin-scanner-actionGitHub Action from version 1.2.532 to 1.2.715, a dependency bump that includes multiple intermediate releases with plugin-scanner updates ranging from version 3.6.0 to 3.7.4. The change modifies the action reference in the workflow file to use the newer commit hash.⏱️ Estimated Review Time: 5-15 minutes
💡 Review Order Suggestion
.github/workflows/hol-plugin-scanner.yml