Skip to content

build(deps): bump hashgraph-online/ai-plugin-scanner-action from 1.2.532 to 1.2.763 - #23

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/hashgraph-online/ai-plugin-scanner-action-1.2.763
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/hashgraph-online/ai-plugin-scanner-action-1.2.763

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 7, 2026 •

Copy link
Copy Markdown

Bumps hashgraph-online/ai-plugin-scanner-action from 1.2.532 to 1.2.763.

Release notes

Sourced from hashgraph-online/ai-plugin-scanner-action's releases.

v1.2.763

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/f70c671b64d694af5ceb00746fb1c3153270a815 with plugin-scanner 3.24.2.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.762...v1.2.763

v1.2.762

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/41da530160ba8ab086712cd52c273f67fedaf6b5 with plugin-scanner 3.24.1.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.761...v1.2.762

v1.2.761

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/c29201e65f0ece60affc11582f352aea1cbbacc4 with plugin-scanner 3.24.0.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.760...v1.2.761

v1.2.760

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/71a4d31857216e9796821ceb2f4723078b12e4e5 with plugin-scanner 3.23.1.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.759...v1.2.760

v1.2.759

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/7399202ef348a022faa364d648f9a2bc95a95a87 with plugin-scanner 3.23.0.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.758...v1.2.759

v1.2.758

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/5ba252eaea5cb1b7814beee90059beccecbc150d with plugin-scanner 3.22.0.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.757...v1.2.758

v1.2.757

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/9084d774d0526f18498a047dc1b8988368a65428 with plugin-scanner 3.21.1.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.756...v1.2.757

v1.2.756

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/28cc1650bd69cfb1978a1221865428daba521153 with plugin-scanner 3.21.0.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.755...v1.2.756

v1.2.755

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/7825323cc5ec46ab427e3464dd2b68c948ac40cd with plugin-scanner 3.20.2.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.754...v1.2.755

v1.2.754

Published automatically from https://github.com/hashgraph-online/hol-guard/tree/c42bae78771c2777bf45ed517f3c173dbd1e8844 with plugin-scanner 3.20.1.

Full Changelog: hashgraph-online/ai-plugin-scanner-action@v1.2.753...v1.2.754

... (truncated)

Commits
  • 9a85f17 chore: publish action bundle v1.2.763 (plugin-scanner 3.24.2)
  • bbc7770 chore: publish action bundle v1.2.762 (plugin-scanner 3.24.1)
  • 435859c chore: publish action bundle v1.2.761 (plugin-scanner 3.24.0)
  • 71e83ec chore: publish action bundle v1.2.760 (plugin-scanner 3.23.1)
  • 76aa88a chore: publish action bundle v1.2.759 (plugin-scanner 3.23.0)
  • 164f557 chore: publish action bundle v1.2.758 (plugin-scanner 3.22.0)
  • 2b04894 chore: publish action bundle v1.2.757 (plugin-scanner 3.21.1)
  • 22dfdd2 chore: publish action bundle v1.2.756 (plugin-scanner 3.21.0)
  • c6dbabb chore: publish action bundle v1.2.755 (plugin-scanner 3.20.2)
  • 1ee34a0 chore: publish action bundle v1.2.754 (plugin-scanner 3.20.1)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

High-level PR Summary

This PR updates the hashgraph-online/ai-plugin-scanner-action GitHub Action from version 1.2.532 to 1.2.763, which includes updates to the underlying plugin-scanner from version 3.20.1 through 3.24.2. The change modifies a single workflow file to reference the new commit hash of the updated action version.

⏱️ Estimated Review Time: 5-15 minutes

💡 Review Order Suggestion
Order File Path
1 .github/workflows/hol-plugin-scanner.yml

Need help? Join our Discord

Bumps [hashgraph-online/ai-plugin-scanner-action](https://github.com/hashgraph-online/ai-plugin-scanner-action) from 1.2.532 to 1.2.763.
- [Release notes](https://github.com/hashgraph-online/ai-plugin-scanner-action/releases)
- [Commits](hashgraph-online/ai-plugin-scanner-action@5d17bb2...9a85f17)

---
updated-dependencies:
- dependency-name: hashgraph-online/ai-plugin-scanner-action
  dependency-version: 1.2.763
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Oct 7, 2026
@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / Security Evidence

Commit: cd242bc428c784433c04064bfe925cc9863aa512

Security evidence gate passed (success)

No security-sensitive scanner-evidence gap detected.

Mode: enforce

Scanned 1 changed file(s). No missing scanner-evidence signal was detected.

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / PR Risk Taxonomy

Commit: cd242bc428c784433c04064bfe925cc9863aa512

PR taxonomy review recommended (neutral)

Detected 2 PR taxonomy bucket(s): Security Evidence, CI/CD Recommendation.

Scanned 1 changed file(s).

Roadmap taxonomy buckets:

Security Evidence

Security-sensitive changes should carry explicit scanner, code-scanning, or focused regression evidence.

Signals:

  • 1 security-sensitive path(s) changed

Paths:

  • .github/workflows/hol-plugin-scanner.yml

CI/CD Recommendation

CI, dependency, coverage, and contract signals should be routed into follow-up checks or verification work.

Signals:

  • CI workflow changes may ship without failure-mode evidence
  • Dependency or CI drift could surface after merge
  • 1 CI or workflow path(s) changed

Paths:

  • .github/workflows/hol-plugin-scanner.yml

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / Reference Set Readiness

Commit: cd242bc428c784433c04064bfe925cc9863aa512

Reference set readiness gaps detected (neutral)

Reference evidence present for 1/7 areas (14%) across 1 changed file(s).

This check is based on files changed in this PR. Repository-level readiness is still reported by /ecc-tools analyze comments and generated manifests.

Area Status Evidence / Next Step
Deep analyzer corpus Missing Add analyzer fixture, golden, benchmark, or reference-set files that can catch analyzer regressions.
RAG/evaluator comparison Missing Add retrieval or evaluator reference-set comparison fixtures with expected ranking behavior.
PR salvage/review corpus Missing Add stale-PR, review-thread, reopen-flow, or salvage reference cases for queue cleanup automation.
Discussion triage corpus Missing Add public discussion triage fixtures, golden cases, or reference sets for informational, answered, and no-response classifications.
Harness compatibility Missing Add cross-harness, adapter-compliance, or harness-audit evidence for Claude, Codex, OpenCode, Zed, dmux, and agent surfaces.
Security evidence Present .github/workflows/hol-plugin-scanner.yml
CI failure-mode evidence Missing Add captured CI failure logs, dry-run fixtures, or troubleshooting docs for common workflow failure modes.

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / Hosted Promotion Readiness

Commit: cd242bc428c784433c04064bfe925cc9863aa512

Hosted promotion readiness passed (success)

No hosted promotion evidence gaps detected across 1 changed file(s); 0 corpus scenarios had matching evidence.

This check compares PR file changes against the evaluator/RAG promotion corpus in src/analyzers/fixtures/evaluator-rag-corpus.ts.
Hosted output scoring inspected 0 completed cached hosted job results.

No evaluator corpus scenarios matched this PR.

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / PR Config Audit

Commit: cd242bc428c784433c04064bfe925cc9863aa512

No changed-config issues detected (success)

Scanned 1 config file(s) present at this commit across 1 changed config path(s) and found no issues in the supported security rules.

Changed config files:

  • .github/workflows/hol-plugin-scanner.yml

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@ecc-tools

ecc-tools Bot commented Oct 7, 2026

Copy link
Copy Markdown

ECC Tools / PR Harness Audit

Commit: cd242bc428c784433c04064bfe925cc9863aa512

No harness issues detected (success)

Scanned 1 changed config file(s) and found no harness issues.

Changed config files:

  • .github/workflows/hol-plugin-scanner.yml

Check publication was denied or unavailable. An app owner must enable Checks: read and write, and the installation owner must approve the updated permission.

@coderabbitai

coderabbitai Bot commented Oct 7, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: defaults
  • Review profile: CHILL
  • Plan: Advanced
  • Run ID: 0f3097bb-5eb0-4b8c-a81a-3e9037b53869

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants