Dependency Dashboard
Nobody has claimed this yet.
Assessment
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Newbie friendliness
- 15/100
- Issue type
- Refactor
- Clarity
- Needs clarification
- Activity status
- Stale
- Tech stack
- docker, github-actions, javascript, rust
- Domain
- build-system, ci-cd, devops
Research direction
Start with the Dependency Dashboard and its open pgp update at ../pull/4, then review the listed Cargo.toml, Dockerfile, .github/workflows/build_docker_image.yml, and csaf_validator/package.json entries. This is an automated update queue rather than a single scoped task, and the existing pull request shows work is already underway.
Written by the indexing model from the issue text.
Description
This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.
Pending Approval
The following branches are pending approval. To create them, click on a checkbox below.
- chore(deps): pin oci.stackable.tech/sdp/ubi9-rust-builder docker tag to 0404807
- chore(deps): update registry.access.redhat.com/ubi9/nodejs-20-minimal docker digest to cd057da
- chore(deps): update all dependencies (patch only) (
@secvisogram/csaf-validator-lib,anyhow,chrono,color-eyre,reqwest,serde_json,sha2) - chore(deps): update actions/checkout action to v4.3.0
- chore(deps): update docker/login-action action to v3.6.0
- chore(deps): update rust crate regex to v1.12.2
- chore(deps): update sigstore/cosign-installer action to v3.10.1
- chore(deps): update actions/checkout action to v5
- chore(deps): update docker/build-push-action action to v6
- chore(deps): update sigstore/cosign-installer action to v4
- fix(deps): update dependency @secvisogram/csaf-validator-lib to v2
- chore(deps): lock file maintenance
- 🔐 Create all pending approval PRs at once 🔐
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
Detected dependencies
cargo
Cargo.toml
anyhow 1.0.86chrono 0.4.38color-eyre 0.6.3csaf 0.5.0pgp 0.13.0regex 1.10.4reqwest 0.12.5serde_json 1.0.117sha2 0.10.8
dockerfile
Dockerfile
oci.stackable.tech/sdp/ubi9-rust-builder unknown versionregistry.access.redhat.com/ubi9/nodejs-20-minimal sha256:d20b9ccb915d538ea4a22f254ea9d19f1185f627c1c61747597c2896a053a915
github-actions
.github/workflows/build_docker_image.yml
actions/checkout v4.1.7@692973e3d937129bcbf40652eb9f2f61becf3332docker/login-action v3.2.0@0d4c9c5ea7693da7b068278f7b52bda2a190a446sigstore/cosign-installer v3.3.0@9614fae9e5c5eddabb09f90a270fcb487c9f7149docker/build-push-action v5.4.0@ca052bb54ab0790a636c9b5f226502c73d547a25
npm
csaf_validator/package.json
@secvisogram/csaf-validator-lib ^1.3.36
renovate-config-presets
renovate.json
- Dominant language
- Rust
- Stars
- 0
- Forks
- 1
- Avg merge
- 7d 8h
- Merged PRs (30d)
- 2
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Similar issues
-
bug github_actions
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
registrystack/registry-stack#1393 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
longbridge/gpui-kit#3223 ·
-
bug engine
Difficulty 2/5 1-3 hours Newbie friendliness 65/100
rocky-data/rocky#2181 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 70/100
oasisprotocol/oasis-sdk#2523 ·
-
[indexer] [QA] Add a focused test for the new NonRetryableError / assertSocketAlive() behavior. Openbot:ai-assisted component:indexer QA-roadmap status:untriaged
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
midnightntwrk/midnight-indexer#1557 ·