Skip to content

chore(deps): bump LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml from 1.66.1 to 1.69.1 - #138

Closed
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/github_actions/develop/LerianStudio/github-actions-shared-workflows/dot-github/workflows/go-pr-analysis.yml-1.69.1
Closed

dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/github_actions/develop/LerianStudio/github-actions-shared-workflows/dot-github/workflows/go-pr-analysis.yml-1.69.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 15, 2026

Copy link
Copy Markdown
Contributor

Bumps LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml from 1.66.1 to 1.69.1.

Release notes

Sourced from LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml's releases.

v1.69.1

Github-actions-shared-workflows v1.69.1

Fixes:

  • Merged changes from develop to main to ensure the latest updates are reflected in the main branch. (@​bedatty)
  • Updated the GitOps workflow to prevent reuse of a chart directory left by a previous run, ensuring a clean environment for each execution. (@​bedatty)
  • Adjusted the validation workflow to key the image-refs harness concurrency by chart, improving the accuracy and reliability of concurrent operations. (@​bedatty)

Compare changes

v1.69.1-beta.1

No release notes provided.

v1.69.0

Github-actions-shared-workflows v1.69.0

Features:

  • Report what each run did in GitOps, including a link to the commit. (@​bedatty)
  • Verify a chart's image references exist before publishing in the validation process. (@​bedatty)

Fixes:

  • Summarize after the sync in GitOps to ensure the ArgoCD line is not always empty. (@​bedatty)
  • Emit [] instead of [""] when no image is missing in the validation process. (@​bedatty)
  • Emit [] instead of [""] when nothing is missing in the validation process. (@​bedatty)
  • Stop reading an authentication failure as a missing image in the validation process. (@​bedatty)

Compare changes

v1.69.0-beta.3

No release notes provided.

v1.69.0-beta.2

No release notes provided.

v1.69.0-beta.1

No release notes provided.

v1.68.1

Github-actions-shared-workflows v1.68.1

Fixes:

  • Corrected the release process by ensuring changes are merged from develop to main. (@​bedatty)
  • Updated the gitops workflow to report orphan keys instead of blocking on them. (@​bedatty)

Compare changes

v1.68.1-beta.1

No release notes provided.

... (truncated)

Changelog

Sourced from LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml's changelog.

1.69.1

Fixes:

  • Merged changes from develop to main to ensure the latest updates are reflected in the main branch. (@​bedatty)
  • Updated the GitOps workflow to prevent reuse of a chart directory left by a previous run, ensuring a clean environment for each execution. (@​bedatty)
  • Adjusted the validation workflow to key the image-refs harness concurrency by chart, improving the accuracy and reliability of concurrent operations. (@​bedatty)

Compare changes


1.69.0

Features:

  • Report what each run did in GitOps, including a link to the commit. (@​bedatty)
  • Verify a chart's image references exist before publishing in the validation process. (@​bedatty)

Fixes:

  • Summarize after the sync in GitOps to ensure the ArgoCD line is not always empty. (@​bedatty)
  • Emit [] instead of [""] when no image is missing in the validation process. (@​bedatty)
  • Emit [] instead of [""] when nothing is missing in the validation process. (@​bedatty)
  • Stop reading an authentication failure as a missing image in the validation process. (@​bedatty)

Compare changes


1.68.1

Fixes:

  • Corrected the release process by ensuring changes are merged from develop to main. (@​bedatty)
  • Updated the gitops workflow to report orphan keys instead of blocking on them. (@​bedatty)

Compare changes


1.68.0

Features:

Fixes:

  • Evaluate commit signatures beyond the 250-commit API cap to ensure comprehensive validation. (@​bedatty)
  • Validate the base branch name before fetching in pull request validation workflows. (@​bedatty)
  • Reject untrustworthy commit ranges and remove fetch credentials in pull request validation. (@​bedatty)
  • Queue notification collapse runs instead of canceling them to improve workflow reliability. (@​bedatty)
  • Skip collapse actions on fork pull requests to prevent unnecessary operations. (@​bedatty)

... (truncated)

Commits
  • 6ade374 fix(release): develop to main (#783)
  • 35df7fb fix(gitops): do not reuse a chart directory left by a previous run (#781)
  • 77eaeb1 fix(validate): key the image-refs harness concurrency by chart (#782)
  • 54a94ea fix(gitops): do not reuse a chart directory left by a previous run
  • 955cbc2 fix(validate): key the image-refs harness concurrency by chart
  • b5ce742 chore(release): backmerge main into develop [backmerge]
  • ff101ba chore(release): Update CHANGELOGs for github-actions-shared-workflows:v1.69.0...
  • 081eb04 feat(release): develop to main (#780)
  • eb5ebe2 feat(gitops): report what each run did, with a link to the commit (#778)
  • 9fc403c fix(gitops): summarise after the sync, so the ArgoCD line is not always empty
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

…b/workflows/go-pr-analysis.yml

Bumps [LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml](https://github.com/lerianstudio/github-actions-shared-workflows) from 1.66.1 to 1.69.1.
- [Release notes](https://github.com/lerianstudio/github-actions-shared-workflows/releases)
- [Changelog](https://github.com/LerianStudio/github-actions-shared-workflows/blob/main/CHANGELOG.md)
- [Commits](LerianStudio/github-actions-shared-workflows@v1.66.1...v1.69.1)

---
updated-dependencies:
- dependency-name: LerianStudio/github-actions-shared-workflows/.github/workflows/go-pr-analysis.yml
  dependency-version: 1.69.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added ci Continuous integration pipelines deps Go module dependencies (usually opened by Dependabot) labels Sep 15, 2026
@coderabbitai

coderabbitai Bot commented Sep 15, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Advanced

Run ID: e9f70468-730f-480e-873f-5bfaf5f24478

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Comment @coderabbitai help to get the list of available commands.

@github-actions github-actions Bot added size/XS PR changes < 50 lines and removed deps Go module dependencies (usually opened by Dependabot) labels Sep 15, 2026
@github-actions

Copy link
Copy Markdown

🔍 PR Validation Summary

✅ PR Mergeable — no blocking failures

Check Status Blocking
Source Branch ✅ success yes
PR Title ✅ success yes
PR Description ✅ success yes
Breaking Change Guard ✅ success yes
Commit Signatures ✅ success yes
PR Size ✅ success no
Auto Labels ✅ success no
PR Metadata ✅ success no

🔍 View workflow run

@lerian-studio

Copy link
Copy Markdown
Contributor

🔒 Security Scan Results — lib-streaming

✅ PR Mergeable — no blocking findings

Stage Status Blocking?
Filesystem Scan ✅ Clean —
Docker Image Scan ➖ Skipped —
Docker Hub Health Score ➖ Skipped —
Pre-release Version Check ✅ Clean —

Trivy

Filesystem Scan

✅ No vulnerabilities or secrets found.


Pre-release Version Check

✅ No unstable version pins found.


🔍 View full scan logs

@dependabot @github

dependabot Bot commented on behalf of github Sep 22, 2026

Copy link
Copy Markdown
Contributor Author

Superseded by #158.

@dependabot dependabot Bot closed this Sep 22, 2026
@dependabot
dependabot Bot deleted the dependabot/github_actions/develop/LerianStudio/github-actions-shared-workflows/dot-github/workflows/go-pr-analysis.yml-1.69.1 branch September 22, 2026 00:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ci Continuous integration pipelines size/XS PR changes < 50 lines

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant