stackabletech / stackabletech/csaf_publisher

Dependency Dashboard

Open
#5 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Rust
Stars
0
Forks
1
Avg merge
7d 8h
Merged PRs (30d)
2

Description

This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.

Pending Approval

The following branches are pending approval. To create them, click on a checkbox below.

  • chore(deps): pin oci.stackable.tech/sdp/ubi9-rust-builder docker tag to 0404807
  • chore(deps): update registry.access.redhat.com/ubi9/nodejs-20-minimal docker digest to cd057da
  • chore(deps): update all dependencies (patch only) (@secvisogram/csaf-validator-lib, anyhow, chrono, color-eyre, reqwest, serde_json, sha2)
  • chore(deps): update actions/checkout action to v4.3.0
  • chore(deps): update docker/login-action action to v3.6.0
  • chore(deps): update rust crate regex to v1.12.2
  • chore(deps): update sigstore/cosign-installer action to v3.10.1
  • chore(deps): update actions/checkout action to v5
  • chore(deps): update docker/build-push-action action to v6
  • chore(deps): update sigstore/cosign-installer action to v4
  • fix(deps): update dependency @secvisogram/csaf-validator-lib to v2
  • chore(deps): lock file maintenance
  • 🔐 Create all pending approval PRs at once 🔐

Open

The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.

Detected dependencies

cargo
Cargo.toml
  • anyhow 1.0.86
  • chrono 0.4.38
  • color-eyre 0.6.3
  • csaf 0.5.0
  • pgp 0.13.0
  • regex 1.10.4
  • reqwest 0.12.5
  • serde_json 1.0.117
  • sha2 0.10.8
dockerfile
Dockerfile
  • oci.stackable.tech/sdp/ubi9-rust-builder unknown version
  • registry.access.redhat.com/ubi9/nodejs-20-minimal sha256:d20b9ccb915d538ea4a22f254ea9d19f1185f627c1c61747597c2896a053a915
github-actions
.github/workflows/build_docker_image.yml
  • actions/checkout v4.1.7@692973e3d937129bcbf40652eb9f2f61becf3332
  • docker/login-action v3.2.0@0d4c9c5ea7693da7b068278f7b52bda2a190a446
  • sigstore/cosign-installer v3.3.0@9614fae9e5c5eddabb09f90a270fcb487c9f7149
  • docker/build-push-action v5.4.0@ca052bb54ab0790a636c9b5f226502c73d547a25
npm
csaf_validator/package.json
  • @secvisogram/csaf-validator-lib ^1.3.36
renovate-config-presets
renovate.json

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the Dependency Dashboard and its open pgp update at ../pull/4, then review the listed Cargo.toml, Dockerfile, .github/workflows/build_docker_image.yml, and csaf_validator/package.json entries. This is an automated update queue rather than a single scoped task, and the existing pull request shows work is already underway.

Written by the indexing model from the issue text.

Assessment

Tech stack
docker, github-actions, javascript, rust
Domain
build-system, ci-cd, devops
Issue type
Refactor
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
15/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.