0ba74dbf51
Group Dependabot GitHub Actions updates ( #10220 )
...
* Initial plan
* Group Dependabot GitHub Actions updates
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
---------
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com >
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
2026-08-11 15:32:17 -04:00
9cb2c25eb8
Bump kentaro-m/auto-assign-action from 2.0.0 to 2.0.2 ( #10201 )
...
Bumps [kentaro-m/auto-assign-action](https://github.com/kentaro-m/auto-assign-action ) from 2.0.0 to 2.0.2.
- [Release notes](https://github.com/kentaro-m/auto-assign-action/releases )
- [Commits](https://github.com/kentaro-m/auto-assign-action/compare/v2.0.0...v2.0.2 )
---
updated-dependencies:
- dependency-name: kentaro-m/auto-assign-action
dependency-version: 2.0.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-11 15:28:38 -04:00
1832f099f2
backport: add pre-merge label-on-comment support; add copilot-instructions and auto-labeler for changelog exemptions ( #10211 )
...
* Initial plan
* chore: commit backport.yml pre-merge labeling enhancement
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
* chore: auto-label kind/changelog-not-required for non-shipping PRs; add copilot-instructions.md
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
* chore: add changelog naming convention to copilot-instructions; tighten labeler exclusions
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
* fix: use # as sed delimiter to avoid conflict with | in alternation group
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
---------
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com >
Co-authored-by: kaovilai <11228024+kaovilai@users.noreply.github.com >
2026-08-11 15:23:56 -04:00
476a7ca160
Bump github/codeql-action from 4.37.3 to 4.37.6 ( #10203 )
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 4.37.3 to 4.37.6.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v4.37.3...v4.37.6 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.37.6
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-10 16:01:37 -04:00
ccbb7d1cc7
Bump actions/setup-go from 6 to 7 ( #10202 )
...
Bumps [actions/setup-go](https://github.com/actions/setup-go ) from 6 to 7.
- [Release notes](https://github.com/actions/setup-go/releases )
- [Commits](https://github.com/actions/setup-go/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/setup-go
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-10 16:01:13 -04:00
Copilot and GitHub
fb86290def
Merge pull request #10208 from velero-io/copilot/edit-autoassign-workflow
...
e2e-test-kind.yaml / extract (push) Failing after 6s
Run the E2E test on kind / get-go-version (push) Failing after 7s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 7s
Main CI / get-go-version (push) Failing after 7s
Main CI / Build (push) Skipped
Re-request maintainer review when only one CODEOWNERS approval exists
2026-08-10 09:44:01 -07:00
cc4161b7ed
ci: add backport/cherry-pick GitHub Action for release branches ( #10158 )
...
e2e-test-kind.yaml / extract (push) Failing after 5s
Run the E2E test on kind / get-go-version (push) Failing after 5s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 2s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 6s
Main CI / get-go-version (push) Failing after 7s
Main CI / Build (push) Skipped
* ci: add backport/cherry-pick GitHub Action for release branches
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: add unreleased changelog for backport Action
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: pin backport-action to commit SHA for write-permission safety
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: address review nits on backport workflow
Move permissions to the job (least privilege), document the
backport-action bot user id guard, and fix a garbled comment.
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
---------
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
Co-authored-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
2026-08-09 11:01:32 -05:00
Chlins Zhang and GitHub
02bff1e771
Merge pull request #10141 from chlins/fix/pin-e2e-third-party-sources
...
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
e2e-test-kind.yaml / extract (push) Failing after 4s
Run the E2E test on kind / get-go-version (push) Failing after 6s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 6s
Main CI / get-go-version (push) Failing after 8s
Main CI / Build (push) Skipped
Pin e2e third-party clones to reviewed commits
2026-08-05 11:16:37 +08:00
Xun Jiang/Bruce Jiang and GitHub
9b34594cd3
Merge pull request #10133 from velero-io/dependabot/github_actions/actions/checkout-7
...
Bump actions/checkout from 6 to 7
2026-08-04 16:44:50 +08:00
Scott Seago and GitHub
72107e60b3
Merge branch 'main' into dependabot/github_actions/docker/setup-buildx-action-4
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
e2e-test-kind.yaml / extract (push) Failing after 17s
Run the E2E test on kind / get-go-version (push) Failing after 19s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
2026-08-03 13:42:19 -04:00
b74f8c9511
Bump github/codeql-action from 3 to 4.37.3 ( #10135 )
...
e2e-test-kind.yaml / extract (push) Failing after 11s
Run the E2E test on kind / get-go-version (push) Failing after 13s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Successful in 13s
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 21s
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 3 to 4.37.3.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v3...v4.37.3 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.37.3
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-03 13:37:25 -04:00
chlins
02fe822860
Pin e2e third-party clones to reviewed commits
...
Pin bitnami/containers and distributed-data-generator to fixed SHAs instead of building default-branch HEAD, and add a minimal permissions block.
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-08-03 13:46:18 +08:00
dependabot[bot] and GitHub
2685a5dd1d
Bump docker/setup-buildx-action from 3 to 4
...
Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action ) from 3 to 4.
- [Release notes](https://github.com/docker/setup-buildx-action/releases )
- [Commits](https://github.com/docker/setup-buildx-action/compare/v3...v4 )
---
updated-dependencies:
- dependency-name: docker/setup-buildx-action
dependency-version: '4'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-08-01 19:12:38 +00:00
dependabot[bot] and GitHub
c9f784ef66
Bump actions/checkout from 6 to 7
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 6 to 7.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-08-01 19:12:21 +00:00
Chlins Zhang and GitHub
9063ee5fb7
Replace rebase action with GitHub CLI ( #10093 )
...
* Replace rebase action with GitHub CLI
Signed-off-by: chlins <chlins.zhang@gmail.com >
* Add contents write permission for rebase workflow
Updating the PR branch pushes to the head branch, which requires contents: write for the GITHUB_TOKEN.
Signed-off-by: chlins <chlins.zhang@gmail.com >
---------
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-07-30 12:24:51 -04:00
Chlins Zhang and GitHub
c1f3e81484
Merge pull request #10094 from chlins/fix/pin-prow-action
...
Run the E2E test on kind / setup-test-matrix (push) Successful in 6s
e2e-test-kind.yaml / extract (push) Failing after 16s
Run the E2E test on kind / get-go-version (push) Failing after 17s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Successful in 11s
Main CI / get-go-version (push) Successful in 12s
Main CI / Build (push) Failing after 36s
Pin prow GitHub action to commit SHA
2026-07-30 14:42:17 +08:00
5ca38aa075
ci(push): pin action versions to commit SHAs and restrict permissions ( #10083 )
...
Signed-off-by: chlins <chlins.zhang@gmail.com >
Co-authored-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-07-29 07:41:57 +00:00
chlins
4745c45faf
Pin prow GitHub action to commit SHA
...
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-07-29 15:11:08 +08:00
Xun Jiang/Bruce Jiang and GitHub
713c2f3b0a
Merge pull request #10074 from velero-io/dependabot/github_actions/codecov/codecov-action-7
...
Bump codecov/codecov-action from 6 to 7
2026-07-27 13:47:56 +08:00
dependabot[bot] and GitHub
91e089d3e6
Bump actions/labeler from 5 to 7
...
Bumps [actions/labeler](https://github.com/actions/labeler ) from 5 to 7.
- [Release notes](https://github.com/actions/labeler/releases )
- [Commits](https://github.com/actions/labeler/compare/v5...v7 )
---
updated-dependencies:
- dependency-name: actions/labeler
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-25 19:12:46 +00:00
dependabot[bot] and GitHub
ff7273548b
Bump codecov/codecov-action from 6 to 7
...
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action ) from 6 to 7.
- [Release notes](https://github.com/codecov/codecov-action/releases )
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/codecov/codecov-action/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: codecov/codecov-action
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-25 19:12:25 +00:00
Tiger Kaovilai and GitHub
7ecf06d190
Fix CI: make Bitnami MinIO Dockerfile SHA lookup resilient ( #10049 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 28s
curl piped straight into jq with no error check; a non-JSON or failed
HTTP response (rate limit, transient API error) broke jq with an
opaque parse error. Add --fail-with-body, retries, and validate the
parsed SHA before continuing.
Fixes #10048
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
2026-07-22 10:14:18 -04:00
Xun Jiang/Bruce Jiang and GitHub
a34a6fc922
Merge pull request #10019 from velero-io/copilot/discuss-codeowners-integration
...
Run the E2E test on kind / get-go-version (push) Failing after 57s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Remove Auto Request Review workflow in favor of CODEOWNERS
2026-07-20 16:01:27 +08:00
dependabot[bot] and GitHub
26af4e0e9f
Bump aquasecurity/trivy-action from 0.35.0 to 0.36.0
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.35.0 to 0.36.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/57a97c7e7821a5776cebc9bb87c984fa69cba8f1...ed142fd0673e97e23eac54620cfb913e5ce36c25 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-version: 0.36.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-18 19:12:18 +00:00
copilot-swe-agent[bot] and GitHub
6b68e1168b
Remove Auto Request Review workflow in favor of CODEOWNERS ( #10018 )
2026-07-16 15:14:54 +00:00
Daniel Jiang and GitHub
30d05a3e40
Add maintainers as code owners ( #9998 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 23s
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-07-15 07:56:26 +08:00
Shubham Pampattiwar
2edf8f8260
Remove guards from e2e-test-kind, pr-linter-check, nightly-trivy-scan
...
Per review feedback, these workflows are useful on forks:
- e2e-test-kind: tests pass on downstream forks
- pr-linter-check: keeps lint up to date for upstream-bound features
- nightly-trivy-scan: wanted in downstream forks
Also remove changelog file per reviewer request.
Signed-off-by: Shubham Pampattiwar <spampatt@redhat.com >
2026-07-14 12:36:01 -07:00
Shubham Pampattiwar
6104324436
Skip upstream-only workflows on forks
...
Add repository guard (github.repository == 'velero-io/velero') to
workflows that should only run on the upstream repo. This prevents
unnecessary CI runs on forks like openshift/velero where these
workflows either fail due to missing secrets/config or duplicate
fork-specific CI.
Guarded workflows: auto_assign_prs, auto_label_prs,
auto_request_review, e2e-test-kind, nightly-trivy-scan,
pr-changelog-check, pr-codespell, pr-filepath-check,
pr-linter-check, prow-action, rebase, stale-issues.
Intentionally left unguarded: pr-ci-check (useful for contributors
on forks), get-go-version (reusable workflow_call only).
Signed-off-by: Shubham Pampattiwar <spampatt@redhat.com >
2026-07-14 11:06:16 -07:00
dependabot[bot] and GitHub
fa2b37c36b
Merge pull request #9992 from velero-io/dependabot/github_actions/docker/setup-qemu-action-4
...
Run the E2E test on kind / get-go-version (push) Failing after 1m4s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 14s
Main CI / Build (push) Failing after 41s
Bump docker/setup-qemu-action from 3 to 4
2026-07-13 15:58:03 +08:00
Adam Zhang
cc41347ddf
fix rate limit issue for e2e-test-kind job
...
curl api.github.com is subject to rate limit(60 requests per hour),
provide GitHub token increase the rate limits.
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-07-11 10:31:38 +08:00
dependabot[bot] and GitHub
4cf1dd9df6
Bump actions/upload-artifact from 5 to 7
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 5 to 7.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v5...v7 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-08 03:12:11 +00:00
copilot-swe-agent[bot] and GitHub
24550ddadd
Ensure Dependabot PRs get changelog-not-required label
2026-07-03 19:56:16 +00:00
Adam Zhang
dd850a451c
ensure the kind cluster name to "kind"
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 15:48:43 +08:00
Adam Zhang
bb3e1203df
update minio DOCKFILE_SHA url
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 15:36:22 +08:00
Adam Zhang
7627223d0f
bump the setup kind action
...
update kind setup action to helm/kind-action@v1 and use
FORCE_JAVASCRIPT_ACTIONS_TO_NODE24: true to suppress warning.
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 14:44:43 +08:00
Adam Zhang
50ea4eea74
update codecov-action from v5 to v6
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-08 11:31:37 +08:00
Joseph Antony Vaikath and GitHub
b34c8436aa
Remove Restic cases and workflow from E2E ( #9867 )
...
Run the E2E test on kind / get-go-version (push) Failing after 56s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 26s
Close stale issues and PRs / stale (push) Successful in 12s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m39s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m14s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m21s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m35s
* Remove Restic references from E2E tests and CI workflows
Rename all Restic-labeled tests to FSBackup since they test the file
system backup path, not Restic specifically. Remove dead Restic code
including VeleroUpgrade, UpdateVeleroDeployment, UpdateNodeAgent,
IsSupportUploaderType, UseResticIfFSBackup, and UploaderTypeRestic —
the server now rejects Restic as an unsupported uploader type.
Fixes #9482
Signed-off-by: Joseph <jvaikath@redhat.com >
* Add changelog for PR #9867
Signed-off-by: Joseph <jvaikath@redhat.com >
---------
Signed-off-by: Joseph <jvaikath@redhat.com >
2026-06-04 12:20:59 -04:00
Xun Jiang
85a98b73a5
Fix unknown containerd config version error in run-e2e-test action
...
Bump kind version to v0.32.0 to support both v2, v3, and v4 version of containerd config.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-06-03 18:20:23 +08:00
Shubham Pampattiwar and GitHub
038d780576
Merge pull request #9776 from shubham-pampattiwar/fix-prow-action-permissions
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 5s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 15s
Main CI / Build (push) Failing after 39s
Close stale issues and PRs / stale (push) Successful in 8s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m40s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m42s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m43s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m31s
Fix prow-action workflow permissions for issue commands
2026-05-09 11:25:43 +08:00
Xun Jiang
5afe5df122
Bump Velero dependencies to latest version.
...
* Fix UT failures caused by client-go version bump.
* Some modifications to enhance the UT stability.
* Fix UT errors: non-constant format string in call to ...
* Fix linter issues.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-05-08 17:38:42 +08:00
Xun Jiang/Bruce Jiang and GitHub
e6d928cdfe
Some updates for actions on main branch. ( #9775 )
...
Run the E2E test on kind / get-go-version (push) Failing after 55s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 30s
Close stale issues and PRs / stale (push) Successful in 12s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 2m6s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m31s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m22s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m36s
* Add Windows dockerfile in the Dockerfile change action.
* Update Bitnami MinIO Dockerfile directory.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-05-06 12:10:23 -04:00
Lyndon-Li
7918cb35dd
fix docker hub push error
...
Signed-off-by: Lyndon-Li <lyonghui@vmware.com >
2026-04-30 14:30:53 +08:00
Daniel Jiang
b3c178b9a1
Fix error in auto-request-review action
...
Per action.yml of the action, the token is required.
https://github.com/necojackarc/auto-request-review/blob/e89da1a8cd7c8c16d9de9c6e763290b6b0e3d424/action.yml#L8
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-04-27 15:47:17 +08:00
Daniel Jiang
a96a73d0d7
Set permissions to the actions
...
This commit update the actions "Auto Assign Author", "Auto Label PRs",
and "Auto Request Review"
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-04-21 19:00:14 +08:00
cf605c948e
Add CI check for invalid characters in file paths ( #9553 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m13s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 15s
Main CI / Build (push) Failing after 32s
Close stale issues and PRs / stale (push) Successful in 15s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m40s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m14s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m6s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m15s
* Add CI check for invalid characters in file paths
Go's module zip rejects filenames containing certain characters (shell
special chars like " ' * < > ? ` |, path separators : \, and non-letter
Unicode such as control/format characters). This caused a build failure
when a changelog file contained an invisible U+200E LEFT-TO-RIGHT MARK
(see PR #9552 ).
Add a GitHub Actions workflow that validates all tracked file paths on
every PR to catch these issues before they reach downstream consumers.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com >
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
* Fix changelog filenames containing invisible U+200E characters
Remove LEFT-TO-RIGHT MARK unicode characters from changelog filenames
that would cause Go module zip failures.
Generated with [Claude Code](https://claude.ai/code )
via [Happy](https://happy.engineering )
Co-Authored-By: Claude <noreply@anthropic.com >
Co-Authored-By: Happy <yesreply@happy.engineering >
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
---------
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com >
Co-authored-by: Happy <yesreply@happy.engineering >
2026-04-13 14:52:42 -04:00
Xun Jiang
91922103b4
Update the trivy-action version from main to specific tag to fix supply chain attack
...
https://www.aquasec.com/blog/trivy-supply-chain-attack-what-you-need-to-know/
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-03-27 16:09:53 +08:00
dependabot[bot] and GitHub
dbeb16aad7
Bump actions/stale from 10.1.0 to 10.1.1
...
Bumps [actions/stale](https://github.com/actions/stale ) from 10.1.0 to 10.1.1.
- [Release notes](https://github.com/actions/stale/releases )
- [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/stale/compare/v10.1.0...v10.1.1 )
---
updated-dependencies:
- dependency-name: actions/stale
dependency-version: 10.1.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-08 19:02:57 +00:00
Xun Jiang and Xun Jiang/Bruce Jiang
758f6a4847
Bump Golang version from 1.24-bookworm to 1.25-bookworm
...
Bump golangci-lint to v1.25.0, because golangci-lint start to support
Golang v1.25 since v1.24.0, and v1.26.x was not stable yet.
Align action pr-linter-check's golangci-lint version to v1.25.0
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2025-11-26 14:16:42 +08:00
dependabot[bot] and GitHub
981b29b4cb
Bump actions/checkout from 5 to 6
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 5 to 6.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-11-24 19:25:51 +00:00
b9cf90f11c
Bump golangci/golangci-lint-action from 8 to 9 ( #9404 )
...
Bumps [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action ) from 8 to 9.
- [Release notes](https://github.com/golangci/golangci-lint-action/releases )
- [Commits](https://github.com/golangci/golangci-lint-action/compare/v8...v9 )
---
updated-dependencies:
- dependency-name: golangci/golangci-lint-action
dependency-version: '9'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-11 13:03:40 -05:00