ccbb7d1cc7
Bump actions/setup-go from 6 to 7 ( #10202 )
...
Bumps [actions/setup-go](https://github.com/actions/setup-go ) from 6 to 7.
- [Release notes](https://github.com/actions/setup-go/releases )
- [Commits](https://github.com/actions/setup-go/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/setup-go
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-10 16:01:13 -04:00
Copilot and GitHub
fb86290def
Merge pull request #10208 from velero-io/copilot/edit-autoassign-workflow
...
e2e-test-kind.yaml / extract (push) Failing after 6s
Run the E2E test on kind / get-go-version (push) Failing after 7s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 7s
Main CI / get-go-version (push) Failing after 7s
Main CI / Build (push) Skipped
Re-request maintainer review when only one CODEOWNERS approval exists
2026-08-10 09:44:01 -07:00
cc4161b7ed
ci: add backport/cherry-pick GitHub Action for release branches ( #10158 )
...
e2e-test-kind.yaml / extract (push) Failing after 5s
Run the E2E test on kind / get-go-version (push) Failing after 5s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 2s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 6s
Main CI / get-go-version (push) Failing after 7s
Main CI / Build (push) Skipped
* ci: add backport/cherry-pick GitHub Action for release branches
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: add unreleased changelog for backport Action
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: pin backport-action to commit SHA for write-permission safety
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
* ci: address review nits on backport workflow
Move permissions to the job (least privilege), document the
backport-action bot user id guard, and fix a garbled comment.
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
---------
Signed-off-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
Co-authored-by: Pragati <Pragati5-DEBUG@users.noreply.github.com >
2026-08-09 11:01:32 -05:00
Chlins Zhang and GitHub
02bff1e771
Merge pull request #10141 from chlins/fix/pin-e2e-third-party-sources
...
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
e2e-test-kind.yaml / extract (push) Failing after 4s
Run the E2E test on kind / get-go-version (push) Failing after 6s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Failing after 6s
Main CI / get-go-version (push) Failing after 8s
Main CI / Build (push) Skipped
Pin e2e third-party clones to reviewed commits
2026-08-05 11:16:37 +08:00
Xun Jiang/Bruce Jiang and GitHub
9b34594cd3
Merge pull request #10133 from velero-io/dependabot/github_actions/actions/checkout-7
...
Bump actions/checkout from 6 to 7
2026-08-04 16:44:50 +08:00
Scott Seago and GitHub
72107e60b3
Merge branch 'main' into dependabot/github_actions/docker/setup-buildx-action-4
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
e2e-test-kind.yaml / extract (push) Failing after 17s
Run the E2E test on kind / get-go-version (push) Failing after 19s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
2026-08-03 13:42:19 -04:00
b74f8c9511
Bump github/codeql-action from 3 to 4.37.3 ( #10135 )
...
e2e-test-kind.yaml / extract (push) Failing after 11s
Run the E2E test on kind / get-go-version (push) Failing after 13s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Successful in 13s
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 21s
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 3 to 4.37.3.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v3...v4.37.3 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.37.3
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-03 13:37:25 -04:00
chlins
02fe822860
Pin e2e third-party clones to reviewed commits
...
Pin bitnami/containers and distributed-data-generator to fixed SHAs instead of building default-branch HEAD, and add a minimal permissions block.
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-08-03 13:46:18 +08:00
dependabot[bot] and GitHub
2685a5dd1d
Bump docker/setup-buildx-action from 3 to 4
...
Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action ) from 3 to 4.
- [Release notes](https://github.com/docker/setup-buildx-action/releases )
- [Commits](https://github.com/docker/setup-buildx-action/compare/v3...v4 )
---
updated-dependencies:
- dependency-name: docker/setup-buildx-action
dependency-version: '4'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-08-01 19:12:38 +00:00
dependabot[bot] and GitHub
c9f784ef66
Bump actions/checkout from 6 to 7
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 6 to 7.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-08-01 19:12:21 +00:00
Chlins Zhang and GitHub
9063ee5fb7
Replace rebase action with GitHub CLI ( #10093 )
...
* Replace rebase action with GitHub CLI
Signed-off-by: chlins <chlins.zhang@gmail.com >
* Add contents write permission for rebase workflow
Updating the PR branch pushes to the head branch, which requires contents: write for the GITHUB_TOKEN.
Signed-off-by: chlins <chlins.zhang@gmail.com >
---------
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-07-30 12:24:51 -04:00
Chlins Zhang and GitHub
c1f3e81484
Merge pull request #10094 from chlins/fix/pin-prow-action
...
Run the E2E test on kind / setup-test-matrix (push) Successful in 6s
e2e-test-kind.yaml / extract (push) Failing after 16s
Run the E2E test on kind / get-go-version (push) Failing after 17s
Run the E2E test on kind / build (push) Skipped
Run the E2E test on kind / run-e2e-test (push) Skipped
push.yml / extract (push) Successful in 11s
Main CI / get-go-version (push) Successful in 12s
Main CI / Build (push) Failing after 36s
Pin prow GitHub action to commit SHA
2026-07-30 14:42:17 +08:00
5ca38aa075
ci(push): pin action versions to commit SHAs and restrict permissions ( #10083 )
...
Signed-off-by: chlins <chlins.zhang@gmail.com >
Co-authored-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-07-29 07:41:57 +00:00
chlins
4745c45faf
Pin prow GitHub action to commit SHA
...
Signed-off-by: chlins <chlins.zhang@gmail.com >
2026-07-29 15:11:08 +08:00
Xun Jiang/Bruce Jiang and GitHub
713c2f3b0a
Merge pull request #10074 from velero-io/dependabot/github_actions/codecov/codecov-action-7
...
Bump codecov/codecov-action from 6 to 7
2026-07-27 13:47:56 +08:00
dependabot[bot] and GitHub
91e089d3e6
Bump actions/labeler from 5 to 7
...
Bumps [actions/labeler](https://github.com/actions/labeler ) from 5 to 7.
- [Release notes](https://github.com/actions/labeler/releases )
- [Commits](https://github.com/actions/labeler/compare/v5...v7 )
---
updated-dependencies:
- dependency-name: actions/labeler
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-25 19:12:46 +00:00
dependabot[bot] and GitHub
ff7273548b
Bump codecov/codecov-action from 6 to 7
...
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action ) from 6 to 7.
- [Release notes](https://github.com/codecov/codecov-action/releases )
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/codecov/codecov-action/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: codecov/codecov-action
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-25 19:12:25 +00:00
Tiger Kaovilai and GitHub
7ecf06d190
Fix CI: make Bitnami MinIO Dockerfile SHA lookup resilient ( #10049 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 28s
curl piped straight into jq with no error check; a non-JSON or failed
HTTP response (rate limit, transient API error) broke jq with an
opaque parse error. Add --fail-with-body, retries, and validate the
parsed SHA before continuing.
Fixes #10048
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
2026-07-22 10:14:18 -04:00
Xun Jiang/Bruce Jiang and GitHub
a34a6fc922
Merge pull request #10019 from velero-io/copilot/discuss-codeowners-integration
...
Run the E2E test on kind / get-go-version (push) Failing after 57s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Remove Auto Request Review workflow in favor of CODEOWNERS
2026-07-20 16:01:27 +08:00
dependabot[bot] and GitHub
26af4e0e9f
Bump aquasecurity/trivy-action from 0.35.0 to 0.36.0
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.35.0 to 0.36.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/57a97c7e7821a5776cebc9bb87c984fa69cba8f1...ed142fd0673e97e23eac54620cfb913e5ce36c25 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-version: 0.36.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-18 19:12:18 +00:00
copilot-swe-agent[bot] and GitHub
6b68e1168b
Remove Auto Request Review workflow in favor of CODEOWNERS ( #10018 )
2026-07-16 15:14:54 +00:00
Daniel Jiang and GitHub
30d05a3e40
Add maintainers as code owners ( #9998 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 23s
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-07-15 07:56:26 +08:00
Shubham Pampattiwar
2edf8f8260
Remove guards from e2e-test-kind, pr-linter-check, nightly-trivy-scan
...
Per review feedback, these workflows are useful on forks:
- e2e-test-kind: tests pass on downstream forks
- pr-linter-check: keeps lint up to date for upstream-bound features
- nightly-trivy-scan: wanted in downstream forks
Also remove changelog file per reviewer request.
Signed-off-by: Shubham Pampattiwar <spampatt@redhat.com >
2026-07-14 12:36:01 -07:00
Shubham Pampattiwar
6104324436
Skip upstream-only workflows on forks
...
Add repository guard (github.repository == 'velero-io/velero') to
workflows that should only run on the upstream repo. This prevents
unnecessary CI runs on forks like openshift/velero where these
workflows either fail due to missing secrets/config or duplicate
fork-specific CI.
Guarded workflows: auto_assign_prs, auto_label_prs,
auto_request_review, e2e-test-kind, nightly-trivy-scan,
pr-changelog-check, pr-codespell, pr-filepath-check,
pr-linter-check, prow-action, rebase, stale-issues.
Intentionally left unguarded: pr-ci-check (useful for contributors
on forks), get-go-version (reusable workflow_call only).
Signed-off-by: Shubham Pampattiwar <spampatt@redhat.com >
2026-07-14 11:06:16 -07:00
dependabot[bot] and GitHub
fa2b37c36b
Merge pull request #9992 from velero-io/dependabot/github_actions/docker/setup-qemu-action-4
...
Run the E2E test on kind / get-go-version (push) Failing after 1m4s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 14s
Main CI / Build (push) Failing after 41s
Bump docker/setup-qemu-action from 3 to 4
2026-07-13 15:58:03 +08:00
Adam Zhang
cc41347ddf
fix rate limit issue for e2e-test-kind job
...
curl api.github.com is subject to rate limit(60 requests per hour),
provide GitHub token increase the rate limits.
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-07-11 10:31:38 +08:00
dependabot[bot] and GitHub
4cf1dd9df6
Bump actions/upload-artifact from 5 to 7
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 5 to 7.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v5...v7 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-07-08 03:12:11 +00:00
copilot-swe-agent[bot] and GitHub
24550ddadd
Ensure Dependabot PRs get changelog-not-required label
2026-07-03 19:56:16 +00:00
Adam Zhang
dd850a451c
ensure the kind cluster name to "kind"
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 15:48:43 +08:00
Adam Zhang
bb3e1203df
update minio DOCKFILE_SHA url
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 15:36:22 +08:00
Adam Zhang
7627223d0f
bump the setup kind action
...
update kind setup action to helm/kind-action@v1 and use
FORCE_JAVASCRIPT_ACTIONS_TO_NODE24: true to suppress warning.
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-15 14:44:43 +08:00
Adam Zhang
50ea4eea74
update codecov-action from v5 to v6
...
Signed-off-by: Adam Zhang <adam.zhang@broadcom.com >
2026-06-08 11:31:37 +08:00
Joseph Antony Vaikath and GitHub
b34c8436aa
Remove Restic cases and workflow from E2E ( #9867 )
...
Run the E2E test on kind / get-go-version (push) Failing after 56s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 26s
Close stale issues and PRs / stale (push) Successful in 12s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m39s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m14s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m21s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m35s
* Remove Restic references from E2E tests and CI workflows
Rename all Restic-labeled tests to FSBackup since they test the file
system backup path, not Restic specifically. Remove dead Restic code
including VeleroUpgrade, UpdateVeleroDeployment, UpdateNodeAgent,
IsSupportUploaderType, UseResticIfFSBackup, and UploaderTypeRestic —
the server now rejects Restic as an unsupported uploader type.
Fixes #9482
Signed-off-by: Joseph <jvaikath@redhat.com >
* Add changelog for PR #9867
Signed-off-by: Joseph <jvaikath@redhat.com >
---------
Signed-off-by: Joseph <jvaikath@redhat.com >
2026-06-04 12:20:59 -04:00
Xun Jiang
85a98b73a5
Fix unknown containerd config version error in run-e2e-test action
...
Bump kind version to v0.32.0 to support both v2, v3, and v4 version of containerd config.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-06-03 18:20:23 +08:00
Shubham Pampattiwar and GitHub
038d780576
Merge pull request #9776 from shubham-pampattiwar/fix-prow-action-permissions
...
Run the E2E test on kind / get-go-version (push) Failing after 1m0s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 5s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 15s
Main CI / Build (push) Failing after 39s
Close stale issues and PRs / stale (push) Successful in 8s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m40s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m42s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m43s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m31s
Fix prow-action workflow permissions for issue commands
2026-05-09 11:25:43 +08:00
Xun Jiang
5afe5df122
Bump Velero dependencies to latest version.
...
* Fix UT failures caused by client-go version bump.
* Some modifications to enhance the UT stability.
* Fix UT errors: non-constant format string in call to ...
* Fix linter issues.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-05-08 17:38:42 +08:00
Xun Jiang/Bruce Jiang and GitHub
e6d928cdfe
Some updates for actions on main branch. ( #9775 )
...
Run the E2E test on kind / get-go-version (push) Failing after 55s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 13s
Main CI / Build (push) Failing after 30s
Close stale issues and PRs / stale (push) Successful in 12s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 2m6s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m31s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m22s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m36s
* Add Windows dockerfile in the Dockerfile change action.
* Update Bitnami MinIO Dockerfile directory.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-05-06 12:10:23 -04:00
Lyndon-Li
7918cb35dd
fix docker hub push error
...
Signed-off-by: Lyndon-Li <lyonghui@vmware.com >
2026-04-30 14:30:53 +08:00
Daniel Jiang
b3c178b9a1
Fix error in auto-request-review action
...
Per action.yml of the action, the token is required.
https://github.com/necojackarc/auto-request-review/blob/e89da1a8cd7c8c16d9de9c6e763290b6b0e3d424/action.yml#L8
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-04-27 15:47:17 +08:00
Daniel Jiang
a96a73d0d7
Set permissions to the actions
...
This commit update the actions "Auto Assign Author", "Auto Label PRs",
and "Auto Request Review"
Signed-off-by: Daniel Jiang <daniel.jiang@broadcom.com >
2026-04-21 19:00:14 +08:00
cf605c948e
Add CI check for invalid characters in file paths ( #9553 )
...
Run the E2E test on kind / get-go-version (push) Failing after 1m13s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 3s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Main CI / get-go-version (push) Successful in 15s
Main CI / Build (push) Failing after 32s
Close stale issues and PRs / stale (push) Successful in 15s
Trivy Nightly Scan / Trivy nightly scan (velero, main) (push) Failing after 1m40s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-aws, main) (push) Failing after 1m14s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-gcp, main) (push) Failing after 1m6s
Trivy Nightly Scan / Trivy nightly scan (velero-plugin-for-microsoft-azure, main) (push) Failing after 1m15s
* Add CI check for invalid characters in file paths
Go's module zip rejects filenames containing certain characters (shell
special chars like " ' * < > ? ` |, path separators : \, and non-letter
Unicode such as control/format characters). This caused a build failure
when a changelog file contained an invisible U+200E LEFT-TO-RIGHT MARK
(see PR #9552 ).
Add a GitHub Actions workflow that validates all tracked file paths on
every PR to catch these issues before they reach downstream consumers.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com >
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
* Fix changelog filenames containing invisible U+200E characters
Remove LEFT-TO-RIGHT MARK unicode characters from changelog filenames
that would cause Go module zip failures.
Generated with [Claude Code](https://claude.ai/code )
via [Happy](https://happy.engineering )
Co-Authored-By: Claude <noreply@anthropic.com >
Co-Authored-By: Happy <yesreply@happy.engineering >
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
---------
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com >
Co-authored-by: Happy <yesreply@happy.engineering >
2026-04-13 14:52:42 -04:00
Xun Jiang
91922103b4
Update the trivy-action version from main to specific tag to fix supply chain attack
...
https://www.aquasec.com/blog/trivy-supply-chain-attack-what-you-need-to-know/
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2026-03-27 16:09:53 +08:00
dependabot[bot] and GitHub
dbeb16aad7
Bump actions/stale from 10.1.0 to 10.1.1
...
Bumps [actions/stale](https://github.com/actions/stale ) from 10.1.0 to 10.1.1.
- [Release notes](https://github.com/actions/stale/releases )
- [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/stale/compare/v10.1.0...v10.1.1 )
---
updated-dependencies:
- dependency-name: actions/stale
dependency-version: 10.1.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-12-08 19:02:57 +00:00
Xun Jiang and Xun Jiang/Bruce Jiang
758f6a4847
Bump Golang version from 1.24-bookworm to 1.25-bookworm
...
Bump golangci-lint to v1.25.0, because golangci-lint start to support
Golang v1.25 since v1.24.0, and v1.26.x was not stable yet.
Align action pr-linter-check's golangci-lint version to v1.25.0
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2025-11-26 14:16:42 +08:00
dependabot[bot] and GitHub
981b29b4cb
Bump actions/checkout from 5 to 6
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 5 to 6.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-11-24 19:25:51 +00:00
b9cf90f11c
Bump golangci/golangci-lint-action from 8 to 9 ( #9404 )
...
Bumps [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action ) from 8 to 9.
- [Release notes](https://github.com/golangci/golangci-lint-action/releases )
- [Commits](https://github.com/golangci/golangci-lint-action/compare/v8...v9 )
---
updated-dependencies:
- dependency-name: golangci/golangci-lint-action
dependency-version: '9'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-11 13:03:40 -05:00
Xun Jiang/Bruce Jiang and GitHub
82367e7ff6
Fix the Job build error when BackupReposiotry name longer than 63. ( #9350 )
...
* Fix the Job build error when BackupReposiotry name longer than 63.
Fix the Job build error.
Consider the name length limitation change in job list code.
Use hash to replace the GetValidName function.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
* Use ref_name to replace ref.
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
---------
Signed-off-by: Xun Jiang <xun.jiang@broadcom.com >
2025-11-11 12:56:27 -05:00
Tiger Kaovilai
6e54879f4d
update debug bundle artifact name to include Kubernetes version and job index
...
Signed-off-by: Tiger Kaovilai <tkaovila@redhat.com >
2025-11-05 14:25:39 -05:00
dependabot[bot] and GitHub
5e9605131b
Bump actions/upload-artifact from 4 to 5
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 4 to 5.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-27 20:02:29 +00:00
dependabot[bot] and Xun Jiang/Bruce Jiang
e9666f9aea
Bump actions/stale from 10.0.0 to 10.1.0
...
Run the E2E test on kind / get-go-version (push) Failing after 1m8s
Run the E2E test on kind / build (push) Has been skipped
Run the E2E test on kind / setup-test-matrix (push) Successful in 4s
Run the E2E test on kind / run-e2e-test (push) Has been skipped
Bumps [actions/stale](https://github.com/actions/stale ) from 10.0.0 to 10.1.0.
- [Release notes](https://github.com/actions/stale/releases )
- [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/stale/compare/v10.0.0...v10.1.0 )
---
updated-dependencies:
- dependency-name: actions/stale
dependency-version: 10.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-10-10 11:17:07 +08:00