Bump actions/checkout from 5.0.1 to 6.0.0#1005
Conversation
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
Bumps [actions/checkout](https://github.com/actions/checkout) from 5.0.1 to 6.0.0. - [Release notes](https://github.com/actions/checkout/releases) - [Commits](actions/checkout@v5.0.1...v6) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
88aa76b to
b40be9b
Compare
|
@copilot Are there any breaking changes in |
|
@jeffhandley I've opened a new pull request, #1065, to work on those changes. Once the pull request is ready, I'll request review from you. |
There was a problem hiding this comment.
Pull request overview
This PR bumps the actions/checkout GitHub Action from version 5.0.1 to 6.0.0 across all workflow files. The update includes important changes such as persisting credentials to a separate file under $RUNNER_TEMP and requires Actions Runner v2.329.0+ for Docker container scenarios.
Key Changes:
- Updated all
actions/checkoutreferences to v6.0.0 (commit hash:1af3b93b6815bc44a9784bd300feb67ff0d1eeb3) - Maintained existing configuration parameters (e.g.,
fetch-depth: 0where used) - One workflow uses inconsistent version reference format (version tag instead of commit hash)
Reviewed changes
Copilot reviewed 6 out of 6 changed files in this pull request and generated 1 comment.
Show a summary per file
| File | Description |
|---|---|
.github/workflows/release.yml |
Updated 5 instances of actions/checkout to v6.0.0 across build, package, and publish jobs |
.github/workflows/markdown-link-check.yml |
Updated checkout action to v6.0.0 for markdown link validation |
.github/workflows/docs.yml |
Updated checkout action to v6.0.0 for documentation publishing |
.github/workflows/copilot-setup-steps.yml |
Updated checkout action to v6.0.0, but uses version tag format instead of commit hash |
.github/workflows/ci-code-coverage.yml |
Updated checkout action to v6.0.0 for code coverage workflow |
.github/workflows/ci-build-test.yml |
Updated checkout action to v6.0.0 for CI build and test workflow |
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
A newer version of actions/checkout exists, but since this PR has been edited by someone other than Dependabot I haven't updated it. You'll get a PR for the updated version as normal once this PR is merged. |
Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Jeff Handley <jeffhandley@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Bumps actions/checkout from 5.0.1 to 6.0.0.
Release notes
Sourced from actions/checkout's releases.
Commits
1af3b93update readme/changelog for v6 (#2311)71cf226v6-beta (#2298)069c695Persist creds to a separate file (#2286)ff7abcdUpdate README to include Node.js 24 support details and requirements (#2248)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)