Commit graph

131 commits

Author SHA1 Message Date
dependabot[bot] 13a8dce22d
Bump github/codeql-action from 2.1.37 to 2.1.38 (#118482)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.37 to 2.1.38.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](959cbb7472...515828d974)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-13 22:07:50 +00:00
dependabot[bot] aabf146f32
Bump github/codeql-action from 2.1.35 to 2.1.37 (#117104)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.35 to 2.1.37.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](b2a92eb56d...959cbb7472)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-11 16:55:18 +00:00
dependabot[bot] 2e0849e9dc
Bump actions/checkout from 3.1.0 to 3.3.0 (#118052)
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.1.0 to 3.3.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](93ea575cb5...ac59398561)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-11 16:53:50 +00:00
dependabot[bot] 33c71beee4
Bump actions/upload-artifact from 3.1.1 to 3.1.2 (#118116)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 3.1.1 to 3.1.2.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](83fd05a356...0b7f8abb15)

---
updated-dependencies:
- dependency-name: actions/upload-artifact
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-11 16:53:49 +00:00
dependabot[bot] abd5217f48
Bump ossf/scorecard-action from 2.1.1 to 2.1.2 (#117554)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.1 to 2.1.2.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](15c10fcf1c...e38b1902ae)

---
updated-dependencies:
- dependency-name: ossf/scorecard-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-22 23:22:08 +00:00
dependabot[bot] d71fa885ef
Bump ossf/scorecard-action from 2.1.0 to 2.1.1 (#117337)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.1.0 to 2.1.1.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](937ffa90d7...15c10fcf1c)

---
updated-dependencies:
- dependency-name: ossf/scorecard-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-20 20:08:41 +00:00
dependabot[bot] 91c1c70bd0
Bump ossf/scorecard-action from 2.0.6 to 2.1.0 (#117170)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.0.6 to 2.1.0.
- [Release notes](https://github.com/ossf/scorecard-action/releases)
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
- [Commits](99c53751e0...937ffa90d7)

---
updated-dependencies:
- dependency-name: ossf/scorecard-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-15 22:25:55 +00:00
dependabot[bot] 5d042eb350
Bump dessant/lock-threads from 3.0.0 to 4.0.0 (#116545)
Bumps [dessant/lock-threads](https://github.com/dessant/lock-threads) from 3.0.0 to 4.0.0.
- [Release notes](https://github.com/dessant/lock-threads/releases)
- [Changelog](https://github.com/dessant/lock-threads/blob/master/CHANGELOG.md)
- [Commits](e460dfeb36...c1b35aecc5)

---
updated-dependencies:
- dependency-name: dessant/lock-threads
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-05 21:41:25 +00:00
dependabot[bot] 4e8dacac8a
Bump github/codeql-action from 2.1.32 to 2.1.35 (#116379)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.32 to 2.1.35.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](4238421316...b2a92eb56d)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-01 21:44:10 +00:00
dependabot[bot] 9c54635570
Bump codecov/codecov-action from 3.1.0 to 3.1.1 (#113126)
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 3.1.0 to 3.1.1.
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](81cd2dc814...d9f34f8cd5)

---
updated-dependencies:
- dependency-name: codecov/codecov-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-11-17 02:32:02 +00:00
dependabot[bot] e66183da33
Bump github/codeql-action from 2.1.25 to 2.1.32 (#115394)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.25 to 2.1.32.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](86f3159a69...4238421316)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-11-15 23:33:08 +00:00
dependabot[bot] 44c146abb8
Bump actions/upload-artifact from 3.1.0 to 3.1.1 (#113859) 2022-10-21 22:11:16 +00:00
dependabot[bot] a97dcc0da6
Bump ossf/scorecard-action from 2.0.3 to 2.0.6 (#113735) 2022-10-20 05:52:31 +00:00
Jenn Magder 3f89d6393f
Limit coverage workflow to packages/flutter (#113627) 2022-10-18 15:24:17 -07:00
godofredoc bd4376ca0a
Report coverage to codecov rather than coveralls. (#113084) 2022-10-07 19:50:46 +00:00
godofredoc 8b7a6e4f50
Generate coverage (#112993) 2022-10-07 00:40:23 +00:00
dependabot[bot] 7f80b9f069
Bump actions/checkout from 3.0.2 to 3.1.0 (#112884) 2022-10-05 03:09:35 +00:00
dependabot[bot] c34e9071c0
Bump github/codeql-action from 2.1.24 to 2.1.25 (#112113) 2022-09-21 22:43:22 +00:00
dependabot[bot] 4bf395cb28
Bump github/codeql-action from 2.1.23 to 2.1.24 (#111784) 2022-09-16 23:24:26 +00:00
dependabot[bot] fd8d9269a4
Bump github/codeql-action from 2.1.22 to 2.1.23 (#111697) 2022-09-15 22:35:58 +00:00
godofredoc 4590e07e7d
Manual update of scorecards 2.0.3 (#111441) 2022-09-13 15:58:05 +00:00
dependabot[bot] c54640174f
Bump ossf/scorecard-action from 2.0.0 to 2.0.2 (#111308) 2022-09-10 01:52:22 +00:00
dependabot[bot] 6f9bcec40b
Bump ossf/scorecard-action from 1.1.2 to 2.0.0 (#111219) 2022-09-08 22:14:56 +00:00
dependabot[bot] 1e47bcfb50
Bump github/codeql-action from 2.1.21 to 2.1.22 (#110809) 2022-09-01 22:35:23 +00:00
dependabot[bot] b546f1e57c
Bump github/codeql-action from 2.1.20 to 2.1.21 (#110273) 2022-08-26 06:38:06 +00:00
dependabot[bot] 484a8841fd
Bump github/codeql-action from 2.1.19 to 2.1.20 (#110044) 2022-08-22 22:26:52 +00:00
dependabot[bot] 8f1d0798fa
Bump github/codeql-action from 2.1.18 to 2.1.19 (#109888) 2022-08-19 23:27:33 +00:00
dependabot[bot] f34b8d1f4e
Bump github/codeql-action from 2.1.17 to 2.1.18 (#108923) 2022-08-03 22:03:04 +00:00
dependabot[bot] df8bead354
Bump github/codeql-action from 2.1.16 to 2.1.17 (#108580) 2022-07-28 22:14:06 +00:00
dependabot[bot] d949ca42e3
Bump github/codeql-action from 2.1.15 to 2.1.16 (#107587) 2022-07-13 22:34:05 +00:00
dependabot[bot] 6fbd6ea027
Bump github/codeql-action from 2.1.14 to 2.1.15 (#106761) 2022-06-28 22:06:05 +00:00
dependabot[bot] 812ac799ad
Bump ossf/scorecard-action from 1.1.1 to 1.1.2 (#106760) 2022-06-28 22:04:05 +00:00
dependabot[bot] fe41b6abcd
Bump github/codeql-action from 2.1.13 to 2.1.14 (#106455) 2022-06-23 17:05:06 +00:00
dependabot[bot] 1debb14c33
Bump github/codeql-action from 2.1.12 to 2.1.13 (#106374) 2022-06-21 23:31:06 +00:00
dependabot[bot] 160e31bb28
Bump ossf/scorecard-action from 1.1.0 to 1.1.1 (#105168) 2022-06-01 15:38:09 -07:00
dependabot[bot] 1bc64f0132
Bump github/codeql-action from 2.1.11 to 2.1.12 (#105167) 2022-06-01 15:33:10 -07:00
dependabot[bot] dfda76da54
Bump ossf/scorecard-action from 1.0.4 to 1.1.0 (#104658) 2022-05-25 16:03:10 -07:00
dependabot[bot] ffcc0395f9
Bump actions/upload-artifact from 3.0.0 to 3.1.0 (#104295) 2022-05-20 15:33:11 -07:00
dependabot[bot] 7fdf747723
Bump github/codeql-action from 2.1.10 to 2.1.11 (#104016) 2022-05-17 15:32:11 -07:00
dependabot[bot] 40627e9ed0
Bump github/codeql-action from 75b4f1c4669133dc294b06c2794e969efa2e5316 to 2.1.10 (#103539) 2022-05-11 17:04:10 -07:00
dependabot[bot] a9ac7fb03b
Bump github/codeql-action from 2.1.9 to 2.1.10 (#103441) 2022-05-10 15:44:08 -07:00
Jesse Seales c0f2ab5d36
Add default permissions (#103134) 2022-05-06 07:34:09 -07:00
godofredoc b1eed25bfc
Add mirroring from master to main. (#102843) 2022-04-29 19:14:04 -07:00
dependabot[bot] 7d18594f38
Bump github/codeql-action from 2.1.8 to 2.1.9 (#102693) 2022-04-27 15:39:08 -07:00
dependabot[bot] 570e23e949
Bump actions/checkout from 3.0.1 to 3.0.2 (#102337) 2022-04-21 15:59:07 -07:00
dependabot[bot] c579bbde26
Bump actions/checkout from 3.0.0 to 3.0.1 (#101940) 2022-04-14 15:49:06 -07:00
dependabot[bot] 74cdc42207
Bump github/codeql-action from 2.1.7 to 2.1.8 (#101607) 2022-04-08 16:17:08 -07:00
dependabot[bot] d2fcccf5f9
Bump github/codeql-action from 2.1.6 to 2.1.7 (#101385) 2022-04-06 09:31:24 -07:00
dependabot[bot] 6baca0db96
Bump github/codeql-action from 1.1.5 to 2.1.6 (#101079) 2022-03-30 20:25:11 -07:00
dependabot[bot] f028b994e4
Bump github/codeql-action from 1.1.4 to 1.1.5 (#100163) 2022-03-15 15:45:20 -07:00
dependabot[bot] 10805ca3fe
Bump github/codeql-action from 1.1.3 to 1.1.4 (#99711) 2022-03-07 15:26:17 -08:00
dependabot[bot] c5ef5226f7
Bump actions/upload-artifact from 2.3.1 to 3 (#99515) 2022-03-03 15:21:15 -08:00
dependabot[bot] c8a930b696
Bump actions/checkout from 2.4.0 to 3 (#99359) 2022-03-02 08:46:21 -08:00
dependabot[bot] 01893b6cea
Bump github/codeql-action from 1.1.2 to 1.1.3 (#99026) 2022-02-23 15:29:13 -08:00
dependabot[bot] a059a383c3
Bump ossf/scorecard-action from 1.0.3 to 1.0.4 (#98771) 2022-02-18 15:24:20 -08:00
dependabot[bot] 0eedf420f4
Bump github/codeql-action from 1.1.0 to 1.1.2 (#98699) 2022-02-17 15:34:17 -08:00
dependabot[bot] ab7650d8d6
Bump github/codeql-action from 1.0.32 to 1.1.0 (#98289) 2022-02-11 14:55:21 -08:00
godofredoc 9eb94c59b8
Remove securitycards scheduled runs. (#98062) 2022-02-08 16:35:16 -08:00
godofredoc 9459c55f12
Remove version comments from workflow. (#98001) 2022-02-07 23:00:20 -08:00
dependabot[bot] 41a70b504c
Bump dessant/lock-threads from 2.0.3 to 3 (#97821) 2022-02-07 22:10:18 -08:00
dependabot[bot] cb124c0bcc
Bump github/codeql-action from 1.0.31 to 1.0.32 (#97983) 2022-02-07 19:10:19 -08:00
dependabot[bot] ce5fdff8b0
Bump github/codeql-action from 1.0.26 to 1.0.31 (#97820) 2022-02-04 17:15:16 -08:00
dependabot[bot] 704dabe5db
Bump ossf/scorecard-action from 1.0.2 to 1.0.3 (#97819) 2022-02-04 17:00:15 -08:00
godofredoc 39c5d2fa0a
Do not run score cards on forks of flutter/flutter. (#97603)
As a general rule all the .github workflows enabled for flutter/flutter
should not run on forks.

Bug: https://github.com/flutter/flutter/issues/97599
2022-02-01 14:58:27 -08:00
godofredoc 804631d619
Set lock github action workflow permissions explicitly. (#97459)
It is a good practice to set the github actions default permissions
to the minimum required. The locks action didn't set permissions
explicitly.
2022-01-28 18:26:24 -08:00
godofredoc b7424c619c
Create scorecards-analysis.yml (#97261)
Enables scorecards code scanning for the flutter repository.
2022-01-26 17:25:45 -08:00
godofredoc b59281ce52
Reland: Update no response action to include the fix to sort bugs properly (#94837) 2021-12-07 20:09:04 -08:00
godofredoc 0870f295e1
Revert "Update no response action to include the fix to sort bugs properly. (#94829)" (#94833)
This reverts commit 7d3b13638f.
2021-12-07 16:45:41 -08:00
godofredoc 7d3b13638f
Update no response action to include the fix to sort bugs properly. (#94829) 2021-12-07 15:39:02 -08:00
godofredoc 09a1275be0
Revert "Update the version of no-response bot. (#92281)" (#92288)
This reverts commit ba8cb1fc89.
2021-10-21 14:57:52 -07:00
godofredoc ba8cb1fc89
Update the version of no-response bot. (#92281) 2021-10-21 13:38:05 -07:00
Varun Sharma 0f0613c0ae
Add specific permissions to .github/workflows/lock.yaml (#89820) 2021-09-14 11:17:03 -07:00
godofredoc 3b7adb989f
Lock only issues. (#90023) 2021-09-13 21:32:04 -07:00
godofredoc 4ad8c15f34
Make no-response plugin no-op for forks. (#88058)
This will still run the workflow in forks but it will exit immediately
if the repository is not flutter/flutter.

Bug: https://github.com/flutter/flutter/issues/87573
2021-08-11 14:40:28 -07:00
godofredoc 640c08dc80
Run lock workflow only in flutter/flutter. (#87601)
This is to prevent trying to run the workflow in forks.

Bug: https://github.com/flutter/flutter/issues/87573
2021-08-03 17:55:21 -07:00
godofredoc c11efb5016
Re-lands the change to enable the no-response bot (#87381)
* Re-lands the change to enable the no-response bot which was reverted on #87361.

This is the second retry which was now validated using the github
workflows UI.

Bug: https://github.com/flutter/flutter/issues/87360

* Remove trailing spaces.
2021-07-30 16:20:17 -07:00
godofredoc 3ca8d7b79d
Revert "Re-land no-reponse bot. (#87372)" (#87377)
This reverts commit 38a6c8a418.
2021-07-30 15:06:40 -07:00
godofredoc 38a6c8a418
Re-land no-reponse bot. (#87372) 2021-07-30 14:49:03 -07:00
godofredoc bdca3391b4
Revert "Add no-response workflow. (#87318)" (#87361)
This reverts commit ee06781362.
2021-07-30 11:38:44 -07:00
godofredoc ee06781362
Add no-response workflow. (#87318) 2021-07-30 11:09:04 -07:00
godofredoc ed6c9323bb
Enable lock-thread based on github actions. (#81528) 2021-07-29 20:19:04 -07:00