Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 14, 2024

Bumps SonarSource/sonarcloud-github-action from 1.9 to 2.1.

Release notes

Sourced from SonarSource/sonarcloud-github-action's releases.

Fix permissions of .scannerwork directory after scan

v2.1.0

Update README

No release notes provided.

Update README

No release notes provided.

Update scanner base image to sonar-scanner-cli:5.0

No release notes provided.

Update versions of the actions which run on Node16

Commits
  • 49e6cd3 Update README.md about manually cleaning the work directory
  • 5f0b535 Check for existance of .scannerwork in cleanup script
  • fb9ead3 chown only .scannerwork
  • e2a1ee7 Fix permissions of .scannerwork directory (#57)
  • 5ee47de Update README with new Clean Code wording and link from Marketing (#56)
  • c25d2e7 SC-9154 Update links in README
  • a244ec8 SC-9154 Update SonarCloud GitHub Action docs (#54)
  • 4b4d763 Update scanner cli version to 5.0 (#51)
  • 9c0534d Delete .travis.yml
  • 5875562 SC-6662 update README to use v3 of actions
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [SonarSource/sonarcloud-github-action](https://github.com/sonarsource/sonarcloud-github-action) from 1.9 to 2.1.
- [Release notes](https://github.com/sonarsource/sonarcloud-github-action/releases)
- [Commits](SonarSource/sonarcloud-github-action@v1.9...v2.1)

---
updated-dependencies:
- dependency-name: SonarSource/sonarcloud-github-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot requested a review from a team as a code owner May 14, 2024 19:15
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label May 14, 2024
Copy link

SonarQube Quality Gate

Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

Copy link
Contributor Author

dependabot bot commented on behalf of github May 27, 2024

Superseded by #221.

@dependabot dependabot bot closed this May 27, 2024
@dependabot dependabot bot deleted the dependabot/github_actions/SonarSource/sonarcloud-github-action-2.1 branch May 27, 2024 23:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants