Skip to content

deps(deps): bump dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml from ac57c3208cf92d71c5971bb936df51c400cb1ccf to 137fff9d3a486208e0aa904d4a301aaf5084b5ff - #346

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/dinglebear-ai/workflows/dot-github/workflows/hosted-container-release.yml-e04c7ee5b494b376372023194cb418200761c722
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/dinglebear-ai/workflows/dot-github/workflows/hosted-container-release.yml-e04c7ee5b494b376372023194cb418200761c722

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 10, 2026

Copy link
Copy Markdown
Contributor

Bumps dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml from ac57c3208cf92d71c5971bb936df51c400cb1ccf to 137fff9d3a486208e0aa904d4a301aaf5084b5ff.

Changelog

Sourced from dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml's changelog.

Changelog

Unreleased

Changed

  • Relicense Dinglebear-owned original work under AGPL-3.0-only and document separate commercial licensing; third-party material retains its original terms.

Documentation

  • document the MinIO-only Kache remote, isolated local L1 stores, and retired NFS architecture

1.0.0 (2026-08-01)

Features

  • complete workflow and bootstrap source of truth (#11) (695d2e5)
  • enforce fleet repository contracts (#13) (4db9c3e)
  • establish canonical workflow library (25be025)
  • support lockfile-free Node launchers (#19) (d7bbe71)

Bug Fixes

  • align actionlint and shellcheck validation (7fd37c0)
  • make hosted validation self-contained (afe0de8)
  • make shared workflow setup cache-safe (#22) (98e4081)
  • prepare marketplace validation tools (#23) (542ea7b)
  • preserve historical documentation trees (#16) (be87fa3)
  • route jobs through scale-set pool selectors (#26) (d1a41a7)
  • safely expand shell validation globs (4307d0b)
  • scope fleet contract to maintained sources (#15) (8ef2adc)
  • support cross-repository workflow contracts (#21) (eb5f36c)
  • support explicit frozen Cargo fixtures (#18) (2650efa)
  • support explicit unsafe FFI lint boundaries (#17) (0a7e39a)
  • update cargo-deny for CVSS 4.0 advisories (#25) (66e64b9)

Performance Improvements

  • batch fleet contract repository scans (#14) (328afd4)

Changelog

All notable changes are managed by Release Please from Conventional Commits.

Commits
  • 137fff9 ci: cover every runner farm node pool (#49)
  • d5e7b04 ci: add temporary runner farm acceptance workflow (#48)
  • 2f7aa9f chore(kache): pin kache 0.15.1 (#47)
  • b281366 feat(policy): allow explicit arm64 contracts (#46)
  • e04c7ee fix(kache): stop hardcoding the endpoint and align the pin to 0.13.0 (#44)
  • 218eba1 feat(policy): reject gate wiring that lets a required check skip silently (#43)
  • 46c4d89 chore: adopt AGPL commercial dual licensing (#42)
  • 5a01d3b docs(kache): record MinIO-only cache architecture (#39)
  • befa67c fix(mcp): make Registry publication DNS-only (#38)
  • 3302f85 fix(mcp): wait for package propagation (#37)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Aug 10, 2026
@dependabot @github

dependabot Bot commented on behalf of github Aug 10, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: github-actions. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

…tainer-release.yml

Bumps [dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml](https://github.com/dinglebear-ai/workflows) from ac57c3208cf92d71c5971bb936df51c400cb1ccf to 137fff9d3a486208e0aa904d4a301aaf5084b5ff.
- [Release notes](https://github.com/dinglebear-ai/workflows/releases)
- [Changelog](https://github.com/dinglebear-ai/workflows/blob/main/CHANGELOG.md)
- [Commits](dinglebear-ai/workflows@ac57c32...137fff9)

---
updated-dependencies:
- dependency-name: dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml
  dependency-version: e04c7ee5b494b376372023194cb418200761c722
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title deps(deps): bump dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml from ac57c3208cf92d71c5971bb936df51c400cb1ccf to e04c7ee5b494b376372023194cb418200761c722 deps(deps): bump dinglebear-ai/workflows/.github/workflows/hosted-container-release.yml from ac57c3208cf92d71c5971bb936df51c400cb1ccf to 137fff9d3a486208e0aa904d4a301aaf5084b5ff Sep 5, 2026
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/dinglebear-ai/workflows/dot-github/workflows/hosted-container-release.yml-e04c7ee5b494b376372023194cb418200761c722 branch from 09a69dd to 391029b Compare September 5, 2026 15:32

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants