Commit graph

619 commits

Author SHA1 Message Date
dependabot[bot]
e74d03157b
Bump cljkondo/clj-kondo from 2023.03.17-alpine to 2023.05.18-alpine (#4210)
Bumps cljkondo/clj-kondo from 2023.03.17-alpine to 2023.05.18-alpine.

---
updated-dependencies:
- dependency-name: cljkondo/clj-kondo
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 14:07:40 -07:00
dependabot[bot]
c581b575c6
Bump alpine from 3.17.3 to 3.18.0 (#4193)
Bumps alpine from 3.17.3 to 3.18.0.

---
updated-dependencies:
- dependency-name: alpine
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 13:45:14 -07:00
Denis N. Antonioli
078934c38e properly insert the new ARG for the standard image 2023-04-25 23:05:56 -04:00
Denis N. Antonioli
c7f01711bd split the installation scripts, inline or clean-up as possible 2023-04-25 23:05:56 -04:00
Denis N. Antonioli
5cbf58c106 parametrize the install scripts 2023-04-25 23:05:56 -04:00
dependabot[bot]
cd3b5a2458 Bump scalameta/scalafmt from v3.6.1 to v3.7.3
Bumps scalameta/scalafmt from v3.6.1 to v3.7.3.

---
updated-dependencies:
- dependency-name: scalameta/scalafmt
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 19:41:24 -04:00
Andrew Kerr
aa7060080c Move chown into same RUN as npm install 2023-04-10 19:37:57 -04:00
Andrew Kerr
772645136b Fix bad owner/group flags on node depedencies 2023-04-10 19:37:57 -04:00
dependabot[bot]
5feffb9e11 Bump cljkondo/clj-kondo from 2023.01.20-alpine to 2023.03.17-alpine
Bumps cljkondo/clj-kondo from 2023.01.20-alpine to 2023.03.17-alpine.

---
updated-dependencies:
- dependency-name: cljkondo/clj-kondo
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 19:33:44 -04:00
dependabot[bot]
2e9a170fda Bump golangci/golangci-lint from v1.50.1 to v1.52.2
Bumps golangci/golangci-lint from v1.50.1 to v1.52.2.

---
updated-dependencies:
- dependency-name: golangci/golangci-lint
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 19:33:27 -04:00
os-mram
e43076dd23 fix: updating actionlint to latest version v1.6.24
Fix using vars context causes 'undefined context' error. This context is for 'Variables' feature which was recently added to GitHub Actions. (#260)
2023-04-10 19:33:18 -04:00
dependabot[bot]
1022705f14 Bump yannh/kubeconform from v0.5.0 to v0.6.1
Bumps [yannh/kubeconform](https://github.com/yannh/kubeconform) from v0.5.0 to v0.6.1.
- [Release notes](https://github.com/yannh/kubeconform/releases)
- [Changelog](https://github.com/yannh/kubeconform/blob/master/.goreleaser.yml)
- [Commits](https://github.com/yannh/kubeconform/compare/v0.5.0...v0.6.1)

---
updated-dependencies:
- dependency-name: yannh/kubeconform
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:20:33 -04:00
dependabot[bot]
a6fa7f178d Bump yoheimuta/protolint from 0.42.2 to 0.43.1
Bumps yoheimuta/protolint from 0.42.2 to 0.43.1.

---
updated-dependencies:
- dependency-name: yoheimuta/protolint
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:20:23 -04:00
dependabot[bot]
5e8daf86db Bump alpine/terragrunt from 1.3.6 to 1.4.4
Bumps alpine/terragrunt from 1.3.6 to 1.4.4.

---
updated-dependencies:
- dependency-name: alpine/terragrunt
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:20:05 -04:00
dependabot[bot]
84b3c3ea3e Bump alpine from 3.17.1 to 3.17.3
Bumps alpine from 3.17.1 to 3.17.3.

---
updated-dependencies:
- dependency-name: alpine
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:19:55 -04:00
dependabot[bot]
84c5990ef2 Bump hashicorp/terraform from 1.3.7 to 1.4.4
Bumps hashicorp/terraform from 1.3.7 to 1.4.4.

---
updated-dependencies:
- dependency-name: hashicorp/terraform
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:19:34 -04:00
dependabot[bot]
37bf5f7e2c Bump zricethezav/gitleaks from v8.15.3 to v8.16.2
Bumps zricethezav/gitleaks from v8.15.3 to v8.16.2.

---
updated-dependencies:
- dependency-name: zricethezav/gitleaks
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:19:22 -04:00
dependabot[bot]
71e3effe0a Bump terraform-linters/tflint-bundle from v0.44.1.0 to v0.46.0.1
Bumps [terraform-linters/tflint-bundle](https://github.com/terraform-linters/tflint-bundle) from v0.44.1.0 to v0.46.0.1.
- [Release notes](https://github.com/terraform-linters/tflint-bundle/releases)
- [Commits](https://github.com/terraform-linters/tflint-bundle/compare/v0.44.1.0...v0.46.0.1)

---
updated-dependencies:
- dependency-name: terraform-linters/tflint-bundle
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-04-10 15:19:05 -04:00
dependabot[bot]
13e5f8b29a Bump rhysd/actionlint from 1.6.22 to 1.6.23
Bumps rhysd/actionlint from 1.6.22 to 1.6.23.

---
updated-dependencies:
- dependency-name: rhysd/actionlint
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-26 22:09:07 -05:00
dependabot[bot]
da9c7b0ff6 Bump cljkondo/clj-kondo from 2023.01.12-alpine to 2023.01.20-alpine
Bumps cljkondo/clj-kondo from 2023.01.12-alpine to 2023.01.20-alpine.

---
updated-dependencies:
- dependency-name: cljkondo/clj-kondo
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-26 22:08:57 -05:00
dependabot[bot]
544297407f Bump zricethezav/gitleaks from v8.15.2 to v8.15.3
Bumps zricethezav/gitleaks from v8.15.2 to v8.15.3.

---
updated-dependencies:
- dependency-name: zricethezav/gitleaks
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-26 22:08:15 -05:00
Brett Logan
03a3c29f60 Use Docker to pull kubeconform
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-16 21:14:13 -05:00
Rui Chen
e6445c358f replace kubeval with kubeconform
Signed-off-by: Rui Chen <rui@chenrui.dev>
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-16 21:14:13 -05:00
dependabot[bot]
46bb46783e Bump alpine from 3.17.0 to 3.17.1
Bumps alpine from 3.17.0 to 3.17.1.

---
updated-dependencies:
- dependency-name: alpine
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-16 08:31:20 -05:00
dependabot[bot]
094f6fd78d Bump cljkondo/clj-kondo from 2022.12.10-alpine to 2023.01.12-alpine
Bumps cljkondo/clj-kondo from 2022.12.10-alpine to 2023.01.12-alpine.

---
updated-dependencies:
- dependency-name: cljkondo/clj-kondo
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-16 08:31:07 -05:00
dependabot[bot]
6d7a7b41c9 Bump hashicorp/terraform from 1.3.6 to 1.3.7
Bumps hashicorp/terraform from 1.3.6 to 1.3.7.

---
updated-dependencies:
- dependency-name: hashicorp/terraform
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-09 09:42:47 -05:00
Brett Logan
06de195e36 Fix Dockerfile conflict
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-05 09:46:51 -05:00
Brett Logan
b4635519da Clean up matrix properties
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-05 09:46:51 -05:00
Brett Logan
f00a0bbe87 Remove dead arg
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
07e66bb8b8 Mount secret
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
59e3086d12 Fix conflict
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
1137155331 Fix arm-ttk path
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
b1386567ad Pin PSSA_VERSION
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
e469609f7c Fix PowerShell installation
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
5224656969 Push scripts into standalone files
Pushes inline scripts in the Dockerfile into standalone
scripts and authenticates requests to GitHub using a
Personal Access Token to reduce build flakiness due
to GitHub's abuse and ratelimiting due to unauthenticated
reuests.

Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 20:17:46 -05:00
Brett Logan
9f398bb021 Update shellcheck
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-04 01:45:10 -05:00
Brett Logan
24b9c2cbb4 Revert Dart update
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-03 23:54:16 -05:00
Brett Logan
a4a1f0de87 Update alpine images
Signed-off-by: Brett Logan <lindluni@github.com>
2023-01-03 23:54:16 -05:00
dependabot[bot]
121744548f Bump rhysd/actionlint from 1.6.21 to 1.6.22
Bumps rhysd/actionlint from 1.6.21 to 1.6.22.

---
updated-dependencies:
- dependency-name: rhysd/actionlint
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-03 19:28:05 -05:00
dependabot[bot]
fd988d5b07 Bump dotenvlinter/dotenv-linter from 3.2.0 to 3.3.0
Bumps dotenvlinter/dotenv-linter from 3.2.0 to 3.3.0.

---
updated-dependencies:
- dependency-name: dotenvlinter/dotenv-linter
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-03 17:44:04 -05:00
dependabot[bot]
ce7fa3215c Bump terraform-linters/tflint-bundle from v0.44.0.0 to v0.44.1.0
Bumps terraform-linters/tflint-bundle from v0.44.0.0 to v0.44.1.0.

---
updated-dependencies:
- dependency-name: terraform-linters/tflint-bundle
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2023-01-03 12:01:53 -05:00
dependabot[bot]
7abfaf27d2 Bump yoheimuta/protolint from 0.41.0 to 0.42.2
Bumps yoheimuta/protolint from 0.41.0 to 0.42.2.

---
updated-dependencies:
- dependency-name: yoheimuta/protolint
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-30 18:40:07 -05:00
dependabot[bot]
80c75ea8a2 Bump terraform-linters/tflint-bundle from v0.43.0.3 to v0.44.0.0
Bumps terraform-linters/tflint-bundle from v0.43.0.3 to v0.44.0.0.

---
updated-dependencies:
- dependency-name: terraform-linters/tflint-bundle
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-29 11:51:57 -05:00
dependabot[bot]
154522b380 Bump mvdan/shfmt from v3.5.1 to v3.6.0
Bumps mvdan/shfmt from v3.5.1 to v3.6.0.

---
updated-dependencies:
- dependency-name: mvdan/shfmt
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-26 11:46:14 -05:00
Brett Logan
6635505723 Bulk update deps
Signed-off-by: Brett Logan <lindluni@github.com>
2022-12-22 11:59:09 -05:00
dependabot[bot]
37b6ff9a3f Bump tenable/terrascan from 1.15.2 to 1.17.1
Bumps tenable/terrascan from 1.15.2 to 1.17.1.

---
updated-dependencies:
- dependency-name: tenable/terrascan
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-20 11:40:14 -05:00
dependabot[bot]
729eece046 Bump zricethezav/gitleaks from v8.13.0 to v8.15.2
Bumps zricethezav/gitleaks from v8.13.0 to v8.15.2.

---
updated-dependencies:
- dependency-name: zricethezav/gitleaks
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-20 11:39:38 -05:00
dependabot[bot]
caf5d25ded Bump hashicorp/terraform from 1.3.2 to 1.3.6
Bumps hashicorp/terraform from 1.3.2 to 1.3.6.

---
updated-dependencies:
- dependency-name: hashicorp/terraform
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-20 11:39:31 -05:00
dependabot[bot]
3947ead7f2 Bump cljkondo/clj-kondo from 2022.10.05-alpine to 2022.12.10-alpine
Bumps cljkondo/clj-kondo from 2022.10.05-alpine to 2022.12.10-alpine.

---
updated-dependencies:
- dependency-name: cljkondo/clj-kondo
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-20 11:39:22 -05:00
dependabot[bot]
491be07bdb Bump terraform-linters/tflint-bundle from v0.41.0.1 to v0.43.0.3
Bumps terraform-linters/tflint-bundle from v0.41.0.1 to v0.43.0.3.

---
updated-dependencies:
- dependency-name: terraform-linters/tflint-bundle
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-12-20 11:03:00 -05:00