Skip to content

Pin dependencies - #239

Merged
renovate[bot] merged 1 commit into
masterfrom
renovate/pin-dependencies
Aug 6, 2026
Merged

Pin dependencies#239
renovate[bot] merged 1 commit into
masterfrom
renovate/pin-dependencies

Conversation

@renovate

@renovate renovate Bot commented Jun 2, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
actions/cache action pin v5v5.1.0
actions/checkout action pin v5v5.1.0
actions/setup-java action pin v5v5.7.0
actions/upload-artifact action pin v5v5.0.0
entur/gha-docker action pin v1v1.11.0
entur/gha-helm action pin v1v1.6.1
entur/gha-security action pin v2v2.15.1
entur/gha-terraform action pin v2v2.3.1

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.

Add the preset :preserveSemverRanges to your config if you don't want to pin your dependencies.


Configuration

📅 Schedule: (in timezone Europe/Oslo)

  • Branch creation
    • Between 12:00 AM and 03:59 AM, only on Monday (* 0-3 * * 1)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@github-actions

github-actions Bot commented Jun 2, 2026

Copy link
Copy Markdown

Docker Scan - Alert(s) found with threshold matching severity high

Results

  • critical: 0
  • high: 4
  • medium: 9
  • low: 3

Docker Scan Report can be found here

Allowlist

Use the allowlist if you want to ignore vulnerabilities that do not affect the repository.
See the Docker Scan documentation on how to use allowlist.

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from 675dcb8 to dc5f2aa Compare June 10, 2026 12:39
@github-actions

Copy link
Copy Markdown

Docker Scan - Alert(s) found with threshold matching severity high

Results

  • critical: 0
  • high: 4
  • medium: 9
  • low: 3

Docker Scan Report can be found here

Allowlist

Use the allowlist if you want to ignore vulnerabilities that do not affect the repository.
See the Docker Scan documentation on how to use allowlist.

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from dc5f2aa to e27953a Compare June 15, 2026 13:46
@github-actions

Copy link
Copy Markdown

Docker Scan - Alert(s) found with threshold matching severity high

Results

  • critical: 0
  • high: 4
  • medium: 9
  • low: 3

Docker Scan Report can be found here

Allowlist

Use the allowlist if you want to ignore vulnerabilities that do not affect the repository.
See the Docker Scan documentation on how to use allowlist.

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from e27953a to 2789ca1 Compare June 15, 2026 14:07
@github-actions

Copy link
Copy Markdown

Docker Scan - Alert(s) found with threshold matching severity high

Results

  • critical: 0
  • high: 4
  • medium: 9
  • low: 3

Docker Scan Report can be found here

Allowlist

Use the allowlist if you want to ignore vulnerabilities that do not affect the repository.
See the Docker Scan documentation on how to use allowlist.

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from 2789ca1 to 29e8724 Compare June 16, 2026 03:32
@github-actions

Copy link
Copy Markdown

Docker Scan - Alert(s) found with threshold matching severity high

Results

  • critical: 0
  • high: 4
  • medium: 9
  • low: 3

Docker Scan Report can be found here

Allowlist

Use the allowlist if you want to ignore vulnerabilities that do not affect the repository.
See the Docker Scan documentation on how to use allowlist.

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch 2 times, most recently from 9409287 to 3b46d64 Compare June 22, 2026 09:45
@github-actions

Copy link
Copy Markdown

❌ Terraform Plan DEV

Terraform plan failed.

Error: Error when reading or editing Resource "pubsub topic "projects/ent-nabu-dev/topics/JobEventQueue"" with IAM Member: Role "roles/pubsub.publisher" Member "serviceAccount:application@ent-kakka-dev.iam.gserviceaccount.com": Error retrieving IAM policy for pubsub topic "projects/ent-nabu-dev/topics/JobEventQueue": googleapi: Error 403: User not authorized to perform this action.
Details:
[
{
"@type": "type.googleapis.com/google.rpc.ErrorInfo",
"domain": "iam.googleapis.com",
"metadata": {
"error_info_id": "CiQwMTllZWViYy1kYTNhLTdjMzAtOThiZC04YzQ1ZTI4NjAyYjISKnByb2plY3RzL2VudC1uYWJ1LWRldi90b3BpY3MvSm9iRXZlbnRRdWV1ZQ==",
"permission": "pubsub.topics.getIamPolicy",
"resource": "projects/ent-nabu-dev/topics/JobEventQueue",
"troubleshooter_url": "https://console.cloud.google.com/iam-admin/troubleshooter/summary;errorId=CiQwMTllZWViYy1kYTNhLTdjMzAtOThiZC04YzQ1ZTI4NjAyYjISKnByb2plY3RzL2VudC1uYWJ1LWRldi90b3BpY3MvSm9iRXZlbnRRdWV1ZQ%3D%3D"
},
"reason": "IAM_PERMISSION_DENIED"
}
]

with google_pubsub_topic_iam_member.nabu_job_event_topic_iam_member,
on pub_sub.tf line 5, in resource "google_pubsub_topic_iam_member" "nabu_job_event_topic_iam_member":
5: resource "google_pubsub_topic_iam_member" "nabu_job_event_topic_iam_member" {

Error: Error when reading or editing Resource "pubsub topic "projects/ent-kingu-dev/topics/ror.kingu.outbound.topic.netex.export"" with IAM Member: Role "roles/pubsub.publisher" Member "serviceAccount:application@ent-kakka-dev.iam.gserviceaccount.com": Error retrieving IAM policy for pubsub topic "projects/ent-kingu-dev/topics/ror.kingu.outbound.topic.netex.export": googleapi: Error 403: User not authorized to perform this action.
Details:
[
{
"@type": "type.googleapis.com/google.rpc.ErrorInfo",
"domain": "iam.googleapis.com",
"metadata": {
"error_info_id": "CiQwMTllZWViYy1kYTNjLTczOWUtYWYyMi0xOGM5ZjZkYzE5YjMSQ3Byb2plY3RzL2VudC1raW5ndS1kZXYvdG9waWNzL3Jvci5raW5ndS5vdXRib3VuZC50b3BpYy5uZXRleC5leHBvcnQ=",
"permission": "pubsub.topics.getIamPolicy",
"resource": "projects/ent-kingu-dev/topics/ror.kingu.outbound.topic.netex.export",
"troubleshooter_url": "https://console.cloud.google.com/iam-admin/troubleshooter/summary;errorId=CiQwMTllZWViYy1kYTNjLTczOWUtYWYyMi0xOGM5ZjZkYzE5YjMSQ3Byb2plY3RzL2VudC1raW5ndS1kZXYvdG9waWNzL3Jvci5raW5ndS5vdXRib3VuZC50b3BpYy5uZXRleC5leHBvcnQ%3D"
},
"reason": "IAM_PERMISSION_DENIED"
}
]

with google_pubsub_topic_iam_member.kingu_netex_export_topic_iam_member,
on pub_sub.tf line 13, in resource "google_pubsub_topic_iam_member" "kingu_netex_export_topic_iam_member":
13: resource "google_pubsub_topic_iam_member" "kingu_netex_export_topic_iam_member" {

Error: Error when reading or editing Resource "storage bucket "b/ror-kingu-dev"" with IAM Member: Role "roles/storage.objectViewer" Member "serviceAccount:application@ent-kakka-dev.iam.gserviceaccount.com": Error retrieving IAM policy for storage bucket "b/ror-kingu-dev": googleapi: Error 403: gh-kakka-619b-ci@ent-github-shr.iam.gserviceaccount.com does not have storage.buckets.getIamPolicy access to the Google Cloud Storage bucket. Permission 'storage.buckets.getIamPolicy' denied on resource '//storage.googleapis.com/projects/_/buckets/ror-kingu-dev' (or it may not exist). Remediate access with this Troubleshooter URL or share it with your administrator - https://console.cloud.google.com/iam-admin/troubleshooter/summary;errorId=CiQwMTllZWViYy1kYWU1LTc3MjEtOGIzNy04NTkyOWU2Mjc2NDASIHByb2plY3RzL18vYnVja2V0cy9yb3Ita2luZ3UtZGV2 ., forbidden

with google_storage_bucket_iam_member.kingu_storage_iam_member,
on storage.tf line 1, in resource "google_storage_bucket_iam_member" "kingu_storage_iam_member":
1: resource "google_storage_bucket_iam_member" "kingu_storage_iam_member" {

@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch 4 times, most recently from 7e277c8 to ca580b4 Compare June 27, 2026 00:29
@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from ca580b4 to bb975cf Compare July 4, 2026 03:09
@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch 2 times, most recently from 94d5c03 to fdb2c41 Compare July 25, 2026 19:00
@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from fdb2c41 to a149f8f Compare July 27, 2026 03:10
@renovate
renovate Bot force-pushed the renovate/pin-dependencies branch from a149f8f to 4a4fc03 Compare August 1, 2026 05:56
@sonarqubecloud

sonarqubecloud Bot commented Aug 1, 2026

Copy link
Copy Markdown

@renovate
renovate Bot merged commit faa2b78 into master Aug 6, 2026
16 checks passed
@renovate
renovate Bot deleted the renovate/pin-dependencies branch August 6, 2026 03:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants