Files
conventional-semantic-git-t…/.gitea/workflows/run-tas.yaml
Renovate Bot 8d27605e8e
All checks were successful
CD / Release (push) Successful in 13s
chore(deps): update dependencies (non-major) (#56)
This PR contains the following updates:

| Package | Change | [Age](https://docs.renovatebot.com/merge-confidence/) | [Confidence](https://docs.renovatebot.com/merge-confidence/) | Type | Update | Pending |
|---|---|---|---|---|---|---|
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/master/types/node) ([source](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node)) | [`24.10.10` → `24.10.12`](https://renovatebot.com/diffs/npm/@types%2fnode/24.10.10/24.10.12) | ![age](https://developer.mend.io/api/mc/badges/age/npm/@types%2fnode/24.10.12?slim=true) | ![confidence](https://developer.mend.io/api/mc/badges/confidence/npm/@types%2fnode/24.10.10/24.10.12?slim=true) | devDependencies | patch | `24.10.13` |
| [esbuild](https://github.com/evanw/esbuild) | [`0.27.2` → `0.27.3`](https://renovatebot.com/diffs/npm/esbuild/0.27.2/0.27.3) | ![age](https://developer.mend.io/api/mc/badges/age/npm/esbuild/0.27.3?slim=true) | ![confidence](https://developer.mend.io/api/mc/badges/confidence/npm/esbuild/0.27.2/0.27.3?slim=true) | devDependencies | patch |  |
| [https://gitea.t000-n.de/t.behrendt/trivy-actions](https://gitea.t000-n.de/t.behrendt/trivy-actions) | `1.3.1` → `1.3.2` | ![age](https://developer.mend.io/api/mc/badges/age/gitea-tags/t.behrendt%2ftrivy-actions/1.3.2?slim=true) | ![confidence](https://developer.mend.io/api/mc/badges/confidence/gitea-tags/t.behrendt%2ftrivy-actions/1.3.1/1.3.2?slim=true) | action | patch | `1.4.1` (+6) |

---

### Release Notes

<details>
<summary>evanw/esbuild (esbuild)</summary>

### [`v0.27.3`](https://github.com/evanw/esbuild/blob/HEAD/CHANGELOG.md#0273)

[Compare Source](https://github.com/evanw/esbuild/compare/v0.27.2...v0.27.3)

- Preserve URL fragments in data URLs ([#&#8203;4370](https://github.com/evanw/esbuild/issues/4370))

  Consider the following HTML, CSS, and SVG:

  - `index.html`:

    ```html
    <!DOCTYPE html>
    <html>
      <head><link rel="stylesheet" href="icons.css"></head>
      <body><div class="triangle"></div></body>
    </html>
    ```

  - `icons.css`:

    ```css
    .triangle {
      width: 10px;
      height: 10px;
      background: currentColor;
      clip-path: url(./triangle.svg#x);
    }
    ```

  - `triangle.svg`:

    ```xml
    <svg xmlns="http://www.w3.org/2000/svg">
      <defs>
        <clipPath id="x">
          <path d="M0 0H10V10Z"/>
        </clipPath>
      </defs>
    </svg>
    ```

  The CSS uses a URL fragment (the `#x`) to reference the `clipPath` element in the SVG file. Previously esbuild's CSS bundler didn't preserve the URL fragment when bundling the SVG using the `dataurl` loader, which broke the bundled CSS. With this release, esbuild will now preserve the URL fragment in the bundled CSS:

  ```css
  /* icons.css */
  .triangle {
    width: 10px;
    height: 10px;
    background: currentColor;
    clip-path: url('data:image/svg+xml,<svg xmlns="http://www.w3.org/2000/svg"><defs><clipPath id="x"><path d="M0 0H10V10Z"/></clipPath></defs></svg>#x');
  }
  ```

- Parse and print CSS `@scope` rules ([#&#8203;4322](https://github.com/evanw/esbuild/issues/4322))

  This release includes dedicated support for parsing `@scope` rules in CSS. These rules include optional "start" and "end" selector lists. One important consequence of this is that the local/global status of names in selector lists is now respected, which improves the correctness of esbuild's support for [CSS modules](https://esbuild.github.io/content-types/#local-css). Minification of selectors inside `@scope` rules has also improved slightly.

  Here's an example:

  ```css
  /* Original code */
  @&#8203;scope (:global(.foo)) to (:local(.bar)) {
    .bar {
      color: red;
    }
  }

  /* Old output (with --loader=local-css --minify) */
  @&#8203;scope (:global(.foo)) to (:local(.bar)){.o{color:red}}

  /* New output (with --loader=local-css --minify) */
  @&#8203;scope(.foo)to (.o){.o{color:red}}
  ```

- Fix a minification bug with lowering of `for await` ([#&#8203;4378](https://github.com/evanw/esbuild/pull/4378), [#&#8203;4385](https://github.com/evanw/esbuild/pull/4385))

  This release fixes a bug where the minifier would incorrectly strip the variable in the automatically-generated `catch` clause of lowered `for await` loops. The code that generated the loop previously failed to mark the internal variable references as used.

- Update the Go compiler from v1.25.5 to v1.25.7 ([#&#8203;4383](https://github.com/evanw/esbuild/issues/4383), [#&#8203;4388](https://github.com/evanw/esbuild/pull/4388))

  This PR was contributed by [@&#8203;MikeWillCook](https://github.com/MikeWillCook).

</details>

<details>
<summary>t.behrendt/trivy-actions (https://gitea.t000-n.de/t.behrendt/trivy-actions)</summary>

### [`v1.3.2`](https://gitea.t000-n.de/t.behrendt/trivy-actions/compare/1.3.1...1.3.2)

[Compare Source](https://gitea.t000-n.de/t.behrendt/trivy-actions/compare/1.3.1...1.3.2)

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://github.com/renovatebot/renovate/discussions) if that's undesired.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box

---

This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0Mi45NS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNS40IiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJhY3Rpb24iLCJkZXBzIl19-->

Reviewed-on: https://gitea.t000-n.de/t.behrendt/conventional-semantic-git-tag-increment/pulls/56
Reviewed-by: t.behrendt <t.behrendt@noreply.localhost>
Co-authored-by: Renovate Bot <renovate@t00n.de>
Co-committed-by: Renovate Bot <renovate@t00n.de>
2026-02-16 13:49:12 +01:00

32 lines
1.1 KiB
YAML

name: Run TAS
on:
pull_request:
workflow_dispatch:
inputs:
branch:
description: "The branch to run TAS on"
required: true
default: "main"
schedule:
- cron: "0 6 * * 5"
jobs:
run-tas:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/setup-trivy@a55babe9a1d6d0dc92c221ae75a526f73c7928bd # 1.3.2
- uses: https://gitea.t000-n.de/t.behrendt/trivy-actions/setup-db@a55babe9a1d6d0dc92c221ae75a526f73c7928bd # 1.3.2
- env:
TRIVY_CACHE_DIR: ${{ runner.temp }}/trivy
run: |
trivy fs --cache-dir "$TRIVY_CACHE_DIR" --exit-code 0 --format sarif --output sarif.json .
- uses: https://gitea.t000-n.de/t.behrendt/tas-actions/tas-upload-sarif@0.0.3
with:
tas-base-url: ${{ vars.TAS_BASE_URL }}
sarif-file: sarif.json
owner: t.behrendt
repo: conventional-semantic-git-tag-increment
branch: ${{ inputs.branch || github.head_ref || 'main' }}