Skip to content

chore(deps): bump AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml from 1.2.0 to 1.3.0 in the github-actions group - #206

Merged
github-actions[bot] merged 1 commit into
masterfrom
dependabot/github_actions/master/github-actions-9f0b9f300e
Aug 10, 2026
Merged

chore(deps): bump AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml from 1.2.0 to 1.3.0 in the github-actions group#206
github-actions[bot] merged 1 commit into
masterfrom
dependabot/github_actions/master/github-actions-9f0b9f300e

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 9, 2026

Copy link
Copy Markdown
Contributor

Bumps the github-actions group with 1 update: AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml.

Updates AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml from 1.2.0 to 1.3.0

Release notes

Sourced from AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml's releases.

v1.3.0

New Features 🎉

  • Feature: #82 Update aquasec workflow behavior - remove sec:adept-to-close label by @​HuvarVer, @​tmikula-dev in #84
    • GitHub issues now close automatically, after they disappear from AquaSec platform.
    • New standard labels recommended sec:suppression and sec:false-positive for full security ticket lifecycle.
  • Feature: #88 Add fetched AquaSec JSON as an workflow artefact by @​tmikula-dev in #89
    • Scan run now uploads the fetched AquaSec findings as a workflow artifact named aquasec-night-scan, containing a single aquasec_scan.json file with all findings across every severity.
  • Feature: #92 Add packed documentation and ingest into knowledge base by @​oto-macenauer-absa in #93
    • Added a Publish Docs workflow that publishes the Security Automation documentation to the AbsaOSS knowledge base on every published release, and on manual dispatch.
    • Fixed links in the Security Automation documentation that broke when the page is served outside the repository.

Infrastructure ⚙️

  • PR: #86, #90 chore(deps): bump the github-actions group with several updates by @​dependabot[bot]
  • PR: #87 chore(deps): update mypy requirement from >=2.2.0 to >=2.3.0 in the python-dependencies group by @​dependabot[bot]

Full Changelog

AbsaOSS/organizational-workflows@v1.2.0...v1.3.0

Commits
  • ab0b537 fix(ci): re-pin publish-single-page-docs to a working upstream SHA (#95)
  • 9fce6fd Feat: Adding fetched AquaSec JSON as workflow artifact. (#89)
  • dd0c321 feat(docs): publish documentation to the AbsaOSS knowledge base (#93)
  • abae613 chore(deps): bump the github-actions group across 1 directory with 4 updates ...
  • d009d7b chore(deps): update mypy requirement in the python-dependencies group (#87)
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…aquasec-scan.yml

Bumps the github-actions group with 1 update: [AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml](https://github.com/absaoss/organizational-workflows).


Updates `AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml` from 1.2.0 to 1.3.0
- [Release notes](https://github.com/absaoss/organizational-workflows/releases)
- [Commits](AbsaOSS/organizational-workflows@3b6a6b0...ab0b537)

---
updated-dependencies:
- dependency-name: AbsaOSS/organizational-workflows/.github/workflows/aquasec-scan.yml
  dependency-version: 1.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added auto update Changes by automated library update tool infrastructure Project setup and deployment no RN No release notes required labels Aug 9, 2026
@dependabot dependabot Bot added infrastructure Project setup and deployment auto update Changes by automated library update tool no RN No release notes required labels Aug 9, 2026
@github-actions
github-actions Bot enabled auto-merge (squash) August 9, 2026 23:52
@github-actions
github-actions Bot merged commit 7504e19 into master Aug 10, 2026
9 of 10 checks passed
@github-actions
github-actions Bot deleted the dependabot/github_actions/master/github-actions-9f0b9f300e branch August 10, 2026 08:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

auto update Changes by automated library update tool infrastructure Project setup and deployment no RN No release notes required

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant