Skip to content

ci: bump actions/checkout from 7.0.0 to 7.0.1 - #59

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/actions/checkout-7.0.1
Open

ci: bump actions/checkout from 7.0.0 to 7.0.1#59
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/github_actions/actions/checkout-7.0.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 24, 2026

Copy link
Copy Markdown
Contributor

Bumps actions/checkout from 7.0.0 to 7.0.1.

Release notes

Sourced from actions/checkout's releases.

v7.0.1

What's Changed

Full Changelog: actions/checkout@v7...v7.0.1

Changelog

Sourced from actions/checkout's changelog.

Changelog

v7.0.1

v7.0.0

v6.0.3

v6.0.2

v6.0.1

v6.0.0

v5.0.1

v5.0.0

v4.3.1

v4.3.0

v4.2.2

v4.2.1

... (truncated)

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jul 24, 2026
@dependabot
dependabot Bot requested a review from aatuh as a code owner July 24, 2026 09:24
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jul 24, 2026
@aatuh

aatuh commented Aug 15, 2026

Copy link
Copy Markdown
Owner

Dependency maintenance triage — 2026-08-15

  • Owner: @aatuh (dependency maintainer)
  • Scope: ci: bump actions/checkout from 7.0.0 to 7.0.1
  • Disposition: Defer. Do not merge or automerge: rebase or replace the update after the non-successful checks are resolved, then obtain the required independent review.
  • Live CI evidence: Non-successful completed checks: test (1.25.x)=FAILURE, toolchain-local=FAILURE, governance=FAILURE.
  • Release impact: excluded from release-candidate dependency closure until required checks are successful and protected-branch review completes.
  • Next review: 2026-08-22

@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions/checkout-7.0.1 branch 2 times, most recently from 521b307 to d9dff4a Compare August 15, 2026 17:33
@aatuh

aatuh commented Aug 15, 2026

Copy link
Copy Markdown
Owner

SEC-003 triage (2026-08-15): this branch is stale and must not be merged as-is. Deferred to the named compatible dependency/action batch; rebase or regenerate a current candidate, then run the module-appropriate checks and review its footprint/license impact by 2026-08-22. Recorded in docs/dependency-risk.md. No automerge or bypass.

@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions/checkout-7.0.1 branch 7 times, most recently from 07845bc to 65f1779 Compare August 22, 2026 17:08
Bumps [actions/checkout](https://github.com/actions/checkout) from 7.0.0 to 7.0.1.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@9c091bb...3d3c42e)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: 7.0.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/actions/checkout-7.0.1 branch from 65f1779 to 0b74f65 Compare August 22, 2026 17:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant