dependabot[bot]
c51132f824
chore(deps): bump aws-actions/amazon-ecr-login from 2.1.1 to 2.1.2 ( #39042 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-03 09:43:40 +07:00
dependabot[bot]
b4cb815ebf
chore(deps): bump anthropics/claude-code-action from 1.0.83 to 1.0.85 ( #39037 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-03 09:43:05 +07:00
dependabot[bot]
26f4a5acad
chore(deps): bump azure/setup-helm from 4.3.1 to 5.0.0 ( #38815 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Joe Li <joe@preset.io >
2026-04-02 01:28:56 -04:00
dependabot[bot]
1bb41a6e60
chore(deps): bump anthropics/claude-code-action from 1.0.82 to 1.0.83 ( #39001 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-01 10:20:18 -07:00
dependabot[bot]
424f99efdf
chore(deps): bump anthropics/claude-code-action from 1.0.80 to 1.0.82 ( #38946 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-31 21:38:37 -07:00
dependabot[bot]
e6f1209318
chore(deps): bump aws-actions/amazon-ecr-login from 2.0.2 to 2.1.1 ( #38944 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-31 22:34:58 +07:00
Đỗ Trọng Hải
dbc25dc555
fix(ci): resolve failed CodeCov upload for backend tests ( #38885 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-27 18:33:02 -04:00
dependabot[bot]
7f3351011d
chore(deps): bump anthropics/claude-code-action from 1.0.78 to 1.0.80 ( #38901 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-27 14:52:31 +07:00
dependabot[bot]
20d0cfd156
chore(deps): bump codecov/codecov-action from 5.5.3 to 6.0.0 ( #38903 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-27 14:44:26 +07:00
dagecko
8700ec4e6d
fix: pin 2 unpinned action(s),extract 21 unsafe expression(s) to env vars ( #38893 )
2026-03-27 14:38:20 +07:00
dependabot[bot]
43816d7528
chore(deps): bump aws-actions/amazon-ecs-deploy-task-definition from 2.6.0 to 2.6.1 ( #38874 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-26 21:59:45 +07:00
Đỗ Trọng Hải
3506773f51
fix(ci): install missing msgcat used for Babel translation update ( #38830 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-25 23:40:40 +07:00
dependabot[bot]
d32e975eb9
chore(deps): bump anthropics/claude-code-action from 1.0.76 to 1.0.78 ( #38842 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-25 23:38:08 +07:00
dependabot[bot]
618113079f
chore(deps): bump anthropics/claude-code-action from 0.0.63 to 1.0.76 ( #38797 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-23 21:48:46 +07:00
Đỗ Trọng Hải
83823911b5
feat(sec): harden GHA ref by using its SHA ID to prevent accidental usage of compromised actions ( #38782 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-21 21:27:30 +07:00
Đỗ Trọng Hải
7004369c68
fix(sec): remove compromised Trivy actions ( #38780 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-21 12:24:24 +07:00
Shaitan
d4646d43a7
docs(security): update vulnerability reporting policy and admin trust boundary ( #38653 )
...
Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com >
2026-03-19 10:57:57 -07:00
Đỗ Trọng Hải
d6bfc98a61
feat(ci): use zstd for faster saving and loading superset-node-ci image ( #38645 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-19 22:43:16 +07:00
dependabot[bot]
5457c2da67
chore(deps): bump dawidd6/action-download-artifact from 17 to 19 ( #38735 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-19 22:42:39 +07:00
Đỗ Trọng Hải
ca403dc45d
fix(ci): allow docs testing to run despite absence of db diagnostics data ( #38655 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-17 08:01:43 +07:00
dependabot[bot]
39cd1cdd43
chore(deps): bump dawidd6/action-download-artifact from 16 to 17 ( #38620 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-14 12:40:25 +07:00
Đỗ Trọng Hải
9ecca47e69
feat(ci): only run precommit on changed files ( #38155 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-03-10 08:49:38 +07:00
dependabot[bot]
6c1df93215
chore(deps): bump aquasecurity/trivy-action from 0.34.2 to 0.35.0 ( #38502 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Evan Rusackas <evan@preset.io >
2026-03-10 08:46:19 +07:00
dependabot[bot]
1bfd41df0c
chore(deps): bump aquasecurity/trivy-action from 0.34.1 to 0.34.2 ( #38352 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-04 11:30:15 -08:00
dependabot[bot]
1f41777800
chore(deps): bump actions/download-artifact from 7 to 8 ( #38289 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-27 15:37:21 -08:00
dependabot[bot]
848cce7b2e
chore(deps): bump actions/upload-artifact from 6 to 7 ( #38290 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-27 15:37:08 -08:00
dependabot[bot]
ca48663c59
chore(deps): bump dawidd6/action-download-artifact from 15 to 16 ( #38261 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-26 22:17:19 +07:00
dependabot[bot]
8c58b998b1
chore(deps): pin currencyformatter.js to v1 in /superset-frontend ( #38242 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: hainenber <dotronghai96@gmail.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: hainenber <dotronghai96@gmail.com >
2026-02-26 21:38:42 +07:00
Đỗ Trọng Hải
2b6c745444
fix(ci): use OIDC auth token for successful Codecov upload ( #38218 )
2026-02-26 10:34:24 +07:00
Đỗ Trọng Hải
76a2559b2b
fix(ci): revert "chore(deps): bump JustinBeckwith/linkinator-action from 2.3 to 2.4" ( #38164 )
2026-02-24 13:22:29 -08:00
Đỗ Trọng Hải
0d66accc37
chore(build): prevent opening Dependabot PRs for @rjsf/* deps due to React 18 constraint ( #37976 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-02-24 10:28:05 -08:00
Rohan Santhosh
a87a006aae
ci: declare explicit permissions in maintenance workflows ( #38159 )
...
Co-authored-by: rohan436 <rohan.santhoshkumar@googlemail.com >
2026-02-22 12:05:58 +07:00
dependabot[bot]
5bee32ea93
chore(deps): bump aquasecurity/trivy-action from 0.34.0 to 0.34.1 ( #38138 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-21 11:45:40 +07:00
dependabot[bot]
5e6524954c
chore(deps): pin react-icons to 5.4.0 in /superset-frontend ( #38144 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: hainenber <dotronghai96@gmail.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: hainenber <dotronghai96@gmail.com >
2026-02-21 11:44:46 +07:00
Đỗ Trọng Hải
3d6644864d
build(deps): migrate to lighter and modern react-icons ( #38125 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-02-20 16:19:01 -08:00
RealGreenDragon
de079a7b19
feat(deps)!: bump postgresql from 16 to 17 ( #37782 )
2026-02-18 17:12:48 -08:00
dependabot[bot]
f54bbdc06b
chore(deps): bump dawidd6/action-download-artifact from 14 to 15 ( #38060 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-18 17:11:41 -08:00
dependabot[bot]
0d2c8fd373
chore(deps): bump @storybook/core from 8.6.15 to 8.6.16 in /docs ( #38046 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: hainenber <dotronghai96@gmail.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: hainenber <dotronghai96@gmail.com >
2026-02-18 20:22:21 +07:00
dependabot[bot]
75d6a95ac3
chore(deps): bump aquasecurity/trivy-action from 0.33.1 to 0.34.0 ( #37958 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-13 23:39:30 +07:00
Evan Rusackas
981b370fe9
chore(storybook): consolidate storybook and enhance plugin stories ( #37771 )
...
Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-11 16:06:23 -08:00
Evan Rusackas
d640fe42c9
chore: remove Applitools visual testing integration ( #37873 )
...
Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-11 08:07:19 -08:00
Đỗ Trọng Hải
76aa91f5ea
fix(deps): pin react-error-boundary to 6.0.0 for React 17 peer dep constraint ( #37706 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-02-10 23:22:14 +07:00
Đỗ Trọng Hải
9086ae8e6c
feat(ci): only bump patch version for Storybook-related deps until React 18 ( #37749 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-02-06 13:29:32 -08:00
Evan Rusackas
fc5506e466
chore(frontend): comprehensive TypeScript quality improvements ( #37625 )
...
Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com >
2026-02-06 13:16:57 -08:00
dependabot[bot]
97e5f0631d
chore(deps): bump aws-actions/configure-aws-credentials from 5 to 6 ( #37685 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-05 19:48:51 -08:00
Đỗ Trọng Hải
361fe6fe89
chore(build): add @hainenber as codeowner for GHA workflow changes ( #37703 )
...
Signed-off-by: hainenber <dotronghai96@gmail.com >
2026-02-06 09:54:21 +07:00
dependabot[bot]
b968d1095c
chore(deps): bump dawidd6/action-download-artifact from 12 to 14 ( #37602 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-04 21:25:52 -08:00
dependabot[bot]
901dca58f7
chore(deps): bump JustinBeckwith/linkinator-action from 2.3 to 2.4 ( #37562 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-01-31 03:06:30 -08:00
dependabot[bot]
2f81720603
chore(deps-dev): bump @swc/plugin-transform-imports from 10.0.0 to 12.4.0 in /superset-frontend ( #37384 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: hainenber <dotronghai96@gmail.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: hainenber <dotronghai96@gmail.com >
2026-01-24 11:18:10 -08:00
Pádraic Slattery
429d9b27f6
chore: Update outdated GitHub Actions version ( #37305 )
2026-01-23 11:07:42 -08:00