Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Aug 12, 2025

Bumps the github-actions group with 2 updates in the / directory: pozil/auto-assign-issue and actions/checkout.

Updates pozil/auto-assign-issue from 1 to 2

Release notes

Sourced from pozil/auto-assign-issue's releases.

v2.0.0 - Node 20 support

  • feat: switch to node@20

v1.14.0 - Random assignments with weights

  • feat: support for weights in random assignments (addresses #120)
  • build: bumped dependencies

v1.13.0 - Add team as PR reviewer

  • feat: new parameter to add a team as PR reviewer. Thanks to @​johmara
  • build: bumped dependencies (requires node 18+)

v1.12.0 - Manual issue number override

  • feat: new parameter to manually override issue number. Thanks to @​bwplotka
  • build: bumped dependencies

v1.11.0 - abortIfPreviousAssignees flag

  • feat: added an abortIfPreviousAssignees flag that aborts the action if there were assignees previously. False by default.

v1.10.1 - Bumped dependencies

No release notes provided.

v1.10.0 - Manual workflow run & build updates

  • feat: support for manual workflow_run trigger. Thanks to @​CalumY.
  • fix: allow authors to be assigned to PRs that they have created but prevent them from being assigned as a reviewer. Thanks to @​CalumY.
  • build: switched to lockfile v2
  • build: used Volta to pin versions to align with GitHub Actions environment
  • build: bumped dependencies

v1.9.0 - Remove PR reviewers

feat: action will now remove both PR assignees and reviewers. Thanks to @​agomezmoron

v1.8.0 - Allow no assignees

feat: added an allowNoAssignees flag that prevents the action from failing when there are no assignees as suggested in pozil/auto-assign-issue#58.

v1.7.3 - Fix for PRs to private repos

v1.7.2 - Prevent PR self assignment

fix: prevent PR self assignment even if options allow it (self assigning a PR for review is forbidden by GitHub). Thanks to @​agomezmoron.

v1.7.1 - Fixed PR assign/deassign

  • Fixed the assignation and de-assignation of reviewers of a PR. Thanks to @​agomezmoron for the contrib
  • Bumped dependencies

v1.7.0 - Prevents issue self-assignment

  • Added a new flag that prevents issue self-assignment
  • Significant code refactoring
  • Improved doc examples

... (truncated)

Commits
  • 39c0639 build: release v2.2.0
  • 5d45058 Add support for pull_request_target (#152)
  • b5a2962 build(deps): bump undici from 5.28.4 to 5.28.5 (#151)
  • c015a6a fix: parallel check requests and error handling (#150)
  • f09bc3b build: allow precommit hook to run without tests
  • 9489ded fix: missing failsIfUsersCannotBeAssigned flag
  • d4b175c fix: failsIfUsersCannotBeAssigned flag
  • 719783d build: update precommit script
  • a739fb4 feat: user assignement check
  • 1dc8e16 build(deps-dev): bump lint-staged from 15.2.11 to 15.3.0 (#149)
  • Additional commits viewable in compare view

Updates actions/checkout from 4.2.2 to 5.0.0

Release notes

Sourced from actions/checkout's releases.

v5.0.0

What's Changed

⚠️ Minimum Compatible Runner Version

v2.327.1
Release Notes

Make sure your runner is updated to this version or newer to use this release.

Full Changelog: actions/checkout@v4...v5.0.0

v4.3.0

What's Changed

New Contributors

Full Changelog: actions/checkout@v4...v4.3.0

Changelog

Sourced from actions/checkout's changelog.

V5.0.0

V4.3.0

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…dates

Bumps the github-actions group with 2 updates in the / directory: [pozil/auto-assign-issue](https://github.com/pozil/auto-assign-issue) and [actions/checkout](https://github.com/actions/checkout).


Updates `pozil/auto-assign-issue` from 1 to 2
- [Release notes](https://github.com/pozil/auto-assign-issue/releases)
- [Commits](pozil/auto-assign-issue@v1...v2)

Updates `actions/checkout` from 4.2.2 to 5.0.0
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@v4.2.2...v5.0.0)

---
updated-dependencies:
- dependency-name: pozil/auto-assign-issue
  dependency-version: '2'
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: github-actions
- dependency-name: actions/checkout
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: github-actions
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 12, 2025
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Sep 16, 2025

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants