Skip to content

chore(deps): bump actions/checkout from 4 to 6 - #590

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-6
Closed

chore(deps): bump actions/checkout from 4 to 6#590
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 23, 2026

Copy link
Copy Markdown
Contributor

Bumps actions/checkout from 4 to 6.

Release notes

Sourced from actions/checkout's releases.

v6.0.0

What's Changed

Full Changelog: actions/checkout@v5.0.0...v6.0.0

v6-beta

What's Changed

Updated persist-credentials to store the credentials under $RUNNER_TEMP instead of directly in the local git config.

This requires a minimum Actions Runner version of v2.329.0 to access the persisted credentials for Docker container action scenarios.

v5.0.1

What's Changed

Full Changelog: actions/checkout@v5...v5.0.1

v5.0.0

What's Changed

⚠️ Minimum Compatible Runner Version

v2.327.1
Release Notes

Make sure your runner is updated to this version or newer to use this release.

Full Changelog: actions/checkout@v4...v5.0.0

v4.3.1

What's Changed

Full Changelog: actions/checkout@v4...v4.3.1

v4.3.0

What's Changed

... (truncated)

Changelog

Sourced from actions/checkout's changelog.

Changelog

v6.0.2

v6.0.1

v6.0.0

v5.0.1

v5.0.0

v4.3.1

v4.3.0

v4.2.2

v4.2.1

v4.2.0

v4.1.7

v4.1.6

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 6.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@v4...v6)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '6'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added the dependencies Dependency updates label May 23, 2026
@dependabot
dependabot Bot requested a review from HenryLach as a code owner May 23, 2026 14:12
@dependabot @github

dependabot Bot commented on behalf of github May 23, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: chore. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot added the dependencies Dependency updates label May 23, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jun 20, 2026

Copy link
Copy Markdown
Contributor Author

Superseded by #608.

@dependabot dependabot Bot closed this Jun 20, 2026
@dependabot
dependabot Bot deleted the dependabot/github_actions/actions/checkout-6 branch June 20, 2026 14:12
HenryLach added a commit that referenced this pull request Jun 21, 2026
Supersedes four separate Dependabot PRs (#591, #592, #593, #608) that
each touched .github/workflows/pages.yml and would have cascade-
conflicted on sequential merge (configure-pages and upload-pages-artifact
share a diff hunk). Bumping them in one commit avoids 3-4 rounds of
@dependabot rebase and fixes a checkout version skew in the same pass.

Changes:

  pages.yml:
    actions/checkout              v4 -> v7   (#608)
    actions/configure-pages       v5 -> v6   (#592)
    actions/upload-pages-artifact v3 -> v5   (#593)
    actions/deploy-pages          v4 -> v5   (#591)

  ci.yml + release.yml:
    actions/checkout              v6 -> v7

The checkout bump in ci.yml/release.yml closes a version skew: PR #590
(merged earlier) bumped those two workflows v4 -> v6 but left pages.yml
on v4. Rather than land pages.yml on v7 while the others stayed v6,
all three are aligned to v7.

Compatibility note: upload-pages-artifact v3 -> v5 crosses the
artifact-backend change (same generation as actions/upload-artifact v4).
This is compatible only when deploy-pages moves up in lockstep, which is
exactly why the Pages trio is bumped together here rather than piecemeal.
The ci.yml 'ci' check does NOT exercise pages.yml (it only runs on push
to main touching docs/taskplane-overview/**), so this PR's green CI does
not validate the Pages deploy. That is verified separately via
workflow_dispatch after merge.

Dependabot PRs #591, #592, #593, #608 will be closed as superseded.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Dependency updates

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants