Skip to content

chore(deps): Bump ossf/scorecard-action from 2.1.2 to 2.3.1 #4769

chore(deps): Bump ossf/scorecard-action from 2.1.2 to 2.3.1

chore(deps): Bump ossf/scorecard-action from 2.1.2 to 2.3.1 #4769

name: Dependency spec updates
on: pull_request
jobs:
package-specs:
runs-on: ubuntu-latest
container:
image: ghcr.io/cloudfoundry/app-autoscaler-release-tools:main
if: contains(fromJson('["dependabot[bot]", "renovate[bot]"]'), github.event.pull_request.user.login) && contains(github.event.pull_request.labels.*.name, 'dependencies')
steps:
- uses: actions/checkout@v4
- name: package-specs
shell: bash
run: |
#! /usr/bin/env bash
set -eu -o pipefail
make generate-fakes
make generate-openapi-generated-clients-and-servers
make package-specs
- name: Check if there are changes
id: changes
run: echo "changed=$(git status --porcelain | wc -l)" >> $GITHUB_ENV
- name: Process changes
if: steps.changes.outputs.changed != 0
uses: EndBug/add-and-commit@v9 # You can change this to use a specific version.
with:
add: './packages/**/spec'
message: 'Updating spec files from `dependabot[bot]` changes'
push: true