Skip to content

ci(deps): allow restyled-io sub-actions in dependency review#452

Merged
nullvariant merged 1 commit into
mainfrom
ci/allow-restyled-subactions
Apr 8, 2026
Merged

ci(deps): allow restyled-io sub-actions in dependency review#452
nullvariant merged 1 commit into
mainfrom
ci/allow-restyled-subactions

Conversation

@nullvariant
Copy link
Copy Markdown
Owner

Summary

  • dependency-review-action reports `restyled-io/actions/run` and `restyled-io/actions/setup` as separate purls; the parent `pkg:githubactions/restyled-io/actions` does not cover them.
  • This blocks every Renovate PR bumping restyled-io/actions (currently PR chore(deps): update restyled-io/actions action to v4.4.20 #449).
  • Landed on main directly so the fix survives Renovate rebases.

Test plan

dependency-review-action reports composite sub-actions as separate
purls (restyled-io/actions/run, restyled-io/actions/setup), so the
existing parent allowance for pkg:githubactions/restyled-io/actions
does not cover them and PRs bumping restyled-io/actions fail with
AGPL-3.0 license errors (e.g. PR #449). Add explicit entries for
both sub-actions. This is CI-only tooling not bundled in the VSIX,
so license compatibility with the extension's MIT license is not a
concern (per existing comment in the file).
Signed-off-by: Null;Variant <null@nullvariant.com>

🖥️ IDE: [VS Code](https://code.visualstudio.com/)
🔌 Extension: [Claude Code](https://claude.ai/download)

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
Model-Raw: claude-opus-4-6
@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented Apr 8, 2026

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

Snapshot Warnings

⚠️: No snapshots were found for the head SHA 675c1d3.
Ensure that dependencies are being submitted on PR branches and consider enabling retry-on-snapshot-warnings. See the documentation for more information and troubleshooting advice.

Scanned Files

None

@nullvariant-mimi
Copy link
Copy Markdown
Contributor

🐰 Mimi's Validation Report ✅

All checks are looking good! Great job! 🎉

⏳ Some checks are still running. I will keep watching!


バリデーターを通してくださいね

This report was carefully prepared by nullvariant-mimi[bot]

@nullvariant-ciel
Copy link
Copy Markdown
Contributor

🕊️ Ciel's Mediation 💤

*~~ drifting lazily through still air ~~ The zoo is napping today...*

1 zoo member has reviewed this PR.

Zoo Member Status
🐰 Mimi Commented

😴 A quiet day at the zoo. Only one member peeked at this PR.


まあまあ、ほどほどに。

This mediation was peacefully delivered by nullvariant-ciel[bot]

@codecov
Copy link
Copy Markdown

codecov Bot commented Apr 8, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.

📢 Thoughts on this report? Let us know!

@sonarqubecloud
Copy link
Copy Markdown

sonarqubecloud Bot commented Apr 8, 2026

Copy link
Copy Markdown
Contributor

@nullvariant-justice nullvariant-justice Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚖️ Justice grants passage. CI checks passed — this code meets the garden's standards.

@nullvariant nullvariant merged commit 1f2013e into main Apr 8, 2026
32 of 33 checks passed
@nullvariant nullvariant deleted the ci/allow-restyled-subactions branch April 8, 2026 06:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant