Skip to content

Bump dependabot/fetch-metadata from 2.2.0 to 3.0.0#998

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dependabot/fetch-metadata-3.0.0
Open

Bump dependabot/fetch-metadata from 2.2.0 to 3.0.0#998
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dependabot/fetch-metadata-3.0.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Apr 1, 2026

Bumps dependabot/fetch-metadata from 2.2.0 to 3.0.0.

Release notes

Sourced from dependabot/fetch-metadata's releases.

v3.0.0

The breaking change is requiring Node.js version v24 as the Actions runtime.

What's Changed

New Contributors

Full Changelog: dependabot/fetch-metadata@v2...v3.0.0

v2.5.0

What's Changed

... (truncated)

Commits
  • ffa630c v3.0.0 (#686)
  • ec8fff2 Merge pull request #674 from dependabot/dependabot/npm_and_yarn/picomatch-2.3.2
  • caf48bd build(deps-dev): bump picomatch from 2.3.1 to 2.3.2
  • 13d8274 Upgrade @​actions/github to ^9.0.0 and @​octokit/request-error to ^7.1.0 (#678)
  • b603099 Upgrade @​actions/core from ^1.11.1 to ^3.0.0 (#677)
  • c5dc5b1 Enable noImplicitAny in tsconfig.json (#684)
  • a183f3c Add typecheck step to CI (#685)
  • 5e17564 Remove skipLibCheck from tsconfig.json (#683)
  • bb56eeb Switch tsconfig module resolution to bundler (#682)
  • 3632e3d Remove vestigial outDir from tsconfig.json (#681)
  • Additional commits viewable in compare view

@dependabot dependabot bot added dependencies github_actions Pull requests that update GitHub Actions code labels Apr 1, 2026
@dependabot dependabot bot requested a review from cx-anurag-dalke as a code owner April 1, 2026 03:03
@dependabot dependabot bot added dependencies github_actions Pull requests that update GitHub Actions code labels Apr 1, 2026
@cx-ben-alvo
Copy link
Copy Markdown
Collaborator

cx-ben-alvo commented Apr 1, 2026

Logo
Checkmarx One – Scan Summary & Detailsaf998355-4d19-4077-aa0e-ba0c3ef73ec6

Great job! No new security vulnerabilities introduced in this pull request


Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

@dependabot dependabot bot force-pushed the dependabot/github_actions/dependabot/fetch-metadata-3.0.0 branch 2 times, most recently from 826b4ce to 840eee6 Compare April 2, 2026 11:07
Bumps [dependabot/fetch-metadata](https://github.com/dependabot/fetch-metadata) from 2.2.0 to 3.0.0.
- [Release notes](https://github.com/dependabot/fetch-metadata/releases)
- [Commits](dependabot/fetch-metadata@dbb049a...ffa630c)

---
updated-dependencies:
- dependency-name: dependabot/fetch-metadata
  dependency-version: 3.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/github_actions/dependabot/fetch-metadata-3.0.0 branch from 840eee6 to a22bb0b Compare April 2, 2026 11:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant