Skip to content

chore(github-deps): bump sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0#5353

Merged
leseb merged 1 commit into
mainfrom
dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0
Mar 30, 2026
Merged

chore(github-deps): bump sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0#5353
leseb merged 1 commit into
mainfrom
dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Mar 28, 2026

Copy link
Copy Markdown
Contributor

Bumps sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0.

Release notes

Sourced from sigstore/gh-action-sigstore-python's releases.

v3.3.0

What's Changed

  • Dependency updates. Most importantly used sigstore-python is now version 4.2.0

Full Changelog: sigstore/gh-action-sigstore-python@v3.2.0...v3.3.0

Commits
  • 04cffa1 build(deps): bump requests from 2.32.5 to 2.33.0 in /requirements (#342)
  • 69171e8 build(deps): bump charset-normalizer in the python-dependencies group (#340)
  • 40198d7 build(deps): bump github/codeql-action in the actions group (#338)
  • ca55bb0 build(deps): bump the python-dependencies group with 2 updates (#339)
  • 2736143 build(deps): bump the actions group with 3 updates (#335)
  • 9afbb88 build(deps): bump pyasn1 from 0.6.2 to 0.6.3 in /requirements (#337)
  • eb907b0 build(deps): bump pyopenssl from 25.3.0 to 26.0.0 in /requirements (#334)
  • 84eaebf build(deps): bump astral-sh/setup-uv in the actions group (#331)
  • 57c12be build(deps): bump charset-normalizer in the python-dependencies group (#332)
  • 57918d7 build(deps): bump pyjwt from 2.11.0 to 2.12.0 in /requirements (#333)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Mar 28, 2026
@dependabot dependabot Bot requested review from ashwinb and raghotham as code owners March 28, 2026 20:43
@dependabot dependabot Bot added the github_actions Pull requests that update GitHub Actions code label Mar 28, 2026
@meta-cla meta-cla Bot added the CLA Signed This label is managed by the Meta Open Source bot. label Mar 28, 2026
@dependabot dependabot Bot force-pushed the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch from d213872 to 283e915 Compare March 30, 2026 07:52
Bumps [sigstore/gh-action-sigstore-python](https://github.com/sigstore/gh-action-sigstore-python) from 3.2.0 to 3.3.0.
- [Release notes](https://github.com/sigstore/gh-action-sigstore-python/releases)
- [Changelog](https://github.com/sigstore/gh-action-sigstore-python/blob/main/CHANGELOG.md)
- [Commits](sigstore/gh-action-sigstore-python@a5caf34...04cffa1)

---
updated-dependencies:
- dependency-name: sigstore/gh-action-sigstore-python
  dependency-version: 3.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch from 283e915 to b982bec Compare March 30, 2026 08:06
@leseb leseb merged commit 2b0ece2 into main Mar 30, 2026
16 of 17 checks passed
@leseb leseb deleted the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch March 30, 2026 08:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CLA Signed This label is managed by the Meta Open Source bot. dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant