Skip to content

Bump sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0#84

Closed
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0
Closed

Bump sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0#84
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Mar 26, 2026

Bumps sigstore/gh-action-sigstore-python from 3.2.0 to 3.3.0.

Release notes

Sourced from sigstore/gh-action-sigstore-python's releases.

v3.3.0

What's Changed

  • Dependency updates. Most importantly used sigstore-python is now version 4.2.0

Full Changelog: sigstore/gh-action-sigstore-python@v3.2.0...v3.3.0

Changelog

Sourced from sigstore/gh-action-sigstore-python's changelog.

Changelog

All notable changes to gh-action-sigstore-python will be documented in this file.

The format is based on Keep a Changelog.

All versions prior to 3.0.0 are untracked.

[Unreleased]

Commits
  • 04cffa1 build(deps): bump requests from 2.32.5 to 2.33.0 in /requirements (#342)
  • 69171e8 build(deps): bump charset-normalizer in the python-dependencies group (#340)
  • 40198d7 build(deps): bump github/codeql-action in the actions group (#338)
  • ca55bb0 build(deps): bump the python-dependencies group with 2 updates (#339)
  • 2736143 build(deps): bump the actions group with 3 updates (#335)
  • 9afbb88 build(deps): bump pyasn1 from 0.6.2 to 0.6.3 in /requirements (#337)
  • eb907b0 build(deps): bump pyopenssl from 25.3.0 to 26.0.0 in /requirements (#334)
  • 84eaebf build(deps): bump astral-sh/setup-uv in the actions group (#331)
  • 57c12be build(deps): bump charset-normalizer in the python-dependencies group (#332)
  • 57918d7 build(deps): bump pyjwt from 2.11.0 to 2.12.0 in /requirements (#333)
  • Additional commits viewable in compare view

@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Mar 26, 2026
@rerpha
Copy link
Copy Markdown
Contributor

rerpha commented Apr 7, 2026

@dependabot rebase

@dependabot dependabot bot force-pushed the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch from b40f900 to d6428ef Compare April 7, 2026 11:13
@rerpha
Copy link
Copy Markdown
Contributor

rerpha commented Apr 7, 2026

@dependabot recreate

Bumps [sigstore/gh-action-sigstore-python](https://github.com/sigstore/gh-action-sigstore-python) from 3.2.0 to 3.3.0.
- [Release notes](https://github.com/sigstore/gh-action-sigstore-python/releases)
- [Changelog](https://github.com/sigstore/gh-action-sigstore-python/blob/main/CHANGELOG.md)
- [Commits](sigstore/gh-action-sigstore-python@v3.2.0...v3.3.0)

---
updated-dependencies:
- dependency-name: sigstore/gh-action-sigstore-python
  dependency-version: 3.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch from d6428ef to 0ff926a Compare April 7, 2026 11:14
@rerpha rerpha closed this Apr 7, 2026
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot bot commented on behalf of github Apr 7, 2026

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@rerpha
Copy link
Copy Markdown
Contributor

rerpha commented Apr 7, 2026

@dependabot recreate

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot bot commented on behalf of github Apr 7, 2026

Looks like this PR is closed. If the branch still exists, you can re-open the PR and then use @dependabot rebase or @dependabot recreate. If the branch was deleted, Dependabot will create a new PR on the next scheduled run, or you can trigger an update from the Dependency graph page.

@dependabot dependabot bot deleted the dependabot/github_actions/sigstore/gh-action-sigstore-python-3.3.0 branch April 7, 2026 11:16
@rerpha
Copy link
Copy Markdown
Contributor

rerpha commented Apr 7, 2026

@dependabot recreate

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot bot commented on behalf of github Apr 7, 2026

Looks like this PR is closed. If the branch still exists, you can re-open the PR and then use @dependabot rebase or @dependabot recreate. If the branch was deleted, Dependabot will create a new PR on the next scheduled run, or you can trigger an update from the Dependency graph page.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant