Avatar for the ozeranskii user
ozeranskii
httptap
BlogDocsChangelog

Performance History

Latest Results

chore(deps): bump actions/setup-python from 6.3.0 to 7.0.0 Bumps [actions/setup-python](https://github.com/actions/setup-python) from 6.3.0 to 7.0.0. - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](https://github.com/actions/setup-python/compare/ece7cb06caefa5fff74198d8649806c4678c61a1...5fda3b95a4ea91299a34e894583c3862153e4b97) --- updated-dependencies: - dependency-name: actions/setup-python dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot/github_actions/main/actions/setup-python-7.0.0
6 days ago
chore(deps): bump the actions group with 7 updates Bumps the actions group with 7 updates: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `7.0.0` | `7.0.1` | | [github/codeql-action/init](https://github.com/github/codeql-action) | `4.37.0` | `4.37.1` | | [github/codeql-action/analyze](https://github.com/github/codeql-action) | `4.37.0` | `4.37.1` | | [chainguard-dev/actions/setup-gitsign](https://github.com/chainguard-dev/actions) | `1.6.27` | `1.6.28` | | [taiki-e/install-action](https://github.com/taiki-e/install-action) | `2.83.4` | `2.84.0` | | [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) | `1.14.0` | `1.14.1` | | [github/codeql-action/upload-sarif](https://github.com/github/codeql-action) | `4.37.0` | `4.37.1` | Updates `actions/checkout` from 7.0.0 to 7.0.1 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0...3d3c42e5aac5ba805825da76410c181273ba90b1) Updates `github/codeql-action/init` from 4.37.0 to 4.37.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/99df26d4f13ea111d4ec1a7dddef6063f76b97e9...7188fc363630916deb702c7fdcf4e481b751f97a) Updates `github/codeql-action/analyze` from 4.37.0 to 4.37.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/99df26d4f13ea111d4ec1a7dddef6063f76b97e9...7188fc363630916deb702c7fdcf4e481b751f97a) Updates `chainguard-dev/actions/setup-gitsign` from 1.6.27 to 1.6.28 - [Release notes](https://github.com/chainguard-dev/actions/releases) - [Commits](https://github.com/chainguard-dev/actions/compare/4d37df0d85a91f619edc34a8803323033cdcb124...fabe4ed3f66ceb5f8ec86ed7ae6d0c945ca362fb) Updates `taiki-e/install-action` from 2.83.4 to 2.84.0 - [Release notes](https://github.com/taiki-e/install-action/releases) - [Changelog](https://github.com/taiki-e/install-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/taiki-e/install-action/compare/07b4745e0c39a41822af610387492e3e53aa222b...a6b2e2dcd845ddd7f509ce4f3ed3d922b80cc5d9) Updates `pypa/gh-action-pypi-publish` from 1.14.0 to 1.14.1 - [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases) - [Commits](https://github.com/pypa/gh-action-pypi-publish/compare/cef221092ed1bacb1cc03d23a2d87d1d172e277b...ba38be9e461d3875417946c167d0b5f3d385a247) Updates `github/codeql-action/upload-sarif` from 4.37.0 to 4.37.1 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/99df26d4f13ea111d4ec1a7dddef6063f76b97e9...7188fc363630916deb702c7fdcf4e481b751f97a) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: 7.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/init dependency-version: 4.37.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/analyze dependency-version: 4.37.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: chainguard-dev/actions/setup-gitsign dependency-version: 1.6.28 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: taiki-e/install-action dependency-version: 2.84.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions - dependency-name: pypa/gh-action-pypi-publish dependency-version: 1.14.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions - dependency-name: github/codeql-action/upload-sarif dependency-version: 4.37.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot/github_actions/main/actions-2205f00104
6 days ago
chore: release v0.5.3
main
14 days ago
chore(deps): update pinned actions, base images and dependabot scope Consolidates the open Dependabot PRs (#214, #215, #216, #217, #218) and extends the sweep to dependencies Dependabot is not configured to see. Pinned GitHub Actions, from the open PRs: - CodSpeedHQ/action 4.18.4 -> 4.18.5 - docker/setup-buildx-action 4.1.0 -> 4.2.0 - astral-sh/setup-uv 8.2.0 -> 8.3.2 - github/codeql-action 4.36.2/4.36.3 -> 4.37.0 Dependabot split the codeql bump per sub-action, leaving init behind at 4.36.2; both init and analyze now sit on 4.37.0. Eight further actions had no PR open and were behind: - astral-sh/ruff-action 4.0.0 -> 4.1.0 - chainguard-dev/actions/setup-gitsign 1.6.26 -> 1.6.27 - docker/build-push-action 7.2.0 -> 7.3.0 - docker/login-action 4.2.0 -> 4.4.0 - docker/metadata-action 6.1.0 -> 6.2.0 - docker/setup-qemu-action 4.1.0 -> 4.2.0 - taiki-e/install-action 2.82.6 -> 2.83.4 - zizmorcore/zizmor-action 0.5.7 -> 0.6.0 zizmor-action 0.6.0 ships zizmor 1.27.0, which lints the workflows in CI. Ran 1.27.0 locally with the pedantic persona used by the workflow: no findings, so the bump does not fail the build. Base images were pinned by digest but never updated, because dependabot.yml declares only the github-actions and uv ecosystems. The uv builder was 23 patch releases behind and the runtime digest predates a rebuild of python:3.14-slim-trixie: - ghcr.io/astral-sh/uv 0.11.6 -> 0.11.29 (python3.14-trixie-slim) - python:3.14-slim-trixie digest refreshed Added the docker ecosystem to dependabot.yml so this stops drifting, and created the matching "docker" label the config references. Python dependencies were already current; uv lock --upgrade found nothing. Verified: ruff, mypy --strict, 603 tests, lock check, hadolint, all pre-commit hooks, zizmor 1.27.0 pedantic, and a real docker build whose image serves a live request against example.com.
chore/deps-sweep-2
14 days ago

Latest Branches

CodSpeed Performance Gauge
0%
chore(deps): bump actions/setup-python from 6.3.0 to 7.0.0#223
6 days ago
82696ad
dependabot/github_actions/main/actions/setup-python-7.0.0
CodSpeed Performance Gauge
-10%
6 days ago
521fe24
dependabot/github_actions/main/actions-2205f00104
CodSpeed Performance Gauge
0%
6 days ago
b000fae
dependabot/uv/main/hypothesis-6.157.0
© 2026 CodSpeed Technology
Home Terms Privacy Docs