scorecard/.github/workflows
dependabot[bot] 6dffe65000
🌱 Bump github.com/sigstore/cosign/v2 from 2.1.1 to 2.2.1 in /tools (#3660)
* 🌱 Bump github.com/sigstore/cosign/v2 in /tools

Bumps [github.com/sigstore/cosign/v2](https://github.com/sigstore/cosign) from 2.1.1 to 2.2.1.
- [Release notes](https://github.com/sigstore/cosign/releases)
- [Changelog](https://github.com/sigstore/cosign/blob/main/CHANGELOG.md)
- [Commits](https://github.com/sigstore/cosign/compare/v2.1.1...v2.2.1)

---
updated-dependencies:
- dependency-name: github.com/sigstore/cosign/v2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>

* bump actions/dependency-review-action to v3.1.3

This PR is incompatible with v3.1.2 due to some of the modules being updated.
See https://www.github.com/actions/dependency-review-action/issues/613

Signed-off-by: Spencer Schrock <sschrock@google.com>

---------

Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: Spencer Schrock <sschrock@google.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Spencer Schrock <sschrock@google.com>
2023-11-13 10:58:51 -08:00
..
codeql-analysis.yml 🌱 Bump actions/checkout from 4.1.0 to 4.1.1 (#3580) 2023-10-19 22:28:54 +00:00
depsreview.yml 🌱 Bump github.com/sigstore/cosign/v2 from 2.1.1 to 2.2.1 in /tools (#3660) 2023-11-13 10:58:51 -08:00
docker.yml 🌱 Bump tj-actions/changed-files from 39.2.3 to 40.1.1 (#3657) 2023-11-09 00:35:13 +00:00
gitlab.yml 🌱 Bump actions/checkout from 4.1.0 to 4.1.1 (#3580) 2023-10-19 22:28:54 +00:00
goreleaser.yaml 🌱 Bump slsa-framework/slsa-verifier from 2.4.0 to 2.4.1 (#3652) 2023-11-09 01:34:39 +00:00
integration.yml 🌱 Bump actions/checkout from 4.1.0 to 4.1.1 (#3580) 2023-10-19 22:28:54 +00:00
lint.yml 🌱 Bump actions/checkout from 4.1.0 to 4.1.1 (#3580) 2023-10-19 22:28:54 +00:00
main.yml 🌱 Bump actions/checkout from 4.1.0 to 4.1.1 (#3580) 2023-10-19 22:28:54 +00:00
publishimage.yml 🌱 Bump sigstore/cosign-installer from 3.1.2 to 3.2.0 (#3651) 2023-11-08 17:11:15 -08:00
scorecard-analysis.yml 🌱 Bump ossf/scorecard-action from 2.3.0 to 2.3.1 (#3599) 2023-10-27 23:44:15 +00:00
slsa-goreleaser.yml 🌱 Bump slsa-framework/slsa-verifier from 2.4.0 to 2.4.1 (#3652) 2023-11-09 01:34:39 +00:00
stale.yml 🌱 Update stale workflow to exempt Structured Results milestone (#3634) 2023-11-01 10:02:20 -07:00
verify.yml 🌱 Bump kubernetes-sigs/kubebuilder-release-tools (#3637) 2023-11-08 15:46:20 -08:00