chore(deps): (deps): bump assert_cmd from 2.0.17 to 2.1.1 - #100
chore(deps): (deps): bump assert_cmd from 2.0.17 to 2.1.1#100dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [assert_cmd](https://github.com/assert-rs/assert_cmd) from 2.0.17 to 2.1.1. - [Changelog](https://github.com/assert-rs/assert_cmd/blob/master/CHANGELOG.md) - [Commits](assert-rs/assert_cmd@v2.0.17...v2.1.1) --- updated-dependencies: - dependency-name: assert_cmd dependency-version: 2.1.1 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Important Review skippedBot user detected. To trigger a single review, invoke the You can disable this status message by setting the Comment |
9519a6e to
177842f
Compare
| if: github.event_name == 'pull_request' | ||
| name: Semantic PR Title | ||
| runs-on: ubuntu-latest | ||
| steps: | ||
| - uses: amannn/action-semantic-pull-request@v6 | ||
| env: | ||
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | ||
| with: | ||
| types: | | ||
| feat | ||
| fix | ||
| docs | ||
| style | ||
| refactor | ||
| perf | ||
| test | ||
| build | ||
| ci | ||
| chore | ||
| requireScope: false | ||
| subjectPattern: ^(?![A-Z]).+$ | ||
| subjectPatternError: | | ||
| The subject "{subject}" found in the pull request title "{title}" | ||
| doesn't match the configured pattern. Please ensure that the subject | ||
| doesn't start with an uppercase character. | ||
|
|
||
| # Linting and security job | ||
| lint: |
Check warning
Code scanning / CodeQL
Workflow does not contain permissions Medium
| name: Semantic PR Title | ||
| runs-on: ubuntu-latest | ||
| steps: | ||
| - uses: amannn/action-semantic-pull-request@v6 |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
| name: Lint and Security | ||
| runs-on: ubuntu-latest | ||
| steps: | ||
| - name: Checkout code | ||
| uses: actions/checkout@v5 | ||
|
|
||
| - name: Setup Rust | ||
| uses: dtolnay/rust-toolchain@stable | ||
| with: | ||
| components: clippy, rustfmt | ||
|
|
||
| - name: Cache Rust dependencies | ||
| uses: Swatinem/rust-cache@v2 | ||
| with: | ||
| key: lint-${{ hashFiles('**/Cargo.toml') }} | ||
|
|
||
| - name: Check formatting | ||
| run: cargo fmt --all -- --check | ||
|
|
||
| - name: Run clippy | ||
| run: cargo clippy --all-targets --all-features -- -D warnings | ||
|
|
||
| - name: Install cargo-audit | ||
| run: cargo install cargo-audit | ||
|
|
||
| - name: Run security audit | ||
| run: cargo audit | ||
|
|
||
| - name: Install cargo-deny | ||
| run: cargo install cargo-deny | ||
|
|
||
| - name: Run cargo-deny checks | ||
| run: cargo deny check | ||
|
|
||
| test-and-coverage: |
Check warning
Code scanning / CodeQL
Workflow does not contain permissions Medium
| uses: actions/checkout@v5 | ||
|
|
||
| - name: Setup Rust | ||
| uses: dtolnay/rust-toolchain@stable |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
| components: clippy, rustfmt | ||
|
|
||
| - name: Cache Rust dependencies | ||
| uses: Swatinem/rust-cache@v2 |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
| retention-days: 30 | ||
|
|
||
| - name: Upload coverage to Codecov | ||
| uses: codecov/codecov-action@v5 |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
| name: Benchmarks | ||
| runs-on: ubuntu-latest | ||
| steps: | ||
| - name: Checkout code | ||
| uses: actions/checkout@v5 | ||
| with: | ||
| fetch-depth: 0 | ||
|
|
||
| - name: Setup Rust | ||
| uses: dtolnay/rust-toolchain@stable | ||
|
|
||
| - name: Cache Rust dependencies | ||
| uses: Swatinem/rust-cache@v2 | ||
| with: | ||
| key: bench-${{ hashFiles('**/Cargo.toml') }} | ||
|
|
||
| - name: Run benchmarks | ||
| run: cargo bench --benches --quiet | ||
| env: | ||
| CARGO_TERM_COLOR: never | ||
| TERM: dumb | ||
|
|
||
| # Note: Benchmark comparison removed due to cargo bench compatibility issues | ||
| # For PR benchmark comparison, use the HTML reports in artifacts | ||
|
|
||
| - name: Track benchmark performance (main/develop) | ||
| if: github.event_name == 'push' && (github.ref == 'refs/heads/main' || github.ref == 'refs/heads/develop') | ||
| uses: rhysd/github-action-benchmark@v1 | ||
| with: | ||
| tool: "criterion" | ||
| output-file-path: "target/criterion/*/base/estimates.json" | ||
| github-token: ${{ secrets.GITHUB_TOKEN }} | ||
| auto-push: true | ||
| comment-on-alert: true | ||
| alert-threshold: "150%" | ||
| fail-on-alert: false | ||
| max-items-in-chart: 100 | ||
|
|
||
| - name: Upload Criterion HTML reports as artifacts | ||
| uses: actions/upload-artifact@v4 | ||
| if: always() | ||
| with: | ||
| name: criterion-html-reports-${{ github.sha }} | ||
| path: target/criterion/ | ||
| retention-days: 30 | ||
| if-no-files-found: warn | ||
|
|
||
| - name: Comment on PR with benchmark results | ||
| if: github.event_name == 'pull_request' | ||
| uses: actions/github-script@v7 | ||
| with: | ||
| script: | | ||
| const comment = `## Benchmark Results | ||
|
|
||
| Benchmarks completed for commit \`${{ github.sha }}\`. | ||
|
|
||
| **Detailed HTML Reports**: Download the [criterion-html-reports-${{ github.sha }}](https://github.com/${{ github.repository }}/actions/runs/${{ github.run_id }}) artifact and open \`target/criterion/report/index.html\` in your browser. | ||
|
|
||
| **Performance Analysis**: Review the HTML reports to compare performance with previous runs. The reports include statistical analysis and performance trends. | ||
|
|
||
| > **Note**: Artifacts are available for 30 days. For detailed performance comparison, download the HTML reports and review the statistical analysis.`; | ||
|
|
||
| github.rest.issues.createComment({ | ||
| issue_number: context.issue.number, | ||
| owner: context.repo.owner, | ||
| repo: context.repo.repo, | ||
| body: comment | ||
| }); |
Check warning
Code scanning / CodeQL
Workflow does not contain permissions Medium
| fetch-depth: 0 | ||
|
|
||
| - name: Setup Rust | ||
| uses: dtolnay/rust-toolchain@stable |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
| uses: dtolnay/rust-toolchain@stable | ||
|
|
||
| - name: Cache Rust dependencies | ||
| uses: Swatinem/rust-cache@v2 |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
|
|
||
| - name: Track benchmark performance (main/develop) | ||
| if: github.event_name == 'push' && (github.ref == 'refs/heads/main' || github.ref == 'refs/heads/develop') | ||
| uses: rhysd/github-action-benchmark@v1 |
Check warning
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
The merge-base changed after approval.
Bumps assert_cmd from 2.0.17 to 2.1.1.
Changelog
Sourced from assert_cmd's changelog.
Commits
68e4a2cchore: Release assert_cmd version 2.1.1b3cb5d6Merge pull request #250 from epage/docs1ddc1d6docs: Correct examples forcargo_bin!ef752dechore: Release assert_cmd version 2.1.0278df89docs: Update changelogb84678bMerge pull request #248 from epage/depb744e27fix: Deprecate cargo_bin (runtime version)b8f7dedfeat: Providecargo_bin_cmd!e60035fdocs: Prefer pkg_name over CARGO_PKG_NAME069482bdocs: Use a local example forcargo_bin!Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)