From f756bea12af29fdd7a166c67398bd08995a52bd9 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 4 Oct 2026 21:09:11 +0000 Subject: [PATCH 1/4] chore(deps): bump actions/upload-artifact from 4.6.2 to 7.0.1 Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.6.2 to 7.0.1. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/ea165f8d65b6e75b540449e92b4886f43607fa02...043fb46d1a93c77aae656e7c1c64a875d1fc6a0a) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-version: 7.0.1 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/ci.yml | 12 ++++++------ .github/workflows/drift-check.yml | 2 +- .github/workflows/flake-detection.yml | 2 +- .github/workflows/release-and-publish.yml | 4 ++-- 4 files changed, 10 insertions(+), 10 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 4398320ef1..98c8b36d49 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -771,14 +771,14 @@ jobs: # ignore — an empty annotation file (no flakes/failures) is normal. - name: Upload flake annotations if: always() && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: flake-annotations-unit-shard-${{ matrix.shard }} path: flake-annotations-unit-shard-*.txt if-no-files-found: ignore - name: Upload repository validation reports if: always() && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: repository-validation-unit-${{ matrix.os }}-${{ matrix.shard }} path: | @@ -970,7 +970,7 @@ jobs: bash scripts/ci/run-coverage-gate.sh - name: Upload shard coverage report if: always() && github.event_name == 'merge_group' && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: coverage-shard-${{ matrix.shard }} path: | @@ -990,7 +990,7 @@ jobs: # collide on extraction. - name: Upload coverage flake annotations if: always() && github.event_name == 'merge_group' && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: flake-annotations-coverage-shard-${{ matrix.shard }} path: flake-annotations-coverage-shard-${{ matrix.shard }}.txt @@ -1093,7 +1093,7 @@ jobs: echo "Coverage gate passed: ${coverage_value}% >= ${threshold}%" - name: Upload coverage report if: always() && github.event_name == 'merge_group' && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: coverage-report path: | @@ -1229,7 +1229,7 @@ jobs: exit $failed - name: Upload repository validation reports if: always() && github.event_name == 'merge_group' && needs.detect-release.outputs.is-release != 'true' - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: repository-validation-integration path: .swarm/repository-validation/integration-*.json diff --git a/.github/workflows/drift-check.yml b/.github/workflows/drift-check.yml index dcbb724c41..92bc969072 100644 --- a/.github/workflows/drift-check.yml +++ b/.github/workflows/drift-check.yml @@ -68,7 +68,7 @@ jobs: run: node scripts/release-notes-fragments.mjs verify-retention - name: Preserve drift report for PR comment job if: ${{ always() }} - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: drift-check-report path: drift-report.md diff --git a/.github/workflows/flake-detection.yml b/.github/workflows/flake-detection.yml index 9720be4867..4676e8bcbd 100644 --- a/.github/workflows/flake-detection.yml +++ b/.github/workflows/flake-detection.yml @@ -86,7 +86,7 @@ jobs: - name: Upload flake suggestions if: always() - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: flake-suggestions path: | diff --git a/.github/workflows/release-and-publish.yml b/.github/workflows/release-and-publish.yml index 1dc65cc82c..e79a479fba 100644 --- a/.github/workflows/release-and-publish.yml +++ b/.github/workflows/release-and-publish.yml @@ -88,7 +88,7 @@ jobs: ' - name: Upload runner artifact - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: sandbox-runner-win32-${{ matrix.arch }} path: runners/swarm-sandbox-runner/target/${{ matrix.target }}/release/swarm-sandbox-runner.exe @@ -199,7 +199,7 @@ jobs: --apply - name: Upload exact-tag fragment cleanup plan - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1 with: name: release-fragment-cleanup-plan path: .release-fragment-cleanup/plan.json From 1b14e83554d00ec7e1845a465d1b696af157287a Mon Sep 17 00:00:00 2001 From: Test User Date: Tue, 6 Oct 2026 06:03:28 -0500 Subject: [PATCH 2/4] chore(deps): add pending release fragment for PR #3074 --- docs/releases/pending/3074-upload-artifact-v7.md.md | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 docs/releases/pending/3074-upload-artifact-v7.md.md diff --git a/docs/releases/pending/3074-upload-artifact-v7.md.md b/docs/releases/pending/3074-upload-artifact-v7.md.md new file mode 100644 index 0000000000..f8ab4b15fc --- /dev/null +++ b/docs/releases/pending/3074-upload-artifact-v7.md.md @@ -0,0 +1,3 @@ +## chore(deps): bump actions/upload-artifact from 4.6.2 to 7.0.1 + +Dependabot bump of the `actions/upload-artifact` workflow action from v4.6.2 to v7.0.1 (pinned by SHA) across the CI, drift-check, flake-detection, and release-and-publish workflows. Maintainer-facing CI-only change; artifact upload behavior and inputs used by this repo are compatible. From d8364703225910142a9f18f6176714d967b23322 Mon Sep 17 00:00:00 2001 From: Test User Date: Tue, 6 Oct 2026 06:04:12 -0500 Subject: [PATCH 3/4] chore(deps): fix fragment filename double extension --- .../{3074-upload-artifact-v7.md.md => 3074-upload-artifact-v7.md} | 0 1 file changed, 0 insertions(+), 0 deletions(-) rename docs/releases/pending/{3074-upload-artifact-v7.md.md => 3074-upload-artifact-v7.md} (100%) diff --git a/docs/releases/pending/3074-upload-artifact-v7.md.md b/docs/releases/pending/3074-upload-artifact-v7.md similarity index 100% rename from docs/releases/pending/3074-upload-artifact-v7.md.md rename to docs/releases/pending/3074-upload-artifact-v7.md From cdc2538aa40293ecdf4acc28f766ef40cfff57ee Mon Sep 17 00:00:00 2001 From: Test User Date: Tue, 6 Oct 2026 06:19:59 -0500 Subject: [PATCH 4/4] chore(ci): refresh local workflow hashes in required-check evidence --- docs/ci/required-check-evidence.json | 28 +++++++++++++++++++++------- 1 file changed, 21 insertions(+), 7 deletions(-) diff --git a/docs/ci/required-check-evidence.json b/docs/ci/required-check-evidence.json index f5709a7793..f0ac36fb59 100644 --- a/docs/ci/required-check-evidence.json +++ b/docs/ci/required-check-evidence.json @@ -72,15 +72,29 @@ } ], "workflowRunsByWorkflow": { - ".github/workflows/ci.yml": [34639685905], - ".github/workflows/pr-standards.yml": [34639685670], + ".github/workflows/ci.yml": [ + 34639685905 + ], + ".github/workflows/pr-standards.yml": [ + 34639685670 + ], ".github/workflows/drift-check.yml": [] } }, "workflowEvents": { - ".github/workflows/ci.yml": ["pull_request", "merge_group"], - ".github/workflows/pr-standards.yml": ["pull_request", "merge_group"], - ".github/workflows/drift-check.yml": ["workflow_dispatch", "pull_request", "push"] + ".github/workflows/ci.yml": [ + "pull_request", + "merge_group" + ], + ".github/workflows/pr-standards.yml": [ + "pull_request", + "merge_group" + ], + ".github/workflows/drift-check.yml": [ + "workflow_dispatch", + "pull_request", + "push" + ] }, "capturedWorkflowFiles": { ".github/workflows/ci.yml": { @@ -97,9 +111,9 @@ } }, "localWorkflowHashes": { - ".github/workflows/ci.yml": "2fc14fe568d147c7fd4dc73c4dd88c13d95c18ba70bbf97ce1f51a732d335d67", + ".github/workflows/ci.yml": "c0aa1321834f368fa73f1e8ea26b661347caf603c6915b719b0f8848cb69af77", ".github/workflows/pr-standards.yml": "e055a61a1d43c2c3c74f6b263b21fc4c8f80b62cc34669be59163cb7e492b5a1", - ".github/workflows/drift-check.yml": "4aaea9479278257aa715f1140bf24e0f92ef2cf9fe2a2b6873fb65fa6442ea78" + ".github/workflows/drift-check.yml": "b1ce25c5790245daab68b389812caf9b5588a4b5c9524a7b942c5690193bfa81" }, "capturedAt": "2026-09-11T21:30:25Z", "captureSha": "b21cdce17b8731143ed5fab7fdf32dd8ad5f7a7f",