Skip to content

Bump @actions/core from 1.11.1 to 3.0.1 in /bundle-verifier - #67

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/bundle-verifier/actions/core-3.0.1
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/bundle-verifier/actions/core-3.0.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 22, 2026 •

Copy link
Copy Markdown
Contributor

Bumps @actions/core from 1.11.1 to 3.0.1.

Changelog

Sourced from @​actions/core's changelog.

3.0.1

  • Bump undici from 6.23.0 to 6.24.1 #2348

3.0.0

  • Breaking change: Package is now ESM-only
    • CommonJS consumers must use dynamic import() instead of require()

2.0.3

  • Bump @actions/http-client to 3.0.2

2.0.1

  • Bump @​actions/exec from 1.1.1 to 2.0.0 #2199

2.0.0

  • Add support for Node 24 #2110
  • Bump @​actions/http-client from 2.0.1 to 3.0.0
Commits
Maintainer changes

This version was pushed to npm by GitHub Actions, a new releaser for @​actions/core since your current version.


@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Jul 22, 2026
@dependabot dependabot Bot changed the title Bump @actions/core from 1.2.6 to 3.0.1 in /bundle-verifier Bump @actions/core from 1.11.1 to 3.0.1 in /bundle-verifier Jul 22, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/bundle-verifier/actions/core-3.0.1 branch from dc932e5 to a5f7310 Compare July 22, 2026 14:34
@snecklifter

Copy link
Copy Markdown
Contributor

@dependabot rebase

Bumps [@actions/core](https://github.com/actions/toolkit/tree/HEAD/packages/core) from 1.11.1 to 3.0.1.
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/core/RELEASES.md)
- [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/core)

---
updated-dependencies:
- dependency-name: "@actions/core"
  dependency-version: 3.0.1
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/bundle-verifier/actions/core-3.0.1 branch from a5f7310 to 8944996 Compare July 22, 2026 14:50
snecklifter added a commit that referenced this pull request Jul 22, 2026
bundle-verifier:
- Upgrade @actions/core, exec, io from v1 to v2 (CJS + Node 24)
- Upgrade @vercel/ncc from 0.38 to 0.44 (Node 24 build support)
- Modernize tsconfig: target es2022, add skipLibCheck

action-io-generator:
- Upgrade @typescript-eslint/parser and eslint-plugin from v7 to v8
- Override removed @typescript-eslint/semi rule in local eslintrc
- Upgrade @types/node to ^24

Dependabot:
- Ignore @actions/* >=3 (ESM-only, needs bundler migration)
- Ignore typescript >=7 (ecosystem not ready)

Supersedes Dependabot PRs #67, #68, #69, #73, #76.

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
@snecklifter

Copy link
Copy Markdown
Contributor

Superseded by #79. Upgraded to @actions/* v2 (CJS + Node 24 support). v3 is ESM-only and incompatible with ncc — migrating to a different bundler is tracked as future work.

@dependabot @github

dependabot Bot commented on behalf of github Jul 22, 2026

Copy link
Copy Markdown
Contributor Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/bundle-verifier/actions/core-3.0.1 branch July 22, 2026 15:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant