github dependabot/dependabot-core v0.349.0

7 hours ago

What's Changed

  • use PURLs in DG submissions by @jakecoffman in #13527
  • Bazel update checker to filter ignored versions by @robaiken in #13549
  • Cache library detection to prevent redundant PyPI API calls by @Copilot in #13529
  • Fix npm_and_yarn file_updater specs for js-yaml 3.14.2 by @thavaahariharangit in #13568
  • Remove bun references from the npm_and_yarn ecosystem by @yeikel in #13514
  • Replace temporary sigstore git workaround with released gem by @markhallen in #13570
  • When a dependency graph job fatally errors, emit a blank snapshot for the directory by @brrygrdn in #13571
  • v0.349.0 by @dependabot-core-action-automation[bot] in #13599

Full Changelog: v0.348.1...v0.349.0

Don't miss a new dependabot-core release

NewReleases is sending notifications on new releases.