Skip to content

chore(deps): bump bnjbvr/cargo-machete from f447148733f2e2d3d9f2a4e4ae2b88a9d11f6298 to d40d1e3265e4161d599ebb902eb9892faf769f6e#71

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/bnjbvr/cargo-machete-d40d1e3265e4161d599ebb902eb9892faf769f6e
Open

chore(deps): bump bnjbvr/cargo-machete from f447148733f2e2d3d9f2a4e4ae2b88a9d11f6298 to d40d1e3265e4161d599ebb902eb9892faf769f6e#71
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/bnjbvr/cargo-machete-d40d1e3265e4161d599ebb902eb9892faf769f6e

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 26, 2026

Copy link
Copy Markdown
Contributor

Bumps bnjbvr/cargo-machete from f447148733f2e2d3d9f2a4e4ae2b88a9d11f6298 to d40d1e3265e4161d599ebb902eb9892faf769f6e.

Changelog

Sourced from bnjbvr/cargo-machete's changelog.

unreleased

  • Improved: add renamed table to track renamed crates (#152 #153).

0.7.0 (released on 2024-09-25)

  • Breaking change: Don't search in ignored files (those specified in .ignore/.gitignore) by default. It's possible to use --no-ignore to search in these directories by default (#137).
  • Improved: fix false positives for multi dependencies single use statements (#120). This improves precision at the cost of a small performance hit.
  • Improved: make usage of --with-metadata more accurate (#122, #132).
  • Improved: instead of displaying . for the current directory, cargo-machete will now display this directory (#109).
  • Added: There's now an automated docker image build that publishes to the github repository (#121).
  • Added: --ignore flag which make cargo-machete respect .ignore and .gitignore files when searching for files (#95).

0.6.2 (released on 2024-03-24)

  • Added: shorter display when scanning the current directory (#109).
  • Fix: adapt to latest pkgid specification, so as not to crash with --with-metadata (#106).

0.6.1 (released on 2024-02-21)

  • Chore: bump major dependencies, to fix parsing issues of Cargo.toml files (#101, #105).

0.6.0 (released on 2023-09-23)

  • Breaking/improved: match against crate name case-insensitive (#69).
  • Added: Github action (#85). See README for documentation.
  • Added: support for ignored workspace dependencies (#57, #86). See README for documentation.
  • Added: --version switch to print the version (#66).
  • Fix: avoid searching for workspace Cargo.toml longer than needed (#84).
  • Chore: better documentation and reporting (#63, #72, #80).

0.5.0 (released on 2022-11-15)

  • Breaking: Use argh for parsing. Now, paths of directories to scan must be passed in the last position, when running from the command line (#51).
  • Fix rare false positive and speed up most common case (#53).
  • Fix loading properties from workspace (#54).

0.4.0 (released on 2022-10-16)

  • Added --skip-target-dir to not analyze target/ directories.
  • Added a message indicating of any unused dependencies were found or not.
  • Support for workspace properties

0.3.1 (released on 2022-06-12)

  • Support empty global prefix, e.g. use ::log;.

0.3.0 (released on 2022-05-09)

... (truncated)

Commits
  • d40d1e3 build(deps): bump log from 0.4.32 to 0.4.33
  • 2ad6d99 build(deps): bump actions/checkout from 6 to 7
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note

Bump bnjbvr/cargo-machete to commit d40d1e3 in CI workflow

Updates the pinned commit hash for the bnjbvr/cargo-machete action in cargo-machete.yml from f447148 to d40d1e3.

Macroscope summarized 0c30c77.

Bumps [bnjbvr/cargo-machete](https://github.com/bnjbvr/cargo-machete) from f447148733f2e2d3d9f2a4e4ae2b88a9d11f6298 to d40d1e3265e4161d599ebb902eb9892faf769f6e.
- [Release notes](https://github.com/bnjbvr/cargo-machete/releases)
- [Changelog](https://github.com/bnjbvr/cargo-machete/blob/main/CHANGELOG.md)
- [Commits](bnjbvr/cargo-machete@f447148...d40d1e3)

---
updated-dependencies:
- dependency-name: bnjbvr/cargo-machete
  dependency-version: d40d1e3265e4161d599ebb902eb9892faf769f6e
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Jun 26, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: ci, dependencies. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot requested a review from KooshaPari as a code owner June 26, 2026 07:16
@codeant-ai

codeant-ai Bot commented Jun 26, 2026

Copy link
Copy Markdown

Skipping PR review because a bot author is detected.

If you want to trigger CodeAnt AI, comment @codeant-ai review to trigger a manual review.

@sonarqubecloud

Copy link
Copy Markdown

❌ The last analysis has failed.

See analysis details on SonarQube Cloud

@kilo-code-bot

kilo-code-bot Bot commented Jun 27, 2026

Copy link
Copy Markdown

Code Review Summary

Status: No Issues Found | Recommendation: Merge

Files Reviewed (1 file)
  • .github/workflows/cargo-machete.yml

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants