Skip to content

chore(deps): bump actions/checkout from 4 to 6#7

Closed
dependabot[bot] wants to merge 22 commits into
mainfrom
dependabot/github_actions/actions/checkout-6
Closed

chore(deps): bump actions/checkout from 4 to 6#7
dependabot[bot] wants to merge 22 commits into
mainfrom
dependabot/github_actions/actions/checkout-6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 15, 2026

Copy link
Copy Markdown

Bumps actions/checkout from 4 to 6.

Release notes

Sourced from actions/checkout's releases.

v6.0.0

What's Changed

Full Changelog: actions/checkout@v5.0.0...v6.0.0

v6-beta

What's Changed

Updated persist-credentials to store the credentials under $RUNNER_TEMP instead of directly in the local git config.

This requires a minimum Actions Runner version of v2.329.0 to access the persisted credentials for Docker container action scenarios.

v5.0.1

What's Changed

Full Changelog: actions/checkout@v5...v5.0.1

v5.0.0

What's Changed

⚠️ Minimum Compatible Runner Version

v2.327.1
Release Notes

Make sure your runner is updated to this version or newer to use this release.

Full Changelog: actions/checkout@v4...v5.0.0

v4.3.1

What's Changed

Full Changelog: actions/checkout@v4...v4.3.1

v4.3.0

What's Changed

... (truncated)

Commits
  • df4cb1c Update changelog for v6.0.3 (#2446)
  • 1cce339 Fix checkout init for SHA-256 repositories (#2439)
  • 900f221 fix: expand merge commit SHA regex and add SHA-256 test cases (#2414)
  • 0c366fd Update changelog (#2357)
  • de0fac2 Fix tag handling: preserve annotations and explicit fetch-tags (#2356)
  • 064fe7f Add orchestration_id to git user-agent when ACTIONS_ORCHESTRATION_ID is set (...
  • 8e8c483 Clarify v6 README (#2328)
  • 033fa0d Add worktree support for persist-credentials includeIf (#2327)
  • c2d88d3 Update all references from v5 and v4 to v6 (#2314)
  • 1af3b93 update readme/changelog for v6 (#2311)
  • Additional commits viewable in compare view

sionsmith and others added 19 commits June 11, 2026 08:36
First public alpha. Wire-protocol proxy (TLS termination, gzip, session
rotation, fail-open passthrough), literal-safe semantic cache with blame
mode, in-flight coalescing, deterministic rewrite pack, predictive
auto-suspend with enforce mode, cost attribution, realized-savings ledger
with signed Ed25519 evidence bundles, replay simulator, and a release
pipeline ported from osodevops/kafka-backup (cargo-dist, release tagger,
version guard, semver checks).

98 tests; integration-verified against the official
snowflake-connector-python via fakesnow.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Not needed for any current distribution channel (binaries, installers,
Homebrew, Scoop, Docker) and was blocking releases on token scopes.
Reinstate when a published crate needs to depend on chukei-core.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
RELEASE_PAT (fine-grained org PAT) returned 404 on the releases API —
the repo isn't in its grant. The workflow already has contents: write
and nothing triggers on release events, so the built-in token suffices.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
…ng, pilot kit

- fix: rustls CryptoProvider was only installed in the serve path, so
  'chukei doctor' panicked on TLS configs (shipped in v0.1.0). Now
  chukei_core::init_crypto() runs at CLI start; reproducer test in its
  own test binary.
- harden: cache dir 0700, cache entries + savings ledger 0600 (query
  results/metadata at rest), with unit tests.
- live pilot harness: scripts/live-pilot.sh + scripts/live_matrix.py —
  TLS mode (local CA, venv-scoped trust), auth modes password/keypair/PAT,
  stages core/shapes/concurrency, trace-level credential-leak audit.
  All validated against a real Snowflake account.
- customer kit: config/customer-pilot.yaml (conservative profile,
  validate-clean), docs/deployment.md, deploy/docker-compose.yaml,
  deploy/k8s.yaml.
- version 0.1.0 → 0.2.0 (minor: new chukei-core public API init_crypto).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
scripts/soak.sh / soak_traffic.py / soak-report.sh: overnight mixed-traffic
soak with RSS sampling and a morning go/no-go gate. deployment.md now
states measured outage behavior: sub-retry-budget restarts are invisible,
sessions resume without re-login.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
seo-research skill output: Perplexity discovery (market, competitor
content, LLM visibility), 717-keyword SEMrush masterlist with LLM-weighted
scoring, semantic topical map + ~88-page Docusaurus site structure
(mirrors kafka-backup-docs), 8 generation-ready content briefs, llms.txt
template, 6-week editorial calendar, Reddit distribution plan.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
….2, not day 1)

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
The login handler stored user + application but defaulted warehouse to
None, so on real driver traffic the suspend model never observed a single
arrival — suggest and enforce modes were both blind. Found when the live
enforce drill produced zero recommendations despite warmed traffic; the
older enforce e2e test seeded the model directly and masked the gap.

- Login: warehouse from response sessionInfo.warehouseName, fallback to
  the ?warehouse= login query param.
- USE WAREHOUSE statements re-point the session's warehouse mid-stream.
- Full-wire-path regression test (login → query → model observes WH,
  USE WAREHOUSE switching) in proxy_e2e.
- Plus this session's earlier suspend fixes: arrivals recorded post-result
  (cache hits and metadata statements no longer reset the idle model),
  model gates (min_observations/horizon_secs/p_threshold) configurable.

105 tests green. v0.2.1.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
…ault 300)

The 5-minute constant masked enforce-mode validation: the sweeper fires
~10s after the min_observations-th arrival (correct), the next query
auto-resumes the warehouse, and the cooldown then blocks re-suspends for
longer than any reasonable observation window. Proven via Snowflake's
queued_provisioning_time: arrival 5 spent 93ms resuming the warehouse
chukei had suspended 85s earlier.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
…e truth

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
…hitecture

README hero + status (now pilot-ready with validation receipts), Cargo
description, GitHub repo description, llms.txt template. Per
seo-research/output/positioning.md.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Hero+badges, features, full installation matrix, replay try-it,
quickstart, competitor comparison table, when-NOT-to-use, docs table,
CLI reference, production-validation receipts, enterprise tier,
acknowledgments. Repo description + topics updated to match.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
…dist host)

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 15, 2026
@dependabot dependabot Bot requested a review from sionsmith as a code owner June 15, 2026 15:48
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 15, 2026
sionsmith and others added 3 commits June 15, 2026 19:06
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 6.
- [Release notes](https://github.com/actions/checkout/releases)
- [Commits](actions/checkout@v4...v6)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '6'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions/checkout-6 branch from 79acf8f to 18f4974 Compare June 15, 2026 19:19
@sionsmith sionsmith closed this Jun 16, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jun 16, 2026

Copy link
Copy Markdown
Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot Bot deleted the dependabot/github_actions/actions/checkout-6 branch June 16, 2026 20:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant