4255 Commits

Author SHA1 Message Date
dependabot[bot]
935d37f5c2
Bump sentry-sdk from 2.13.0 to 2.16.0 in /spiffworkflow-backend (#2114)
Bumps [sentry-sdk](https://github.com/getsentry/sentry-python) from 2.13.0 to 2.16.0.
- [Release notes](https://github.com/getsentry/sentry-python/releases)
- [Changelog](https://github.com/getsentry/sentry-python/blob/master/CHANGELOG.md)
- [Commits](https://github.com/getsentry/sentry-python/compare/2.13.0...2.16.0)

---
updated-dependencies:
- dependency-name: sentry-sdk
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-14 14:41:27 +00:00
dependabot[bot]
c55bc05dfb
Bump codecov/codecov-action from 4.5.0 to 4.6.0 (#2113)
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 4.5.0 to 4.6.0.
- [Release notes](https://github.com/codecov/codecov-action/releases)
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/codecov/codecov-action/compare/v4.5.0...v4.6.0)

---
updated-dependencies:
- dependency-name: codecov/codecov-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-14 14:39:37 +00:00
Kevin Burnett
2e9047248c
Codespaces (#2112)
* grab files from sartography/spiff-codespaces

* build images for codespaces w/ burnettk

* use codespaces image w/ burnettk

* use correct image for frontend w/ burnettk

* use alternate proxy_set_header approach

* new image

* fix image

* revert a couple files back to main version

---------

Co-authored-by: burnettk <burnettk@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-10-14 07:02:07 -07:00
dependabot[bot]
8a9c7c399b
Bump eslint-plugin-sonarjs from 1.0.3 to 2.0.3 in /spiffworkflow-frontend (#2092)
* Bump eslint-plugin-sonarjs in /spiffworkflow-frontend

Bumps [eslint-plugin-sonarjs](https://github.com/SonarSource/SonarJS) from 1.0.3 to 2.0.3.
- [Release notes](https://github.com/SonarSource/SonarJS/releases)
- [Commits](https://github.com/SonarSource/SonarJS/commits)

---
updated-dependencies:
- dependency-name: eslint-plugin-sonarjs
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>

* resolved sonarjs lint issues mostly by ignoring them

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-10-11 11:17:26 -04:00
dependabot[bot]
785262e7ff
Bump coverage from 7.6.1 to 7.6.2 in /spiffworkflow-backend (#2109)
Bumps [coverage](https://github.com/nedbat/coveragepy) from 7.6.1 to 7.6.2.
- [Release notes](https://github.com/nedbat/coveragepy/releases)
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst)
- [Commits](https://github.com/nedbat/coveragepy/compare/7.6.1...7.6.2)

---
updated-dependencies:
- dependency-name: coverage
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-11 15:02:58 +00:00
dependabot[bot]
b10f37aa8b
Bump sonarsource/sonarcloud-github-action from 3.0.0 to 3.1.0 (#2108)
Bumps [sonarsource/sonarcloud-github-action](https://github.com/sonarsource/sonarcloud-github-action) from 3.0.0 to 3.1.0.
- [Release notes](https://github.com/sonarsource/sonarcloud-github-action/releases)
- [Commits](https://github.com/sonarsource/sonarcloud-github-action/compare/v3.0.0...v3.1.0)

---
updated-dependencies:
- dependency-name: sonarsource/sonarcloud-github-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-11 14:32:57 +00:00
dependabot[bot]
422645d52b
Bump docker/build-push-action from 6.7.0 to 6.9.0 (#2094)
Bumps [docker/build-push-action](https://github.com/docker/build-push-action) from 6.7.0 to 6.9.0.
- [Release notes](https://github.com/docker/build-push-action/releases)
- [Commits](https://github.com/docker/build-push-action/compare/v6.7.0...v6.9.0)

---
updated-dependencies:
- dependency-name: docker/build-push-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-10-11 10:08:28 -04:00
dependabot[bot]
4076015b09
Bump restrictedpython from 7.1 to 7.4 in /spiffworkflow-backend (#2107)
Bumps [restrictedpython](https://github.com/zopefoundation/RestrictedPython) from 7.1 to 7.4.
- [Changelog](https://github.com/zopefoundation/RestrictedPython/blob/master/CHANGES.rst)
- [Commits](https://github.com/zopefoundation/RestrictedPython/compare/7.1...7.4)

---
updated-dependencies:
- dependency-name: restrictedpython
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-10 15:24:58 +00:00
Kevin Burnett
336c42b689
support proxy count for proxy fix (#2106)
Co-authored-by: burnettk <burnettk@users.noreply.github.com>
2024-10-10 07:51:22 -07:00
jbirddog
3d35ba7ee9
Add Python 3.12 support for connector proxy (#2104) 2024-10-09 16:18:15 -04:00
jasquat
395116890b
run poetry install after copying in the current directory for connector-example w/ burnettk (#2105)
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
v0.0.60
2024-10-09 15:01:30 -04:00
jasquat
b1359e3083
Do not delete canceled tasks (#2103)
* do not delete tasks that were canceled when we terminate a pi w/ burnettk

* added test to ensure pi can be terminated with subprocess w/ burnettk

---------

Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-10-09 08:58:39 -07:00
Kevin Burnett
f88ec4961a
allow internal openid url as issuer (#2101)
Co-authored-by: burnettk <burnettk@users.noreply.github.com>
2024-10-07 15:12:26 -07:00
Usama Ahmad
7d0e908074
guest_user_and_data_object_section_update (#2098) 2024-10-07 06:28:40 -07:00
jbirddog
dbd1b1b181
Editable dev container for connector proxy demo (#2097)
For easier local development and training purposes, this adds an editable dev container for the connector proxy demo as well as a local example connector that can be changed in the live environment without needing to poetry install a connector for another location.
2024-10-03 12:28:20 -04:00
burnettk
341a89c253
quote asterisk 2024-10-01 08:43:30 -04:00
Kevin Burnett
4dd0d67b6c
update to flask cors 5, which has a breaking change, which works locally (#2095)
* update to flask cors 5, which has a breaking change, which works locally

* ignore wrong safety issue

---------

Co-authored-by: burnettk <burnettk@users.noreply.github.com>
2024-10-01 11:52:57 +00:00
Bret Mogilefsky
e6227dd437
Try to head off file ownership issues (#2096)
See https://github.com/sartography/spiff-arena/pull/2090#issuecomment-2384667055
2024-10-01 11:52:22 +00:00
Bret Mogilefsky
459aec92d5
Enable having created files match the local user:group (#2090)
* Enable having created file match the local user:group

If you run `docker compose up` with no other arguments, the `process_models` directory and everything in it will be created with `root:root` ownership. That's not great for the local editing use-case. 

With this change, running `UGID="$(id -u):$(id -g)" docker compose up` will result in any created files matching the ownership of the invoking user. If the user doesn't set `UGID`, then the existing ownership (`root:root`) is the the default.

* Remove the need to explicitly mark git repositories safe

By setting `*` for `safe.directory` when the image is built, we remove
the need to run `git config` when starting the app in Docker. This
enables the container to run as any user, not just `root`.

* Use local variable naming convention
2024-09-30 09:15:33 -07:00
dependabot[bot]
31ded57177
Bump mypy from 1.11.1 to 1.11.2 in /spiffworkflow-backend (#2086)
Bumps [mypy](https://github.com/python/mypy) from 1.11.1 to 1.11.2.
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md)
- [Commits](https://github.com/python/mypy/compare/v1.11.1...v1.11.2)

---
updated-dependencies:
- dependency-name: mypy
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-19 15:08:35 +00:00
dependabot[bot]
a1900ab464
Bump safety from 3.2.6 to 3.2.7 in /spiffworkflow-backend (#2085)
Bumps [safety](https://github.com/pyupio/safety) from 3.2.6 to 3.2.7.
- [Release notes](https://github.com/pyupio/safety/releases)
- [Changelog](https://github.com/pyupio/safety/blob/main/CHANGELOG.md)
- [Commits](https://github.com/pyupio/safety/compare/3.2.6...3.2.7)

---
updated-dependencies:
- dependency-name: safety
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 15:19:09 +00:00
dependabot[bot]
56c0976727
Bump types-requests in /spiffworkflow-backend (#2084)
Bumps [types-requests](https://github.com/python/typeshed) from 2.32.0.20240712 to 2.32.0.20240914.
- [Commits](https://github.com/python/typeshed/commits)

---
updated-dependencies:
- dependency-name: types-requests
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-17 15:10:56 +00:00
pitwegner
4ca1e5315f
Allow for optional AZP validation in authentication_service (#2082)
* add config for disabling azp validation

* skip azp verify if configured that way
2024-09-16 11:45:29 -07:00
dependabot[bot]
346eab8eaa
Bump simplejson from 3.19.2 to 3.19.3 in /spiffworkflow-backend (#2081)
Bumps [simplejson](https://github.com/simplejson/simplejson) from 3.19.2 to 3.19.3.
- [Release notes](https://github.com/simplejson/simplejson/releases)
- [Changelog](https://github.com/simplejson/simplejson/blob/master/CHANGES.txt)
- [Commits](https://github.com/simplejson/simplejson/compare/v3.19.2...v3.19.3)

---
updated-dependencies:
- dependency-name: simplejson
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-16 18:22:45 +00:00
Usama Ahmad
db01d0e2d7
docker_permission_issue_faq (#2083) 2024-09-16 09:22:45 -07:00
Usama Ahmad
fe3613899e
Data store identifier and Script Ref (#2080)
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-09-10 07:57:27 -07:00
dependabot[bot]
5abca0cfbc
Bump snyk/actions (#2078)
Bumps [snyk/actions](https://github.com/snyk/actions) from 9213221444c2dc9e8b2502c1e857c26d851e84a7 to cdb760004ba9ea4d525f2e043745dfe85bb9077e.
- [Release notes](https://github.com/snyk/actions/releases)
- [Commits](9213221444...cdb760004b)

---
updated-dependencies:
- dependency-name: snyk/actions
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-09-10 10:47:19 -04:00
dependabot[bot]
d3e2d0db7e
Bump coverage from 7.6.0 to 7.6.1 in /spiffworkflow-backend (#2074)
Bumps [coverage](https://github.com/nedbat/coveragepy) from 7.6.0 to 7.6.1.
- [Release notes](https://github.com/nedbat/coveragepy/releases)
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst)
- [Commits](https://github.com/nedbat/coveragepy/compare/7.6.0...7.6.1)

---
updated-dependencies:
- dependency-name: coverage
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-09-10 10:47:03 -04:00
jasquat
f1360572fb
coverage-upload-fix (#2076)
* update coverage upload path since it seems like they respect working directory now w/ burnettk

* added some upload artifact tests

* need to checkout code

* git rid of the constraint

* attempt to fix upload properly

* put back comment

---------

Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-09-10 10:13:23 -04:00
jbirddog
ca88178700
Fix for lost error/escalation events (#2075)
* WIP

* Getting pyl to pass
2024-09-04 09:20:36 -07:00
dependabot[bot]
d8627ce24e
Bump sentry-sdk from 2.10.0 to 2.13.0 in /spiffworkflow-backend (#2072)
Bumps [sentry-sdk](https://github.com/getsentry/sentry-python) from 2.10.0 to 2.13.0.
- [Release notes](https://github.com/getsentry/sentry-python/releases)
- [Changelog](https://github.com/getsentry/sentry-python/blob/master/CHANGELOG.md)
- [Commits](https://github.com/getsentry/sentry-python/compare/2.10.0...2.13.0)

---
updated-dependencies:
- dependency-name: sentry-sdk
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-30 14:40:29 +00:00
dependabot[bot]
2974181e19
Bump pytest from 8.2.2 to 8.3.2 in /spiffworkflow-backend (#2071)
Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.2.2 to 8.3.2.
- [Release notes](https://github.com/pytest-dev/pytest/releases)
- [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst)
- [Commits](https://github.com/pytest-dev/pytest/compare/8.2.2...8.3.2)

---
updated-dependencies:
- dependency-name: pytest
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-29 15:20:20 +00:00
dependabot[bot]
ef52a024b3
Bump actions/setup-python from 5.1.1 to 5.2.0 (#2069)
Bumps [actions/setup-python](https://github.com/actions/setup-python) from 5.1.1 to 5.2.0.
- [Release notes](https://github.com/actions/setup-python/releases)
- [Commits](https://github.com/actions/setup-python/compare/v5.1.1...v5.2.0)

---
updated-dependencies:
- dependency-name: actions/setup-python
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-29 14:34:01 +00:00
dependabot[bot]
fec284d185
Bump types-pyyaml in /spiffworkflow-backend (#2068)
Bumps [types-pyyaml](https://github.com/python/typeshed) from 6.0.12.20240724 to 6.0.12.20240808.
- [Commits](https://github.com/python/typeshed/commits)

---
updated-dependencies:
- dependency-name: types-pyyaml
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-28 14:43:48 +00:00
dependabot[bot]
388f367b0c
Bump keycloak-js from 24.0.4 to 25.0.4 in /spiffworkflow-frontend (#2067)
Bumps [keycloak-js](https://github.com/keycloak/keycloak) from 24.0.4 to 25.0.4.
- [Release notes](https://github.com/keycloak/keycloak/releases)
- [Commits](https://github.com/keycloak/keycloak/compare/24.0.4...25.0.4)

---
updated-dependencies:
- dependency-name: keycloak-js
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-28 14:27:15 +00:00
jasquat
8be51e8641
do not upgrade gunicorn w/ burnettk v0.0.59 2024-08-27 14:20:17 -04:00
dependabot[bot]
557264c591
Bump xdoctest from 1.1.6 to 1.2.0 in /spiffworkflow-backend (#2066)
Bumps [xdoctest](https://github.com/Erotemic/xdoctest) from 1.1.6 to 1.2.0.
- [Release notes](https://github.com/Erotemic/xdoctest/releases)
- [Changelog](https://github.com/Erotemic/xdoctest/blob/main/CHANGELOG.md)
- [Commits](https://github.com/Erotemic/xdoctest/compare/v1.1.6...v1.2.0)

---
updated-dependencies:
- dependency-name: xdoctest
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-27 15:23:24 +00:00
dependabot[bot]
458ed2b6d5
Bump @carbon/icons-react in /spiffworkflow-frontend (#2065)
Bumps [@carbon/icons-react](https://github.com/carbon-design-system/carbon/tree/HEAD/packages/icons-react) from 11.36.0 to 11.47.1.
- [Release notes](https://github.com/carbon-design-system/carbon/releases)
- [Changelog](https://github.com/carbon-design-system/carbon/blob/main/docs/release.md)
- [Commits](https://github.com/carbon-design-system/carbon/commits/HEAD/packages/icons-react)

---
updated-dependencies:
- dependency-name: "@carbon/icons-react"
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-27 15:00:05 +00:00
dependabot[bot]
70ff917c64
Bump snyk/actions (#2064)
Bumps [snyk/actions](https://github.com/snyk/actions) from ae9442546152ba9bb0a1c85e2672112c97e7a06d to 9213221444c2dc9e8b2502c1e857c26d851e84a7.
- [Release notes](https://github.com/snyk/actions/releases)
- [Commits](ae94425461...9213221444)

---
updated-dependencies:
- dependency-name: snyk/actions
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-27 14:43:38 +00:00
jbirddog
8949073595
Bubble up unhandled error and escalation events at the end of the workflow (#2058) 2024-08-26 14:15:19 -04:00
dependabot[bot]
df58e28120
Bump sonarsource/sonarcloud-github-action from 2.3.0 to 3.0.0 (#2060)
Bumps [sonarsource/sonarcloud-github-action](https://github.com/sonarsource/sonarcloud-github-action) from 2.3.0 to 3.0.0.
- [Release notes](https://github.com/sonarsource/sonarcloud-github-action/releases)
- [Commits](https://github.com/sonarsource/sonarcloud-github-action/compare/v2.3.0...v3.0.0)

---
updated-dependencies:
- dependency-name: sonarsource/sonarcloud-github-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-26 16:19:58 +00:00
dependabot[bot]
1ba5762805
Bump inherits-browser from 0.0.1 to 0.1.0 in /spiffworkflow-frontend (#2061)
Bumps [inherits-browser](https://github.com/nikku/inherits-browser) from 0.0.1 to 0.1.0.
- [Changelog](https://github.com/nikku/inherits-browser/blob/master/CHANGELOG.md)
- [Commits](https://github.com/nikku/inherits-browser/compare/v0.0.1...v0.1.0)

---
updated-dependencies:
- dependency-name: inherits-browser
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-26 15:43:20 +00:00
dependabot[bot]
267c28ce1c
Bump gunicorn from 21.2.0 to 23.0.0 in /spiffworkflow-backend (#2059)
Bumps [gunicorn](https://github.com/benoitc/gunicorn) from 21.2.0 to 23.0.0.
- [Release notes](https://github.com/benoitc/gunicorn/releases)
- [Commits](https://github.com/benoitc/gunicorn/compare/21.2.0...23.0.0)

---
updated-dependencies:
- dependency-name: gunicorn
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-26 15:29:15 +00:00
Usama Ahmad
8fac3be961
link fix (#2057) 2024-08-23 08:21:05 -07:00
dependabot[bot]
0b91c59c8e
Bump @typescript-eslint/parser in /spiffworkflow-frontend (#2056)
Bumps [@typescript-eslint/parser](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/parser) from 7.11.0 to 7.18.0.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/parser/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v7.18.0/packages/parser)

---
updated-dependencies:
- dependency-name: "@typescript-eslint/parser"
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-23 15:19:29 +00:00
dependabot[bot]
311ffefb8d
Bump docker/build-push-action from 6.6.1 to 6.7.0 (#2055)
Bumps [docker/build-push-action](https://github.com/docker/build-push-action) from 6.6.1 to 6.7.0.
- [Release notes](https://github.com/docker/build-push-action/releases)
- [Commits](https://github.com/docker/build-push-action/compare/v6.6.1...v6.7.0)

---
updated-dependencies:
- dependency-name: docker/build-push-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-23 15:14:14 +00:00
dependabot[bot]
7d4a4adde6
Bump lxml from 5.2.2 to 5.3.0 in /spiffworkflow-backend (#2054)
Bumps [lxml](https://github.com/lxml/lxml) from 5.2.2 to 5.3.0.
- [Release notes](https://github.com/lxml/lxml/releases)
- [Changelog](https://github.com/lxml/lxml/blob/master/CHANGES.txt)
- [Commits](https://github.com/lxml/lxml/compare/lxml-5.2.2...lxml-5.3.0)

---
updated-dependencies:
- dependency-name: lxml
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-23 14:39:45 +00:00
dependabot[bot]
b091b18f31
Bump snyk/actions (#2043)
Bumps [snyk/actions](https://github.com/snyk/actions) from 6312a53377a551c0258438bf25fb8f378afbc977 to ae9442546152ba9bb0a1c85e2672112c97e7a06d.
- [Release notes](https://github.com/snyk/actions/releases)
- [Commits](6312a53377...ae94425461)

---
updated-dependencies:
- dependency-name: snyk/actions
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-08-22 14:17:49 -04:00
dependabot[bot]
4269024551
Bump react-datepicker from 4.11.0 to 7.3.0 in /spiffworkflow-frontend (#2042)
Bumps [react-datepicker](https://github.com/Hacker0x01/react-datepicker) from 4.11.0 to 7.3.0.
- [Release notes](https://github.com/Hacker0x01/react-datepicker/releases)
- [Commits](https://github.com/Hacker0x01/react-datepicker/compare/v4.11.0...v7.3.0)

---
updated-dependencies:
- dependency-name: react-datepicker
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: jasquat <jasquat@users.noreply.github.com>
2024-08-22 14:15:59 -04:00
dependabot[bot]
15bec7a27b
Bump safety from 3.2.3 to 3.2.6 in /spiffworkflow-backend (#2053)
Bumps [safety](https://github.com/pyupio/safety) from 3.2.3 to 3.2.6.
- [Release notes](https://github.com/pyupio/safety/releases)
- [Changelog](https://github.com/pyupio/safety/blob/main/CHANGELOG.md)
- [Commits](https://github.com/pyupio/safety/compare/3.2.3...3.2.6)

---
updated-dependencies:
- dependency-name: safety
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-22 15:21:27 +00:00