Skip to content

actions updates #1818

Description

@jacalata

From Brian's PR:

  • pypa/gh-action-pypi-publish@release/v1 — pinned to the maintainer's documented floating branch ref (their README explicitly shows this usage). Latest concrete tag is v1.14.0. Per pypa's own "pro tip," pinning to an exact tag/SHA instead of the branch is more reproducible — worth considering.

  • MishaKav/pytest-coverage-comment@main — currently tracks the main branch directly (not a version tag). Latest release is v1.10.0. Should pin to a tagged version instead of main to avoid unreviewed changes landing silently.

  • archive/github-actions-slack@v2.8.0 — real version bump available to v3.1.0 (major version jump). Needs a changelog/breaking-change check before upgrading.

Metadata

Metadata

Assignees

No one assigned

    Labels

    infraInfrastructure issues (GitHub, etc)

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions