)]}'
{
  "commit": "933bc61ade9cf90064b14eeb728b0179ccd60571",
  "tree": "93ea92f3c12bee86ffdaba23e1aa8083e8ea92b1",
  "parents": [
    "4513d35f44215cf5e0af9e4678ea535c90e00c53",
    "ac94706fa1ea7a818328a59aa1215e2057b81c5a"
  ],
  "author": {
    "name": "Michał Sawicz",
    "email": "michal@sawicz.net",
    "time": "Tue Aug 04 10:10:39 2026"
  },
  "committer": {
    "name": "GitHub",
    "email": "noreply@github.com",
    "time": "Tue Aug 04 10:10:39 2026"
  },
  "message": "Update all dependencies (#461)\n\nThis PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [actions/checkout](https://redirect.github.com/actions/checkout) |\naction | major | `v6.0.3` → `v7.0.1` |\n|\n[actions/setup-python](https://redirect.github.com/actions/setup-python)\n| action | major | `v6.3.0` → `v7.0.0` |\n|\n[jackdewinter/pymarkdown](https://redirect.github.com/jackdewinter/pymarkdown)\n| repository | patch | `v0.9.38` → `v0.9.39` |\n|\n[tiobe/tics-github-action](https://redirect.github.com/tiobe/tics-github-action)\n| action | minor | `v3.11.0` → `v3.12.0` |\n|\n[zizmorcore/zizmor-pre-commit](https://redirect.github.com/zizmorcore/zizmor-pre-commit)\n| repository | minor | `v1.28.0` → `v1.29.0` |\n\nNote: The `pre-commit` manager in Renovate is not supported by the\n`pre-commit` maintainers or community. Please do not report any problems\nthere, instead [create a Discussion in the Renovate\nrepository](https://redirect.github.com/renovatebot/renovate/discussions/new)\nif you have any questions.\n\n---\n\n### Release Notes\n\n\u003cdetails\u003e\n\u003csummary\u003eactions/checkout (actions/checkout)\u003c/summary\u003e\n\n###\n[`v7.0.1`](https://redirect.github.com/actions/checkout/blob/HEAD/CHANGELOG.md#v701)\n\n[Compare\nSource](https://redirect.github.com/actions/checkout/compare/v7.0.0...v7.0.1)\n\n- Bump github/codeql-action from 3 to 4 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2475](https://redirect.github.com/actions/checkout/pull/2475)\n- Bump actions/setup-node from 4 to 6 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2477](https://redirect.github.com/actions/checkout/pull/2477)\n- Bump docker/build-push-action from 6.5.0 to 7.2.0 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2478](https://redirect.github.com/actions/checkout/pull/2478)\n- Bump docker/login-action from 3.3.0 to 4.2.0 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2479](https://redirect.github.com/actions/checkout/pull/2479)\n- Bump actions/checkout from 6 to 7 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2488](https://redirect.github.com/actions/checkout/pull/2488)\n- Bump actions/upload-artifact from 4 to 7 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2476](https://redirect.github.com/actions/checkout/pull/2476)\n- eslint 9 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2474](https://redirect.github.com/actions/checkout/pull/2474)\n- Bump the minor-actions-dependencies group with 2 updates by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2499](https://redirect.github.com/actions/checkout/pull/2499)\n- skip running unsafe pr check if input is default by\n[@\u0026#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in\n[#\u0026#8203;2518](https://redirect.github.com/actions/checkout/pull/2518)\n- trim only ascii whitespace for branch by\n[@\u0026#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in\n[#\u0026#8203;2521](https://redirect.github.com/actions/checkout/pull/2521)\n- escape values passed to --unset by\n[@\u0026#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in\n[#\u0026#8203;2530](https://redirect.github.com/actions/checkout/pull/2530)\n\n###\n[`v7.0.0`](https://redirect.github.com/actions/checkout/blob/HEAD/CHANGELOG.md#v700)\n\n[Compare\nSource](https://redirect.github.com/actions/checkout/compare/v6.1.0...v7.0.0)\n\n- Block checking out fork PR for pull\\_request\\_target and workflow\\_run\nby [@\u0026#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in\n[#\u0026#8203;2454](https://redirect.github.com/actions/checkout/pull/2454)\n- Bump actions/publish-immutable-action from 0.0.3 to 0.0.4 in the\nminor-actions-dependencies group across 1 directory by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2458](https://redirect.github.com/actions/checkout/pull/2458)\n- Bump flatted from 3.3.1 to 3.4.2 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2460](https://redirect.github.com/actions/checkout/pull/2460)\n- Bump js-yaml from 4.1.0 to 4.2.0 by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2461](https://redirect.github.com/actions/checkout/pull/2461)\n- Bump [@\u0026#8203;actions/core](https://redirect.github.com/actions/core)\nand\n[@\u0026#8203;actions/tool-cache](https://redirect.github.com/actions/tool-cache)\nand Remove uuid by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2459](https://redirect.github.com/actions/checkout/pull/2459)\n- upgrade module to esm and update dependencies by\n[@\u0026#8203;aiqiaoy](https://redirect.github.com/aiqiaoy) in\n[#\u0026#8203;2463](https://redirect.github.com/actions/checkout/pull/2463)\n- Bump the minor-npm-dependencies group across 1 directory with 3\nupdates by\n[@\u0026#8203;dependabot](https://redirect.github.com/dependabot)\\[bot] in\n[#\u0026#8203;2462](https://redirect.github.com/actions/checkout/pull/2462)\n\n###\n[`v6.1.0`](https://redirect.github.com/actions/checkout/compare/v6.0.3...v6.1.0)\n\n[Compare\nSource](https://redirect.github.com/actions/checkout/compare/v6.0.3...v6.1.0)\n\n\u003c/details\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003eactions/setup-python (actions/setup-python)\u003c/summary\u003e\n\n###\n[`v7.0.0`](https://redirect.github.com/actions/setup-python/compare/v6.3.0...v7.0.0)\n\n[Compare\nSource](https://redirect.github.com/actions/setup-python/compare/v6.3.0...v7.0.0)\n\n\u003c/details\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003ejackdewinter/pymarkdown (jackdewinter/pymarkdown)\u003c/summary\u003e\n\n###\n[`v0.9.39`](https://redirect.github.com/jackdewinter/pymarkdown/releases/tag/v0.9.39):\nVersion 0.9.39 - 2026-07-11\n\n[Compare\nSource](https://redirect.github.com/jackdewinter/pymarkdown/compare/v0.9.38...v0.9.39)\n\nThis release focused on some internal cleanup work and a major change!\nPlease check out our [improved API\ndocumentation](https://pymarkdown.readthedocs.io/en/latest/api/pymarkdownapi/)\nalong with a new [support\ndocument](https://pymarkdown.readthedocs.io/en/latest/api/) giving what\nwe believe is a solid walk-through of the existing Python PyMarkdownApi.\n\n#### Added\n\n- [Issue\n1553](https://redirect.github.com/jackdewinter/pymarkdown/issues/1553)\n- Added new documentation around how APIs are listed in the\ndocumentation.\n  - Added a completely redone document showing how to the PyMarkdownApi.\n\n#### Changed\n\n- [Issue\n1625](https://redirect.github.com/jackdewinter/pymarkdown/issues/1625)\n- Changed how HTML tokens are generated for testing, to make more\nstreamlined\n\n\u003c/details\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003etiobe/tics-github-action (tiobe/tics-github-action)\u003c/summary\u003e\n\n###\n[`v3.12.0`](https://redirect.github.com/tiobe/tics-github-action/releases/tag/v3.12.0)\n\n[Compare\nSource](https://redirect.github.com/tiobe/tics-github-action/compare/v3.11.0...v3.12.0)\n\n\u003c!-- Release notes generated using configuration in .github/release.yml\nat main --\u003e\n\n#### What\u0027s Changed\n\n##### Features\n\n- RM-37915: Added TQI impact table to the summary by\n[@\u0026#8203;janssen-tiobe](https://redirect.github.com/janssen-tiobe) in\n[#\u0026#8203;528](https://redirect.github.com/tiobe/tics-github-action/pull/528)\n\n**Full Changelog**:\n\u003chttps://github.com/tiobe/tics-github-action/compare/v3.11.0...v3.12.0\u003e\n\n\u003c/details\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003ezizmorcore/zizmor-pre-commit\n(zizmorcore/zizmor-pre-commit)\u003c/summary\u003e\n\n###\n[`v1.29.0`](https://redirect.github.com/zizmorcore/zizmor-pre-commit/releases/tag/v1.29.0)\n\n[Compare\nSource](https://redirect.github.com/zizmorcore/zizmor-pre-commit/compare/v1.28.0...v1.29.0)\n\n#### New Features\n🌈[🔗](https://docs.zizmor.sh/release-notes/#new-features)\n\n- zizmor now has **experimental** support for auditing pre-commit\ninputs, meaning both pre-commit configuration and hook definitions\n([#\u0026#8203;2209](https://redirect.github.com/zizmorcore/zizmor/issues/2209))\n\n- New audit:\n[insecure-url-scheme](https://docs.zizmor.sh/audits/#insecure-url-scheme)\ndetects usages of insecure (i.e. plaintext) protocols when making\nnetwork requests. The initial version of this audit is limited to\npre-commit inputs only\n([#\u0026#8203;2228](https://redirect.github.com/zizmorcore/zizmor/issues/2228))\n\n- zizmor now supports GitHub\u0027s \"self-repository\" reference syntax for\nlocal actions, e.g. `uses: $/foo/bar` instead of a manual checkout and\n`uses: ./foo/bar`\n([#\u0026#8203;2248](https://redirect.github.com/zizmorcore/zizmor/issues/2248))\n\n#### Changes ⚠️[🔗](https://docs.zizmor.sh/release-notes/#changes)\n\n- The [unpinned-uses](https://docs.zizmor.sh/audits/#unpinned-uses) and\n[unpinned-images](https://docs.zizmor.sh/audits/#unpinned-images) audits\nhave been separated more cleanly:\n[unpinned-uses](https://docs.zizmor.sh/audits/#unpinned-uses) is now\nprincipally responsible for Git-style `uses:` clauses, whereas\n[unpinned-images](https://docs.zizmor.sh/audits/#unpinned-images) is now\nresponsible for `docker://`-style `uses:` clauses (in addition to\nalready checking other image references)\n([#\u0026#8203;2222](https://redirect.github.com/zizmorcore/zizmor/issues/2222))\n\n#### Removals 🌅[🔗](https://docs.zizmor.sh/release-notes/#removals)\n\n- `--collect\u003dworkflows-only` and `--collect\u003dactions-only` have been\nfully removed. Use `--collect\u003dworkflows` and `--collect\u003dactions` for the\nreplacement behavior\n([#\u0026#8203;2242](https://redirect.github.com/zizmorcore/zizmor/issues/2242))\n\n#### Bug Fixes 🐛[🔗](https://docs.zizmor.sh/release-notes/#bug-fixes)\n\n- Fixed a bug where zizmor would reject a valid workflow definition for\ncontaining a literal jobs.\u003cjob\u003e.outputs.\u003cname\u003e value for being a\nnon-string\n([#\u0026#8203;2220](https://redirect.github.com/zizmorcore/zizmor/issues/2220))\n\n- Fixed a bug where the\n[github-app](https://docs.zizmor.sh/audits/#github-app) audit would\nincorrectly flag some usages as needing a repositories: key, despite\nrequesting organization-level-only permissions\n([#\u0026#8203;2227](https://redirect.github.com/zizmorcore/zizmor/issues/2227))\n\n- Fixed a class of bugs where zizmor would discover the user\u0027s\nconfiguration in unintuitive ways. When auditing from a Git repository,\nzizmor now uses the repository root to discover configuration\nconsistently\n([#\u0026#8203;2234](https://redirect.github.com/zizmorcore/zizmor/issues/2234))\n\n\u003c/details\u003e\n\n---\n\n### Configuration\n\n📅 **Schedule**: (UTC)\n\n- Branch creation\n  - At any time (no schedule defined)\n- Automerge\n  - At any time (no schedule defined)\n\n🚦 **Automerge**: Disabled by config. Please merge this manually once you\nare satisfied.\n\n♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the\nrebase/retry checkbox.\n\n👻 **Immortal**: This PR will be recreated if closed unmerged. Get\n[config\nhelp](https://redirect.github.com/renovatebot/renovate/discussions) if\nthat\u0027s undesired.\n\n---\n\n- [ ] \u003c!-- rebase-check --\u003eIf you want to rebase/retry this PR, check\nthis box\n\n---\n\nThis PR was generated by [Mend Renovate](https://mend.io/renovate/).\nView the [repository job\nlog](https://developer.mend.io/github/canonical/wlcs).\n\n\u003c!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC4zLjIiLCJ1cGRhdGVkSW5WZXIiOiI0NC4zLjIiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbXX0\u003d--\u003e\n",
  "tree_diff": []
}
