Skip to content

chore(deps): bump terraform-linters/setup-tflint from 6.2.0 to 6.2.1#4860

Merged
npalm merged 1 commit intomainfrom
dependabot/github_actions/terraform-linters/setup-tflint-6.2.1
Nov 5, 2025
Merged

chore(deps): bump terraform-linters/setup-tflint from 6.2.0 to 6.2.1#4860
npalm merged 1 commit intomainfrom
dependabot/github_actions/terraform-linters/setup-tflint-6.2.1

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Nov 3, 2025

Bumps terraform-linters/setup-tflint from 6.2.0 to 6.2.1.

Release notes

Sourced from terraform-linters/setup-tflint's releases.

v6.2.1

What's Changed

Features

Dependencies

Full Changelog: terraform-linters/setup-tflint@v6...v6.2.1

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [terraform-linters/setup-tflint](https://github.com/terraform-linters/setup-tflint) from 6.2.0 to 6.2.1.
- [Release notes](https://github.com/terraform-linters/setup-tflint/releases)
- [Commits](terraform-linters/setup-tflint@acd1575...4cb9fee)

---
updated-dependencies:
- dependency-name: terraform-linters/setup-tflint
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code labels Nov 3, 2025
@dependabot dependabot Bot requested a review from a team as a code owner November 3, 2025 09:50
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code labels Nov 3, 2025
@github-actions
Copy link
Copy Markdown
Contributor

github-actions Bot commented Nov 3, 2025

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

OpenSSF Scorecard

PackageVersionScoreDetails
actions/terraform-linters/setup-tflint 4cb9feea73331a35b422df102992a03a44a3bb33 🟢 5.8
Details
CheckScoreReason
Code-Review⚠️ 2Found 2/10 approved changesets -- score normalized to 2
Maintained🟢 1029 commit(s) and 5 issue activity found in the last 90 days -- score normalized to 10
Binary-Artifacts🟢 10no binaries found in the repo
Packaging⚠️ -1packaging workflow not detected
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Pinned-Dependencies🟢 10all dependencies are pinned
Security-Policy⚠️ 0security policy file not detected
License🟢 10license file detected
Signed-Releases⚠️ -1no releases found
Branch-Protection⚠️ 1branch protection is not maximal on development and all release branches
Fuzzing⚠️ 0project is not fuzzed
Vulnerabilities🟢 100 existing vulnerabilities detected
SAST🟢 9SAST tool is not run on all commits -- score normalized to 9

Scanned Files

  • .github/workflows/terraform.yml

@npalm npalm merged commit 52de7e6 into main Nov 5, 2025
43 checks passed
@npalm npalm deleted the dependabot/github_actions/terraform-linters/setup-tflint-6.2.1 branch November 5, 2025 08:33
LudovicTOURMAN pushed a commit to doctolib-lab/terraform-aws-github-runner that referenced this pull request Apr 7, 2026
…ithub-aws-runners#4860)

Bumps
[terraform-linters/setup-tflint](https://github.com/terraform-linters/setup-tflint)
from 6.2.0 to 6.2.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/terraform-linters/setup-tflint/releases">terraform-linters/setup-tflint's
releases</a>.</em></p>
<blockquote>
<h2>v6.2.1</h2>
<!-- raw HTML omitted -->
<h2>What's Changed</h2>
<h3>Features</h3>
<ul>
<li>fix: install wrapper after version/cache steps by <a
href="https://github.com/bendrucker"><code>@​bendrucker</code></a> in <a
href="https://redirect.github.com/terraform-linters/setup-tflint/pull/357">terraform-linters/setup-tflint#357</a></li>
</ul>
<h3>Dependencies</h3>
<ul>
<li>build(deps): Bump brace-expansion by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot]
in <a
href="https://redirect.github.com/terraform-linters/setup-tflint/pull/348">terraform-linters/setup-tflint#348</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/terraform-linters/setup-tflint/compare/v6...v6.2.1">https://github.com/terraform-linters/setup-tflint/compare/v6...v6.2.1</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/terraform-linters/setup-tflint/commit/4cb9feea73331a35b422df102992a03a44a3bb33"><code>4cb9fee</code></a>
build(deps): Bump brace-expansion (<a
href="https://redirect.github.com/terraform-linters/setup-tflint/issues/348">#348</a>)</li>
<li><a
href="https://github.com/terraform-linters/setup-tflint/commit/481814e6e6fd6f4bbc7ebde5aaf9cef5372deaa5"><code>481814e</code></a>
fix: install wrapper after version/cache steps (<a
href="https://redirect.github.com/terraform-linters/setup-tflint/issues/357">#357</a>)</li>
<li>See full diff in <a
href="https://github.com/terraform-linters/setup-tflint/compare/acd1575d3c037258ce5b2dd01379dc49ce24c6b7...4cb9feea73331a35b422df102992a03a44a3bb33">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=terraform-linters/setup-tflint&package-manager=github_actions&previous-version=6.2.0&new-version=6.2.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant