Bump pypa/gh-action-pypi-publish from 1.8.11 to 1.8.12
Bumps pypa/gh-action-pypi-publish from 1.8.11 to 1.8.12.
Release notes
Sourced from pypa/gh-action-pypi-publish's releases.
v1.8.12
💅 Cosmetic Output Improvements
@woodruffw💰 replaced the notice annotations with simplified debug messages related to authentication methanism selection via #196. The also improved the error clarity during OIDC exchange on PRs from forks via #203.📝 What's Documented
@virtuald💰 updated the docs and pointer messages were updated to mention that reusable workflows aren't supported right now in #186 and@xuanzhi33💰 later corrected the markdown syntax there via #216.🛠️ Internal Dependencies
- pre-commit linters got autoupdated @ #204
- Cryptography was bumped from 41.0.6 to 42.0.4 @ #210, #213 and #214
⚙️ Secret Stuff
@woodruffwproactively updated the OIDC minting API endpoint used during the exchange via #206. Nothing you should be too concerned about, promise!💪 New Contributors
@virtualdmade their first contribution in pypa/gh-action-pypi-publish#186@xuanzhi33made their first contribution in pypa/gh-action-pypi-publish#216🪞 Full Diff: https://github.com/pypa/gh-action-pypi-publish/compare/v1.8.11...v1.8.12
:man_beard: Release Manager:
@webknjaz 🇺🇦
Commits
e53eb8bClarify the error during OIDC exchange on PRs from forksedfa8f3Merge pull request #216 from xuanzhi33/unstable/v1aeff019docs(fix): Fix a markdown alert24c5d5cMerge pull request #214 from pypa/dependabot/pip/requirements/cryptography-42...c13b4aabuild(deps): bump cryptography from 42.0.2 to 42.0.4 in /requirements72a79c8Merge pull request #213 from pypa/dependabot/pip/requirements/cryptography-42...751e5b8build(deps): bump cryptography from 42.0.0 to 42.0.2 in /requirements0580fcbMerge pull request #210 from pypa/dependabot/pip/requirements/cryptography-42...a524841build(deps): bump cryptography from 41.0.6 to 42.0.0 in /requirements3f824c7Merge pull request #204 from pypa/pre-commit-ci-update-config- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)