Skip to content

Bump super-linter/super-linter from 8.2.1 to 8.3.0#241

Merged
docktermj merged 1 commit intomainfrom
dependabot/github_actions/super-linter/super-linter-8.3.0
Dec 1, 2025
Merged

Bump super-linter/super-linter from 8.2.1 to 8.3.0#241
docktermj merged 1 commit intomainfrom
dependabot/github_actions/super-linter/super-linter-8.3.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 1, 2025

Bumps super-linter/super-linter from 8.2.1 to 8.3.0.

Release notes

Sourced from super-linter/super-linter's releases.

v8.3.0

8.3.0 (2025-11-28)

🚀 Features

🐛 Bugfixes

⬆️ Dependency updates

  • bundler: bump rubocop in /dependencies in the rubocop group (#7188) (74b2444)
  • bundler: bump rubocop-rails in /dependencies in the rubocop group (#7231) (dd55c52)
  • bundler: bump the rubocop group in /dependencies with 2 updates (#7178) (3bdc919)
  • bundler: bump the rubocop group in /dependencies with 4 updates (#7202) (0e09528)
  • docker: bump python in the docker-base-images group (#7123) (41c3da1)
  • docker: bump the docker group across 1 directory with 12 updates (#7235) (b1cf27d)
  • docker: bump the docker group across 1 directory with 6 updates (#7148) (76149cf)
  • docker: bump the docker group across 1 directory with 9 updates (#7194) (45f731e)
  • npm: bump @​babel/eslint-parser in /dependencies (#7183) (197eb88)
  • npm: bump @​typescript-eslint/eslint-plugin (#7127) (2d57f06)
  • npm: bump @​typescript-eslint/eslint-plugin (#7196) (033ea99)
  • npm: bump body-parser from 2.2.0 to 2.2.1 in /dependencies (#7238) (30403f6)
  • npm: bump eslint from 9.37.0 to 9.38.0 in /dependencies (#7170) (b42af6f)
  • npm: bump eslint from 9.38.0 to 9.39.0 in /dependencies (#7191) (0cf22c8)
  • npm: bump eslint from 9.39.0 to 9.39.1 in /dependencies (#7197) (513ae8b)
  • npm: bump eslint-plugin-react-hooks (#7180) (61e4208)
  • npm: bump js-yaml from 3.14.1 to 3.14.2 in /dependencies (#7210) (29faa98)
  • npm: bump npm-groovy-lint from 15.2.1 to 15.2.2 in /dependencies (#7130) (4913825)
  • npm: bump renovate from 41.142.0 to 41.146.5 in /dependencies (#7134) (900b973)
  • npm: bump renovate from 41.151.1 to 41.161.0 in /dependencies (#7182) (1d8c2a2)
  • npm: bump renovate from 41.161.0 to 42.4.0 in /dependencies (#7198) (0a4ed30)
  • npm: bump the eslint-plugins-configs group across 1 directory with 2 updates (#7145) (c137ca9)
  • npm: bump the npm group across 1 directory with 2 updates (#7175) (f0b0ff5)
  • npm: bump the npm group across 1 directory with 3 updates (#7146) (d4d3f16)
  • npm: bump the npm group across 1 directory with 3 updates (#7195) (ad4f63c)
  • npm: bump the npm group across 1 directory with 5 updates (#7233) (5cadbf1)
  • npm: bump the npm group across 1 directory with 8 updates (#7221) (3802c52)
  • npm: bump the react group across 1 directory with 2 updates (#7190) (d6c8078)
  • npm: bump the react group across 1 directory with 4 updates (#7128) (4034702)
  • npm: bump the typescript group across 1 directory with 2 updates (#7176) (39aba76)
  • python: bump the pip group across 1 directory with 11 updates (#7199) (07fbf76)
  • python: bump the pip group across 1 directory with 3 updates (#7234) (c8bd6d3)

... (truncated)

Changelog

Sourced from super-linter/super-linter's changelog.

8.3.0 (2025-11-28)

🚀 Features

🐛 Bugfixes

⬆️ Dependency updates

  • bundler: bump rubocop in /dependencies in the rubocop group (#7188) (74b2444)
  • bundler: bump rubocop-rails in /dependencies in the rubocop group (#7231) (dd55c52)
  • bundler: bump the rubocop group in /dependencies with 2 updates (#7178) (3bdc919)
  • bundler: bump the rubocop group in /dependencies with 4 updates (#7202) (0e09528)
  • docker: bump python in the docker-base-images group (#7123) (41c3da1)
  • docker: bump the docker group across 1 directory with 12 updates (#7235) (b1cf27d)
  • docker: bump the docker group across 1 directory with 6 updates (#7148) (76149cf)
  • docker: bump the docker group across 1 directory with 9 updates (#7194) (45f731e)
  • npm: bump @​babel/eslint-parser in /dependencies (#7183) (197eb88)
  • npm: bump @​typescript-eslint/eslint-plugin (#7127) (2d57f06)
  • npm: bump @​typescript-eslint/eslint-plugin (#7196) (033ea99)
  • npm: bump body-parser from 2.2.0 to 2.2.1 in /dependencies (#7238) (30403f6)
  • npm: bump eslint from 9.37.0 to 9.38.0 in /dependencies (#7170) (b42af6f)
  • npm: bump eslint from 9.38.0 to 9.39.0 in /dependencies (#7191) (0cf22c8)
  • npm: bump eslint from 9.39.0 to 9.39.1 in /dependencies (#7197) (513ae8b)
  • npm: bump eslint-plugin-react-hooks (#7180) (61e4208)
  • npm: bump js-yaml from 3.14.1 to 3.14.2 in /dependencies (#7210) (29faa98)
  • npm: bump npm-groovy-lint from 15.2.1 to 15.2.2 in /dependencies (#7130) (4913825)
  • npm: bump renovate from 41.142.0 to 41.146.5 in /dependencies (#7134) (900b973)
  • npm: bump renovate from 41.151.1 to 41.161.0 in /dependencies (#7182) (1d8c2a2)
  • npm: bump renovate from 41.161.0 to 42.4.0 in /dependencies (#7198) (0a4ed30)
  • npm: bump the eslint-plugins-configs group across 1 directory with 2 updates (#7145) (c137ca9)
  • npm: bump the npm group across 1 directory with 2 updates (#7175) (f0b0ff5)
  • npm: bump the npm group across 1 directory with 3 updates (#7146) (d4d3f16)
  • npm: bump the npm group across 1 directory with 3 updates (#7195) (ad4f63c)
  • npm: bump the npm group across 1 directory with 5 updates (#7233) (5cadbf1)
  • npm: bump the npm group across 1 directory with 8 updates (#7221) (3802c52)
  • npm: bump the react group across 1 directory with 2 updates (#7190) (d6c8078)
  • npm: bump the react group across 1 directory with 4 updates (#7128) (4034702)
  • npm: bump the typescript group across 1 directory with 2 updates (#7176) (39aba76)
  • python: bump the pip group across 1 directory with 11 updates (#7199) (07fbf76)
  • python: bump the pip group across 1 directory with 3 updates (#7234) (c8bd6d3)
  • python: bump the pip group across 1 directory with 4 updates (#7219) (91361a3)

... (truncated)

Commits
  • 502f4fe chore(main): release 8.3.0 (#7149)
  • 1399737 chore: update google-java-format to 1.29.0 (#7104)
  • b1cf27d deps(docker): bump the docker group across 1 directory with 12 updates (#7235)
  • 09306cd feat: lint dependabot, github actions with zizmor (#7241)
  • 5aa81e2 chore: set devcontainer name (#7240)
  • 29f1727 fix: parse json to extract terraform version (#7239)
  • 30403f6 deps(npm): bump body-parser from 2.2.0 to 2.2.1 in /dependencies (#7238)
  • c8bd6d3 deps(python): bump the pip group across 1 directory with 3 updates (#7234)
  • 5cadbf1 deps(npm): bump the npm group across 1 directory with 5 updates (#7233)
  • f40c174 ci(github-actions): bump actions/checkout in the dev-ci-tools group (#7232)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Resolves #7184
Resolves #7241
Resolves #7137
Resolves #7211
Resolves #7139
Resolves #7239
Resolves #7188
Resolves #7231
Resolves #7178
Resolves #7202
Resolves #7123
Resolves #7235
Resolves #7148
Resolves #7194
Resolves #7183
Resolves #7127
Resolves #7196
Resolves #7238
Resolves #7170
Resolves #7191
Resolves #7197
Resolves #7180
Resolves #7210
Resolves #7130
Resolves #7134
Resolves #7182
Resolves #7198
Resolves #7145
Resolves #7175
Resolves #7146
Resolves #7195
Resolves #7233
Resolves #7221
Resolves #7190
Resolves #7128
Resolves #7176
Resolves #7199
Resolves #7234
Resolves #7219
Resolves #7149
Resolves #7104
Resolves #7240
Resolves #7232

Bumps [super-linter/super-linter](https://github.com/super-linter/super-linter) from 8.2.1 to 8.3.0.
- [Release notes](https://github.com/super-linter/super-linter/releases)
- [Changelog](https://github.com/super-linter/super-linter/blob/main/CHANGELOG.md)
- [Commits](super-linter/super-linter@v8.2.1...v8.3.0)

---
updated-dependencies:
- dependency-name: super-linter/super-linter
  dependency-version: 8.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Dec 1, 2025
@dependabot dependabot bot requested a review from a team as a code owner December 1, 2025 18:32
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Dec 1, 2025
@github-actions
Copy link

github-actions bot commented Dec 1, 2025

🤖 Claude Code Review

Code Review Analysis

Summary

This PR updates the super-linter GitHub Action from version 8.2.1 to 8.3.0 across two workflow files. This is a minor version dependency update.


Detailed Review

Code Quality

Code follows style guide

  • The YAML structure and formatting is consistent with existing patterns
  • Files: .github/workflows/lint-workflows.yaml:71, .github/workflows/linter.yaml:43

No commented-out code

  • No commented code found in the diff

Meaningful variable names

  • N/A - This is a version string update, no new variables introduced

DRY principle followed

  • The same version update is applied consistently across both files
  • Files: .github/workflows/lint-workflows.yaml:71, .github/workflows/linter.yaml:43

Identify Defects

  • No bugs, logic errors, or security vulnerabilities introduced
  • This is a straightforward dependency version bump
  • No race conditions, memory leaks, or crash risks in this change

Project memory configuration

  • No .claude/CLAUDE.md file detected in the repository (based on git status)
  • N/A for this review

Testing

⚠️ Unit tests for new functions

  • N/A - No new functions added

⚠️ Integration tests for new endpoints

  • N/A - No new endpoints added

⚠️ Edge cases covered

  • N/A - Version bump only

⚠️ Test coverage > 80%

  • N/A - No new code requiring test coverage
  • Recommendation: The workflow changes themselves will be validated when they run

Documentation

Readme updated if needed

  • Not required - dependency version updates in workflows don't necessitate README changes

⚠️ API docs updated

  • N/A - No API changes

Inline comments for complex logic

  • Not needed - the change is self-explanatory

CHANGELOG.md updated

  • No CHANGELOG.md update detected in the diff
  • Recommendation: Consider documenting dependency updates, especially for workflow tooling changes that might affect CI/CD behavior
  • The commit message "Bump super-linter/super-linter from 8.2.1 to 8.3.0" suggests this may be an automated dependency update, but CHANGELOG tracking would still be beneficial

Security

No hardcoded credentials

  • No credentials in the changes
  • Existing GITHUB_TOKEN usage is appropriate (uses secrets)

Input validation implemented

  • N/A - Version string update only

Proper error handling

  • N/A - No new error handling paths introduced

No sensitive data in logs

  • No logging changes made

No license files (.lic) or AQAAAD strings

  • No license files or encoded strings detected in the diff

Recommendation

APPROVE with minor suggestion

This is a clean dependency update that poses minimal risk. The only improvement would be adding a CHANGELOG entry to track this update.

Suggested Actions:

  1. Approve and merge - The changes are safe and maintain consistency
  2. 📝 Optional: Add CHANGELOG.md entry documenting the super-linter version update
  3. 🔍 Optional: Review super-linter v8.3.0 release notes to understand what changes are included in this version

Automated code review analyzing defects and coding standards

@docktermj docktermj merged commit f0e1d51 into main Dec 1, 2025
20 checks passed
@docktermj docktermj deleted the dependabot/github_actions/super-linter/super-linter-8.3.0 branch December 1, 2025 19:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants