Skip to content

Tags: NHSDigital/eps-common-workflows

Tags

v5.4.2

Toggle v5.4.2's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Chore: [AEA-0000] - Updates Trivy Version (#67)

## Summary

- Routine Change

v5.4.1

Toggle v5.4.1's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Upgrade: [dependabot] - bump @semantic-release/github from 12.0.3 to …

…12.0.5 (#64)

Bumps
[@semantic-release/github](https://github.com/semantic-release/github)
from 12.0.3 to 12.0.5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/semantic-release/github/releases"><code>@​semantic-release/github</code>'s
releases</a>.</em></p>
<blockquote>
<h2>v12.0.5</h2>
<h2><a
href="https://github.com/semantic-release/github/compare/v12.0.4...v12.0.5">12.0.5</a>
(2026-02-07)</h2>
<h3>Bug Fixes</h3>
<ul>
<li><strong>latest:</strong> add <code>make_latest</code> property to
the GH release POST request during publish (<a
href="https://redirect.github.com/semantic-release/github/issues/1157">#1157</a>)
(<a
href="https://github.com/semantic-release/github/commit/38051ba69f4b71cacc93fc80222609fe763bd30d">38051ba</a>)</li>
</ul>
<h2>v12.0.4</h2>
<h2><a
href="https://github.com/semantic-release/github/compare/v12.0.3...v12.0.4">12.0.4</a>
(2026-02-06)</h2>
<h3>Bug Fixes</h3>
<ul>
<li>remove <code>failTitle</code> arg in <code>findSRIssues</code> call
(<a
href="https://redirect.github.com/semantic-release/github/issues/1164">#1164</a>)
(<a
href="https://github.com/semantic-release/github/commit/f7bdd886bff2fbbf129383840ca7548b80818808">f7bdd88</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/semantic-release/github/commit/38051ba69f4b71cacc93fc80222609fe763bd30d"><code>38051ba</code></a>
fix(latest): add <code>make_latest</code> property to the GH release
POST request during...</li>
<li><a
href="https://github.com/semantic-release/github/commit/be62f5e6a452aa9abc7d2037478f7f79d2152f93"><code>be62f5e</code></a>
chore(deps): update dependency cpy to v13 (<a
href="https://redirect.github.com/semantic-release/github/issues/1161">#1161</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/f7bdd886bff2fbbf129383840ca7548b80818808"><code>f7bdd88</code></a>
fix: remove <code>failTitle</code> arg in <code>findSRIssues</code> call
(<a
href="https://redirect.github.com/semantic-release/github/issues/1164">#1164</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/fce48355ae165c955c66ecce82d822518949fd21"><code>fce4835</code></a>
chore(deps): update dependency tempy to v3.2.0 (<a
href="https://redirect.github.com/semantic-release/github/issues/1162">#1162</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/e044f74a99ddd248faf40b633d300b7e17d8ecbd"><code>e044f74</code></a>
chore(deps): update dependency semantic-release to v25.0.3 (<a
href="https://redirect.github.com/semantic-release/github/issues/1159">#1159</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/e9ace6f70c236016c92008c32b269b61657399da"><code>e9ace6f</code></a>
chore(deps): lock file maintenance (<a
href="https://redirect.github.com/semantic-release/github/issues/1158">#1158</a>)</li>
<li>See full diff in <a
href="https://github.com/semantic-release/github/compare/v12.0.3...v12.0.5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=@semantic-release/github&package-manager=npm_and_yarn&previous-version=12.0.3&new-version=12.0.5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v5.4.0

Toggle v5.4.0's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
New: [AEA-6028] - Updated actionlint to allow for yaml anchors (#63)

## Summary

- ✨ New Feature

v5.3.12

Toggle v5.3.12's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Upgrade: [dependabot] - bump @semantic-release/github from 12.0.2 to …

…12.0.3 (#58)

Bumps
[@semantic-release/github](https://github.com/semantic-release/github)
from 12.0.2 to 12.0.3.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/semantic-release/github/releases"><code>@​semantic-release/github</code>'s
releases</a>.</em></p>
<blockquote>
<h2>v12.0.3</h2>
<h2><a
href="https://github.com/semantic-release/github/compare/v12.0.2...v12.0.3">12.0.3</a>
(2026-01-30)</h2>
<h3>Bug Fixes</h3>
<ul>
<li>extend GraphQL alias prefix to prevent hash collisions (<a
href="https://redirect.github.com/semantic-release/github/issues/1134">#1134</a>)
(<a
href="https://github.com/semantic-release/github/commit/ea6386d6e6c38979ef9ca38bbb06b64d8ba4efdf">ea6386d</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/semantic-release/github/commit/ea6386d6e6c38979ef9ca38bbb06b64d8ba4efdf"><code>ea6386d</code></a>
fix: extend GraphQL alias prefix to prevent hash collisions (<a
href="https://redirect.github.com/semantic-release/github/issues/1134">#1134</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/01e5746c0669aaf2ffc4cc076f7b9a84aee5e81e"><code>01e5746</code></a>
chore(deps): update dependency lockfile-lint to v5 (<a
href="https://redirect.github.com/semantic-release/github/issues/1156">#1156</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/cfc4fc6e6ae9cbb13fd603ea504a9a5489a9ddc1"><code>cfc4fc6</code></a>
chore(deps): update dependency tempy to v3.1.2 (<a
href="https://redirect.github.com/semantic-release/github/issues/1155">#1155</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/a85206918fb52c536e6b4341aedc3bb61f2481c3"><code>a852069</code></a>
chore(deps): lock file maintenance (<a
href="https://redirect.github.com/semantic-release/github/issues/1154">#1154</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/f8c78955511781f81769b6bc0be25b629b1e0e65"><code>f8c7895</code></a>
chore(deps): update npm to v11.8.0 (<a
href="https://redirect.github.com/semantic-release/github/issues/1153">#1153</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/588531a97117c20f708beb0b3ac09017dc14c8ec"><code>588531a</code></a>
chore(deps): update dependency prettier to v3.8.1 (<a
href="https://redirect.github.com/semantic-release/github/issues/1152">#1152</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/deedabd645973058ca3092170815df4e01e756fe"><code>deedabd</code></a>
chore(deps): update dependency publint to v0.3.17 (<a
href="https://redirect.github.com/semantic-release/github/issues/1151">#1151</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/abc0151739fe0ed21b4b0e58cf3947cc4271f957"><code>abc0151</code></a>
chore(deps): update dependency tempy to v3.1.1 (<a
href="https://redirect.github.com/semantic-release/github/issues/1150">#1150</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/2efa6d1efc146e1000f020ac86a3fd2fc32d120e"><code>2efa6d1</code></a>
chore(deps): update dependency lodash-es to v4.17.23 [security] (<a
href="https://redirect.github.com/semantic-release/github/issues/1149">#1149</a>)</li>
<li><a
href="https://github.com/semantic-release/github/commit/faaac4e56b9ca2298d4e57988143a108bc7c8e7f"><code>faaac4e</code></a>
build(deps): bump tar and npm (<a
href="https://redirect.github.com/semantic-release/github/issues/1148">#1148</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/semantic-release/github/compare/v12.0.2...v12.0.3">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=@semantic-release/github&package-manager=npm_and_yarn&previous-version=12.0.2&new-version=12.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v5.3.11

Toggle v5.3.11's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Upgrade: [dependabot] - bump semantic-release from 25.0.2 to 25.0.3 (#59

)

Bumps
[semantic-release](https://github.com/semantic-release/semantic-release)
from 25.0.2 to 25.0.3.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/semantic-release/semantic-release/releases">semantic-release's
releases</a>.</em></p>
<blockquote>
<h2>v25.0.3</h2>
<h2><a
href="https://github.com/semantic-release/semantic-release/compare/v25.0.2...v25.0.3">25.0.3</a>
(2026-01-30)</h2>
<h3>Bug Fixes</h3>
<ul>
<li><strong>deps:</strong> remove deprecated semver-diff (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/3980">#3980</a>)
(<a
href="https://github.com/semantic-release/semantic-release/commit/f4041244addfdea14558cbb11cc7211fb797943f">f404124</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/f4041244addfdea14558cbb11cc7211fb797943f"><code>f404124</code></a>
fix(deps): remove deprecated semver-diff (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/3980">#3980</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/fef7e34be9c2db3eed64441e12c5995f14730bb9"><code>fef7e34</code></a>
docs: warn against using registry-url in setup-node (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4024">#4024</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/699d4708e56486b8872056b010eae97ac50a88ad"><code>699d470</code></a>
chore(deps): update dependency lockfile-lint to v5 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4022">#4022</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/c7c6f7ab7546ef0ff05a8269ef9f512b89861bb8"><code>c7c6f7a</code></a>
chore(deps): update dependency tempy to v3.1.2 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4021">#4021</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/1ce5088534ab98995a6574e3a4c8bac07134015c"><code>1ce5088</code></a>
ci(action): update github/codeql-action action to v4.32.0 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4019">#4019</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/9bb0d8735ae741c0b891becdae24a7de9c741739"><code>9bb0d87</code></a>
chore(deps): lock file maintenance (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4016">#4016</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/490171c060a817b880d520fc9228c5077b008c62"><code>490171c</code></a>
chore(deps): update npm to v11.8.0 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4015">#4015</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/f6411e9a20916aca2a13b330163500b13dc48d13"><code>f6411e9</code></a>
chore(deps): update dependency prettier to v3.8.1 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4014">#4014</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/c71c576060c90ca1bdff473b4dc89c88e90f0101"><code>c71c576</code></a>
chore(deps): update dependency publint to v0.3.17 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4013">#4013</a>)</li>
<li><a
href="https://github.com/semantic-release/semantic-release/commit/989e18c6c0ffea500c2fe789a9f42ac6f488dc50"><code>989e18c</code></a>
chore(deps): update dependency tempy to v3.1.1 (<a
href="https://redirect.github.com/semantic-release/semantic-release/issues/4012">#4012</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/semantic-release/semantic-release/compare/v25.0.2...v25.0.3">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=semantic-release&package-manager=npm_and_yarn&previous-version=25.0.2&new-version=25.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: anthony-nhs <121869075+anthony-nhs@users.noreply.github.com>

v5.3.10

Toggle v5.3.10's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Upgrade: [dependabot] - bump raven-actions/actionlint from 2.1.0 to 2…

….1.1 (#61)

Bumps
[raven-actions/actionlint](https://github.com/raven-actions/actionlint)
from 2.1.0 to 2.1.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/raven-actions/actionlint/releases">raven-actions/actionlint's
releases</a>.</em></p>
<blockquote>
<h2>v2.1.1</h2>
<h2>🔄️ What's Changed</h2>
<ul>
<li>ci(deps): bump actions/cache from 5.0.2 to 5.0.3 in the all group
@<a href="https://github.com/apps/dependabot">dependabot[bot]</a> (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/53">#53</a>)</li>
<li>fix: pin installed version of <code>@​actions/tool-cache</code> <a
href="https://github.com/hghmn"><code>@​hghmn</code></a> (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/52">#52</a>)</li>
<li>ci(deps): bump the all group across 1 directory with 2 updates @<a
href="https://github.com/apps/dependabot">dependabot[bot]</a> (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/50">#50</a>)</li>
<li>chore: synced file(s) with raven-actions/.workflows @<a
href="https://github.com/apps/raven-actions-sync">raven-actions-sync[bot]</a>
(<a
href="https://redirect.github.com/raven-actions/actionlint/issues/47">#47</a>)</li>
<li>ci(deps): bump actions/cache from 4.3.0 to 5.0.1 in the all group
@<a href="https://github.com/apps/dependabot">dependabot[bot]</a> (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/48">#48</a>)</li>
</ul>
<h2>👥 Contributors</h2>
<p><a
href="https://github.com/DariuszPorowski"><code>@​DariuszPorowski</code></a>,
<a
href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot],
<a href="https://github.com/hghmn"><code>@​hghmn</code></a>, <a
href="https://github.com/raven-actions-sync"><code>@​raven-actions-sync</code></a>[bot],
<a href="https://github.com/apps/dependabot">dependabot[bot]</a> and <a
href="https://github.com/apps/raven-actions-sync">raven-actions-sync[bot]</a></p>
<p>See details of all code changes: <a
href="https://github.com/raven-actions/actionlint/compare/v2.1.0...v2.1.1">https://github.com/raven-actions/actionlint/compare/v2.1.0...v2.1.1</a>
since previous release.</p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/raven-actions/actionlint/commit/e01d1ea33dd6a5ed517d95b4c0c357560ac6f518"><code>e01d1ea</code></a>
chore: add permissions for publish-release job</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/3459946ddcf59c1fb7e850824461df3f55d6133a"><code>3459946</code></a>
ci(deps): bump actions/cache from 5.0.2 to 5.0.3 in the all group (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/53">#53</a>)</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/855a9ad92ebcccac55c8f3605ab46bcc588575f8"><code>855a9ad</code></a>
chore: add new URL to .lycheeignore</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/0277f3a759d600efd96680ce7286c7fb071293ec"><code>0277f3a</code></a>
fix: update permissions in release-draft workflow</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/06dd51c3fc6da21d49078939b3d1607b0edebdf4"><code>06dd51c</code></a>
fix: pin installed version of <code>@​actions/tool-cache</code> (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/52">#52</a>)</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/6fc528e1e3b665b61cde1ca6fc4dc37fd139fa74"><code>6fc528e</code></a>
ci(deps): bump the all group across 1 directory with 2 updates (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/50">#50</a>)</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/6e8b85b8060c21661deacadf48389d0b2c896ea3"><code>6e8b85b</code></a>
chore: synced file(s) with raven-actions/.workflows (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/47">#47</a>)</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/580b34edf3f0039a5691481c6081049971ecd530"><code>580b34e</code></a>
ci(deps): bump actions/cache from 4.3.0 to 5.0.1 in the all group (<a
href="https://redirect.github.com/raven-actions/actionlint/issues/48">#48</a>)</li>
<li><a
href="https://github.com/raven-actions/actionlint/commit/d7e20944f7f0aad76b2cffccd9cc77d1f49044ce"><code>d7e2094</code></a>
chore: add URLs to .lycheeignore for exclusion</li>
<li>See full diff in <a
href="https://github.com/raven-actions/actionlint/compare/963d4779ef039e217e5d0e6fd73ce9ab7764e493...e01d1ea33dd6a5ed517d95b4c0c357560ac6f518">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=raven-actions/actionlint&package-manager=github_actions&previous-version=2.1.0&new-version=2.1.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: anthony-nhs <121869075+anthony-nhs@users.noreply.github.com>

v5.3.9

Toggle v5.3.9's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Upgrade: [dependabot] - bump mikefarah/yq from 4.50.1 to 4.52.2 (#60)

Bumps [mikefarah/yq](https://github.com/mikefarah/yq) from 4.50.1 to
4.52.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/mikefarah/yq/releases">mikefarah/yq's
releases</a>.</em></p>
<blockquote>
<h2>v4.52.2</h2>
<ul>
<li>Fixed bad instructions file breaking go-install (<a
href="https://redirect.github.com/mikefarah/yq/issues/2587">#2587</a>)
Thanks <a
href="https://github.com/theyoprst"><code>@​theyoprst</code></a></li>
<li>Fixed TOML table scope after comments (<a
href="https://redirect.github.com/mikefarah/yq/issues/2588">#2588</a>)
Thanks <a
href="https://github.com/tomers"><code>@​tomers</code></a></li>
<li>Multiply uses a readonly context (<a
href="https://redirect.github.com/mikefarah/yq/issues/2558">#2558</a>)</li>
<li>Fixed merge globbing wildcards in keys (<a
href="https://redirect.github.com/mikefarah/yq/issues/2564">#2564</a>)</li>
<li>Fixing TOML subarray parsing issue (<a
href="https://redirect.github.com/mikefarah/yq/issues/2581">#2581</a>)</li>
</ul>
<h2>v4.52.1 - TOML roundtrip and more!</h2>
<ul>
<li>
<p>TOML encoder support - you can now roundtrip! <a
href="https://redirect.github.com/mikefarah/yq/issues/1364">#1364</a></p>
</li>
<li>
<p>Parent now supports negative indices, and added a 'root' command for
referencing the top level document</p>
</li>
<li>
<p>Fixed scalar encoding for HCL</p>
</li>
<li>
<p>Add --yaml-compact-seq-indent / -c flag for compact sequence
indentation (<a
href="https://redirect.github.com/mikefarah/yq/issues/2583">#2583</a>)
Thanks <a href="https://github.com/jfenal"><code>@​jfenal</code></a></p>
</li>
<li>
<p>Add symlink check to file rename util (<a
href="https://redirect.github.com/mikefarah/yq/issues/2576">#2576</a>)
Thanks <a
href="https://github.com/Elias-elastisys"><code>@​Elias-elastisys</code></a></p>
</li>
<li>
<p>Powershell fixed default command used for __completeNoDesc alias (<a
href="https://redirect.github.com/mikefarah/yq/issues/2568">#2568</a>)
Thanks <a
href="https://github.com/teejaded"><code>@​teejaded</code></a></p>
</li>
<li>
<p>Unwrap scalars in shell output mode. (<a
href="https://redirect.github.com/mikefarah/yq/issues/2548">#2548</a>)
Thanks <a
href="https://github.com/flintwinters"><code>@​flintwinters</code></a></p>
</li>
<li>
<p>Added K8S KYAML output format support (<a
href="https://redirect.github.com/mikefarah/yq/issues/2560">#2560</a>)
Thanks <a
href="https://github.com/robbat2"><code>@​robbat2</code></a></p>
</li>
<li>
<p>Bumped dependencies</p>
</li>
<li>
<p>Special shout out to <a
href="https://github.com/ccoVeille"><code>@​ccoVeille</code></a> for
reviewing my PRs!</p>
</li>
</ul>
<p>Thanks to everyone that contributed ❤️</p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/mikefarah/yq/blob/master/release_notes.txt">mikefarah/yq's
changelog</a>.</em></p>
<blockquote>
<p>4.52.2:</p>
<ul>
<li>Fixed bad instructions file breaking go-install (<a
href="https://redirect.github.com/mikefarah/yq/issues/2587">#2587</a>)
Thanks <a
href="https://github.com/theyoprst"><code>@​theyoprst</code></a></li>
<li>Fixed TOML table scope after comments (<a
href="https://redirect.github.com/mikefarah/yq/issues/2588">#2588</a>)
Thanks <a
href="https://github.com/tomers"><code>@​tomers</code></a></li>
<li>Multiply uses a readonly context (<a
href="https://redirect.github.com/mikefarah/yq/issues/2558">#2558</a>)</li>
<li>Fixed merge globbing wildcards in keys (<a
href="https://redirect.github.com/mikefarah/yq/issues/2564">#2564</a>)</li>
<li>Fixing TOML subarray parsing issue (<a
href="https://redirect.github.com/mikefarah/yq/issues/2581">#2581</a>)</li>
</ul>
<p>4.52.1:</p>
<ul>
<li>
<p>TOML encoder support - you can now roundtrip! <a
href="https://redirect.github.com/mikefarah/yq/issues/1364">#1364</a></p>
</li>
<li>
<p>Parent now supports negative indices, and added a 'root' command for
referencing the top level document</p>
</li>
<li>
<p>Fixed scalar encoding for HCL</p>
</li>
<li>
<p>Add --yaml-compact-seq-indent / -c flag for compact sequence
indentation (<a
href="https://redirect.github.com/mikefarah/yq/issues/2583">#2583</a>)
Thanks <a href="https://github.com/jfenal"><code>@​jfenal</code></a></p>
</li>
<li>
<p>Add symlink check to file rename util (<a
href="https://redirect.github.com/mikefarah/yq/issues/2576">#2576</a>)
Thanks <a
href="https://github.com/Elias-elastisys"><code>@​Elias-elastisys</code></a></p>
</li>
<li>
<p>Powershell fixed default command used for __completeNoDesc alias (<a
href="https://redirect.github.com/mikefarah/yq/issues/2568">#2568</a>)
Thanks <a
href="https://github.com/teejaded"><code>@​teejaded</code></a></p>
</li>
<li>
<p>Unwrap scalars in shell output mode. (<a
href="https://redirect.github.com/mikefarah/yq/issues/2548">#2548</a>)
Thanks <a
href="https://github.com/flintwinters"><code>@​flintwinters</code></a></p>
</li>
<li>
<p>Added K8S KYAML output format support (<a
href="https://redirect.github.com/mikefarah/yq/issues/2560">#2560</a>)
Thanks <a
href="https://github.com/robbat2"><code>@​robbat2</code></a></p>
</li>
<li>
<p>Bumped dependencies</p>
</li>
<li>
<p>Special shout out to <a
href="https://github.com/ccoVeille"><code>@​ccoVeille</code></a> for
reviewing my PRs!</p>
</li>
</ul>
<p>4.50.1:</p>
<ul>
<li>Added HCL support!</li>
<li>Fixing handling of CRLF <a
href="https://redirect.github.com/mikefarah/yq/issues/2352">#2352</a></li>
<li>Bumped dependencies</li>
</ul>
<p>4.49.2:</p>
<ul>
<li>Fixing escape character bugs 😓 <a
href="https://redirect.github.com/mikefarah/yq/issues/2517">#2517</a></li>
<li>Fixing snap release pipeline <a
href="https://redirect.github.com/mikefarah/yq/issues/2518">#2518</a>
Thanks <a
href="https://github.com/aalexjo"><code>@​aalexjo</code></a></li>
</ul>
<p>4.49.1:</p>
<ul>
<li>Added <code>--security</code> flags to disable env and file ops <a
href="https://redirect.github.com/mikefarah/yq/issues/2515">#2515</a></li>
<li>Fixing TOML ArrayTable parsing issues <a
href="https://redirect.github.com/mikefarah/yq/issues/1758">#1758</a></li>
<li>Fixing parsing of escaped characters <a
href="https://redirect.github.com/mikefarah/yq/issues/2506">#2506</a></li>
</ul>
<p>4.48.2:</p>
<ul>
<li>Strip whitespace when decoding base64 <a
href="https://redirect.github.com/mikefarah/yq/issues/2507">#2507</a></li>
<li>Upgraded to go-yaml v4! (thanks <a
href="https://github.com/ccoVeille"><code>@​ccoVeille</code></a>, <a
href="https://github.com/ingydotnet"><code>@​ingydotnet</code></a>)</li>
<li>Add linux/loong64 to release target (thanks <a
href="https://github.com/znley"><code>@​znley</code></a>)</li>
<li>Added --shell-key-separator flag for customizable shell output
format <a
href="https://redirect.github.com/mikefarah/yq/issues/2497">#2497</a>
(thanks <a
href="https://github.com/rsleedbx"><code>@​rsleedbx</code></a>)</li>
<li>Bumped dependencies</li>
</ul>
<p>4.48.1:</p>
<ul>
<li>Added 'parents' operator, to return a list of all the hierarchical
parents of a node</li>
<li>Added 'first(exp)' operator, to return the first entry matching an
expression in an array</li>
<li>Fixed xml namespace prefixes <a
href="https://redirect.github.com/mikefarah/yq/issues/1730">#1730</a>
(thanks <a
href="https://github.com/baodrate"><code>@​baodrate</code></a>)</li>
<li>Fixed out of range panic in yaml decoder <a
href="https://redirect.github.com/mikefarah/yq/issues/2460">#2460</a>
(thanks <a
href="https://github.com/n471d"><code>@​n471d</code></a>)</li>
<li>Bumped dependencies</li>
</ul>
<p>4.47.2:</p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/mikefarah/yq/commit/2be0094729a1006f61e8339ce9934bfb3cbb549f"><code>2be0094</code></a>
Bumping version</li>
<li><a
href="https://github.com/mikefarah/yq/commit/3c18d5b0354523d886252894e65e86b7a57fb063"><code>3c18d5b</code></a>
Preparing release</li>
<li><a
href="https://github.com/mikefarah/yq/commit/2dcc2293da6f6081f50c1c8f533db503db2ce491"><code>2dcc229</code></a>
Merge branch 'tomers-fix/toml-comments-table-scope-2588'</li>
<li><a
href="https://github.com/mikefarah/yq/commit/eb4fde4ef80a4b278fce86117214868777e30629"><code>eb4fde4</code></a>
Pulling out common code</li>
<li><a
href="https://github.com/mikefarah/yq/commit/06ea4cf62eb3ae45e3c142eb14ba9e08fb62c162"><code>06ea4cf</code></a>
Fixing spelling</li>
<li><a
href="https://github.com/mikefarah/yq/commit/37089d24afea09e161d874284aa7080fff6ef31a"><code>37089d2</code></a>
Merge branch 'fix/toml-comments-table-scope-2588' of
github.com:tomers/yq int...</li>
<li><a
href="https://github.com/mikefarah/yq/commit/7cf88a02915e926417380b4a44e50f1500f57895"><code>7cf88a0</code></a>
Add regression test for go install compatibility <a
href="https://redirect.github.com/mikefarah/yq/issues/2587">#2587</a>
(<a
href="https://redirect.github.com/mikefarah/yq/issues/2591">#2591</a>)</li>
<li><a
href="https://github.com/mikefarah/yq/commit/41adc1ad185d06b41c09f8e25e69e437a24015f3"><code>41adc1a</code></a>
Fixing wrongly named instructions file</li>
<li><a
href="https://github.com/mikefarah/yq/commit/b4b96f2a68ae49542a4a6178da9cbc0fa19cae12"><code>b4b96f2</code></a>
Fix TOML table parsing after standalone comments</li>
<li><a
href="https://github.com/mikefarah/yq/commit/2824d66a65b7c1f9ec2c36e336008be85b16dc69"><code>2824d66</code></a>
Multiply uses a readonly context <a
href="https://redirect.github.com/mikefarah/yq/issues/2558">#2558</a></li>
<li>Additional commits viewable in <a
href="https://github.com/mikefarah/yq/compare/065b200af9851db0d5132f50bc10b1406ea5c0a8...2be0094729a1006f61e8339ce9934bfb3cbb549f">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=mikefarah/yq&package-manager=github_actions&previous-version=4.50.1&new-version=4.52.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v5.3.8

Toggle v5.3.8's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Chore: [AEA-0000] - Publish release notes to gh pages (#57)

## Summary

- Routine Change

### Details

- publish release notes to gh-pages

v5.3.7

Toggle v5.3.7's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Chore: [AEA-0000] - add script to run all releases (#23)

## Summary

- Routine Change

### Details

- add script to run and approve all release up to and including int
environment

v5.3.6

Toggle v5.3.6's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Chore: [AEA-0000] - copy fast-xml-parser ignore from api (#56)

## Summary

- 🤖 Operational or Infrastructure Change

### Details

Add ignore required by electronic-prescription-service-api (same detail
as already listed at
https://github.com/NHSDigital/electronic-prescription-service-api/blob/4971ac3f06da2a1a7d029f77a45a87ce46760c26/.trivyignore.yaml#L98)