Skip to content

Bump Tech-Byte-Frontier/jevgate-action from 1.0.0 to 1.2.0 in the actions group - #51

Merged
tauanbinato merged 1 commit into
mainfrom
dependabot/github_actions/actions-3d51eedaa8
Oct 2, 2026
Merged

tauanbinato merged 1 commit into
mainfrom
dependabot/github_actions/actions-3d51eedaa8

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the actions group with 1 update: Tech-Byte-Frontier/jevgate-action.

Updates Tech-Byte-Frontier/jevgate-action from 1.0.0 to 1.2.0

Release notes

Sourced from Tech-Byte-Frontier/jevgate-action's releases.

v1.2.0

On pull requests, the action lists every finding in one comment and updates it on each run: GitHub shows at most 10 error and 10 warning annotations per step. The comment gives the gate's result, the run's API requests, input tokens and cost, and the findings by level and file, linked to their lines, with JevGate 0.26.0's mark on each finding that fails the gate and, from 0.28.0, how often findings like it were right (from 0.30.0, in a preview language, how often in that language); a run that could not finish (no key, HTTP 402, the request budget) opens with a caution and the reasons. It needs pull-requests: write; where the token can't comment, as on pull requests from forks, the run says so and carries on. comment: false turns it off.

New input api-key-kind (typesafe, openrouter or vercel) takes OpenRouter and Vercel AI Gateway keys; the gateways need JevGate 0.26.0 or later.

The action removes an answer cache a pull request commits under .jevgate/cache before restoring its own, as such answers could clear the pull request's own code; JevGate 0.28.0 and later also ignore cache files Git tracks.

Fixes: exit-code is set when the base revision is missing, and the report output is a Windows path on Windows runners.

@v1 now points here.

v1.1.0

New input sarif-file: also writes the findings as SARIF for GitHub code scanning, replayed from the answers the check just cached, so it costs nothing. Needs JevGate 0.18.0 or later. @v1 now points here.

v1.0.1

The action is named JevGate Code Review, so it can be listed on the GitHub Marketplace. Behavior is unchanged; @v1 now points here.

Commits
  • 49d157b Pin JevGate 0.30.0 in the examples
  • 0cb36c2 Word a preview language's findings as JevGate 0.30 does, and drop a committed...
  • 5052ff3 Say that a base reviews only the changed lines from JevGate 0.26.0
  • 839e9e9 Say how often each finding's kind was right, from JevGate 0.28.0
  • 692bc93 Mark the findings that fail the gate, from JevGate 0.26.0
  • 93c2fd5 List every finding in one pull request comment
  • 556b23f Take OpenRouter and Vercel AI Gateway keys with api-key-kind
  • b87f766 Give the report output as a Windows path on Windows
  • 4fe225c Write exit-code when the base revision is missing
  • 6818ec0 Pin JevGate 0.25.0 in the example
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the actions group with 1 update: [Tech-Byte-Frontier/jevgate-action](https://github.com/tech-byte-frontier/jevgate-action).


Updates `Tech-Byte-Frontier/jevgate-action` from 1.0.0 to 1.2.0
- [Release notes](https://github.com/tech-byte-frontier/jevgate-action/releases)
- [Commits](Tech-Byte-Frontier/jevgate-action@2112ce8...49d157b)

---
updated-dependencies:
- dependency-name: Tech-Byte-Frontier/jevgate-action
  dependency-version: 1.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Oct 1, 2026
@tauanbinato
tauanbinato merged commit ea63b76 into main Oct 2, 2026
10 checks passed
@dependabot
dependabot Bot deleted the dependabot/github_actions/actions-3d51eedaa8 branch October 2, 2026 15:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant