Skip to content

build(deps): bump the gh-actions group with 4 updates - #1395

Merged
calibrain merged 1 commit into
mainfrom
dependabot/github_actions/gh-actions-756e1c5046
Sep 25, 2026
Merged

calibrain merged 1 commit into
mainfrom
dependabot/github_actions/gh-actions-756e1c5046

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 25, 2026

Copy link
Copy Markdown
Contributor

Bumps the gh-actions group with 4 updates: astral-sh/setup-uv, github/codeql-action/init, github/codeql-action/autobuild and github/codeql-action/analyze.

Updates astral-sh/setup-uv from 10.1.0 to 10.2.0

Release notes

Sourced from astral-sh/setup-uv's releases.

v10.2.0 🌈 Disable automatic cache saves for merge queues

Changes

This release contains the known-checksum of the most recent uv releases and also disabled the uploading(saving) of the cache when in a merge queue since theses caches would almost never be used.

🚀 Enhancements

🧰 Maintenance

📚 Documentation

⬆️ Dependency updates

Commits

Updates github/codeql-action/init from 4.38.0 to 4.38.1

Release notes

Sourced from github/codeql-action/init's releases.

v4.38.1

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146
Changelog

Sourced from github/codeql-action/init's changelog.

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

[UNRELEASED]

No user facing changes.

4.38.2 - 24 Sept 2026

  • Update default CodeQL bundle version to 2.27.1. #4160

4.38.1 - 18 Sept 2026

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146

4.38.0 - 09 Sept 2026

  • On GitHub-hosted runners, the CodeQL Action now deletes unused CodeQL bundles from the toolcache before downloading a different bundle, which frees up disk space for the analysis. We expect to roll this change out to everyone in September. #4124
  • The CodeQL Action now supports CodeQL releases that are compatible with Linux Arm64 and downloads the native linux-arm64 CodeQL bundle when available. #4072
  • Update default CodeQL bundle version to 2.27.0. #4129

4.37.9 - 26 Aug 2026

  • Update default CodeQL bundle version to 2.26.4. #4106

4.37.8 - 21 Aug 2026

No user facing changes.

4.37.7 - 13 Aug 2026

  • Update default CodeQL bundle version to 2.26.3. #4085

4.37.6 - 04 Aug 2026

  • Changed the default filepath for the new remote file address format that was introduced in CodeQL Action 4.37.0 / 3.37.0 to .github/codeql-config.yml to align it with the suggested path that is used elsewhere. #4070

4.37.5 - 03 Aug 2026

  • Fixed a bug where a network error while streaming the download of the CodeQL bundle could terminate the init Action instead of falling back to downloading the bundle before extracting it. #4061

4.37.4 - 29 Jul 2026

  • This version of the CodeQL Action adds support for the tools input for the codeql-action/init step to be specified using a github-codeql-tools repository property. This feature will gradually be rolled out following the release of this version. Once rolled out, this allows for the CodeQL CLI version that is used in GitHub-managed workflows, such as Default Setup, to be set to a custom value. For example, customers who run into issues with rate limits when a new CodeQL CLI version is released can set the value to toolcache to always use the CodeQL CLI version that is available in the runner toolcache. For Advanced Setup workflows, the value provided for tools in the workflow definition always takes precedence unless the value of the repository property starts with !. #4037
  • Update default CodeQL bundle version to 2.26.2. #4051

4.37.3 - 22 Jul 2026

No user facing changes.

... (truncated)

Commits
  • 1c5b675 Merge pull request #4152 from github/update-v4.38.1-a65b83a73
  • a97cdca Add changelog entry for #4146
  • cc6c691 Update changelog for v4.38.1
  • a65b83a Merge pull request #4146 from github/henrymercer/per-language-bundles-pr
  • 07fa87d Clarify the latest-nightly eligibility exception
  • f18f353 Describe the bundle URL resolver
  • ecec9b5 Share per-language telemetry fields without renaming
  • 79fe3a1 Move download telemetry into the status-report directory
  • ead1f7d Rename the platform module
  • 549d498 Simplify per-language platform eligibility checks
  • Additional commits viewable in compare view

Updates github/codeql-action/autobuild from 4.38.0 to 4.38.1

Release notes

Sourced from github/codeql-action/autobuild's releases.

v4.38.1

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146
Changelog

Sourced from github/codeql-action/autobuild's changelog.

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

[UNRELEASED]

No user facing changes.

4.38.2 - 24 Sept 2026

  • Update default CodeQL bundle version to 2.27.1. #4160

4.38.1 - 18 Sept 2026

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146

4.38.0 - 09 Sept 2026

  • On GitHub-hosted runners, the CodeQL Action now deletes unused CodeQL bundles from the toolcache before downloading a different bundle, which frees up disk space for the analysis. We expect to roll this change out to everyone in September. #4124
  • The CodeQL Action now supports CodeQL releases that are compatible with Linux Arm64 and downloads the native linux-arm64 CodeQL bundle when available. #4072
  • Update default CodeQL bundle version to 2.27.0. #4129

4.37.9 - 26 Aug 2026

  • Update default CodeQL bundle version to 2.26.4. #4106

4.37.8 - 21 Aug 2026

No user facing changes.

4.37.7 - 13 Aug 2026

  • Update default CodeQL bundle version to 2.26.3. #4085

4.37.6 - 04 Aug 2026

  • Changed the default filepath for the new remote file address format that was introduced in CodeQL Action 4.37.0 / 3.37.0 to .github/codeql-config.yml to align it with the suggested path that is used elsewhere. #4070

4.37.5 - 03 Aug 2026

  • Fixed a bug where a network error while streaming the download of the CodeQL bundle could terminate the init Action instead of falling back to downloading the bundle before extracting it. #4061

4.37.4 - 29 Jul 2026

  • This version of the CodeQL Action adds support for the tools input for the codeql-action/init step to be specified using a github-codeql-tools repository property. This feature will gradually be rolled out following the release of this version. Once rolled out, this allows for the CodeQL CLI version that is used in GitHub-managed workflows, such as Default Setup, to be set to a custom value. For example, customers who run into issues with rate limits when a new CodeQL CLI version is released can set the value to toolcache to always use the CodeQL CLI version that is available in the runner toolcache. For Advanced Setup workflows, the value provided for tools in the workflow definition always takes precedence unless the value of the repository property starts with !. #4037
  • Update default CodeQL bundle version to 2.26.2. #4051

4.37.3 - 22 Jul 2026

No user facing changes.

... (truncated)

Commits
  • 1c5b675 Merge pull request #4152 from github/update-v4.38.1-a65b83a73
  • a97cdca Add changelog entry for #4146
  • cc6c691 Update changelog for v4.38.1
  • a65b83a Merge pull request #4146 from github/henrymercer/per-language-bundles-pr
  • 07fa87d Clarify the latest-nightly eligibility exception
  • f18f353 Describe the bundle URL resolver
  • ecec9b5 Share per-language telemetry fields without renaming
  • 79fe3a1 Move download telemetry into the status-report directory
  • ead1f7d Rename the platform module
  • 549d498 Simplify per-language platform eligibility checks
  • Additional commits viewable in compare view

Updates github/codeql-action/analyze from 4.38.0 to 4.38.1

Release notes

Sourced from github/codeql-action/analyze's releases.

v4.38.1

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146
Changelog

Sourced from github/codeql-action/analyze's changelog.

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

[UNRELEASED]

No user facing changes.

4.38.2 - 24 Sept 2026

  • Update default CodeQL bundle version to 2.27.1. #4160

4.38.1 - 18 Sept 2026

  • The CodeQL Action now has experimental support for CodeQL releases for which per-language bundles are available. Per-language bundles support analysis for a single language and are therefore smaller than the combined bundles that allow analysis for all supported languages. As a result, per-language bundles take up less space on disk and are faster to download. We expect to roll this change out to everyone in the coming weeks. #4146

4.38.0 - 09 Sept 2026

  • On GitHub-hosted runners, the CodeQL Action now deletes unused CodeQL bundles from the toolcache before downloading a different bundle, which frees up disk space for the analysis. We expect to roll this change out to everyone in September. #4124
  • The CodeQL Action now supports CodeQL releases that are compatible with Linux Arm64 and downloads the native linux-arm64 CodeQL bundle when available. #4072
  • Update default CodeQL bundle version to 2.27.0. #4129

4.37.9 - 26 Aug 2026

  • Update default CodeQL bundle version to 2.26.4. #4106

4.37.8 - 21 Aug 2026

No user facing changes.

4.37.7 - 13 Aug 2026

  • Update default CodeQL bundle version to 2.26.3. #4085

4.37.6 - 04 Aug 2026

  • Changed the default filepath for the new remote file address format that was introduced in CodeQL Action 4.37.0 / 3.37.0 to .github/codeql-config.yml to align it with the suggested path that is used elsewhere. #4070

4.37.5 - 03 Aug 2026

  • Fixed a bug where a network error while streaming the download of the CodeQL bundle could terminate the init Action instead of falling back to downloading the bundle before extracting it. #4061

4.37.4 - 29 Jul 2026

  • This version of the CodeQL Action adds support for the tools input for the codeql-action/init step to be specified using a github-codeql-tools repository property. This feature will gradually be rolled out following the release of this version. Once rolled out, this allows for the CodeQL CLI version that is used in GitHub-managed workflows, such as Default Setup, to be set to a custom value. For example, customers who run into issues with rate limits when a new CodeQL CLI version is released can set the value to toolcache to always use the CodeQL CLI version that is available in the runner toolcache. For Advanced Setup workflows, the value provided for tools in the workflow definition always takes precedence unless the value of the repository property starts with !. #4037
  • Update default CodeQL bundle version to 2.26.2. #4051

4.37.3 - 22 Jul 2026

No user facing changes.

... (truncated)

Commits
  • 1c5b675 Merge pull request #4152 from github/update-v4.38.1-a65b83a73
  • a97cdca Add changelog entry for #4146
  • cc6c691 Update changelog for v4.38.1
  • a65b83a Merge pull request #4146 from github/henrymercer/per-language-bundles-pr
  • 07fa87d Clarify the latest-nightly eligibility exception
  • f18f353 Describe the bundle URL resolver
  • ecec9b5 Share per-language telemetry fields without renaming
  • 79fe3a1 Move download telemetry into the status-report directory
  • ead1f7d Rename the platform module
  • 549d498 Simplify per-language platform eligibility checks
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the gh-actions group with 4 updates: [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv), [github/codeql-action/init](https://github.com/github/codeql-action), [github/codeql-action/autobuild](https://github.com/github/codeql-action) and [github/codeql-action/analyze](https://github.com/github/codeql-action).


Updates `astral-sh/setup-uv` from 10.1.0 to 10.2.0
- [Release notes](https://github.com/astral-sh/setup-uv/releases)
- [Commits](astral-sh/setup-uv@bec219d...c18668a)

Updates `github/codeql-action/init` from 4.38.0 to 4.38.1
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@b96794f...1c5b675)

Updates `github/codeql-action/autobuild` from 4.38.0 to 4.38.1
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@b96794f...1c5b675)

Updates `github/codeql-action/analyze` from 4.38.0 to 4.38.1
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@b96794f...1c5b675)

---
updated-dependencies:
- dependency-name: astral-sh/setup-uv
  dependency-version: 10.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: gh-actions
- dependency-name: github/codeql-action/init
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: gh-actions
- dependency-name: github/codeql-action/autobuild
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: gh-actions
- dependency-name: github/codeql-action/analyze
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: gh-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 25, 2026
@calibrain
calibrain merged commit 0f4342f into main Sep 25, 2026
17 checks passed
@calibrain
calibrain deleted the dependabot/github_actions/gh-actions-756e1c5046 branch September 25, 2026 22:57
doonga pushed a commit to greyrock-labs/home-ops that referenced this pull request Sep 26, 2026
…v1.4.0) (#283)

This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [ghcr.io/calibrain/shelfmark](https://github.com/calibrain/shelfmark) | minor | `v1.3.15` → `v1.4.0` |

---

### Release Notes

<details>
<summary>calibrain/shelfmark (ghcr.io/calibrain/shelfmark)</summary>

### [`v1.4.0`](https://github.com/calibrain/shelfmark/releases/tag/v1.4.0)

[Compare Source](calibrain/shelfmark@v1.3.15...v1.4.0)

##### What's Changed

- build(deps): bump the python-deps group with 2 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1302](calibrain/shelfmark#1302)
- fix: keep polling queued Real-Debrid torrents by [@&#8203;mvanhorn](https://github.com/mvanhorn) in [#&#8203;1303](calibrain/shelfmark#1303)
- fix(bypass): keep Anna's Archive's aa\_ddg\_check so clearance replays by [@&#8203;jfmlima](https://github.com/jfmlima) in [#&#8203;1305](calibrain/shelfmark#1305)
- fix(postprocess): attach unmatched chaptered audio files to existing book group ([#&#8203;1176](calibrain/shelfmark#1176)) by [@&#8203;amasen02](https://github.com/amasen02) in [#&#8203;1309](calibrain/shelfmark#1309)
- build(deps): bump the gh-actions group with 3 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1310](calibrain/shelfmark#1310)
- build(deps): bump the npm-deps group in /src/frontend with 4 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1308](calibrain/shelfmark#1308)
- build(deps): bump python from `cae66f2` to `cad9a2c` by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1307](calibrain/shelfmark#1307)
- build(deps): bump the docker-base-image-digests group with 2 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1306](calibrain/shelfmark#1306)
- Deep-link Search By mode via URL hash by [@&#8203;nfvelten](https://github.com/nfvelten) in [#&#8203;1311](calibrain/shelfmark#1311)
- build(deps): bump the python-deps group across 1 directory with 4 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1327](calibrain/shelfmark#1327)
- Keep default filters out of the URL hash by [@&#8203;nfvelten](https://github.com/nfvelten) in [#&#8203;1314](calibrain/shelfmark#1314)
- feat(download): add Blackhole torrent handoff by [@&#8203;atirna](https://github.com/atirna) in [#&#8203;1312](calibrain/shelfmark#1312)
- feat(naming): add {FirstAuthor} template token by [@&#8203;viniciuspx](https://github.com/viniciuspx) in [#&#8203;1322](calibrain/shelfmark#1322)
- fix: share rotating log file handlers by [@&#8203;eikopf](https://github.com/eikopf) in [#&#8203;1316](calibrain/shelfmark#1316)
- fix(prowlarr): skip indexers in Prowlarr failure back-off by [@&#8203;jfmlima](https://github.com/jfmlima) in [#&#8203;1324](calibrain/shelfmark#1324)
- fix: prevent Anna's Archive download countdown resets by preserving browser sessions by [@&#8203;broglea](https://github.com/broglea) in [#&#8203;1325](calibrain/shelfmark#1325)
- build(deps): bump the docker-base-image-digests group with 2 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1328](calibrain/shelfmark#1328)
- build(deps-dev): bump the npm-deps group in /src/frontend with 4 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1329](calibrain/shelfmark#1329)
- build(deps-dev): bump vitest from 4.1.11 to 5.0.0 in /src/frontend by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1330](calibrain/shelfmark#1330)
- fix(irc): search by surname, and rank the answer by author ([#&#8203;1331](calibrain/shelfmark#1331)) by [@&#8203;Kukkerem](https://github.com/Kukkerem) in [#&#8203;1332](calibrain/shelfmark#1332)
- fix(irc): rank a surname-only result as partial, not wrong ([#&#8203;1332](calibrain/shelfmark#1332)) by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1334](calibrain/shelfmark#1334)
- feat(sources): add Libgen as a direct catalogue search source by [@&#8203;klaidliadon](https://github.com/klaidliadon) in [#&#8203;1326](calibrain/shelfmark#1326)
- refactor: make direct download provider-driven by [@&#8203;TomJansen](https://github.com/TomJansen) in [#&#8203;1337](calibrain/shelfmark#1337)
- fix(sources): restore Direct Download search errors and language matches by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1339](calibrain/shelfmark#1339)
- fix(sources): send a Referer when fetching libgen ads.php pages by [@&#8203;klaidliadon](https://github.com/klaidliadon) in [#&#8203;1340](calibrain/shelfmark#1340)
- Feature: Add Download counts to search result displays and Download sidebar by [@&#8203;RoninTech](https://github.com/RoninTech) in [#&#8203;1336](calibrain/shelfmark#1336)
- Extract archives when zip/rar are enabled as supported formats by [@&#8203;funkypenguin](https://github.com/funkypenguin) in [#&#8203;1343](calibrain/shelfmark#1343)
- fix(download): complete consumed Blackhole handoffs by [@&#8203;atirna](https://github.com/atirna) in [#&#8203;1345](calibrain/shelfmark#1345)
- Add configurable word separator for naming templates by [@&#8203;viniciuspx](https://github.com/viniciuspx) in [#&#8203;1333](calibrain/shelfmark#1333)
- build(deps): bump the python-deps group across 1 directory with 5 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1344](calibrain/shelfmark#1344)
- fix: unbreak main and follow up on the Blackhole handoff review by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1346](calibrain/shelfmark#1346)
- build(deps): bump python-socketio from 5.16.4 to 5.17.0 in the python-deps group by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1347](calibrain/shelfmark#1347)
- Added the ability to sort direct search results by Most downloads by [@&#8203;RoninTech](https://github.com/RoninTech) in [#&#8203;1351](calibrain/shelfmark#1351)
- feat: Add TorBox client support and settings integration by [@&#8203;marcelorodrigo](https://github.com/marcelorodrigo) in [#&#8203;1342](calibrain/shelfmark#1342)
- refactor: extract the per-source release search out of /api/releases by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1355](calibrain/shelfmark#1355)
- build(deps): bump the docker-base-image-digests group with 2 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1348](calibrain/shelfmark#1348)
- build(deps): bump the npm-deps group in /src/frontend with 9 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1349](calibrain/shelfmark#1349)
- build(deps): bump the gh-actions group with 6 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1350](calibrain/shelfmark#1350)
- feat(auth): provision proxy users as non-admin once an admin exists by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1356](calibrain/shelfmark#1356)
- fix(users): apply user updates only after the payload validates by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1360](calibrain/shelfmark#1360)
- fix(download): default is\_admin to False in the request policy guard by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1358](calibrain/shelfmark#1358)
- fix(oidc): reject backslash paths in the return\_to sanitizer by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1359](calibrain/shelfmark#1359)
- fix(queue): don't stamp CANCELLED over a finished download by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1361](calibrain/shelfmark#1361)
- fix(download): check task ownership before serving queued files by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1357](calibrain/shelfmark#1357)
- Feature: Show the AA search result stats by [@&#8203;RoninTech](https://github.com/RoninTech) in [#&#8203;1362](calibrain/shelfmark#1362)
- fix(requests): reject non-object items in the batch endpoint by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1369](calibrain/shelfmark#1369)
- fix(http): keep the host of a protocol-relative download link by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1368](calibrain/shelfmark#1368)
- fix(googlebooks): page by the capped size, not the raw limit by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1370](calibrain/shelfmark#1370)
- fix(deluge): send seeding ratio limit under Deluge's own keys by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1367](calibrain/shelfmark#1367)
- feat(auth): static API\_KEY (env) accepted as Bearer or X-Api-Key, cookie or key by [@&#8203;gavinmcfall](https://github.com/gavinmcfall) in [#&#8203;1366](calibrain/shelfmark#1366)
- fix(auth): rename the API\_KEY env var to SHELFMARK\_API\_KEY by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1374](calibrain/shelfmark#1374)
- fix: bypass recordings, welib wrong-md5 links, footer build sha ([#&#8203;1364](calibrain/shelfmark#1364)) by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1373](calibrain/shelfmark#1373)
- build(deps): bump the python-deps group with 4 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1375](calibrain/shelfmark#1375)
- ci: debounce dev image builds instead of building nightly by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1376](calibrain/shelfmark#1376)
- fix(download): stream a completed book instead of buffering it in RAM - lowering memory needs significantly by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1378](calibrain/shelfmark#1378)
- perf(docker): keep the heavy build layers cacheable across builds - save 11minutes per build by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1379](calibrain/shelfmark#1379)
- test(auth): stop proxy provisioning tests depending on run order by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1381](calibrain/shelfmark#1381)
- feat(search): add a configurable default content type by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1371](calibrain/shelfmark#1371)
- feat(library): mark search results already in a Calibre library by [@&#8203;splitsec2](https://github.com/splitsec2) in [#&#8203;1377](calibrain/shelfmark#1377)
- Default to english when no lang is slected by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1396](calibrain/shelfmark#1396)
- fix(auth): fail closed when auth prerequisites are missing ([#&#8203;1387](calibrain/shelfmark#1387)) by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1397](calibrain/shelfmark#1397)
- build(deps): bump the gh-actions group with 4 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1395](calibrain/shelfmark#1395)
- fix(audiobookbay): reuse the resolved magnet when retrying ([#&#8203;1388](calibrain/shelfmark#1388)) by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1398](calibrain/shelfmark#1398)
- build(deps): bump the npm-deps group in /src/frontend with 7 updates by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1394](calibrain/shelfmark#1394)
- build(deps): bump seleniumbase from 4.54.9 to 4.54.10 in the python-deps group by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1382](calibrain/shelfmark#1382)
- feat: narrator, series and bitrate columns for MyAnonamouse results by [@&#8203;adman234](https://github.com/adman234) in [#&#8203;1390](calibrain/shelfmark#1390)
- build(deps): bump astral-sh/uv from 0.12.16 to 0.12.19 in the docker-base-image-digests group across 1 directory by [@&#8203;dependabot](https://github.com/dependabot)\[bot] in [#&#8203;1392](calibrain/shelfmark#1392)
- fix(mam): keep the session ID on MAM and rerun Prowlarr's exact search by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1399](calibrain/shelfmark#1399)
- fix(ui): contain the result count added in [#&#8203;1362](calibrain/shelfmark#1362) by [@&#8203;calibrain](https://github.com/calibrain) in [#&#8203;1363](calibrain/shelfmark#1363)

##### New Contributors

- [@&#8203;amasen02](https://github.com/amasen02) made their first contribution in [#&#8203;1309](calibrain/shelfmark#1309)
- [@&#8203;atirna](https://github.com/atirna) made their first contribution in [#&#8203;1312](calibrain/shelfmark#1312)
- [@&#8203;viniciuspx](https://github.com/viniciuspx) made their first contribution in [#&#8203;1322](calibrain/shelfmark#1322)
- [@&#8203;eikopf](https://github.com/eikopf) made their first contribution in [#&#8203;1316](calibrain/shelfmark#1316)
- [@&#8203;broglea](https://github.com/broglea) made their first contribution in [#&#8203;1325](calibrain/shelfmark#1325)
- [@&#8203;klaidliadon](https://github.com/klaidliadon) made their first contribution in [#&#8203;1326](calibrain/shelfmark#1326)
- [@&#8203;TomJansen](https://github.com/TomJansen) made their first contribution in [#&#8203;1337](calibrain/shelfmark#1337)
- [@&#8203;RoninTech](https://github.com/RoninTech) made their first contribution in [#&#8203;1336](calibrain/shelfmark#1336)
- [@&#8203;marcelorodrigo](https://github.com/marcelorodrigo) made their first contribution in [#&#8203;1342](calibrain/shelfmark#1342)
- [@&#8203;splitsec2](https://github.com/splitsec2) made their first contribution in [#&#8203;1355](calibrain/shelfmark#1355)
- [@&#8203;gavinmcfall](https://github.com/gavinmcfall) made their first contribution in [#&#8203;1366](calibrain/shelfmark#1366)

**Full Changelog**: <calibrain/shelfmark@v1.3.15...v1.4.0>

</details>

---

### Configuration

📅 **Schedule**: (in timezone America/New_York)

- Branch creation
  - At any time (no schedule defined)
- Automerge
  - At any time (no schedule defined)

🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about these updates again.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box

---

This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC4xMDUuMiIsInVwZGF0ZWRJblZlciI6IjQ0LjEwNS4yIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->

Reviewed-on: https://git.greyrock.io/todd/home-ops/pulls/283
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant