diff --git a/.github/workflows/release_pypi.yml b/.github/workflows/release_pypi.yml index c59a4579..10f795d4 100644 --- a/.github/workflows/release_pypi.yml +++ b/.github/workflows/release_pypi.yml @@ -86,7 +86,7 @@ jobs: sha1sum $file > $file.sha1 done - name: Sign the dists with Sigstore - uses: sigstore/gh-action-sigstore-python@f514d46b907ebcd5bedc05145c03b69c1edd8b46 # v3.0.0 + uses: sigstore/gh-action-sigstore-python@f832326173235dcb00dd5d92cd3f353de3188e6c # v3.1.0 with: inputs: >- ./dist/*.tar.gz diff --git a/.github/workflows/release_test_pypi.yml b/.github/workflows/release_test_pypi.yml index ac8872ff..842e7de1 100644 --- a/.github/workflows/release_test_pypi.yml +++ b/.github/workflows/release_test_pypi.yml @@ -88,7 +88,7 @@ jobs: sha1sum $file > $file.sha1 done - name: Sign the dists with Sigstore - uses: sigstore/gh-action-sigstore-python@f514d46b907ebcd5bedc05145c03b69c1edd8b46 # v3.0.0 + uses: sigstore/gh-action-sigstore-python@f832326173235dcb00dd5d92cd3f353de3188e6c # v3.1.0 with: inputs: >- ./dist/*.tar.gz diff --git a/changes/unreleased/0004.QvPeNCj5VgjXindCPHi5Zn.toml b/changes/unreleased/0004.QvPeNCj5VgjXindCPHi5Zn.toml new file mode 100644 index 00000000..26663ff0 --- /dev/null +++ b/changes/unreleased/0004.QvPeNCj5VgjXindCPHi5Zn.toml @@ -0,0 +1,5 @@ +other = "Bump sigstore/gh-action-sigstore-python from 3.0.0 to 3.1.0" +[[pull_requests]] +uid = "4" +author_uid = "dependabot[bot]" +closes_threads = []