Skip to content

deps(actions)(deps): bump cargo-bins/cargo-binstall from 1.20.1 to 1.22.0 - #113

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/cargo-bins/cargo-binstall-1.22.0
Open

deps(actions)(deps): bump cargo-bins/cargo-binstall from 1.20.1 to 1.22.0#113
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/cargo-bins/cargo-binstall-1.22.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 30, 2026

Copy link
Copy Markdown
Contributor

Bumps cargo-bins/cargo-binstall from 1.20.1 to 1.22.0.

Release notes

Sourced from cargo-bins/cargo-binstall's releases.

v1.22.0

Binstall is a tool to fetch and install Rust-based executables as binaries. It aims to be a drop-in replacement for cargo install in most cases. Install it today with cargo install cargo-binstall, from the binaries below, or if you already have it, upgrade with cargo binstall cargo-binstall.

In this release:

  • Add --allow-insecure-http to permit plaintext HTTP (#2606 #2635)

v1.21.1

Binstall is a tool to fetch and install Rust-based executables as binaries. It aims to be a drop-in replacement for cargo install in most cases. Install it today with cargo install cargo-binstall, from the binaries below, or if you already have it, upgrade with cargo binstall cargo-binstall.

In this release:

  • Upgrade dependencies

v1.21.0

Binstall is a tool to fetch and install Rust-based executables as binaries. It aims to be a drop-in replacement for cargo install in most cases. Install it today with cargo install cargo-binstall, from the binaries below, or if you already have it, upgrade with cargo binstall cargo-binstall.

In this release:

  • bugfix: honour --version for git or local manifest (#2165 #2598
  • Prefer ipv6 for hickory-dns dns resolution (#2595%

Other changes:

  • Upgrade dependencies
Commits
  • 75b4bfa release: cargo-binstall v1.22.0 (#2640)
  • 64125a3 chore: release (#2620)
  • e192da8 build(deps): bump clap-cargo from 0.18.3 to 0.19.0 in the deps group (#2639)
  • 8f13773 dep: Upgrade transitive dependencies (#2638)
  • 4779ab6 feat: add --allow-insecure-http to permit plaintext HTTP (#2635)
  • b629f84 build(deps): bump netdev from 0.45.0 to 0.46.0 in the deps group (#2632)
  • 86d826d dep: Upgrade transitive dependencies (#2630)
  • b5723a5 dep: Upgrade transitive dependencies (#2627)
  • 44679a2 build(deps): bump actions/attest from 4.2.1 to 4.2.2 (#2626)
  • f21464c build(deps): bump actions/attest from 4.2.0 to 4.2.1 (#2621)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

ticket-exempt: generated Dependabot dependency update; no dedicated engineering-capacity issue required.

Bumps [cargo-bins/cargo-binstall](https://github.com/cargo-bins/cargo-binstall) from 1.20.1 to 1.22.0.
- [Release notes](https://github.com/cargo-bins/cargo-binstall/releases)
- [Changelog](https://github.com/cargo-bins/cargo-binstall/blob/main/release-plz.toml)
- [Commits](cargo-bins/cargo-binstall@732870f...75b4bfa)

---
updated-dependencies:
- dependency-name: cargo-bins/cargo-binstall
  dependency-version: 1.22.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Aug 30, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies, github-actions. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@CLAassistant

Copy link
Copy Markdown

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

@phylax-ci

Copy link
Copy Markdown

Review for head 10fc1931d66331ad3530688c0280e94e7bc5ccbd:

  • .github/workflows/rust-base.yaml:454 and .github/workflows/rust-base.yaml:625 correctly retain immutable full-SHA pinning, and upstream tag v1.22.0 resolves to 75b4bfae1b2c753a6806bbce6e6cb89b602de33c as used here.
  • Repository tests and both Socket checks pass. The only failing merge gate visible is the pending license/cla status for this generated dependency update; no code-change finding surfaced.
  • This Dependabot-generated update has no linked Linear ticket.

Next step: have a maintainer exempt @dependabot[bot] in CLA Assistant so license/cla resolves.

@phylax-ci phylax-ci added the ticket-exempt Generated dependency or equivalent non-capacity work; written PR reason required label Aug 31, 2026

@0xAlcibiades 0xAlcibiades left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Approve. SHA-pinned with the version comment maintained (the repo's best pinning practice), two minor-version steps on cargo-binstall which is only used to install cargo-shear/zepter in CI, and the test check is green. Low blast radius, correct hygiene.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ticket-exempt Generated dependency or equivalent non-capacity work; written PR reason required

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants