Security & dependency maintenance
Clears all known Dependabot vulnerability alerts (0 open after this release).
Runtime dependency upgrades
@actions/cache4 → 5,@actions/core1 → 2,minio7 → 8 — removes vulnerable transitives (uuid, undici, fast-xml-parser 4.x), validated by the full S3 integration suite (#80)form-data2.5.5 → 2.5.6 — GHSA-hmw2-7cc7-3qxx (#77)
Transitive bumps
- picomatch (#70), handlebars (#71), lodash (#72), fast-xml-builder (#75)
- fast-xml-parser → 5.9.0, brace-expansion → 1.1.15, @babel/core → 7.29.7
No functional changes to the action's behavior.
Full Changelog: v1.10.1...v1.10.2