dependabot[bot]
b1993d9139
Bump @actions/github from 7.0.0 to 8.0.0
...
Bumps [@actions/github](https://github.com/actions/toolkit/tree/HEAD/packages/github ) from 7.0.0 to 8.0.0.
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/github/RELEASES.md )
- [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/github )
---
updated-dependencies:
- dependency-name: "@actions/github"
dependency-version: 8.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-01-26 19:40:04 +00:00
Henry Mercer
439137e1b5
Merge pull request #3430 from github/backport-v3.32.0-b20883b0c
...
Merge releases/v4 into releases/v3
v3.32.0
2026-01-26 11:23:41 -08:00
Henry Mercer
ee1e1399e2
Merge pull request #3429 from github/mergeback/v4.32.0-to-main-b20883b0
...
Mergeback v4.32.0 refs/heads/releases/v4 into main
2026-01-26 11:18:48 -08:00
github-actions[bot]
f5ab452606
Rebuild
2026-01-26 18:54:38 +00:00
github-actions[bot]
e7d3af2e1e
Rebuild
2026-01-26 18:54:35 +00:00
github-actions[bot]
56c8e1c8a8
Update version and changelog for v3.32.0
2026-01-26 18:41:33 +00:00
github-actions[bot]
4f5ca6f9a5
Merge remote-tracking branch 'origin/releases/v4' into backport-v3.32.0-b20883b0c
2026-01-26 18:41:32 +00:00
github-actions[bot]
92f3a2822b
Revert "Rebuild"
...
This reverts commit c9e0329cc4 .
2026-01-26 18:41:32 +00:00
github-actions[bot]
e9bf22fb0e
Revert "Update version and changelog for v3.31.11"
...
This reverts commit 9ffacc75e8 .
2026-01-26 18:41:32 +00:00
github-actions[bot]
13a6d8be95
Update changelog and version after v4.32.0
2026-01-26 18:39:39 +00:00
Henry Mercer
b20883b0cd
Merge pull request #3428 from github/update-v4.32.0-e3b8227a2
...
Merge main into releases/v4
v4.32.0
2026-01-26 10:38:00 -08:00
Henry Mercer
bf20b3e07b
Exclude PR check from feature flag
2026-01-26 18:04:37 +00:00
Henry Mercer
f1aa4f497a
Explain why we ignore extra baseline files options
2026-01-26 18:02:58 +00:00
Henry Mercer
9a55d5bc5f
Improve log message
2026-01-26 18:00:34 +00:00
Henry Mercer
17cd475099
Move to separate function
2026-01-26 17:55:17 +00:00
github-actions[bot]
c9aa45dd0f
Update changelog for v4.32.0
2026-01-26 17:52:31 +00:00
Henry Mercer
e3b8227a28
Merge pull request #3427 from github/henrymercer/bump-for-new-minor-series
...
Bump the Action minor version number on new CodeQL minor version series
2026-01-26 09:12:23 -08:00
Henry Mercer
8a01181ce2
Compare minor version number
...
This deals with the case that we skip `x.y.0` and go straight to `x.y.1`.
2026-01-26 16:50:11 +00:00
Henry Mercer
80e142568f
Bump minor version for CLI v2.24.0
2026-01-26 15:46:05 +00:00
Henry Mercer
b748848f27
Bump the Action minor version number on new CodeQL minor version series
2026-01-26 15:45:24 +00:00
Nick Rolfe
5e767eff5a
Merge pull request #3425 from github/update-bundle/codeql-bundle-v2.24.0
...
Update default bundle to 2.24.0
2026-01-26 04:40:17 -08:00
github-actions[bot]
9752869470
Add changelog note
2026-01-26 12:16:22 +00:00
github-actions[bot]
c62c214723
Update default bundle to codeql-bundle-v2.24.0
2026-01-26 12:16:14 +00:00
Henry Mercer
18c2cfc765
Indulge caniuse-lite to avoid build warnings
2026-01-26 11:42:13 +00:00
Henry Mercer
1996ca9f5d
Log when file coverage info is disabled
2026-01-26 11:42:13 +00:00
Henry Mercer
12c4c7d0e9
Don't log empty summaries
2026-01-26 11:42:13 +00:00
Michael B. Gale
25a224b808
Merge pull request #3423 from github/mbg/ci/yq-windows
...
Add `installYq` option to `sync.py` and install `yq` directly from GitHub release
codeql-bundle-v2.24.0
2026-01-26 11:23:44 +00:00
Henry Mercer
919e8aaa40
Mention caveat in feature JSDoc
2026-01-26 11:00:04 +00:00
Henry Mercer
4918026b93
Use FF to disable baseline file coverage
2026-01-26 11:00:04 +00:00
Henry Mercer
e8c164b902
Remove unused database print-baseline
2026-01-26 11:00:03 +00:00
Michael B. Gale
3657da1eac
Move yq version into env var and add comment
2026-01-26 10:59:43 +00:00
Michael B. Gale
605d404db0
Install yq directly from GitHub release
2026-01-24 14:09:33 +00:00
Michael B. Gale
efea9cca02
Add installYq option to sync.py and cache downloads
2026-01-24 13:43:15 +00:00
Michael B. Gale
9fccf271ff
Warn if a private registry configuration uses a PAT, but has no username
2026-01-24 13:02:41 +00:00
Michael B. Gale
c12cf8d49a
Move makeTestToken to testing-utils
2026-01-24 12:55:32 +00:00
Michael B. Gale
0fcbec3eec
Add isAuthToken function, with tests
2026-01-24 12:38:14 +00:00
Michael B. Gale
0ae8b05d08
Extend unit tests to cover all token types
2026-01-24 12:25:40 +00:00
Michael B. Gale
49cdf744d9
Use enum for token types
2026-01-24 11:58:10 +00:00
Michael B. Gale
aac4202424
Add fine-grained tokens to GITHUB_TOKEN_PATTERNS
2026-01-24 11:52:53 +00:00
Henry Mercer
e7ece62b96
Add feature flag to skip file coverage information on PRs
2026-01-23 18:41:24 +00:00
Henry Mercer
d9e374ef85
Tolerate failures loading repository properties
2026-01-23 17:51:41 +00:00
Henry Mercer
f4b47e7013
Add result type
2026-01-23 17:51:02 +00:00
Henry Mercer
4e14537b54
Improve logging when no known repository properties found
2026-01-23 17:29:15 +00:00
Henry Mercer
e142eee9b4
Only load repository properties for repos owned by orgs
2026-01-23 17:20:30 +00:00
Henry Mercer
dcd1b12beb
Simplify computation of job status
...
- Move it out of the failed SARIF reporting so we compute the job status
whether or not we have a CodeQL config.
- Add comments to clarify what happens in the case that the CodeQL
config is absent.
2026-01-23 17:07:21 +00:00
Michael B. Gale
38e701f46e
Merge pull request #3419 from github/backport-v3.31.11-19b2f06db
v3.31.11
2026-01-23 15:44:23 +00:00
Michael B. Gale
55252c7a3a
Merge pull request #3418 from github/mergeback/v4.31.11-to-main-19b2f06d
...
Mergeback v4.31.11 refs/heads/releases/v4 into main
2026-01-23 15:26:56 +00:00
github-actions[bot]
c9e0329cc4
Rebuild
2026-01-23 15:14:24 +00:00
github-actions[bot]
7381f9750d
Rebuild
2026-01-23 14:48:27 +00:00
github-actions[bot]
9ffacc75e8
Update version and changelog for v3.31.11
2026-01-23 13:56:12 +00:00