github-actions[bot]
0a3b2407bc
Rebuild
2026-06-03 17:26:45 +00:00
github-actions[bot]
907b8c651f
Update changelog and version after v4.36.2
2026-06-03 17:26:32 +00:00
Henry Mercer
2ceebd64c4
Merge pull request #3945 from github/henrymercer/pin-actions-to-shas
...
Pin first-party Actions to SHAs
2026-06-03 17:09:52 +00:00
Henry Mercer
fd3f10809d
Update sync-back script
...
This is intended as a workaround until https://github.com/github/codeql-action/pull/3556 is merged.
2026-06-03 17:21:10 +01:00
Henry Mercer
87f4948cb0
Pin first-party Actions
2026-06-03 17:19:36 +01:00
Henry Mercer
8ed7f7c384
Merge pull request #3941 from github/mergeback/v4.36.1-to-main-87557b9c
...
Mergeback v4.36.1 refs/heads/releases/v4 into main
2026-06-02 10:35:51 +00:00
github-actions[bot]
0ad7c1f95e
Rebuild
2026-06-02 10:09:37 +00:00
github-actions[bot]
25c25b5e09
Update changelog and version after v4.36.1
2026-06-02 10:09:22 +00:00
Henry Mercer
87557b9c84
Merge pull request #3940 from github/update-v4.36.1-2a1689ed4
...
Merge main into releases/v4
2026-06-02 11:07:55 +01:00
github-actions[bot]
9431011964
Update changelog for v4.36.1
2026-06-02 09:50:57 +00:00
Henry Mercer
2a1689ed43
Merge pull request #3939 from github/henrymercer/skip-overlay-revert-when-explicit
...
Disable missing diff-ranges fallback when overlay enabled manually
2026-06-01 17:25:10 +00:00
Henry Mercer
524532393a
Disable missing diff-ranges fallback when overlay enabled manually
2026-06-01 15:34:08 +01:00
Henry Mercer
d1eb1207b4
Merge pull request #3933 from github/update-supported-enterprise-server-versions
...
Update supported GitHub Enterprise Server versions
2026-05-29 11:10:43 +00:00
Michael B. Gale
115001ba8d
Merge pull request #3934 from github/dependabot/npm_and_yarn/npm-minor-86fb5ccea6
...
Bump the npm-minor group across 1 directory with 2 updates
2026-05-28 14:53:43 +00:00
Michael B. Gale
cef2e7a910
Merge pull request #3925 from github/dependabot/github_actions/dot-github/workflows/actions-minor-da8be134b1
...
Bump ruby/setup-ruby from 1.306.0 to 1.307.0 in /.github/workflows in the actions-minor group across 1 directory
2026-05-28 13:59:27 +00:00
Michael B. Gale
5e6adf70ed
Merge pull request #3936 from github/dependabot/npm_and_yarn/tmp-0.2.7
...
Bump tmp from 0.2.4 to 0.2.7
2026-05-28 13:54:02 +00:00
Michael B. Gale
ad170e6c4e
Merge branch 'main' into dependabot/github_actions/dot-github/workflows/actions-minor-da8be134b1
2026-05-28 14:48:30 +01:00
github-actions[bot]
6a37b3a57a
Rebuild
2026-05-28 02:48:34 +00:00
dependabot[bot]
bef1eb7126
Bump tmp from 0.2.4 to 0.2.7
...
Bumps [tmp](https://github.com/raszi/node-tmp ) from 0.2.4 to 0.2.7.
- [Changelog](https://github.com/raszi/node-tmp/blob/master/CHANGELOG.md )
- [Commits](https://github.com/raszi/node-tmp/compare/v0.2.4...v0.2.7 )
---
updated-dependencies:
- dependency-name: tmp
dependency-version: 0.2.7
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-28 02:46:38 +00:00
dependabot[bot]
b42b7546a5
Bump the npm-minor group across 1 directory with 2 updates
...
Bumps the npm-minor group with 2 updates in the / directory: [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ) and [tsx](https://github.com/privatenumber/tsx ).
Updates `typescript-eslint` from 8.59.3 to 8.59.4
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.4/packages/typescript-eslint )
Updates `tsx` from 4.21.0 to 4.22.3
- [Release notes](https://github.com/privatenumber/tsx/releases )
- [Changelog](https://github.com/privatenumber/tsx/blob/master/release.config.cjs )
- [Commits](https://github.com/privatenumber/tsx/compare/v4.21.0...v4.22.3 )
---
updated-dependencies:
- dependency-name: typescript-eslint
dependency-version: 8.59.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: tsx
dependency-version: 4.22.3
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-27 20:06:49 +00:00
github-actions[bot]
8b0c522441
Update supported GitHub Enterprise Server versions
2026-05-27 00:44:49 +00:00
Michael B. Gale
0e150e4076
Merge pull request #3921 from github/dependabot/npm_and_yarn/npm-minor-28e225f5ad
...
Bump the npm-minor group across 1 directory with 6 updates
2026-05-22 14:35:33 +00:00
Michael B. Gale
8a1e375368
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-28e225f5ad
2026-05-22 15:08:30 +01:00
Óscar San José
0fb8a6672b
Merge pull request #3928 from github/mergeback/v4.36.0-to-main-7211b7c8
...
Mergeback v4.36.0 refs/heads/releases/v4 into main
2026-05-22 11:28:10 +00:00
github-actions[bot]
80795fb0d4
Rebuild
2026-05-22 11:08:00 +00:00
github-actions[bot]
0cd24d8654
Update changelog and version after v4.36.0
2026-05-22 11:07:48 +00:00
Óscar San José
7211b7c807
Merge pull request #3927 from github/update-v4.36.0-ebc2d9e2b
...
Merge main into releases/v4
2026-05-22 13:06:23 +02:00
github-actions[bot]
7740f2fb21
Update changelog for v4.36.0
2026-05-22 10:49:45 +00:00
Óscar San José
ebc2d9e2bc
Merge pull request #3926 from github/update-bundle/codeql-bundle-v2.25.5
...
Update default bundle to 2.25.5
2026-05-22 10:32:55 +00:00
github-actions[bot]
d1f74b777c
Add changelog note
2026-05-22 10:18:49 +00:00
github-actions[bot]
2dc40cec39
Update default bundle to codeql-bundle-v2.25.5
2026-05-22 10:18:43 +00:00
Henry Mercer
84498526a0
Merge pull request #3910 from github/henrymercer/repo-size-diff-check
...
Action size: Add a PR check that comments on significant repo size changes
2026-05-21 10:29:33 +00:00
Henry Mercer
72ac23c6d1
Update excluded required check list
2026-05-21 10:16:47 +01:00
github-actions[bot]
14c150999e
Rebuild
2026-05-20 22:08:52 +00:00
github-actions[bot]
89c58e65c1
Rebuild
2026-05-20 22:07:31 +00:00
dependabot[bot]
a0a8d16e7b
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.306.0 to 1.307.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/c4e5b1316158f92e3d49443a9d58b31d25ac0f8f...6aaa311d81eba98ae12eaffbcb63296ace0efcde )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.307.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-20 22:06:56 +00:00
dependabot[bot]
bd77449ac2
Bump the npm-minor group across 1 directory with 6 updates
...
Bumps the npm-minor group with 6 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [semver](https://github.com/npm/node-semver ) | `7.7.4` | `7.8.0` |
| [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) | `2.0.5` | `2.1.0` |
| [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node ) | `20.19.39` | `20.19.41` |
| [nock](https://github.com/nock/nock ) | `14.0.12` | `14.0.15` |
| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ) | `8.59.2` | `8.59.3` |
| [yaml](https://github.com/eemeli/yaml ) | `2.8.4` | `2.9.0` |
Updates `semver` from 7.7.4 to 7.8.0
- [Release notes](https://github.com/npm/node-semver/releases )
- [Changelog](https://github.com/npm/node-semver/blob/main/CHANGELOG.md )
- [Commits](https://github.com/npm/node-semver/compare/v7.7.4...v7.8.0 )
Updates `@eslint/compat` from 2.0.5 to 2.1.0
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.1.0/packages/compat )
Updates `@types/node` from 20.19.39 to 20.19.41
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node )
Updates `nock` from 14.0.12 to 14.0.15
- [Release notes](https://github.com/nock/nock/releases )
- [Changelog](https://github.com/nock/nock/blob/main/CHANGELOG.md )
- [Commits](https://github.com/nock/nock/compare/v14.0.12...v14.0.15 )
Updates `typescript-eslint` from 8.59.2 to 8.59.3
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.3/packages/typescript-eslint )
Updates `yaml` from 2.8.4 to 2.9.0
- [Release notes](https://github.com/eemeli/yaml/releases )
- [Commits](https://github.com/eemeli/yaml/compare/v2.8.4...v2.9.0 )
---
updated-dependencies:
- dependency-name: semver
dependency-version: 7.8.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: "@eslint/compat"
dependency-version: 2.1.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: "@types/node"
dependency-version: 20.19.41
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: nock
dependency-version: 14.0.15
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.59.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: yaml
dependency-version: 2.9.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-20 22:05:27 +00:00
Henry Mercer
c5297a28a2
Merge pull request #3919 from github/henrymercer/workflow-concurrency
...
CI: Automatically cancel non-generated workflows
2026-05-20 16:26:50 +00:00
Henry Mercer
8ffeae7d05
CI: Automatically cancel non-generated workflows
...
Specify concurrency groups for non-generated workflows so we can cancel in-progress runs when new commits are pushed to a PR.
2026-05-20 16:39:16 +01:00
Henry Mercer
f3f52bf568
Revert getErrorMessage import
...
To avoid requiring additional dependencies
2026-05-20 15:55:41 +01:00
Henry Mercer
a14f75e3ac
Address review comments
2026-05-20 15:39:14 +01:00
Henry Mercer
164c32a61e
Merge pull request #3918 from github/henrymercer/upgrade-brace-expansion
...
Bump `brace-expansion`
2026-05-20 14:31:25 +00:00
Henry Mercer
a134948b87
Bump brace-expansion
...
Address https://github.com/juliangruber/brace-expansion/security/advisories/GHSA-jxxr-4gwj-5jf2
2026-05-20 15:17:16 +01:00
Henry Mercer
f4d0a7abf7
Merge pull request #3912 from github/henrymercer/smaller-upload-lib
...
Action size: Reduce duplication between `upload-lib` and `entry-points`
2026-05-19 18:55:28 +00:00
Henry Mercer
f62fbc9627
Merge pull request #3895 from github/mbg/analysis-kinds/warn-on-non-cs-advanced-setup
...
Log error for non-default `analysis-kinds` input outside of managed workflows
2026-05-19 18:43:18 +00:00
Henry Mercer
2a7340616e
Address review comments
2026-05-19 19:41:51 +01:00
Henry Mercer
3b0e64cb09
Merge pull request #3914 from github/henrymercer/auto-rebuild-release-prs
...
Release process: Automatically rebuild PRs
2026-05-19 18:00:31 +00:00
Michael B. Gale
0a7280a837
Assert that nothing is logged
2026-05-19 14:22:23 +01:00
Michael B. Gale
b79a976789
Merge remote-tracking branch 'origin/main' into mbg/analysis-kinds/warn-on-non-cs-advanced-setup
2026-05-19 14:18:19 +01:00
Henry Mercer
2c8faa5e9f
Pass comment body file directly
2026-05-18 20:28:53 +01:00
Henry Mercer
15a712bbc2
Address review comments
2026-05-18 20:08:43 +01:00
Henry Mercer
eb9a790d15
Apply suggestion from @henrymercer
2026-05-18 19:39:41 +01:00
Henry Mercer
b8baf41834
Remove comments about npm cache
2026-05-18 19:31:53 +01:00
Henry Mercer
5e9ae56429
Add specific instruction about "Rebuild" commit
2026-05-18 19:28:49 +01:00
Henry Mercer
8442bc0af9
Release process: Automatically rebuild PRs
2026-05-18 19:06:49 +01:00
Henry Mercer
26a1e570a6
Merge pull request #3913 from github/henrymercer/downgrade-ava
...
Downgrade ava to version 6.4.1
2026-05-18 18:00:26 +00:00
Henry Mercer
9b6438e936
Tweak workflow
2026-05-18 18:25:26 +01:00
Henry Mercer
b5b50d62f1
Merge branch 'main' into henrymercer/repo-size-diff-check
2026-05-18 18:20:16 +01:00
Henry Mercer
9665bc2f5a
Downgrade ava to version 6.4.1
...
Since we run CI on Node 20 as well as Node 24
2026-05-18 18:07:08 +01:00
Henry Mercer
5a80681bb6
Address review comments
2026-05-18 17:53:50 +01:00
Henry Mercer
bcffb2b658
Unify checks into a single job
2026-05-18 17:33:45 +01:00
Henry Mercer
fcc1e3197f
Action size: Reduce duplication between upload-lib and entry-points
2026-05-18 17:18:03 +01:00
Henry Mercer
6f8805e224
Default setup env vars: Restrict results to src
2026-05-18 17:15:30 +01:00
Henry Mercer
4fc0f3e51b
Add a PR check that comments on significant repo size changes
2026-05-18 16:36:58 +01:00
Henry Mercer
c8a3492b26
Merge pull request #3894 from github/henrymercer/require-codeql-2.19.4
...
Bump minimum CodeQL CLI version to 2.19.4
2026-05-18 14:55:40 +00:00
Henry Mercer
e94195c896
Move changelog note to right place
2026-05-18 14:27:03 +01:00
Henry Mercer
05e8f288eb
Merge branch 'main' into henrymercer/require-codeql-2.19.4
2026-05-15 18:13:43 +01:00
Michael B. Gale
b71f5aebfc
Merge pull request #3898 from github/dependabot/npm_and_yarn/sinon-22.0.0
...
Bump sinon from 21.1.2 to 22.0.0
2026-05-15 14:58:30 +00:00
Henry Mercer
2365a46087
Merge pull request #3908 from github/henrymercer/token-stdin
...
Update scripts to read tokens more securely
2026-05-15 14:54:00 +00:00
Henry Mercer
cf51dca1af
Merge pull request #3893 from github/henrymercer/sha256
...
Add support for SHA-256 Git object IDs
2026-05-15 14:53:55 +00:00
Michael B. Gale
b30a935ea5
Merge branch 'main' into dependabot/npm_and_yarn/sinon-22.0.0
2026-05-15 15:42:13 +01:00
Henry Mercer
5b815f25ca
Merge branch 'main' into henrymercer/sha256
2026-05-15 14:58:14 +01:00
Henry Mercer
93c8a9ed99
Update update-release-branch.py to take token from stdin
2026-05-15 14:53:43 +01:00
Henry Mercer
2a02de1a14
Read token from stdin in sync-checks.ts
...
Also allow specifying the token using an environment variable.
2026-05-15 14:53:43 +01:00
Henry Mercer
67f403822c
Merge pull request #3903 from github/henrymercer/macos-larger-runners
...
PR checks: Run slowest macOS checks on larger runners
2026-05-15 13:32:01 +00:00
Michael B. Gale
bbef5ff663
Merge pull request #3904 from github/mbg/esbuild/split-follow-up
...
Address review comments for #3899
2026-05-15 12:48:02 +00:00
Michael B. Gale
7187b6ecc7
Merge pull request #3906 from github/mergeback/v4.35.5-to-main-9e0d7b8d
...
Mergeback v4.35.5 refs/heads/releases/v4 into main
2026-05-15 11:50:42 +00:00
github-actions[bot]
f1ce9f4421
Rebuild
2026-05-15 11:30:22 +00:00
github-actions[bot]
06c7e6fdd5
Update changelog and version after v4.35.5
2026-05-15 11:24:05 +00:00
Michael B. Gale
9e0d7b8d25
Merge pull request #3905 from github/update-v4.35.5-d4b485515
...
Merge main into releases/v4
2026-05-15 12:22:46 +01:00
Michael B. Gale
6d7d59927c
Add changelog entry for #3899
2026-05-15 11:58:39 +01:00
github-actions[bot]
51f7e38c69
Update changelog for v4.35.5
2026-05-15 10:48:24 +00:00
Henry Mercer
b43bb7bd69
Merge branch 'main' into henrymercer/sha256
2026-05-15 11:41:47 +01:00
Michael B. Gale
064674dfa3
Fix typo
...
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com >
2026-05-15 11:35:47 +01:00
Michael B. Gale
ab5047bf8f
Add missing semicolons
2026-05-15 11:27:58 +01:00
Michael B. Gale
2320f9d058
"action" to "Action" in build.mjs
2026-05-15 11:26:51 +01:00
Michael B. Gale
46959216a2
Rename analyze-action-env.test.ts to analyze-action.test.ts
2026-05-15 11:25:12 +01:00
Michael B. Gale
9e1f914560
Merge analyze-action-input test into analyze-action-env file
...
The tests still can't run in parallel so I had to change `test` to `test.serial`, which caused a bunch of formatting changes.
2026-05-15 11:24:28 +01:00
Michael B. Gale
db84cb5ccb
Remove outdated comments for analyze-action tests
2026-05-15 11:22:17 +01:00
Michael B. Gale
d4b485515e
Merge pull request #3899 from github/mbg/esbuild/split
...
Reduce duplication across JS bundles by creating one bundle with smaller entry point wrappers
2026-05-15 10:11:56 +00:00
Henry Mercer
931147e852
Improve OS types and docs
2026-05-15 11:10:02 +01:00
Michael B. Gale
127de8117f
Merge remote-tracking branch 'origin/main' into mbg/esbuild/split
2026-05-14 19:14:01 +01:00
Michael B. Gale
7fde13f26a
Use src + basename in header to avoid issues on Windows
2026-05-14 19:10:19 +01:00
Michael B. Gale
dfa61e7305
Improve pattern matching and error handling
2026-05-14 18:36:41 +01:00
Michael B. Gale
52aafec073
Import and call runWrapper normally in analyze tests
2026-05-14 18:32:40 +01:00
Michael B. Gale
0d08c01f78
Auto-generate shared bundle
2026-05-14 18:27:46 +01:00
Henry Mercer
1b65777c19
Address review comments
2026-05-14 18:13:20 +01:00
Michael B. Gale
14085a675c
Auto-generate entry points
2026-05-14 18:13:01 +01:00
Henry Mercer
a32db48565
Move checks back to default runners
...
These jobs are not rate-limiting so we don't need to run them on larger runners.
2026-05-14 17:57:11 +01:00
Henry Mercer
aa005faaad
PR checks: Run slowest macOS checks on larger runners
2026-05-14 17:29:44 +01:00
Henry Mercer
fcdf5dd4cf
Add PR checks shortcut to package.json
2026-05-14 17:22:02 +01:00
Henry Mercer
e8d3fa290e
Merge branch 'main' into henrymercer/sha256
2026-05-14 17:10:41 +01:00
Sam Robson
eb17ca4f4d
Merge pull request #3791 from github/sam-robson/overlay-fallback
...
Fall back to non-overlay analysis when diff-informed analysis is unavailable
2026-05-14 15:41:25 +00:00
Sam Robson
a41c444cd9
Merge branch 'main' into sam-robson/overlay-fallback
2026-05-14 15:51:24 +01:00
Michael B. Gale
d7e50c23fe
Fix linter errors
2026-05-14 15:24:33 +01:00
Michael B. Gale
bb30f3132d
Avoid top-level promise in analyze-action
2026-05-14 15:14:03 +01:00
Henry Mercer
336884853e
Merge pull request #3901 from github/henrymercer/minify-test-debug-artifacts
...
Minify test debug artifacts
2026-05-14 14:09:36 +00:00
Michael B. Gale
2f137c9dc6
Add remaining new entry points
2026-05-14 14:55:33 +01:00
Henry Mercer
4795ef8153
Remove now unnecessary test skipping
2026-05-14 14:47:33 +01:00
Michael B. Gale
f0489abddd
Update action specs for new entry points
2026-05-14 14:47:23 +01:00
Henry Mercer
2e202367c7
Reduce size of test debug artifacts
2026-05-14 14:47:13 +01:00
Sam Robson
9d7243005b
Merge remote-tracking branch 'origin/main' into sam-robson/overlay-fallback
...
* origin/main: (40 commits)
Bump the npm-minor group across 1 directory with 3 updates
Bump actions/create-github-app-token
Nit: Tweak JSDoc for `getRawLanguagesNoAutodetect`
Enable only `code-scanning`
Use overlay-aware version for code scanning exclusively
Add changelog entry
Rebuild
Bump five transitive dependencies
Throw error if multiple analysis kinds are specified
Bump fast-xml-builder from 1.1.5 to 1.2.0
Improve tests
Improve error message
Remove dead code
Remove `makeOverlayMatchFeatures` indirection
Add JSDoc for `getRawLanguagesNoAutodetect`
Enable overlay-aware version selection in `setup-codeql`
Minor: Introduce constant to avoid duplication
Improve changelog note
Rebuild
Update changelog and version after v4.35.4
...
# Conflicts:
# lib/init-action.js
# src/diff-informed-analysis-utils.test.ts
2026-05-14 13:39:44 +01:00
Michael B. Gale
237b03b3c3
WIP: Reduce bundle duplication
2026-05-14 12:47:34 +01:00
dependabot[bot]
d4eab006fa
Bump sinon from 21.1.2 to 22.0.0
...
Bumps [sinon](https://github.com/sinonjs/sinon ) from 21.1.2 to 22.0.0.
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.1.2...v22.0.0 )
---
updated-dependencies:
- dependency-name: sinon
dependency-version: 22.0.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-14 10:34:00 +00:00
Henry Mercer
ea37b337cd
Merge pull request #3897 from github/dependabot/npm_and_yarn/npm-minor-afb85bbff8
...
Bump the npm-minor group across 1 directory with 3 updates
2026-05-14 10:09:31 +00:00
Henry Mercer
ba0a2f91b7
Merge pull request #3896 from github/dependabot/github_actions/dot-github/workflows/actions-minor-9f1c31c749
...
Bump actions/create-github-app-token from 3.1.1 to 3.2.0 in /.github/workflows in the actions-minor group across 1 directory
2026-05-14 10:06:09 +00:00
dependabot[bot]
4041a11865
Bump the npm-minor group across 1 directory with 3 updates
...
Bumps the npm-minor group with 3 updates in the / directory: [globals](https://github.com/sindresorhus/globals ), [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ) and [yaml](https://github.com/eemeli/yaml ).
Updates `globals` from 17.5.0 to 17.6.0
- [Release notes](https://github.com/sindresorhus/globals/releases )
- [Commits](https://github.com/sindresorhus/globals/compare/v17.5.0...v17.6.0 )
Updates `typescript-eslint` from 8.59.1 to 8.59.2
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.2/packages/typescript-eslint )
Updates `yaml` from 2.8.3 to 2.8.4
- [Release notes](https://github.com/eemeli/yaml/releases )
- [Commits](https://github.com/eemeli/yaml/compare/v2.8.3...v2.8.4 )
---
updated-dependencies:
- dependency-name: globals
dependency-version: 17.6.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.59.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: yaml
dependency-version: 2.8.4
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-13 18:29:17 +00:00
dependabot[bot]
2a6fe1608c
Bump actions/create-github-app-token
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [actions/create-github-app-token](https://github.com/actions/create-github-app-token ).
Updates `actions/create-github-app-token` from 3.1.1 to 3.2.0
- [Release notes](https://github.com/actions/create-github-app-token/releases )
- [Changelog](https://github.com/actions/create-github-app-token/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/create-github-app-token/compare/v3.1.1...v3.2.0 )
---
updated-dependencies:
- dependency-name: actions/create-github-app-token
dependency-version: 3.2.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-13 18:28:51 +00:00
Henry Mercer
3c8c0ae6cb
Remove unnecessary sinon restore calls
2026-05-13 18:53:33 +01:00
Henry Mercer
93d215d874
Merge branch 'main' into henrymercer/sha256
2026-05-13 18:44:38 +01:00
Michael B. Gale
4235601f6f
Log error for non-default analysis-kinds input outside of managed workflows
2026-05-13 17:43:16 +01:00
Mads Navntoft
3d6ea97f26
Merge pull request #3891 from github/navntoft/dep/remove-brace-expansion-override
...
Bump brace-expansion and 4 dev dependencies
2026-05-13 15:46:57 +00:00
Michael B. Gale
7d25a3e590
Merge pull request #3892 from github/mbg/analysis-kinds/warn-on-multiple
...
Log error and only enable `code-scanning` if multiple analysis kinds are specified
2026-05-13 15:44:21 +00:00
Michael B. Gale
4dc72761a6
Merge remote-tracking branch 'origin/main' into mbg/analysis-kinds/warn-on-multiple
2026-05-13 16:20:45 +01:00
Henry Mercer
9c3aedb4cd
Update PR check testing matrix
2026-05-13 14:25:03 +01:00
Henry Mercer
a66f7bbb5a
Merge branch 'main' into henrymercer/sha256
2026-05-13 10:51:44 +01:00
Henry Mercer
b986640672
Add note about CODEQL_VERSION_ZSTD_BUNDLE
2026-05-12 19:26:23 +01:00
Henry Mercer
a333d64ec4
Remove DatabaseInterpretResultsSupportsSarifRunProperty tools feature
...
This feature has been supported since CodeQL CLI v2.19.0
2026-05-12 19:26:21 +01:00
Henry Mercer
97fb30df6b
Remove ForceOverwrite tools feature
...
This feature has been supported since CodeQL CLI v2.18.0, which is below the new minimum version.
2026-05-12 19:26:20 +01:00
Henry Mercer
d122da3c9f
Bump minimum CodeQL CLI version to 2.19.4
2026-05-12 19:26:20 +01:00
Henry Mercer
de3e561d12
Improve regex clarity
2026-05-12 19:06:04 +01:00
Henry Mercer
c559992c9e
Merge pull request #3880 from github/henrymercer/overlay-match-codeql-version
...
Overlay: Use overlay-aware CLI version when analyzing PRs
2026-05-12 17:36:31 +00:00
Henry Mercer
6a4e35fad9
Add support for SHA-256 Git object IDs
2026-05-12 18:24:21 +01:00
Henry Mercer
8d217609b0
Nit: Tweak JSDoc for getRawLanguagesNoAutodetect
2026-05-12 16:21:44 +01:00
Michael B. Gale
257b3d3fc8
Enable only code-scanning
2026-05-12 15:46:28 +01:00
Henry Mercer
201a96b541
Use overlay-aware version for code scanning exclusively
2026-05-12 15:25:40 +01:00
Michael B. Gale
312a2fee96
Add changelog entry
2026-05-12 15:03:58 +01:00
Mads Navntoft
2ca0fbdca8
Rebuild
2026-05-12 15:59:34 +02:00
Mads Navntoft
12c1d88854
Bump five transitive dependencies
...
Bumps the following to their latest patched versions:
brace-expansion (under readdir-glob): 2.0.2 → 2.1.0
picomatch (under micromatch): 2.3.1 → 2.3.2
picomatch (top level): 4.0.3 → 4.0.4
flatted: 3.3.3 → 3.4.2
js-yaml (under supertap): 3.14.1 → 3.14.2
The brace-expansion bump requires removing the brace-expansion override
in package.json, which had been pinning resolution below the existing
^2.0.1 constraint declared by readdir-glob.
2026-05-12 15:59:34 +02:00
Michael B. Gale
70419e3273
Throw error if multiple analysis kinds are specified
2026-05-12 14:54:11 +01:00
Michael B. Gale
b62aaa99a5
Merge pull request #3889 from github/dependabot/npm_and_yarn/fast-xml-builder-1.2.0
...
Bump fast-xml-builder from 1.1.5 to 1.2.0
2026-05-11 14:59:28 +00:00
dependabot[bot]
2f2dbd2e78
Bump fast-xml-builder from 1.1.5 to 1.2.0
...
Bumps [fast-xml-builder](https://github.com/NaturalIntelligence/fast-xml-builder ) from 1.1.5 to 1.2.0.
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-builder/blob/main/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-builder/compare/v1.1.5...v1.2.0 )
---
updated-dependencies:
- dependency-name: fast-xml-builder
dependency-version: 1.2.0
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-08 19:05:11 +00:00
Henry Mercer
b4ea7aa65a
Improve tests
2026-05-08 19:16:48 +01:00
Henry Mercer
87ac48dae6
Improve error message
2026-05-08 19:16:47 +01:00
Henry Mercer
42d7f62579
Remove dead code
2026-05-08 19:16:46 +01:00
Henry Mercer
540699dcca
Remove makeOverlayMatchFeatures indirection
2026-05-08 19:14:05 +01:00
Henry Mercer
9a85234875
Add JSDoc for getRawLanguagesNoAutodetect
2026-05-08 19:14:05 +01:00
Henry Mercer
2a950b930c
Enable overlay-aware version selection in setup-codeql
2026-05-08 19:14:05 +01:00
Henry Mercer
4f815a68d3
Minor: Introduce constant to avoid duplication
2026-05-08 19:14:04 +01:00
Henry Mercer
0aedbb71d8
Merge branch 'main' into henrymercer/overlay-match-codeql-version
2026-05-08 19:10:45 +01:00
Henry Mercer
868e2ea564
Merge pull request #3886 from github/mergeback/v4.35.4-to-main-68bde559
...
Mergeback v4.35.4 refs/heads/releases/v4 into main
2026-05-08 14:25:20 +00:00
Henry Mercer
792c223bc1
Merge pull request #3875 from github/dependabot/npm_and_yarn/npm-minor-c8e071f5f8
...
Bump the npm-minor group across 1 directory with 4 updates
2026-05-08 14:25:05 +00:00
Henry Mercer
efc9b0a9e3
Improve changelog note
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-05-07 18:44:08 +01:00
github-actions[bot]
272ada693f
Rebuild
2026-05-07 15:58:38 +00:00
github-actions[bot]
610a6682b6
Merge remote-tracking branch 'origin/main' into mergeback/v4.35.4-to-main-68bde559
2026-05-07 15:57:56 +00:00
github-actions[bot]
1627096569
Update changelog and version after v4.35.4
2026-05-07 15:54:04 +00:00
Paolo Tranquilli
68bde559de
Merge pull request #3885 from github/update-v4.35.4-803d9e8c3
...
Merge main into releases/v4
2026-05-07 17:52:37 +02:00
github-actions[bot]
9739ad2d18
Update changelog for v4.35.4
2026-05-07 15:21:52 +00:00
Henry Mercer
b81d0d250f
Merge pull request #3874 from github/henrymercer/slow-tests-ci-only
...
Tests: Run slow `scanArtifactsForTokens` test in CI only by default
2026-05-07 15:04:47 +00:00
Michael B. Gale
a16cb53dd8
Merge pull request #3884 from github/mbg/dev/no-build-metadata
...
Do not run `bundle-metadata.ts` as part of `npm run build`
2026-05-07 15:02:21 +00:00
Michael B. Gale
803d9e8c3c
Merge pull request #3883 from github/mbg/test/macro-wrapper
...
Add more strongly typed wrapper around `test.macro`
2026-05-07 14:46:34 +00:00
Henry Mercer
0c80cee806
Add explicit error on Windows
2026-05-07 15:39:42 +01:00
Michael B. Gale
d032ee8c47
Do not run bundle-metadata.ts as part of npm run build
2026-05-07 15:38:28 +01:00
Michael B. Gale
0fd9c7d135
Merge pull request #3882 from github/dependabot/github_actions/dot-github/workflows/actions-minor-4a0b9de8bd
...
Bump ruby/setup-ruby from 1.305.0 to 1.306.0 in /.github/workflows in the actions-minor group across 1 directory
2026-05-07 14:17:36 +00:00
Michael B. Gale
922d6fb888
Use makeMacro instead of test.macro
2026-05-07 14:59:42 +01:00
Michael B. Gale
df77e87896
Update test macro snippet
2026-05-07 14:59:42 +01:00
Michael B. Gale
6e3f985e4f
Add wrapper for test.macro
2026-05-07 14:59:42 +01:00
Paolo Tranquilli
e7a347dfb1
Merge pull request #3881 from github/update-bundle/codeql-bundle-v2.25.4
...
Update default bundle to 2.25.4
2026-05-07 13:41:36 +00:00
github-actions[bot]
17eabb2500
Rebuild
2026-05-07 13:23:54 +00:00
dependabot[bot]
aaef09c48d
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.305.0 to 1.306.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/0cb964fd540e0a24c900370abf38a33466142735...c4e5b1316158f92e3d49443a9d58b31d25ac0f8f )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.306.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-07 13:21:45 +00:00
github-actions[bot]
ae1b9155d3
Add changelog note
2026-05-07 12:49:22 +00:00
github-actions[bot]
9f82f88f07
Update default bundle to codeql-bundle-v2.25.4
2026-05-07 12:49:13 +00:00
Henry Mercer
7525c68ea1
Nit: Dedupe languages
2026-05-07 11:01:15 +01:00
Henry Mercer
01bc9be56a
Filter to code scanning only
2026-05-07 11:00:54 +01:00
Sam Robson
9d6b456c59
Merge branch 'main' into sam-robson/overlay-fallback
2026-05-06 20:26:20 +01:00
Sam Robson
e259d26055
refactor: rename overlay-disabled reason and add changelog entry
2026-05-06 20:23:20 +01:00
Henry Mercer
817b68489e
Merge branch 'main' into henrymercer/overlay-match-codeql-version
2026-05-06 19:20:52 +01:00
Henry Mercer
1b5632783c
Add changelog note
2026-05-06 19:13:25 +01:00
github-actions[bot]
1848b73afa
Rebuild
2026-05-06 18:01:54 +00:00
dependabot[bot]
d1e9792bc8
Bump the npm-minor group across 1 directory with 4 updates
...
Bumps the npm-minor group with 4 updates in the / directory: [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node ), [eslint](https://github.com/eslint/eslint ), [typescript](https://github.com/microsoft/TypeScript ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `@types/node` from 20.19.9 to 20.19.39
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node )
Updates `eslint` from 9.39.2 to 9.39.4
- [Release notes](https://github.com/eslint/eslint/releases )
- [Commits](https://github.com/eslint/eslint/compare/v9.39.2...v9.39.4 )
Updates `typescript` from 6.0.2 to 6.0.3
- [Release notes](https://github.com/microsoft/TypeScript/releases )
- [Commits](https://github.com/microsoft/TypeScript/compare/v6.0.2...v6.0.3 )
Updates `typescript-eslint` from 8.58.2 to 8.59.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: "@types/node"
dependency-version: 20.19.39
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint
dependency-version: 9.39.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript
dependency-version: 6.0.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.59.1
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-06 17:59:44 +00:00
Henry Mercer
2c9cd77837
Tests: Run slow scanArtifactsForTokens test in CI only by default
2026-05-06 18:45:24 +01:00
Henry Mercer
b967fdfbdc
Add dry run mode so we can dark ship
2026-05-06 18:30:24 +01:00
Henry Mercer
55d6319f96
Match CLI version to cached overlay-base database
2026-05-06 18:01:37 +01:00
Henry Mercer
b0942116d7
Expose all enabled default CLI versions
2026-05-06 17:45:56 +01:00
Paolo Tranquilli
bc0b696b41
Merge pull request #3785 from github/mbg/dep/update-undici
...
Bump `undici` to at least `6.24.0`
2026-05-06 15:24:07 +00:00
Henry Mercer
a796e3e4ed
Add OverlayAnalysisMatchCodeqlVersion feature flag
2026-05-06 15:14:04 +01:00
Michael B. Gale
f9bb0e001c
Merge branch 'main' into mbg/dep/update-undici
2026-05-06 14:16:25 +01:00
Henry Mercer
4b7faf0b3d
Merge pull request #3809 from github/henrymercer/determine-overlay-version
...
Overlay: Determine which versions of CodeQL are compatible with cached base DBs
2026-05-06 12:30:56 +00:00
Henry Mercer
09a1d9ec2a
Add note about cache eviction
2026-05-05 18:54:16 +01:00
Henry Mercer
f64a4491cf
Add links to API docs
2026-05-05 18:48:09 +01:00
Henry Mercer
7fc86e0c37
Update type import syntax
2026-05-05 18:43:10 +01:00
Henry Mercer
5997e25ad9
Update listActionsCaches doc
2026-05-05 18:43:01 +01:00
Henry Mercer
7587714d0a
Revert "Mitigate caches being evicted before they can be downloaded"
...
This reverts commit 1279e8d41c .
2026-05-05 18:37:17 +01:00
Sam Robson
8ab64a211d
Merge branch 'main' into sam-robson/overlay-fallback
2026-05-01 16:35:49 +01:00
Michael B. Gale
a723e99345
Merge pull request #3868 from github/mergeback/v4.35.3-to-main-e46ed2cb
...
Mergeback v4.35.3 refs/heads/releases/v4 into main
2026-05-01 14:34:01 +00:00
github-actions[bot]
fbba1e03be
Rebuild
2026-05-01 14:09:49 +00:00
github-actions[bot]
933238e8d5
Update changelog and version after v4.35.3
2026-05-01 14:06:46 +00:00
Michael B. Gale
e46ed2cbd0
Merge pull request #3867 from github/update-v4.35.3-8c6e48dbe
...
Merge main into releases/v4
2026-05-01 15:05:28 +01:00
Michael B. Gale
b73d1d1634
Add changelog entry for #3853
2026-05-01 14:09:58 +01:00
Michael B. Gale
24e0bb00a9
Reorder changelog entries
2026-05-01 14:07:12 +01:00
github-actions[bot]
ec298daba7
Update changelog for v4.35.3
2026-05-01 12:57:50 +00:00
Sam Robson
f8b93c30a6
Merge branch 'main' into sam-robson/overlay-fallback
2026-05-01 11:28:43 +01:00
Henry Mercer
8c6e48dbe0
Merge pull request #3865 from github/update-bundle/codeql-bundle-v2.25.3
...
Update default bundle to 2.25.3
2026-04-30 16:07:18 +00:00
Sam Robson
80a72986d3
fix: re-import withGroupAsync in init-action.ts after merge
2026-04-30 16:48:45 +01:00
Sam Robson
e9e36aec74
test: drop codescanning-config-cli scenario for overlay without diff-informed
2026-04-30 16:39:05 +01:00
github-actions[bot]
719098349e
Add changelog note
2026-04-30 15:31:49 +00:00
github-actions[bot]
2bb209555a
Update default bundle to codeql-bundle-v2.25.3
2026-04-30 15:31:40 +00:00
Sam Robson
4ed52dcbfa
Merge branch 'main' into sam-robson/overlay-fallback
2026-04-30 16:24:23 +01:00
Sam Robson
3cc8dd3e59
refactor: report missing PR diff ranges via OverlayDisabledReason and disable overlay
2026-04-30 16:12:30 +01:00
Michael B. Gale
7851e55dc3
Merge pull request #3850 from github/mbg/private-registry/cloudsmith-gcp
...
Private registries: Add support for Cloudsmith and GCP OIDC configurations
2026-04-30 13:33:44 +00:00
Michael B. Gale
262a15f6cf
Add generic non-printable chars test for OIDC configs
2026-04-30 14:10:36 +01:00
Michael B. Gale
a6109b1c07
Merge pull request #3853 from github/mbg/start-proxy/improved-checks
...
Improve connection tests
2026-04-30 12:48:34 +00:00
Michael B. Gale
022ff3c73f
Merge remote-tracking branch 'origin/main' into mbg/private-registry/cloudsmith-gcp
2026-04-30 13:43:29 +01:00
Michael B. Gale
0a4d574ac4
Add changelog entry
2026-04-30 13:42:29 +01:00
Michael B. Gale
d1edf2e4de
Improve replaces-base validation and add tests
2026-04-30 13:41:13 +01:00
Henry Mercer
facd53f789
Merge pull request #3859 from github/dependabot/npm_and_yarn/ava/typescript-7.0.0
...
Bump @ava/typescript from 6.0.0 to 7.0.0
2026-04-30 12:30:35 +00:00
Michael B. Gale
b77983290b
Fix permutations comment
2026-04-30 13:28:42 +01:00
Henry Mercer
fcf29e3d86
Merge pull request #3862 from github/dependabot/github_actions/dot-github/workflows/actions-minor-933f87fbf1
...
Bump ruby/setup-ruby from 1.301.0 to 1.305.0 in /.github/workflows in the actions-minor group across 1 directory
2026-04-30 12:17:13 +00:00
Henry Mercer
1fed3e9ba8
Merge branch 'main' into dependabot/npm_and_yarn/ava/typescript-7.0.0
2026-04-30 13:10:19 +01:00
Michael B. Gale
549683cee5
Make it clearer what the expectations for isUsernamePassword are
2026-04-30 12:49:49 +01:00
Michael B. Gale
7a6ed56219
Modify FromSchema so that optional properties are actually optional
2026-04-30 11:54:21 +01:00
Michael B. Gale
91fbc51606
Improve validateSchema comment
2026-04-30 11:46:01 +01:00
Michael B. Gale
35715ef8fe
Improve typing of cloneCredential
2026-04-30 11:43:54 +01:00
Michael B. Gale
bac7fdaf42
Fix linter error
2026-04-30 11:26:12 +01:00
Henry Mercer
1517969c90
Merge pull request #3837 from github/update-supported-enterprise-server-versions
...
Update supported GitHub Enterprise Server versions
2026-04-30 10:16:37 +00:00
github-actions[bot]
f073360456
Rebuild
2026-04-29 18:02:23 +00:00
dependabot[bot]
5145c112e7
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.301.0 to 1.305.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/4c56a21280b36d862b5fc31348f463d60bdc55d5...0cb964fd540e0a24c900370abf38a33466142735 )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.305.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-29 18:00:14 +00:00
dependabot[bot]
7108503ac6
Bump @ava/typescript from 6.0.0 to 7.0.0
...
Bumps [@ava/typescript](https://github.com/avajs/typescript ) from 6.0.0 to 7.0.0.
- [Release notes](https://github.com/avajs/typescript/releases )
- [Commits](https://github.com/avajs/typescript/compare/v6.0.0...v7.0.0 )
---
updated-dependencies:
- dependency-name: "@ava/typescript"
dependency-version: 7.0.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-29 17:59:33 +00:00
Henry Mercer
4fe9b1e243
Merge pull request #3856 from github/henrymercer/overlay-add-log-group
...
Add log group for downloading overlay-base DB
2026-04-29 10:51:09 +00:00
Henry Mercer
56733fb5ae
Add log group for downloading overlay-base DB
2026-04-28 19:00:28 +01:00
Henry Mercer
0a636086c9
Add GHES 3.21 to supported versions table
2026-04-28 15:32:55 +01:00
Henry Mercer
97be3af35a
Deprecate CodeQL versions 2.19.3 and earlier
2026-04-28 15:32:55 +01:00
github-actions[bot]
de303a9db5
Update supported GitHub Enterprise Server versions
2026-04-28 15:24:46 +01:00
Michael B. Gale
7a818e6977
Log disclaimer about connection tests, with link to docs
2026-04-28 13:45:53 +01:00
Michael B. Gale
30e0f4391d
Use /v3/index.json for NuGet feed check
2026-04-28 13:45:52 +01:00
Henry Mercer
7c5585e5cf
Merge pull request #3852 from github/henrymercer/avoid-diagnostic-collisions
...
Add random suffix when writing diagnostics to avoid filename collisions
2026-04-28 12:04:59 +00:00
Henry Mercer
245f6828c4
Use a counter instead of Math.random for diagnostic filename suffix
2026-04-28 12:42:42 +01:00
Henry Mercer
c109008fac
Add changelog note
2026-04-28 11:40:03 +01:00
Henry Mercer
e73c940c9b
Defensively sanitize timestamp
2026-04-28 11:40:02 +01:00
Henry Mercer
cdb655d6d4
Add random suffix when writing diagnostics to avoid filename collisions
2026-04-28 11:39:40 +01:00
Michael B. Gale
6153577cab
Switch from HEAD to GET requests
...
Not all registry implementations support `HEAD` correctly.
2026-04-28 10:42:27 +01:00
Óscar San José
8f02cfa11d
Update from main and Rebuild
2026-04-27 19:30:21 +02:00
Michael B. Gale
0ed734b61b
Ignore test files
2026-04-25 18:36:22 +01:00
Michael B. Gale
efdcb31f11
Accept replaces-base option
2026-04-25 18:36:22 +01:00
Michael B. Gale
4d2c7c6e10
Validate GCP OIDC configurations
2026-04-25 18:36:22 +01:00
Michael B. Gale
70b2658d23
Validate Cloudsmith OIDC configurations
2026-04-25 18:36:21 +01:00
Michael B. Gale
530fcb3bbf
Group OIDC schemas into an array
2026-04-25 18:36:19 +01:00
Michael B. Gale
2acf81942b
Add tests for getAuthConfig
2026-04-25 18:34:00 +01:00
Michael B. Gale
d2a54a4507
Add schemas for basic credential types
2026-04-25 18:33:01 +01:00
Michael B. Gale
bc4097bbe1
Simplify credential cloning in getAuthConfig
2026-04-25 18:23:11 +01:00
Michael B. Gale
c8e26e209a
Move getAuthConfig out of start-proxy.ts
2026-04-25 16:49:05 +01:00
Michael B. Gale
0752451507
Use schema/validation for existing OIDC config types
2026-04-25 16:49:05 +01:00
Michael B. Gale
243c274daf
Add simple JSON schema / validation helpers
2026-04-25 15:35:50 +01:00
Sam Robson
5ded561dcd
Merge branch 'main' into sam-robson/overlay-fallback
2026-04-24 06:39:07 +01:00
Henry Mercer
19b3a84f58
Merge pull request #3849 from github/henrymercer/simplify-diff-range-interface
...
Simplify `writeDiffRangeDataExtensionPack` interface
2026-04-23 20:29:05 +00:00
Sam Robson
faca00d3ae
refactor: address review feedback on overlay fallback
2026-04-23 20:38:10 +01:00
Henry Mercer
858a6149c1
Simplify writeDiffRangeDataExtensionPack interface
2026-04-23 16:47:15 +01:00
Sam Robson
5d1c58464f
refactor: fall back to non-overlay analysis when diff-informed analysis is unavailable
2026-04-23 12:10:22 +01:00
Henry Mercer
c60c75576d
Merge pull request #3848 from github/dependabot/npm_and_yarn/fast-xml-parser-5.7.1
...
Bump fast-xml-parser from 5.5.7 to 5.7.1
2026-04-22 23:03:27 +00:00
Henry Mercer
59aede2113
Merge pull request #3847 from github/dependabot/npm_and_yarn/uuid-14.0.0
...
Bump uuid from 13.0.0 to 14.0.0
2026-04-22 23:02:16 +00:00
github-actions[bot]
6c35f8607b
Rebuild
2026-04-22 21:54:06 +00:00
github-actions[bot]
c486cacf49
Rebuild
2026-04-22 21:53:49 +00:00
dependabot[bot]
365478cc5b
Bump fast-xml-parser from 5.5.7 to 5.7.1
...
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.5.7 to 5.7.1.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.5.7...v5.7.1 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.7.1
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 21:52:05 +00:00
dependabot[bot]
f0e6490756
Bump uuid from 13.0.0 to 14.0.0
...
Bumps [uuid](https://github.com/uuidjs/uuid ) from 13.0.0 to 14.0.0.
- [Release notes](https://github.com/uuidjs/uuid/releases )
- [Changelog](https://github.com/uuidjs/uuid/blob/main/CHANGELOG.md )
- [Commits](https://github.com/uuidjs/uuid/compare/v13.0.0...v14.0.0 )
---
updated-dependencies:
- dependency-name: uuid
dependency-version: 14.0.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 21:51:48 +00:00
Henry Mercer
860353f245
Merge pull request #3840 from github/dependabot/npm_and_yarn/npm-minor-580efa6e3b
...
Bump the npm-minor group across 1 directory with 3 updates
2026-04-22 20:59:20 +00:00
Henry Mercer
4fb8483ef0
Merge pull request #3835 from github/dependabot/npm_and_yarn/eslint-import-resolver-typescript-4.4.4
...
Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4
2026-04-22 20:33:35 +00:00
dependabot[bot]
c2574efbee
Bump the npm-minor group across 1 directory with 3 updates
...
Bumps the npm-minor group with 3 updates in the / directory: [globals](https://github.com/sindresorhus/globals ), [sinon](https://github.com/sinonjs/sinon ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `globals` from 17.4.0 to 17.5.0
- [Release notes](https://github.com/sindresorhus/globals/releases )
- [Commits](https://github.com/sindresorhus/globals/compare/v17.4.0...v17.5.0 )
Updates `sinon` from 21.0.3 to 21.1.2
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.0.3...v21.1.2 )
Updates `typescript-eslint` from 8.58.1 to 8.58.2
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.2/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: globals
dependency-version: 17.5.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: sinon
dependency-version: 21.1.2
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.58.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 17:58:53 +00:00
Henry Mercer
4cbe7bef85
Merge pull request #3839 from github/henrymercer/workflow-run-triggers
...
Escape "+"s in `on.workflow_run.workflows`
2026-04-22 10:44:53 +00:00
Henry Mercer
f6a5638305
Escape "+"s in on.workflow_run.workflows
2026-04-22 11:14:07 +01:00
Henry Mercer
1279e8d41c
Mitigate caches being evicted before they can be downloaded
2026-04-22 00:04:57 +01:00
Henry Mercer
af1f613989
Use type-only imports
2026-04-21 23:49:37 +01:00
Henry Mercer
5026833be5
Document exclusion of nightlies
2026-04-21 23:35:29 +01:00
Henry Mercer
201ddc275d
Retrieve CodeQL versions associated with cached overlay base DBs
2026-04-21 22:18:59 +01:00
Henry Mercer
1dcdb940d5
Merge pull request #3830 from github/henrymercer/deflake
...
Add workflow to rerun potentially transient failures
2026-04-21 10:57:19 +00:00
Henry Mercer
0b7b740d4c
Merge pull request #3831 from github/dependabot/npm_and_yarn/npm-minor-f46f1f14d7
...
Bump the npm-minor group across 1 directory with 2 updates
2026-04-16 11:08:29 +00:00
Henry Mercer
0ac85966ba
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-f46f1f14d7
2026-04-16 11:49:39 +01:00
dependabot[bot]
5019ed041c
Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4
...
Bumps [eslint-import-resolver-typescript](https://github.com/import-js/eslint-import-resolver-typescript ) from 3.8.7 to 4.4.4.
- [Release notes](https://github.com/import-js/eslint-import-resolver-typescript/releases )
- [Changelog](https://github.com/import-js/eslint-import-resolver-typescript/blob/master/CHANGELOG.md )
- [Commits](https://github.com/import-js/eslint-import-resolver-typescript/compare/v3.8.7...v4.4.4 )
---
updated-dependencies:
- dependency-name: eslint-import-resolver-typescript
dependency-version: 4.4.4
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 17:58:58 +00:00
dependabot[bot]
d64d81d41f
Bump the npm-minor group across 1 directory with 2 updates
...
Bumps the npm-minor group with 2 updates in the / directory: [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `@eslint/compat` from 2.0.4 to 2.0.5
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.0.5/packages/compat )
Updates `typescript-eslint` from 8.58.0 to 8.58.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: "@eslint/compat"
dependency-version: 2.0.5
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.58.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 17:58:27 +00:00
Henry Mercer
6777c894e9
Merge pull request #3811 from github/henrymercer/record-all-builtin-languages
...
Store all built-in languages
2026-04-15 17:57:19 +00:00
Henry Mercer
79f9c0517c
Merge remote-tracking branch 'origin/main' into henrymercer/record-all-builtin-languages
...
# Conflicts:
# lib/start-proxy-action.js
# src/known-language-aliases.json
2026-04-15 18:36:47 +01:00
Henry Mercer
3b3a77544b
Rename job
...
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com >
2026-04-15 18:34:13 +01:00
Henry Mercer
9f95de42d6
Add workflow to rerun potentially transient failures
2026-04-15 18:28:17 +01:00
Henry Mercer
e2d518d895
Merge pull request #3827 from github/dependabot/npm_and_yarn/follow-redirects-1.16.0
...
Bump follow-redirects from 1.15.11 to 1.16.0
2026-04-15 12:47:52 +00:00
github-actions[bot]
9df9e9176e
Rebuild
2026-04-15 12:20:46 +00:00
dependabot[bot]
6847a42aa8
Bump follow-redirects from 1.15.11 to 1.16.0
...
Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects ) from 1.15.11 to 1.16.0.
- [Release notes](https://github.com/follow-redirects/follow-redirects/releases )
- [Commits](https://github.com/follow-redirects/follow-redirects/compare/v1.15.11...v1.16.0 )
---
updated-dependencies:
- dependency-name: follow-redirects
dependency-version: 1.16.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 12:18:36 +00:00
Henry Mercer
f820c80d4d
Merge pull request #3825 from github/mergeback/v4.35.2-to-main-95e58e9a
...
Mergeback v4.35.2 refs/heads/releases/v4 into main
2026-04-15 11:56:45 +00:00
github-actions[bot]
ca7d6d3b79
Rebuild
2026-04-15 11:27:36 +00:00
github-actions[bot]
8d9c36a0ce
Update changelog and version after v4.35.2
2026-04-15 11:24:19 +00:00
Henry Mercer
95e58e9a2c
Merge pull request #3824 from github/update-v4.35.2-d2e135a73
...
Merge main into releases/v4
2026-04-15 12:22:51 +01:00
github-actions[bot]
6f31bfe060
Update changelog for v4.35.2
2026-04-15 10:56:23 +00:00
Henry Mercer
d2e135a73a
Merge pull request #3823 from github/update-bundle/codeql-bundle-v2.25.2
...
Update default bundle to 2.25.2
2026-04-15 10:06:23 +00:00
github-actions[bot]
60abb65df0
Add changelog note
2026-04-15 09:39:31 +00:00
github-actions[bot]
5a0a562209
Update default bundle to codeql-bundle-v2.25.2
2026-04-15 09:39:24 +00:00
Henry Mercer
f8b62132ab
Include experimental languages
2026-04-14 17:38:26 +01:00
Henry Mercer
65216971a1
Merge pull request #3820 from github/dependabot/github_actions/dot-github/workflows/actions-minor-cc17fecf2b
...
Bump the actions-minor group across 1 directory with 2 updates
2026-04-13 18:04:26 +00:00
Henry Mercer
3c45af2dd2
Merge pull request #3821 from github/dependabot/npm_and_yarn/npm-minor-345b938e93
...
Bump the npm-minor group across 1 directory with 6 updates
2026-04-13 17:59:04 +00:00
github-actions[bot]
f1c339364c
Rebuild
2026-04-13 17:31:19 +00:00
github-actions[bot]
1024fc496c
Rebuild
2026-04-13 17:30:13 +00:00
dependabot[bot]
9dd4cfed96
Bump the npm-minor group across 1 directory with 6 updates
...
Bumps the npm-minor group with 6 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [@octokit/plugin-retry](https://github.com/octokit/plugin-retry.js ) | `8.0.3` | `8.1.0` |
| [jsonschema](https://github.com/tdegrunt/jsonschema ) | `1.4.1` | `1.5.0` |
| [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) | `2.0.3` | `2.0.4` |
| [@types/sinon](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon ) | `21.0.0` | `21.0.1` |
| [esbuild](https://github.com/evanw/esbuild ) | `0.27.4` | `0.28.0` |
| [nock](https://github.com/nock/nock ) | `14.0.11` | `14.0.12` |
Updates `@octokit/plugin-retry` from 8.0.3 to 8.1.0
- [Release notes](https://github.com/octokit/plugin-retry.js/releases )
- [Commits](https://github.com/octokit/plugin-retry.js/compare/v8.0.3...v8.1.0 )
Updates `jsonschema` from 1.4.1 to 1.5.0
- [Commits](https://github.com/tdegrunt/jsonschema/commits )
Updates `@eslint/compat` from 2.0.3 to 2.0.4
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.0.4/packages/compat )
Updates `@types/sinon` from 21.0.0 to 21.0.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sinon )
Updates `esbuild` from 0.27.4 to 0.28.0
- [Release notes](https://github.com/evanw/esbuild/releases )
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md )
- [Commits](https://github.com/evanw/esbuild/compare/v0.27.4...v0.28.0 )
Updates `nock` from 14.0.11 to 14.0.12
- [Release notes](https://github.com/nock/nock/releases )
- [Changelog](https://github.com/nock/nock/blob/main/CHANGELOG.md )
- [Commits](https://github.com/nock/nock/compare/v14.0.11...v14.0.12 )
---
updated-dependencies:
- dependency-name: "@octokit/plugin-retry"
dependency-version: 8.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: jsonschema
dependency-version: 1.5.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: "@eslint/compat"
dependency-version: 2.0.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: "@types/sinon"
dependency-version: 21.0.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: esbuild
dependency-version: 0.28.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: nock
dependency-version: 14.0.12
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 17:29:04 +00:00
dependabot[bot]
c1403f094c
Bump the actions-minor group across 1 directory with 2 updates
...
Bumps the actions-minor group with 2 updates in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ) and [actions/create-github-app-token](https://github.com/actions/create-github-app-token ).
Updates `ruby/setup-ruby` from 1.295.0 to 1.300.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/319994f95fa847cf3fb3cd3dbe89f6dcde9f178f...4c56a21280b36d862b5fc31348f463d60bdc55d5 )
Updates `actions/create-github-app-token` from 3.0.0 to 3.1.1
- [Release notes](https://github.com/actions/create-github-app-token/releases )
- [Commits](https://github.com/actions/create-github-app-token/compare/v3.0.0...v3.1.1 )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.300.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
- dependency-name: actions/create-github-app-token
dependency-version: 3.1.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 17:27:57 +00:00
Henry Mercer
90d7616015
Merge branch 'main' into henrymercer/record-all-builtin-languages
2026-04-13 18:00:09 +01:00
Henry Mercer
1aef4ed505
Exclude new TypeScript code from package tests
...
Avoid new source code changing expected output
2026-04-13 17:37:29 +01:00
Henry Mercer
cb52ba6486
Refactoring: Split up script
2026-04-13 17:03:20 +01:00
Henry Mercer
7c9e131894
Add constant for builtin languages file path
2026-04-13 16:57:47 +01:00
Henry Mercer
130ab2d721
Improve JSDoc
2026-04-13 16:54:06 +01:00
Henry Mercer
8cf2dc52f9
Fix casing mismatch
2026-04-13 16:49:31 +01:00
Henry Mercer
8339b9254e
Merge pull request #3819 from github/henrymercer/refactor-overlay-caching
...
Refactoring: Introduce `overlay/caching.ts`
2026-04-13 15:49:12 +00:00
Henry Mercer
97bcdd8c1e
Move script to pr-checks directory
2026-04-13 16:49:10 +01:00
Henry Mercer
e6c21da23c
Refactoring: Rename KnownLanguage to BuiltInLanguage
2026-04-10 19:09:47 +01:00
Henry Mercer
bad0a744dd
Store all built-in languages
...
While we want the CodeQL Action to work with third-party language support, having a list of all built-in languages can help us create better type-level checks to ensure that we don't miss things that we want to customize for each of our built-in languages.
2026-04-10 19:09:46 +01:00
Michael B. Gale
ee09113642
Merge pull request #3810 from github/mbg/ts6/fix-pr-checks
...
Fix `pr-checks/tsconfig.json` for TS6
2026-04-10 18:02:01 +00:00
Michael B. Gale
b669eab7e3
Explicitly add pr-checks to Dependabot config
2026-04-10 16:58:30 +01:00
Henry Mercer
4e8c9ce33c
Refactoring: Introduce overlay/caching.ts
2026-04-10 14:55:12 +01:00
Michael B. Gale
1cf0431149
Set module option for pr-checks/tsconfig.json
2026-04-10 13:22:36 +01:00
Michael B. Gale
a26cb68cc7
Merge pull request #3807 from github/mbg/start-proxy/fix-field-names
...
Fix OIDC credential property names
2026-04-10 09:18:24 +00:00
Henry Mercer
60991e61ac
Merge pull request #3806 from github/henrymercer/store-language-aliases
...
Store language aliases from linked CLI
2026-04-10 09:16:45 +00:00
Michael B. Gale
7197c2b792
Add changelog entry
2026-04-09 19:01:45 +01:00
Henry Mercer
597e12aa85
Merge pull request #3801 from github/henrymercer/swift-incompatible-os
...
Mark Swift incompatible OS as configuration error
2026-04-09 17:30:06 +00:00
Michael B. Gale
d277a56348
Fix OIDC credential property names
2026-04-09 17:48:52 +01:00
Henry Mercer
111a537cd9
Update start-proxy Action to use known language aliases
2026-04-09 17:10:15 +01:00
Henry Mercer
51d833290e
Store language aliases from linked CLI
2026-04-09 17:10:15 +01:00
Henry Mercer
5a17511bf0
Throw error on Windows too
2026-04-09 16:52:50 +01:00
Henry Mercer
43d8420a42
Do not run Swift in debug artifacts after failure check
2026-04-09 15:18:51 +01:00
Henry Mercer
76a687e1d8
Merge pull request #3804 from github/dependabot/npm_and_yarn/npm-minor-e84c604a08
...
Bump eslint-plugin-jsdoc from 62.8.1 to 62.9.0 in the npm-minor group
2026-04-09 13:04:00 +00:00
dependabot[bot]
751f3e2f7c
Bump eslint-plugin-jsdoc from 62.8.1 to 62.9.0 in the npm-minor group
...
Bumps the npm-minor group with 1 update: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ).
Updates `eslint-plugin-jsdoc` from 62.8.1 to 62.9.0
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.8.1...v62.9.0 )
---
updated-dependencies:
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.9.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-08 17:53:21 +00:00
Henry Mercer
808513f048
Update language aliases test
2026-04-08 16:38:23 +01:00
Henry Mercer
e452857e57
Throw error early rather than warning
2026-04-08 16:33:19 +01:00
Mario Campos
b623f5fd57
Merge pull request #3799 from github/mario-campos/test-multiple-registries
...
Add tests for getCredentials with multiple goproxy_servers and maven_…
2026-04-07 14:52:14 +00:00
Mario Campos
35a38985d3
Specify "Java" for a test case
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-04-07 09:01:00 -05:00
Mario Campos
14ed573199
Specify "Go" for a test case
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-04-07 09:01:00 -05:00
Mario Campos
43d8864b35
Run npm run lint-fix to format the code
2026-04-07 09:01:00 -05:00
Mario Campos
f8aff3ad8b
Add tests for getCredentials with multiple goproxy_servers and maven_repositories
2026-04-07 09:01:00 -05:00
Henry Mercer
e6c83948f5
Merge pull request #3802 from github/dependabot/npm_and_yarn/lodash-4.18.1
...
Bump lodash from 4.17.23 to 4.18.1
2026-04-07 10:12:08 +00:00
Henry Mercer
347f0c676d
Merge pull request #3803 from github/dependabot/npm_and_yarn/npm-minor-113ae615b7
...
Bump eslint-plugin-jsdoc from 62.8.0 to 62.8.1 in the npm-minor group across 1 directory
2026-04-07 10:08:35 +00:00
dependabot[bot]
6eed62b035
Bump eslint-plugin-jsdoc in the npm-minor group across 1 directory
...
Bumps the npm-minor group with 1 update in the / directory: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ).
Updates `eslint-plugin-jsdoc` from 62.8.0 to 62.8.1
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.8.0...v62.8.1 )
---
updated-dependencies:
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.8.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-07 09:36:59 +00:00
dependabot[bot]
de1752b85d
Bump lodash from 4.17.23 to 4.18.1
...
Bumps [lodash](https://github.com/lodash/lodash ) from 4.17.23 to 4.18.1.
- [Release notes](https://github.com/lodash/lodash/releases )
- [Commits](https://github.com/lodash/lodash/compare/4.17.23...4.18.1 )
---
updated-dependencies:
- dependency-name: lodash
dependency-version: 4.18.1
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-07 09:36:15 +00:00
Henry Mercer
1065967b50
Merge pull request #3800 from github/henrymercer/typescript-6
...
Upgrade to TypeScript 6
2026-04-07 09:14:42 +00:00
Henry Mercer
e25c0a535a
Merge pull request #3795 from github/henrymercer/deprecate-trap-caching-cleanup
...
Deprecate TRAP cache cleanup
2026-04-07 09:14:31 +00:00
Henry Mercer
5f323cad05
Mark Swift incompatible OS as configuration error
2026-04-02 18:46:26 +01:00
Henry Mercer
212e28374b
Upgrade to TypeScript 6
...
tsconfig changes:
- Specify `moduleResolution: bundler` since we use a bundler
- Specify `types: ["node"]` to speed up build
- Remove `alwaysStrict` as this is now deprecated
- Specify `skipLibCheck: true` to speed up build
- Specify Octokit types.d.ts path manually to address compiler not being able to find types with `moduleResolution: bundler`
2026-04-02 18:32:58 +01:00
Henry Mercer
36075a4980
Deprecate TRAP cache cleanup
2026-04-01 15:31:15 +01:00
Michael B. Gale
34950e1b11
Merge pull request #3792 from github/mario-campos/issue-1664
...
Extend start-proxy.yml to test multiple registry support
2026-04-01 13:59:59 +00:00
Henry Mercer
57ec7e1000
Merge pull request #3794 from github/henrymercer/cleanup
...
Python: Disable standard library extraction on GHES
2026-04-01 11:37:34 +00:00
Henry Mercer
311573e58e
Add changelog note
2026-04-01 12:19:11 +01:00
Henry Mercer
1f4c852aeb
Clean up Python extract stdlib feature flag
2026-04-01 12:08:06 +01:00
Michael B. Gale
2e3aaaefca
Merge pull request #3787 from github/mbg/bundle/metadata
...
Generate and analyse esbuild bundle metadata
2026-04-01 10:29:27 +00:00
Mario Campos
e2203c62cf
Delete fromJSON() calls in test validation step
2026-03-31 13:19:33 -05:00
Mario Campos
7b0c5b1669
Keep validation steps named consistently
2026-03-31 12:49:07 -05:00
Mario Campos
faf45e07f9
Use different maven URL for start-proxy.yml test
2026-03-31 12:44:43 -05:00
Mario Campos
8b5e60477c
Use maven_repository, not maven-repository
...
The registry/language mapping table does not map the one with hyphens.
2026-03-31 11:36:17 -05:00
Mario Campos
99b8dd4d57
Run pr-checks/sync.sh to generate __start-proxy.yml.
2026-03-31 09:32:42 -05:00
Henry Mercer
c618c9bddb
Merge pull request #3789 from github/henrymercer/lower-minimum-git-if-no-submodules
...
Overlay: Only require Git 2.36.0 for repos that contain submodules
2026-03-31 10:10:05 +00:00
Mario Campos
9fd9b64766
Replace jq with Actions expression for proxy_urls validation
...
For the sake of consistency with the other pre-existing validation code.
2026-03-30 22:47:06 -05:00
Mario Campos
0c7c298b2a
Extend start-proxy.yml to test multiple registry support
2026-03-30 18:35:04 -05:00
Henry Mercer
a507a542a4
Test fallback when repo has no submodules
2026-03-30 15:58:58 +01:00
Henry Mercer
be0a156326
Save a computation of the git root
2026-03-30 13:37:14 +01:00
Michael B. Gale
f98bf5e347
Output relative to __dirname
2026-03-27 19:21:14 +00:00
Michael B. Gale
3db32b5d27
Fix outputs type
2026-03-27 19:13:22 +00:00
Michael B. Gale
4e0952a3c0
Output largest inputs
2026-03-27 19:13:02 +00:00
Henry Mercer
0592832ed8
Add changelog note
2026-03-27 18:58:05 +00:00
Henry Mercer
88a7e5118e
Don't disable if we don't need the git version
2026-03-27 18:54:26 +00:00
Henry Mercer
6643a7d207
Only require Git 2.36.0 when repo contains submodules
2026-03-27 18:54:24 +00:00
Michael B. Gale
47f1709a3c
Add basic metadata analysis script
2026-03-27 18:19:57 +00:00
Michael B. Gale
b1981a5480
Move getApiClient out of sync-checks.ts
2026-03-27 18:13:48 +00:00
Henry Mercer
a899987af2
Merge pull request #3786 from github/henrymercer/faster-interactive-jobs
...
Move time-sensitive Actions workflows to `ubuntu-latest`
2026-03-27 18:08:16 +00:00
Michael B. Gale
4ed3c0efe6
Generate esbuild metadata file
2026-03-27 17:54:29 +00:00
Michael B. Gale
4ea3a4b4af
Bump undici to at least 6.24.0
2026-03-27 17:32:08 +00:00
Henry Mercer
191d7c6f13
Merge pull request #3783 from github/mergeback/v4.35.1-to-main-c10b8064
...
Mergeback v4.35.1 refs/heads/releases/v4 into main
2026-03-27 17:11:42 +00:00
Henry Mercer
aa69c483cd
Merge pull request #3779 from github/henrymercer/remove-unused-dependency
...
Remove unused `@schemastore/package` dependency
2026-03-27 17:11:32 +00:00
Henry Mercer
fe775da508
Merge pull request #3780 from github/dependabot/npm_and_yarn/brace-expansion-1.1.13
...
Bump brace-expansion from 1.1.12 to 1.1.13
2026-03-27 17:11:18 +00:00
Henry Mercer
353802f9f2
Move time-sensitive Actions workflows to ubuntu-latest
...
We originally moved these to `ubuntu-slim`, but there is a significant performance difference. Since we often find ourselves waiting on these jobs, let's use the faster runners.
2026-03-27 16:22:19 +00:00
github-actions[bot]
cc7db4a1f9
Rebuild
2026-03-27 16:20:01 +00:00
github-actions[bot]
6010f9d8e2
Update changelog and version after v4.35.1
2026-03-27 16:10:47 +00:00
Henry Mercer
c10b8064de
Merge pull request #3782 from github/update-v4.35.1-d6d1743b8
...
Merge main into releases/v4
2026-03-27 16:07:37 +00:00
github-actions[bot]
c5ffd06837
Update changelog for v4.35.1
2026-03-27 15:39:16 +00:00
Henry Mercer
d6d1743b8e
Merge pull request #3781 from github/henrymercer/update-git-minimum-version
...
Update minimum Git version for overlay to 2.36.0
2026-03-27 14:59:36 +00:00
github-actions[bot]
999119ba45
Rebuild
2026-03-27 14:00:54 +00:00
Henry Mercer
65d2efa733
Add changelog note
2026-03-27 14:00:27 +00:00
Henry Mercer
2437b20ab3
Update minimum git version for overlay to 2.36.0
2026-03-27 14:00:17 +00:00
dependabot[bot]
f13c600724
Bump brace-expansion from 1.1.12 to 1.1.13
...
Bumps [brace-expansion](https://github.com/juliangruber/brace-expansion ) from 1.1.12 to 1.1.13.
- [Release notes](https://github.com/juliangruber/brace-expansion/releases )
- [Commits](https://github.com/juliangruber/brace-expansion/compare/v1.1.12...v1.1.13 )
---
updated-dependencies:
- dependency-name: brace-expansion
dependency-version: 1.1.13
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-27 13:58:43 +00:00
Henry Mercer
7dcea06663
Remove unused @schemastore/package dependency
2026-03-27 13:57:52 +00:00
Michael B. Gale
ea5f71947c
Merge pull request #3775 from github/dependabot/npm_and_yarn/node-forge-1.4.0
...
Bump node-forge from 1.3.3 to 1.4.0
2026-03-27 13:47:55 +00:00
Henry Mercer
45ceeea896
Merge pull request #3777 from github/mergeback/v4.35.0-to-main-b8bb9f28
...
Mergeback v4.35.0 refs/heads/releases/v4 into main
2026-03-27 13:36:14 +00:00
github-actions[bot]
24448c9843
Rebuild
2026-03-27 12:23:25 +00:00
github-actions[bot]
7c51060631
Update changelog and version after v4.35.0
2026-03-27 12:14:07 +00:00
Óscar San José
b8bb9f28b8
Merge pull request #3776 from github/update-v4.35.0-0078ad667
...
Merge main into releases/v4
2026-03-27 13:11:18 +01:00
github-actions[bot]
e9cf68bb33
Update changelog for v4.35.0
2026-03-27 11:44:34 +00:00
github-actions[bot]
36791d8d66
Rebuild
2026-03-27 10:27:12 +00:00
dependabot[bot]
22eba96a28
Bump node-forge from 1.3.3 to 1.4.0
...
Bumps [node-forge](https://github.com/digitalbazaar/forge ) from 1.3.3 to 1.4.0.
- [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md )
- [Commits](https://github.com/digitalbazaar/forge/compare/v1.3.3...v1.4.0 )
---
updated-dependencies:
- dependency-name: node-forge
dependency-version: 1.4.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-27 10:25:06 +00:00
Óscar San José
0078ad667e
Merge pull request #3773 from github/update-bundle/codeql-bundle-v2.25.1
...
Update default bundle to 2.25.1
2026-03-27 10:02:52 +00:00
github-actions[bot]
fa7a15b909
Add changelog note
2026-03-27 09:43:23 +00:00
github-actions[bot]
8c29faa7ab
Update default bundle to codeql-bundle-v2.25.1
2026-03-27 09:43:12 +00:00
Henry Mercer
f94817b9f0
Merge pull request #3772 from github/dependabot/npm_and_yarn/yaml-2.8.3
...
Bump yaml from 2.8.2 to 2.8.3
2026-03-26 19:43:58 +00:00
dependabot[bot]
dd060970a5
Bump yaml from 2.8.2 to 2.8.3
...
Bumps [yaml](https://github.com/eemeli/yaml ) from 2.8.2 to 2.8.3.
- [Release notes](https://github.com/eemeli/yaml/releases )
- [Commits](https://github.com/eemeli/yaml/compare/v2.8.2...v2.8.3 )
---
updated-dependencies:
- dependency-name: yaml
dependency-version: 2.8.3
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-26 18:26:45 +00:00
Michael B. Gale
5cc552f43e
Merge pull request #3768 from github/dependabot/npm_and_yarn/npm-minor-3536e7c6f0
...
Bump the npm-minor group with 5 updates
2026-03-26 17:46:04 +00:00
Michael B. Gale
6b1a9f2131
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-3536e7c6f0
2026-03-26 16:36:54 +00:00
Michael B. Gale
9d3ec5727a
Merge pull request #3770 from github/dependabot/github_actions/dot-github/workflows/actions-minor-266139ee1d
...
Bump ruby/setup-ruby from 1.288.0 to 1.295.0 in /.github/workflows in the actions-minor group across 1 directory
2026-03-26 16:32:19 +00:00
Michael B. Gale
3ff82aacd0
Merge pull request #3575 from github/mbg/ts/sync-checks
...
Convert `release-branches.py` and `update-required-checks.sh` to TypeScript
2026-03-26 15:47:43 +00:00
Sam Robson
4bdd4e7526
Merge pull request #3554 from github/sam-robson/overlay-include-diff
...
feat: always include files from diff in overlay changed files
2026-03-26 10:57:24 +00:00
Sam Robson
23a0098b57
fix: improve error handling and logging for diff range path resolution
2026-03-25 19:53:21 +00:00
github-actions[bot]
ea7b090925
Rebuild
2026-03-25 18:01:40 +00:00
dependabot[bot]
a663d0174a
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.288.0 to 1.295.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/09a7688d3b55cf0e976497ff046b70949eeaccfd...319994f95fa847cf3fb3cd3dbe89f6dcde9f178f )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.295.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-25 17:59:44 +00:00
dependabot[bot]
b659882aae
Bump the npm-minor group with 5 updates
...
Bumps the npm-minor group with 5 updates:
| Package | From | To |
| --- | --- | --- |
| [esbuild](https://github.com/evanw/esbuild ) | `0.27.3` | `0.27.4` |
| [eslint-plugin-import-x](https://github.com/un-ts/eslint-plugin-import-x ) | `4.16.1` | `4.16.2` |
| [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ) | `62.7.1` | `62.8.0` |
| [sinon](https://github.com/sinonjs/sinon ) | `21.0.2` | `21.0.3` |
| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ) | `8.57.0` | `8.57.1` |
Updates `esbuild` from 0.27.3 to 0.27.4
- [Release notes](https://github.com/evanw/esbuild/releases )
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md )
- [Commits](https://github.com/evanw/esbuild/compare/v0.27.3...v0.27.4 )
Updates `eslint-plugin-import-x` from 4.16.1 to 4.16.2
- [Release notes](https://github.com/un-ts/eslint-plugin-import-x/releases )
- [Changelog](https://github.com/un-ts/eslint-plugin-import-x/blob/master/CHANGELOG.md )
- [Commits](https://github.com/un-ts/eslint-plugin-import-x/compare/v4.16.1...v4.16.2 )
Updates `eslint-plugin-jsdoc` from 62.7.1 to 62.8.0
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.7.1...v62.8.0 )
Updates `sinon` from 21.0.2 to 21.0.3
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.0.2...v21.0.3 )
Updates `typescript-eslint` from 8.57.0 to 8.57.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.57.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: esbuild
dependency-version: 0.27.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint-plugin-import-x
dependency-version: 4.16.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.8.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: sinon
dependency-version: 21.0.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.57.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-25 17:53:49 +00:00
Sam Robson
d5bb39fa0b
refactor: single source of truth for getDiffRangesJsonFilePath and simplified getDiffRangeFilePaths
2026-03-25 15:51:51 +00:00
Sam Robson
521c3536d3
feat: always include files from diff in overlay changed files
2026-03-25 15:51:51 +00:00
Michael B. Gale
972365e142
Fix comment
2026-03-25 14:15:39 +00:00
Michael B. Gale
8a0b4f2746
fixup! Update CONTRIBUTING.md
2026-03-25 14:14:49 +00:00
Michael B. Gale
a5418e172c
Delete releases.ini
2026-03-25 13:49:47 +00:00
Michael B. Gale
fae4c28b51
Update CONTRIBUTING.md
2026-03-25 13:48:55 +00:00
Michael B. Gale
661a8fbbe3
Default ref to main
2026-03-25 13:40:05 +00:00
Michael B. Gale
e7c7b68c5f
Remove update-required-checks.sh
2026-03-25 13:38:28 +00:00
Michael B. Gale
fa568ebc69
Delete release-branches.py
2026-03-25 13:37:41 +00:00
Michael B. Gale
0da3139813
Rename to branchName
2026-03-25 13:35:02 +00:00
Michael B. Gale
0abe92ed20
Configure ESLint import/no-extraneous-dependencies rule for pr-checks
2026-03-25 13:17:37 +00:00
Michael B. Gale
07f235e5f2
Add --verbose option
2026-03-25 13:17:37 +00:00
Michael B. Gale
9fd40ff508
Tidy up pr-checks/package.json
2026-03-25 13:17:37 +00:00
Michael B. Gale
75ed461aaa
Add excluded.yml path to config.ts
2026-03-25 13:16:35 +00:00
Michael B. Gale
cfc18781e0
Rebuild
2026-03-25 13:16:34 +00:00
Michael B. Gale
9fe42f69b7
Add some unit tests for sync-checks.ts
2026-03-25 13:16:33 +00:00
Michael B. Gale
c5a984e1aa
Update CONTRIBUTING.md
2026-03-25 13:16:33 +00:00
Michael B. Gale
0543156694
Actually perform the update when necessary and requested
2026-03-25 13:16:33 +00:00
Michael B. Gale
4cec5d2830
Call updateBranch for main
2026-03-25 13:16:32 +00:00
Michael B. Gale
74dd691a45
Identify changes before applying them
2026-03-25 13:16:32 +00:00
Michael B. Gale
a5244bf7dd
Fetch release branches and identify major versions
2026-03-25 13:16:32 +00:00
Michael B. Gale
1bc611ed0c
Fetch and filter check runs for ref
2026-03-25 13:16:32 +00:00
Michael B. Gale
d2008eee7c
Add type to represent exclusions.yml and loading helper
2026-03-25 13:16:32 +00:00
Michael B. Gale
9481177f3d
Initialise API client
2026-03-25 13:16:31 +00:00
Michael B. Gale
9813849e61
Add initial TS implementation of update-required-checks.sh
2026-03-25 13:16:31 +00:00
Michael B. Gale
4867f5927a
Add config file for excluded checks from update-required-checks.sh
2026-03-25 13:16:31 +00:00
Michael B. Gale
49af37b7ab
Add tests for release-branches.ts
2026-03-25 13:16:31 +00:00
Michael B. Gale
b72f4fec40
Validate inputs
2026-03-25 13:16:30 +00:00
Michael B. Gale
0d87a75829
Refactor backport computation into computeReleaseBranches
2026-03-25 13:16:30 +00:00
Michael B. Gale
3db9a05c73
Replace release-branches.py with TS version in release-branches action
2026-03-25 13:16:30 +00:00
Michael B. Gale
aa2773169b
Install node in release-initialise action
2026-03-25 13:16:30 +00:00
Michael B. Gale
054745baee
Convert release-branches.py to TypeScript
2026-03-25 13:16:30 +00:00
Michael B. Gale
3d564d9359
Merge pull request #3579 from github/mbg/start-proxy/token-check-fixes
...
Fix warning for PAT-like token with username
2026-03-25 13:02:47 +00:00
Michael B. Gale
137e0dec2b
Merge remote-tracking branch 'origin/main' into mbg/start-proxy/token-check-fixes
2026-03-25 12:39:48 +00:00
Michael B. Gale
d128e5daa8
Fix test names
2026-03-25 12:39:42 +00:00
Henry Mercer
eedab83377
Merge pull request #3767 from github/henrymercer/overlay-reduce-minimum-git-version
...
Reduce the minimum Git version required for overlay
2026-03-24 11:26:07 +00:00
Henry Mercer
8c023a6b07
Add changelog note
2026-03-23 18:40:55 +00:00
Henry Mercer
28f56f2bed
Update minimum Git version required for overlay
2026-03-23 18:36:25 +00:00
Henry Mercer
d48d054533
Use --stage instead of --format in git ls-files
2026-03-23 18:33:59 +00:00
Henry Mercer
72c0b0efb7
Merge pull request #3587 from github/dependabot/npm_and_yarn/fast-xml-parser-5.5.7
...
Bump fast-xml-parser from 5.5.6 to 5.5.7
2026-03-23 14:22:53 +00:00
Henry Mercer
05b1a5d28f
Merge pull request #3764 from github/mergeback/v4.34.1-to-main-38697555
...
Mergeback v4.34.1 refs/heads/releases/v4 into main
2026-03-20 18:38:55 +00:00
github-actions[bot]
8dc2e5d9d2
Rebuild
2026-03-20 18:19:40 +00:00
github-actions[bot]
8fd6c0e573
Update changelog and version after v4.34.1
2026-03-20 18:14:55 +00:00
Henry Mercer
3869755554
Merge pull request #3763 from github/update-v4.34.1-095e0fe50
...
Merge main into releases/v4
2026-03-20 18:10:50 +00:00
github-actions[bot]
20e68ac12b
Update changelog for v4.34.1
2026-03-20 17:33:39 +00:00
Henry Mercer
095e0fe505
Merge pull request #3762 from github/henrymercer/downgrade-default-bundle
...
Downgrade default bundle to 2.24.3
2026-03-20 17:06:34 +00:00
Henry Mercer
47b94fe61c
Add changelog note
2026-03-20 16:46:45 +00:00
Henry Mercer
51a1d6917f
Downgrade default bundle to codeql-bundle-v2.24.3
2026-03-20 16:45:20 +00:00
Óscar San José
510cf736e3
Merge pull request #3589 from github/mergeback/v4.34.0-to-main-c6f93110
...
Mergeback v4.34.0 refs/heads/releases/v4 into main
2026-03-20 15:15:34 +00:00
github-actions[bot]
89f0c86efa
Rebuild
2026-03-20 12:03:59 +00:00
github-actions[bot]
c3f90ba975
Update changelog and version after v4.34.0
2026-03-20 11:56:24 +00:00
Óscar San José
c6f931105c
Merge pull request #3588 from github/update-v4.34.0-30c555a52
...
Merge main into releases/v4
2026-03-20 12:53:53 +01:00
github-actions[bot]
eeb9b3f424
Update changelog for v4.34.0
2026-03-20 10:35:57 +00:00
github-actions[bot]
64507ed148
Rebuild
2026-03-20 01:40:06 +00:00
dependabot[bot]
1a45a9b9d0
Bump fast-xml-parser from 5.5.6 to 5.5.7
...
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.5.6 to 5.5.7.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.5.6...v5.5.7 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.5.7
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-20 01:38:13 +00:00
Michael B. Gale
f88d49ee5d
Fix warning for PAT-like token with username
2026-03-16 19:34:33 +00:00
Michael B. Gale
28f515d9ad
Add tests for the absence of the warning
2026-03-16 19:34:33 +00:00
Michael B. Gale
de06821112
Add hasMessage to RecordingLogger
2026-03-16 19:34:33 +00:00
Michael B. Gale
ddafddb826
Replace getRecordingLogger implementation with RecordingLogger
2026-03-16 19:34:32 +00:00
Michael B. Gale
740f177889
Add assertNotLogged test helper
2026-03-16 19:34:32 +00:00
Michael B. Gale
0393130759
Add "token without a username" test
2026-03-16 19:34:32 +00:00
Michael B. Gale
f86097dfdb
Add params for credentials and checkAccepted to testPATWarning
2026-03-16 19:34:32 +00:00
Michael B. Gale
6e67ef61f2
Refactor PAT test into a test.macro
2026-03-16 19:34:32 +00:00
Michael B. Gale
193dd19c2d
Add snippet to scaffold test.macros
2026-03-16 19:34:32 +00:00