Henry Mercer
b4ea7aa65a
Improve tests
2026-05-08 19:16:48 +01:00
Henry Mercer
87ac48dae6
Improve error message
2026-05-08 19:16:47 +01:00
Henry Mercer
42d7f62579
Remove dead code
2026-05-08 19:16:46 +01:00
Henry Mercer
540699dcca
Remove makeOverlayMatchFeatures indirection
2026-05-08 19:14:05 +01:00
Henry Mercer
9a85234875
Add JSDoc for getRawLanguagesNoAutodetect
2026-05-08 19:14:05 +01:00
Henry Mercer
2a950b930c
Enable overlay-aware version selection in setup-codeql
2026-05-08 19:14:05 +01:00
Henry Mercer
4f815a68d3
Minor: Introduce constant to avoid duplication
2026-05-08 19:14:04 +01:00
Henry Mercer
0aedbb71d8
Merge branch 'main' into henrymercer/overlay-match-codeql-version
2026-05-08 19:10:45 +01:00
Henry Mercer
868e2ea564
Merge pull request #3886 from github/mergeback/v4.35.4-to-main-68bde559
...
Mergeback v4.35.4 refs/heads/releases/v4 into main
2026-05-08 14:25:20 +00:00
Henry Mercer
792c223bc1
Merge pull request #3875 from github/dependabot/npm_and_yarn/npm-minor-c8e071f5f8
...
Bump the npm-minor group across 1 directory with 4 updates
2026-05-08 14:25:05 +00:00
Henry Mercer
efc9b0a9e3
Improve changelog note
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-05-07 18:44:08 +01:00
github-actions[bot]
272ada693f
Rebuild
2026-05-07 15:58:38 +00:00
github-actions[bot]
610a6682b6
Merge remote-tracking branch 'origin/main' into mergeback/v4.35.4-to-main-68bde559
2026-05-07 15:57:56 +00:00
github-actions[bot]
1627096569
Update changelog and version after v4.35.4
2026-05-07 15:54:04 +00:00
Paolo Tranquilli
68bde559de
Merge pull request #3885 from github/update-v4.35.4-803d9e8c3
...
Merge main into releases/v4
2026-05-07 17:52:37 +02:00
github-actions[bot]
9739ad2d18
Update changelog for v4.35.4
2026-05-07 15:21:52 +00:00
Henry Mercer
b81d0d250f
Merge pull request #3874 from github/henrymercer/slow-tests-ci-only
...
Tests: Run slow `scanArtifactsForTokens` test in CI only by default
2026-05-07 15:04:47 +00:00
Michael B. Gale
a16cb53dd8
Merge pull request #3884 from github/mbg/dev/no-build-metadata
...
Do not run `bundle-metadata.ts` as part of `npm run build`
2026-05-07 15:02:21 +00:00
Michael B. Gale
803d9e8c3c
Merge pull request #3883 from github/mbg/test/macro-wrapper
...
Add more strongly typed wrapper around `test.macro`
2026-05-07 14:46:34 +00:00
Henry Mercer
0c80cee806
Add explicit error on Windows
2026-05-07 15:39:42 +01:00
Michael B. Gale
d032ee8c47
Do not run bundle-metadata.ts as part of npm run build
2026-05-07 15:38:28 +01:00
Michael B. Gale
0fd9c7d135
Merge pull request #3882 from github/dependabot/github_actions/dot-github/workflows/actions-minor-4a0b9de8bd
...
Bump ruby/setup-ruby from 1.305.0 to 1.306.0 in /.github/workflows in the actions-minor group across 1 directory
2026-05-07 14:17:36 +00:00
Michael B. Gale
922d6fb888
Use makeMacro instead of test.macro
2026-05-07 14:59:42 +01:00
Michael B. Gale
df77e87896
Update test macro snippet
2026-05-07 14:59:42 +01:00
Michael B. Gale
6e3f985e4f
Add wrapper for test.macro
2026-05-07 14:59:42 +01:00
Paolo Tranquilli
e7a347dfb1
Merge pull request #3881 from github/update-bundle/codeql-bundle-v2.25.4
...
Update default bundle to 2.25.4
2026-05-07 13:41:36 +00:00
github-actions[bot]
17eabb2500
Rebuild
2026-05-07 13:23:54 +00:00
dependabot[bot]
aaef09c48d
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.305.0 to 1.306.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/0cb964fd540e0a24c900370abf38a33466142735...c4e5b1316158f92e3d49443a9d58b31d25ac0f8f )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.306.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-07 13:21:45 +00:00
github-actions[bot]
ae1b9155d3
Add changelog note
2026-05-07 12:49:22 +00:00
github-actions[bot]
9f82f88f07
Update default bundle to codeql-bundle-v2.25.4
2026-05-07 12:49:13 +00:00
Henry Mercer
7525c68ea1
Nit: Dedupe languages
2026-05-07 11:01:15 +01:00
Henry Mercer
01bc9be56a
Filter to code scanning only
2026-05-07 11:00:54 +01:00
Henry Mercer
817b68489e
Merge branch 'main' into henrymercer/overlay-match-codeql-version
2026-05-06 19:20:52 +01:00
Henry Mercer
1b5632783c
Add changelog note
2026-05-06 19:13:25 +01:00
github-actions[bot]
1848b73afa
Rebuild
2026-05-06 18:01:54 +00:00
dependabot[bot]
d1e9792bc8
Bump the npm-minor group across 1 directory with 4 updates
...
Bumps the npm-minor group with 4 updates in the / directory: [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node ), [eslint](https://github.com/eslint/eslint ), [typescript](https://github.com/microsoft/TypeScript ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `@types/node` from 20.19.9 to 20.19.39
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node )
Updates `eslint` from 9.39.2 to 9.39.4
- [Release notes](https://github.com/eslint/eslint/releases )
- [Commits](https://github.com/eslint/eslint/compare/v9.39.2...v9.39.4 )
Updates `typescript` from 6.0.2 to 6.0.3
- [Release notes](https://github.com/microsoft/TypeScript/releases )
- [Commits](https://github.com/microsoft/TypeScript/compare/v6.0.2...v6.0.3 )
Updates `typescript-eslint` from 8.58.2 to 8.59.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.59.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: "@types/node"
dependency-version: 20.19.39
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint
dependency-version: 9.39.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript
dependency-version: 6.0.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.59.1
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-06 17:59:44 +00:00
Henry Mercer
2c9cd77837
Tests: Run slow scanArtifactsForTokens test in CI only by default
2026-05-06 18:45:24 +01:00
Henry Mercer
b967fdfbdc
Add dry run mode so we can dark ship
2026-05-06 18:30:24 +01:00
Henry Mercer
55d6319f96
Match CLI version to cached overlay-base database
2026-05-06 18:01:37 +01:00
Henry Mercer
b0942116d7
Expose all enabled default CLI versions
2026-05-06 17:45:56 +01:00
Paolo Tranquilli
bc0b696b41
Merge pull request #3785 from github/mbg/dep/update-undici
...
Bump `undici` to at least `6.24.0`
2026-05-06 15:24:07 +00:00
Henry Mercer
a796e3e4ed
Add OverlayAnalysisMatchCodeqlVersion feature flag
2026-05-06 15:14:04 +01:00
Michael B. Gale
f9bb0e001c
Merge branch 'main' into mbg/dep/update-undici
2026-05-06 14:16:25 +01:00
Henry Mercer
4b7faf0b3d
Merge pull request #3809 from github/henrymercer/determine-overlay-version
...
Overlay: Determine which versions of CodeQL are compatible with cached base DBs
2026-05-06 12:30:56 +00:00
Henry Mercer
09a1d9ec2a
Add note about cache eviction
2026-05-05 18:54:16 +01:00
Henry Mercer
f64a4491cf
Add links to API docs
2026-05-05 18:48:09 +01:00
Henry Mercer
7fc86e0c37
Update type import syntax
2026-05-05 18:43:10 +01:00
Henry Mercer
5997e25ad9
Update listActionsCaches doc
2026-05-05 18:43:01 +01:00
Henry Mercer
7587714d0a
Revert "Mitigate caches being evicted before they can be downloaded"
...
This reverts commit 1279e8d41c .
2026-05-05 18:37:17 +01:00
Michael B. Gale
a723e99345
Merge pull request #3868 from github/mergeback/v4.35.3-to-main-e46ed2cb
...
Mergeback v4.35.3 refs/heads/releases/v4 into main
2026-05-01 14:34:01 +00:00
github-actions[bot]
fbba1e03be
Rebuild
2026-05-01 14:09:49 +00:00
github-actions[bot]
933238e8d5
Update changelog and version after v4.35.3
2026-05-01 14:06:46 +00:00
Michael B. Gale
e46ed2cbd0
Merge pull request #3867 from github/update-v4.35.3-8c6e48dbe
...
Merge main into releases/v4
2026-05-01 15:05:28 +01:00
Michael B. Gale
b73d1d1634
Add changelog entry for #3853
2026-05-01 14:09:58 +01:00
Michael B. Gale
24e0bb00a9
Reorder changelog entries
2026-05-01 14:07:12 +01:00
github-actions[bot]
ec298daba7
Update changelog for v4.35.3
2026-05-01 12:57:50 +00:00
Henry Mercer
8c6e48dbe0
Merge pull request #3865 from github/update-bundle/codeql-bundle-v2.25.3
...
Update default bundle to 2.25.3
2026-04-30 16:07:18 +00:00
github-actions[bot]
719098349e
Add changelog note
2026-04-30 15:31:49 +00:00
github-actions[bot]
2bb209555a
Update default bundle to codeql-bundle-v2.25.3
2026-04-30 15:31:40 +00:00
Michael B. Gale
7851e55dc3
Merge pull request #3850 from github/mbg/private-registry/cloudsmith-gcp
...
Private registries: Add support for Cloudsmith and GCP OIDC configurations
2026-04-30 13:33:44 +00:00
Michael B. Gale
262a15f6cf
Add generic non-printable chars test for OIDC configs
2026-04-30 14:10:36 +01:00
Michael B. Gale
a6109b1c07
Merge pull request #3853 from github/mbg/start-proxy/improved-checks
...
Improve connection tests
2026-04-30 12:48:34 +00:00
Michael B. Gale
022ff3c73f
Merge remote-tracking branch 'origin/main' into mbg/private-registry/cloudsmith-gcp
2026-04-30 13:43:29 +01:00
Michael B. Gale
0a4d574ac4
Add changelog entry
2026-04-30 13:42:29 +01:00
Michael B. Gale
d1edf2e4de
Improve replaces-base validation and add tests
2026-04-30 13:41:13 +01:00
Henry Mercer
facd53f789
Merge pull request #3859 from github/dependabot/npm_and_yarn/ava/typescript-7.0.0
...
Bump @ava/typescript from 6.0.0 to 7.0.0
2026-04-30 12:30:35 +00:00
Michael B. Gale
b77983290b
Fix permutations comment
2026-04-30 13:28:42 +01:00
Henry Mercer
fcf29e3d86
Merge pull request #3862 from github/dependabot/github_actions/dot-github/workflows/actions-minor-933f87fbf1
...
Bump ruby/setup-ruby from 1.301.0 to 1.305.0 in /.github/workflows in the actions-minor group across 1 directory
2026-04-30 12:17:13 +00:00
Henry Mercer
1fed3e9ba8
Merge branch 'main' into dependabot/npm_and_yarn/ava/typescript-7.0.0
2026-04-30 13:10:19 +01:00
Michael B. Gale
549683cee5
Make it clearer what the expectations for isUsernamePassword are
2026-04-30 12:49:49 +01:00
Michael B. Gale
7a6ed56219
Modify FromSchema so that optional properties are actually optional
2026-04-30 11:54:21 +01:00
Michael B. Gale
91fbc51606
Improve validateSchema comment
2026-04-30 11:46:01 +01:00
Michael B. Gale
35715ef8fe
Improve typing of cloneCredential
2026-04-30 11:43:54 +01:00
Michael B. Gale
bac7fdaf42
Fix linter error
2026-04-30 11:26:12 +01:00
Henry Mercer
1517969c90
Merge pull request #3837 from github/update-supported-enterprise-server-versions
...
Update supported GitHub Enterprise Server versions
2026-04-30 10:16:37 +00:00
github-actions[bot]
f073360456
Rebuild
2026-04-29 18:02:23 +00:00
dependabot[bot]
5145c112e7
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.301.0 to 1.305.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/4c56a21280b36d862b5fc31348f463d60bdc55d5...0cb964fd540e0a24c900370abf38a33466142735 )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.305.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-29 18:00:14 +00:00
dependabot[bot]
7108503ac6
Bump @ava/typescript from 6.0.0 to 7.0.0
...
Bumps [@ava/typescript](https://github.com/avajs/typescript ) from 6.0.0 to 7.0.0.
- [Release notes](https://github.com/avajs/typescript/releases )
- [Commits](https://github.com/avajs/typescript/compare/v6.0.0...v7.0.0 )
---
updated-dependencies:
- dependency-name: "@ava/typescript"
dependency-version: 7.0.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-29 17:59:33 +00:00
Henry Mercer
4fe9b1e243
Merge pull request #3856 from github/henrymercer/overlay-add-log-group
...
Add log group for downloading overlay-base DB
2026-04-29 10:51:09 +00:00
Henry Mercer
56733fb5ae
Add log group for downloading overlay-base DB
2026-04-28 19:00:28 +01:00
Henry Mercer
0a636086c9
Add GHES 3.21 to supported versions table
2026-04-28 15:32:55 +01:00
Henry Mercer
97be3af35a
Deprecate CodeQL versions 2.19.3 and earlier
2026-04-28 15:32:55 +01:00
github-actions[bot]
de303a9db5
Update supported GitHub Enterprise Server versions
2026-04-28 15:24:46 +01:00
Michael B. Gale
7a818e6977
Log disclaimer about connection tests, with link to docs
2026-04-28 13:45:53 +01:00
Michael B. Gale
30e0f4391d
Use /v3/index.json for NuGet feed check
2026-04-28 13:45:52 +01:00
Henry Mercer
7c5585e5cf
Merge pull request #3852 from github/henrymercer/avoid-diagnostic-collisions
...
Add random suffix when writing diagnostics to avoid filename collisions
2026-04-28 12:04:59 +00:00
Henry Mercer
245f6828c4
Use a counter instead of Math.random for diagnostic filename suffix
2026-04-28 12:42:42 +01:00
Henry Mercer
c109008fac
Add changelog note
2026-04-28 11:40:03 +01:00
Henry Mercer
e73c940c9b
Defensively sanitize timestamp
2026-04-28 11:40:02 +01:00
Henry Mercer
cdb655d6d4
Add random suffix when writing diagnostics to avoid filename collisions
2026-04-28 11:39:40 +01:00
Michael B. Gale
6153577cab
Switch from HEAD to GET requests
...
Not all registry implementations support `HEAD` correctly.
2026-04-28 10:42:27 +01:00
Óscar San José
8f02cfa11d
Update from main and Rebuild
2026-04-27 19:30:21 +02:00
Michael B. Gale
0ed734b61b
Ignore test files
2026-04-25 18:36:22 +01:00
Michael B. Gale
efdcb31f11
Accept replaces-base option
2026-04-25 18:36:22 +01:00
Michael B. Gale
4d2c7c6e10
Validate GCP OIDC configurations
2026-04-25 18:36:22 +01:00
Michael B. Gale
70b2658d23
Validate Cloudsmith OIDC configurations
2026-04-25 18:36:21 +01:00
Michael B. Gale
530fcb3bbf
Group OIDC schemas into an array
2026-04-25 18:36:19 +01:00
Michael B. Gale
2acf81942b
Add tests for getAuthConfig
2026-04-25 18:34:00 +01:00
Michael B. Gale
d2a54a4507
Add schemas for basic credential types
2026-04-25 18:33:01 +01:00
Michael B. Gale
bc4097bbe1
Simplify credential cloning in getAuthConfig
2026-04-25 18:23:11 +01:00
Michael B. Gale
c8e26e209a
Move getAuthConfig out of start-proxy.ts
2026-04-25 16:49:05 +01:00
Michael B. Gale
0752451507
Use schema/validation for existing OIDC config types
2026-04-25 16:49:05 +01:00
Michael B. Gale
243c274daf
Add simple JSON schema / validation helpers
2026-04-25 15:35:50 +01:00
Henry Mercer
19b3a84f58
Merge pull request #3849 from github/henrymercer/simplify-diff-range-interface
...
Simplify `writeDiffRangeDataExtensionPack` interface
2026-04-23 20:29:05 +00:00
Henry Mercer
858a6149c1
Simplify writeDiffRangeDataExtensionPack interface
2026-04-23 16:47:15 +01:00
Henry Mercer
c60c75576d
Merge pull request #3848 from github/dependabot/npm_and_yarn/fast-xml-parser-5.7.1
...
Bump fast-xml-parser from 5.5.7 to 5.7.1
2026-04-22 23:03:27 +00:00
Henry Mercer
59aede2113
Merge pull request #3847 from github/dependabot/npm_and_yarn/uuid-14.0.0
...
Bump uuid from 13.0.0 to 14.0.0
2026-04-22 23:02:16 +00:00
github-actions[bot]
6c35f8607b
Rebuild
2026-04-22 21:54:06 +00:00
github-actions[bot]
c486cacf49
Rebuild
2026-04-22 21:53:49 +00:00
dependabot[bot]
365478cc5b
Bump fast-xml-parser from 5.5.7 to 5.7.1
...
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.5.7 to 5.7.1.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.5.7...v5.7.1 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.7.1
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 21:52:05 +00:00
dependabot[bot]
f0e6490756
Bump uuid from 13.0.0 to 14.0.0
...
Bumps [uuid](https://github.com/uuidjs/uuid ) from 13.0.0 to 14.0.0.
- [Release notes](https://github.com/uuidjs/uuid/releases )
- [Changelog](https://github.com/uuidjs/uuid/blob/main/CHANGELOG.md )
- [Commits](https://github.com/uuidjs/uuid/compare/v13.0.0...v14.0.0 )
---
updated-dependencies:
- dependency-name: uuid
dependency-version: 14.0.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 21:51:48 +00:00
Henry Mercer
860353f245
Merge pull request #3840 from github/dependabot/npm_and_yarn/npm-minor-580efa6e3b
...
Bump the npm-minor group across 1 directory with 3 updates
2026-04-22 20:59:20 +00:00
Henry Mercer
4fb8483ef0
Merge pull request #3835 from github/dependabot/npm_and_yarn/eslint-import-resolver-typescript-4.4.4
...
Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4
2026-04-22 20:33:35 +00:00
dependabot[bot]
c2574efbee
Bump the npm-minor group across 1 directory with 3 updates
...
Bumps the npm-minor group with 3 updates in the / directory: [globals](https://github.com/sindresorhus/globals ), [sinon](https://github.com/sinonjs/sinon ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `globals` from 17.4.0 to 17.5.0
- [Release notes](https://github.com/sindresorhus/globals/releases )
- [Commits](https://github.com/sindresorhus/globals/compare/v17.4.0...v17.5.0 )
Updates `sinon` from 21.0.3 to 21.1.2
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.0.3...v21.1.2 )
Updates `typescript-eslint` from 8.58.1 to 8.58.2
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.2/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: globals
dependency-version: 17.5.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: sinon
dependency-version: 21.1.2
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.58.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-22 17:58:53 +00:00
Henry Mercer
4cbe7bef85
Merge pull request #3839 from github/henrymercer/workflow-run-triggers
...
Escape "+"s in `on.workflow_run.workflows`
2026-04-22 10:44:53 +00:00
Henry Mercer
f6a5638305
Escape "+"s in on.workflow_run.workflows
2026-04-22 11:14:07 +01:00
Henry Mercer
1279e8d41c
Mitigate caches being evicted before they can be downloaded
2026-04-22 00:04:57 +01:00
Henry Mercer
af1f613989
Use type-only imports
2026-04-21 23:49:37 +01:00
Henry Mercer
5026833be5
Document exclusion of nightlies
2026-04-21 23:35:29 +01:00
Henry Mercer
201ddc275d
Retrieve CodeQL versions associated with cached overlay base DBs
2026-04-21 22:18:59 +01:00
Henry Mercer
1dcdb940d5
Merge pull request #3830 from github/henrymercer/deflake
...
Add workflow to rerun potentially transient failures
2026-04-21 10:57:19 +00:00
Henry Mercer
0b7b740d4c
Merge pull request #3831 from github/dependabot/npm_and_yarn/npm-minor-f46f1f14d7
...
Bump the npm-minor group across 1 directory with 2 updates
2026-04-16 11:08:29 +00:00
Henry Mercer
0ac85966ba
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-f46f1f14d7
2026-04-16 11:49:39 +01:00
dependabot[bot]
5019ed041c
Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4
...
Bumps [eslint-import-resolver-typescript](https://github.com/import-js/eslint-import-resolver-typescript ) from 3.8.7 to 4.4.4.
- [Release notes](https://github.com/import-js/eslint-import-resolver-typescript/releases )
- [Changelog](https://github.com/import-js/eslint-import-resolver-typescript/blob/master/CHANGELOG.md )
- [Commits](https://github.com/import-js/eslint-import-resolver-typescript/compare/v3.8.7...v4.4.4 )
---
updated-dependencies:
- dependency-name: eslint-import-resolver-typescript
dependency-version: 4.4.4
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 17:58:58 +00:00
dependabot[bot]
d64d81d41f
Bump the npm-minor group across 1 directory with 2 updates
...
Bumps the npm-minor group with 2 updates in the / directory: [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `@eslint/compat` from 2.0.4 to 2.0.5
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.0.5/packages/compat )
Updates `typescript-eslint` from 8.58.0 to 8.58.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.58.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: "@eslint/compat"
dependency-version: 2.0.5
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.58.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 17:58:27 +00:00
Henry Mercer
6777c894e9
Merge pull request #3811 from github/henrymercer/record-all-builtin-languages
...
Store all built-in languages
2026-04-15 17:57:19 +00:00
Henry Mercer
79f9c0517c
Merge remote-tracking branch 'origin/main' into henrymercer/record-all-builtin-languages
...
# Conflicts:
# lib/start-proxy-action.js
# src/known-language-aliases.json
2026-04-15 18:36:47 +01:00
Henry Mercer
3b3a77544b
Rename job
...
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com >
2026-04-15 18:34:13 +01:00
Henry Mercer
9f95de42d6
Add workflow to rerun potentially transient failures
2026-04-15 18:28:17 +01:00
Henry Mercer
e2d518d895
Merge pull request #3827 from github/dependabot/npm_and_yarn/follow-redirects-1.16.0
...
Bump follow-redirects from 1.15.11 to 1.16.0
2026-04-15 12:47:52 +00:00
github-actions[bot]
9df9e9176e
Rebuild
2026-04-15 12:20:46 +00:00
dependabot[bot]
6847a42aa8
Bump follow-redirects from 1.15.11 to 1.16.0
...
Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects ) from 1.15.11 to 1.16.0.
- [Release notes](https://github.com/follow-redirects/follow-redirects/releases )
- [Commits](https://github.com/follow-redirects/follow-redirects/compare/v1.15.11...v1.16.0 )
---
updated-dependencies:
- dependency-name: follow-redirects
dependency-version: 1.16.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-15 12:18:36 +00:00
Henry Mercer
f820c80d4d
Merge pull request #3825 from github/mergeback/v4.35.2-to-main-95e58e9a
...
Mergeback v4.35.2 refs/heads/releases/v4 into main
2026-04-15 11:56:45 +00:00
github-actions[bot]
ca7d6d3b79
Rebuild
2026-04-15 11:27:36 +00:00
github-actions[bot]
8d9c36a0ce
Update changelog and version after v4.35.2
2026-04-15 11:24:19 +00:00
Henry Mercer
95e58e9a2c
Merge pull request #3824 from github/update-v4.35.2-d2e135a73
...
Merge main into releases/v4
2026-04-15 12:22:51 +01:00
github-actions[bot]
6f31bfe060
Update changelog for v4.35.2
2026-04-15 10:56:23 +00:00
Henry Mercer
d2e135a73a
Merge pull request #3823 from github/update-bundle/codeql-bundle-v2.25.2
...
Update default bundle to 2.25.2
2026-04-15 10:06:23 +00:00
github-actions[bot]
60abb65df0
Add changelog note
2026-04-15 09:39:31 +00:00
github-actions[bot]
5a0a562209
Update default bundle to codeql-bundle-v2.25.2
2026-04-15 09:39:24 +00:00
Henry Mercer
f8b62132ab
Include experimental languages
2026-04-14 17:38:26 +01:00
Henry Mercer
65216971a1
Merge pull request #3820 from github/dependabot/github_actions/dot-github/workflows/actions-minor-cc17fecf2b
...
Bump the actions-minor group across 1 directory with 2 updates
2026-04-13 18:04:26 +00:00
Henry Mercer
3c45af2dd2
Merge pull request #3821 from github/dependabot/npm_and_yarn/npm-minor-345b938e93
...
Bump the npm-minor group across 1 directory with 6 updates
2026-04-13 17:59:04 +00:00
github-actions[bot]
f1c339364c
Rebuild
2026-04-13 17:31:19 +00:00
github-actions[bot]
1024fc496c
Rebuild
2026-04-13 17:30:13 +00:00
dependabot[bot]
9dd4cfed96
Bump the npm-minor group across 1 directory with 6 updates
...
Bumps the npm-minor group with 6 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [@octokit/plugin-retry](https://github.com/octokit/plugin-retry.js ) | `8.0.3` | `8.1.0` |
| [jsonschema](https://github.com/tdegrunt/jsonschema ) | `1.4.1` | `1.5.0` |
| [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) | `2.0.3` | `2.0.4` |
| [@types/sinon](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/sinon ) | `21.0.0` | `21.0.1` |
| [esbuild](https://github.com/evanw/esbuild ) | `0.27.4` | `0.28.0` |
| [nock](https://github.com/nock/nock ) | `14.0.11` | `14.0.12` |
Updates `@octokit/plugin-retry` from 8.0.3 to 8.1.0
- [Release notes](https://github.com/octokit/plugin-retry.js/releases )
- [Commits](https://github.com/octokit/plugin-retry.js/compare/v8.0.3...v8.1.0 )
Updates `jsonschema` from 1.4.1 to 1.5.0
- [Commits](https://github.com/tdegrunt/jsonschema/commits )
Updates `@eslint/compat` from 2.0.3 to 2.0.4
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.0.4/packages/compat )
Updates `@types/sinon` from 21.0.0 to 21.0.1
- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases )
- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/sinon )
Updates `esbuild` from 0.27.4 to 0.28.0
- [Release notes](https://github.com/evanw/esbuild/releases )
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md )
- [Commits](https://github.com/evanw/esbuild/compare/v0.27.4...v0.28.0 )
Updates `nock` from 14.0.11 to 14.0.12
- [Release notes](https://github.com/nock/nock/releases )
- [Changelog](https://github.com/nock/nock/blob/main/CHANGELOG.md )
- [Commits](https://github.com/nock/nock/compare/v14.0.11...v14.0.12 )
---
updated-dependencies:
- dependency-name: "@octokit/plugin-retry"
dependency-version: 8.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: jsonschema
dependency-version: 1.5.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: "@eslint/compat"
dependency-version: 2.0.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: "@types/sinon"
dependency-version: 21.0.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: esbuild
dependency-version: 0.28.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: nock
dependency-version: 14.0.12
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 17:29:04 +00:00
dependabot[bot]
c1403f094c
Bump the actions-minor group across 1 directory with 2 updates
...
Bumps the actions-minor group with 2 updates in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ) and [actions/create-github-app-token](https://github.com/actions/create-github-app-token ).
Updates `ruby/setup-ruby` from 1.295.0 to 1.300.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/319994f95fa847cf3fb3cd3dbe89f6dcde9f178f...4c56a21280b36d862b5fc31348f463d60bdc55d5 )
Updates `actions/create-github-app-token` from 3.0.0 to 3.1.1
- [Release notes](https://github.com/actions/create-github-app-token/releases )
- [Commits](https://github.com/actions/create-github-app-token/compare/v3.0.0...v3.1.1 )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.300.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
- dependency-name: actions/create-github-app-token
dependency-version: 3.1.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 17:27:57 +00:00
Henry Mercer
90d7616015
Merge branch 'main' into henrymercer/record-all-builtin-languages
2026-04-13 18:00:09 +01:00
Henry Mercer
1aef4ed505
Exclude new TypeScript code from package tests
...
Avoid new source code changing expected output
2026-04-13 17:37:29 +01:00
Henry Mercer
cb52ba6486
Refactoring: Split up script
2026-04-13 17:03:20 +01:00
Henry Mercer
7c9e131894
Add constant for builtin languages file path
2026-04-13 16:57:47 +01:00
Henry Mercer
130ab2d721
Improve JSDoc
2026-04-13 16:54:06 +01:00
Henry Mercer
8cf2dc52f9
Fix casing mismatch
2026-04-13 16:49:31 +01:00
Henry Mercer
8339b9254e
Merge pull request #3819 from github/henrymercer/refactor-overlay-caching
...
Refactoring: Introduce `overlay/caching.ts`
2026-04-13 15:49:12 +00:00
Henry Mercer
97bcdd8c1e
Move script to pr-checks directory
2026-04-13 16:49:10 +01:00
Henry Mercer
e6c21da23c
Refactoring: Rename KnownLanguage to BuiltInLanguage
2026-04-10 19:09:47 +01:00
Henry Mercer
bad0a744dd
Store all built-in languages
...
While we want the CodeQL Action to work with third-party language support, having a list of all built-in languages can help us create better type-level checks to ensure that we don't miss things that we want to customize for each of our built-in languages.
2026-04-10 19:09:46 +01:00
Michael B. Gale
ee09113642
Merge pull request #3810 from github/mbg/ts6/fix-pr-checks
...
Fix `pr-checks/tsconfig.json` for TS6
2026-04-10 18:02:01 +00:00
Michael B. Gale
b669eab7e3
Explicitly add pr-checks to Dependabot config
2026-04-10 16:58:30 +01:00
Henry Mercer
4e8c9ce33c
Refactoring: Introduce overlay/caching.ts
2026-04-10 14:55:12 +01:00
Michael B. Gale
1cf0431149
Set module option for pr-checks/tsconfig.json
2026-04-10 13:22:36 +01:00
Michael B. Gale
a26cb68cc7
Merge pull request #3807 from github/mbg/start-proxy/fix-field-names
...
Fix OIDC credential property names
2026-04-10 09:18:24 +00:00
Henry Mercer
60991e61ac
Merge pull request #3806 from github/henrymercer/store-language-aliases
...
Store language aliases from linked CLI
2026-04-10 09:16:45 +00:00
Michael B. Gale
7197c2b792
Add changelog entry
2026-04-09 19:01:45 +01:00
Henry Mercer
597e12aa85
Merge pull request #3801 from github/henrymercer/swift-incompatible-os
...
Mark Swift incompatible OS as configuration error
2026-04-09 17:30:06 +00:00
Michael B. Gale
d277a56348
Fix OIDC credential property names
2026-04-09 17:48:52 +01:00
Henry Mercer
111a537cd9
Update start-proxy Action to use known language aliases
2026-04-09 17:10:15 +01:00
Henry Mercer
51d833290e
Store language aliases from linked CLI
2026-04-09 17:10:15 +01:00
Henry Mercer
5a17511bf0
Throw error on Windows too
2026-04-09 16:52:50 +01:00
Henry Mercer
43d8420a42
Do not run Swift in debug artifacts after failure check
2026-04-09 15:18:51 +01:00
Henry Mercer
76a687e1d8
Merge pull request #3804 from github/dependabot/npm_and_yarn/npm-minor-e84c604a08
...
Bump eslint-plugin-jsdoc from 62.8.1 to 62.9.0 in the npm-minor group
2026-04-09 13:04:00 +00:00
dependabot[bot]
751f3e2f7c
Bump eslint-plugin-jsdoc from 62.8.1 to 62.9.0 in the npm-minor group
...
Bumps the npm-minor group with 1 update: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ).
Updates `eslint-plugin-jsdoc` from 62.8.1 to 62.9.0
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.8.1...v62.9.0 )
---
updated-dependencies:
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.9.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-08 17:53:21 +00:00
Henry Mercer
808513f048
Update language aliases test
2026-04-08 16:38:23 +01:00
Henry Mercer
e452857e57
Throw error early rather than warning
2026-04-08 16:33:19 +01:00
Mario Campos
b623f5fd57
Merge pull request #3799 from github/mario-campos/test-multiple-registries
...
Add tests for getCredentials with multiple goproxy_servers and maven_…
2026-04-07 14:52:14 +00:00
Mario Campos
35a38985d3
Specify "Java" for a test case
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-04-07 09:01:00 -05:00
Mario Campos
14ed573199
Specify "Go" for a test case
...
Co-authored-by: Michael B. Gale <mbg@github.com >
2026-04-07 09:01:00 -05:00
Mario Campos
43d8864b35
Run npm run lint-fix to format the code
2026-04-07 09:01:00 -05:00
Mario Campos
f8aff3ad8b
Add tests for getCredentials with multiple goproxy_servers and maven_repositories
2026-04-07 09:01:00 -05:00
Henry Mercer
e6c83948f5
Merge pull request #3802 from github/dependabot/npm_and_yarn/lodash-4.18.1
...
Bump lodash from 4.17.23 to 4.18.1
2026-04-07 10:12:08 +00:00
Henry Mercer
347f0c676d
Merge pull request #3803 from github/dependabot/npm_and_yarn/npm-minor-113ae615b7
...
Bump eslint-plugin-jsdoc from 62.8.0 to 62.8.1 in the npm-minor group across 1 directory
2026-04-07 10:08:35 +00:00
dependabot[bot]
6eed62b035
Bump eslint-plugin-jsdoc in the npm-minor group across 1 directory
...
Bumps the npm-minor group with 1 update in the / directory: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ).
Updates `eslint-plugin-jsdoc` from 62.8.0 to 62.8.1
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.8.0...v62.8.1 )
---
updated-dependencies:
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.8.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-07 09:36:59 +00:00
dependabot[bot]
de1752b85d
Bump lodash from 4.17.23 to 4.18.1
...
Bumps [lodash](https://github.com/lodash/lodash ) from 4.17.23 to 4.18.1.
- [Release notes](https://github.com/lodash/lodash/releases )
- [Commits](https://github.com/lodash/lodash/compare/4.17.23...4.18.1 )
---
updated-dependencies:
- dependency-name: lodash
dependency-version: 4.18.1
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-07 09:36:15 +00:00
Henry Mercer
1065967b50
Merge pull request #3800 from github/henrymercer/typescript-6
...
Upgrade to TypeScript 6
2026-04-07 09:14:42 +00:00
Henry Mercer
e25c0a535a
Merge pull request #3795 from github/henrymercer/deprecate-trap-caching-cleanup
...
Deprecate TRAP cache cleanup
2026-04-07 09:14:31 +00:00
Henry Mercer
5f323cad05
Mark Swift incompatible OS as configuration error
2026-04-02 18:46:26 +01:00
Henry Mercer
212e28374b
Upgrade to TypeScript 6
...
tsconfig changes:
- Specify `moduleResolution: bundler` since we use a bundler
- Specify `types: ["node"]` to speed up build
- Remove `alwaysStrict` as this is now deprecated
- Specify `skipLibCheck: true` to speed up build
- Specify Octokit types.d.ts path manually to address compiler not being able to find types with `moduleResolution: bundler`
2026-04-02 18:32:58 +01:00
Henry Mercer
36075a4980
Deprecate TRAP cache cleanup
2026-04-01 15:31:15 +01:00
Michael B. Gale
34950e1b11
Merge pull request #3792 from github/mario-campos/issue-1664
...
Extend start-proxy.yml to test multiple registry support
2026-04-01 13:59:59 +00:00
Henry Mercer
57ec7e1000
Merge pull request #3794 from github/henrymercer/cleanup
...
Python: Disable standard library extraction on GHES
2026-04-01 11:37:34 +00:00
Henry Mercer
311573e58e
Add changelog note
2026-04-01 12:19:11 +01:00
Henry Mercer
1f4c852aeb
Clean up Python extract stdlib feature flag
2026-04-01 12:08:06 +01:00
Michael B. Gale
2e3aaaefca
Merge pull request #3787 from github/mbg/bundle/metadata
...
Generate and analyse esbuild bundle metadata
2026-04-01 10:29:27 +00:00
Mario Campos
e2203c62cf
Delete fromJSON() calls in test validation step
2026-03-31 13:19:33 -05:00
Mario Campos
7b0c5b1669
Keep validation steps named consistently
2026-03-31 12:49:07 -05:00
Mario Campos
faf45e07f9
Use different maven URL for start-proxy.yml test
2026-03-31 12:44:43 -05:00
Mario Campos
8b5e60477c
Use maven_repository, not maven-repository
...
The registry/language mapping table does not map the one with hyphens.
2026-03-31 11:36:17 -05:00
Mario Campos
99b8dd4d57
Run pr-checks/sync.sh to generate __start-proxy.yml.
2026-03-31 09:32:42 -05:00
Henry Mercer
c618c9bddb
Merge pull request #3789 from github/henrymercer/lower-minimum-git-if-no-submodules
...
Overlay: Only require Git 2.36.0 for repos that contain submodules
2026-03-31 10:10:05 +00:00
Mario Campos
9fd9b64766
Replace jq with Actions expression for proxy_urls validation
...
For the sake of consistency with the other pre-existing validation code.
2026-03-30 22:47:06 -05:00
Mario Campos
0c7c298b2a
Extend start-proxy.yml to test multiple registry support
2026-03-30 18:35:04 -05:00
Henry Mercer
a507a542a4
Test fallback when repo has no submodules
2026-03-30 15:58:58 +01:00
Henry Mercer
be0a156326
Save a computation of the git root
2026-03-30 13:37:14 +01:00
Michael B. Gale
f98bf5e347
Output relative to __dirname
2026-03-27 19:21:14 +00:00
Michael B. Gale
3db32b5d27
Fix outputs type
2026-03-27 19:13:22 +00:00
Michael B. Gale
4e0952a3c0
Output largest inputs
2026-03-27 19:13:02 +00:00
Henry Mercer
0592832ed8
Add changelog note
2026-03-27 18:58:05 +00:00
Henry Mercer
88a7e5118e
Don't disable if we don't need the git version
2026-03-27 18:54:26 +00:00
Henry Mercer
6643a7d207
Only require Git 2.36.0 when repo contains submodules
2026-03-27 18:54:24 +00:00
Michael B. Gale
47f1709a3c
Add basic metadata analysis script
2026-03-27 18:19:57 +00:00
Michael B. Gale
b1981a5480
Move getApiClient out of sync-checks.ts
2026-03-27 18:13:48 +00:00
Henry Mercer
a899987af2
Merge pull request #3786 from github/henrymercer/faster-interactive-jobs
...
Move time-sensitive Actions workflows to `ubuntu-latest`
2026-03-27 18:08:16 +00:00
Michael B. Gale
4ed3c0efe6
Generate esbuild metadata file
2026-03-27 17:54:29 +00:00
Michael B. Gale
4ea3a4b4af
Bump undici to at least 6.24.0
2026-03-27 17:32:08 +00:00
Henry Mercer
191d7c6f13
Merge pull request #3783 from github/mergeback/v4.35.1-to-main-c10b8064
...
Mergeback v4.35.1 refs/heads/releases/v4 into main
2026-03-27 17:11:42 +00:00
Henry Mercer
aa69c483cd
Merge pull request #3779 from github/henrymercer/remove-unused-dependency
...
Remove unused `@schemastore/package` dependency
2026-03-27 17:11:32 +00:00
Henry Mercer
fe775da508
Merge pull request #3780 from github/dependabot/npm_and_yarn/brace-expansion-1.1.13
...
Bump brace-expansion from 1.1.12 to 1.1.13
2026-03-27 17:11:18 +00:00
Henry Mercer
353802f9f2
Move time-sensitive Actions workflows to ubuntu-latest
...
We originally moved these to `ubuntu-slim`, but there is a significant performance difference. Since we often find ourselves waiting on these jobs, let's use the faster runners.
2026-03-27 16:22:19 +00:00
github-actions[bot]
cc7db4a1f9
Rebuild
2026-03-27 16:20:01 +00:00
github-actions[bot]
6010f9d8e2
Update changelog and version after v4.35.1
2026-03-27 16:10:47 +00:00
Henry Mercer
c10b8064de
Merge pull request #3782 from github/update-v4.35.1-d6d1743b8
...
Merge main into releases/v4
2026-03-27 16:07:37 +00:00
github-actions[bot]
c5ffd06837
Update changelog for v4.35.1
2026-03-27 15:39:16 +00:00
Henry Mercer
d6d1743b8e
Merge pull request #3781 from github/henrymercer/update-git-minimum-version
...
Update minimum Git version for overlay to 2.36.0
2026-03-27 14:59:36 +00:00
github-actions[bot]
999119ba45
Rebuild
2026-03-27 14:00:54 +00:00
Henry Mercer
65d2efa733
Add changelog note
2026-03-27 14:00:27 +00:00
Henry Mercer
2437b20ab3
Update minimum git version for overlay to 2.36.0
2026-03-27 14:00:17 +00:00
dependabot[bot]
f13c600724
Bump brace-expansion from 1.1.12 to 1.1.13
...
Bumps [brace-expansion](https://github.com/juliangruber/brace-expansion ) from 1.1.12 to 1.1.13.
- [Release notes](https://github.com/juliangruber/brace-expansion/releases )
- [Commits](https://github.com/juliangruber/brace-expansion/compare/v1.1.12...v1.1.13 )
---
updated-dependencies:
- dependency-name: brace-expansion
dependency-version: 1.1.13
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-27 13:58:43 +00:00
Henry Mercer
7dcea06663
Remove unused @schemastore/package dependency
2026-03-27 13:57:52 +00:00
Michael B. Gale
ea5f71947c
Merge pull request #3775 from github/dependabot/npm_and_yarn/node-forge-1.4.0
...
Bump node-forge from 1.3.3 to 1.4.0
2026-03-27 13:47:55 +00:00
Henry Mercer
45ceeea896
Merge pull request #3777 from github/mergeback/v4.35.0-to-main-b8bb9f28
...
Mergeback v4.35.0 refs/heads/releases/v4 into main
2026-03-27 13:36:14 +00:00
github-actions[bot]
24448c9843
Rebuild
2026-03-27 12:23:25 +00:00
github-actions[bot]
7c51060631
Update changelog and version after v4.35.0
2026-03-27 12:14:07 +00:00
Óscar San José
b8bb9f28b8
Merge pull request #3776 from github/update-v4.35.0-0078ad667
...
Merge main into releases/v4
2026-03-27 13:11:18 +01:00
github-actions[bot]
e9cf68bb33
Update changelog for v4.35.0
2026-03-27 11:44:34 +00:00
github-actions[bot]
36791d8d66
Rebuild
2026-03-27 10:27:12 +00:00
dependabot[bot]
22eba96a28
Bump node-forge from 1.3.3 to 1.4.0
...
Bumps [node-forge](https://github.com/digitalbazaar/forge ) from 1.3.3 to 1.4.0.
- [Changelog](https://github.com/digitalbazaar/forge/blob/main/CHANGELOG.md )
- [Commits](https://github.com/digitalbazaar/forge/compare/v1.3.3...v1.4.0 )
---
updated-dependencies:
- dependency-name: node-forge
dependency-version: 1.4.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-27 10:25:06 +00:00
Óscar San José
0078ad667e
Merge pull request #3773 from github/update-bundle/codeql-bundle-v2.25.1
...
Update default bundle to 2.25.1
2026-03-27 10:02:52 +00:00
github-actions[bot]
fa7a15b909
Add changelog note
2026-03-27 09:43:23 +00:00
github-actions[bot]
8c29faa7ab
Update default bundle to codeql-bundle-v2.25.1
2026-03-27 09:43:12 +00:00
Henry Mercer
f94817b9f0
Merge pull request #3772 from github/dependabot/npm_and_yarn/yaml-2.8.3
...
Bump yaml from 2.8.2 to 2.8.3
2026-03-26 19:43:58 +00:00
dependabot[bot]
dd060970a5
Bump yaml from 2.8.2 to 2.8.3
...
Bumps [yaml](https://github.com/eemeli/yaml ) from 2.8.2 to 2.8.3.
- [Release notes](https://github.com/eemeli/yaml/releases )
- [Commits](https://github.com/eemeli/yaml/compare/v2.8.2...v2.8.3 )
---
updated-dependencies:
- dependency-name: yaml
dependency-version: 2.8.3
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-26 18:26:45 +00:00
Michael B. Gale
5cc552f43e
Merge pull request #3768 from github/dependabot/npm_and_yarn/npm-minor-3536e7c6f0
...
Bump the npm-minor group with 5 updates
2026-03-26 17:46:04 +00:00
Michael B. Gale
6b1a9f2131
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-3536e7c6f0
2026-03-26 16:36:54 +00:00
Michael B. Gale
9d3ec5727a
Merge pull request #3770 from github/dependabot/github_actions/dot-github/workflows/actions-minor-266139ee1d
...
Bump ruby/setup-ruby from 1.288.0 to 1.295.0 in /.github/workflows in the actions-minor group across 1 directory
2026-03-26 16:32:19 +00:00
Michael B. Gale
3ff82aacd0
Merge pull request #3575 from github/mbg/ts/sync-checks
...
Convert `release-branches.py` and `update-required-checks.sh` to TypeScript
2026-03-26 15:47:43 +00:00
Sam Robson
4bdd4e7526
Merge pull request #3554 from github/sam-robson/overlay-include-diff
...
feat: always include files from diff in overlay changed files
2026-03-26 10:57:24 +00:00
Sam Robson
23a0098b57
fix: improve error handling and logging for diff range path resolution
2026-03-25 19:53:21 +00:00
github-actions[bot]
ea7b090925
Rebuild
2026-03-25 18:01:40 +00:00
dependabot[bot]
a663d0174a
Bump ruby/setup-ruby
...
Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-ruby](https://github.com/ruby/setup-ruby ).
Updates `ruby/setup-ruby` from 1.288.0 to 1.295.0
- [Release notes](https://github.com/ruby/setup-ruby/releases )
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb )
- [Commits](https://github.com/ruby/setup-ruby/compare/09a7688d3b55cf0e976497ff046b70949eeaccfd...319994f95fa847cf3fb3cd3dbe89f6dcde9f178f )
---
updated-dependencies:
- dependency-name: ruby/setup-ruby
dependency-version: 1.295.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: actions-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-25 17:59:44 +00:00
dependabot[bot]
b659882aae
Bump the npm-minor group with 5 updates
...
Bumps the npm-minor group with 5 updates:
| Package | From | To |
| --- | --- | --- |
| [esbuild](https://github.com/evanw/esbuild ) | `0.27.3` | `0.27.4` |
| [eslint-plugin-import-x](https://github.com/un-ts/eslint-plugin-import-x ) | `4.16.1` | `4.16.2` |
| [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ) | `62.7.1` | `62.8.0` |
| [sinon](https://github.com/sinonjs/sinon ) | `21.0.2` | `21.0.3` |
| [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ) | `8.57.0` | `8.57.1` |
Updates `esbuild` from 0.27.3 to 0.27.4
- [Release notes](https://github.com/evanw/esbuild/releases )
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md )
- [Commits](https://github.com/evanw/esbuild/compare/v0.27.3...v0.27.4 )
Updates `eslint-plugin-import-x` from 4.16.1 to 4.16.2
- [Release notes](https://github.com/un-ts/eslint-plugin-import-x/releases )
- [Changelog](https://github.com/un-ts/eslint-plugin-import-x/blob/master/CHANGELOG.md )
- [Commits](https://github.com/un-ts/eslint-plugin-import-x/compare/v4.16.1...v4.16.2 )
Updates `eslint-plugin-jsdoc` from 62.7.1 to 62.8.0
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.7.1...v62.8.0 )
Updates `sinon` from 21.0.2 to 21.0.3
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.0.2...v21.0.3 )
Updates `typescript-eslint` from 8.57.0 to 8.57.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.57.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: esbuild
dependency-version: 0.27.4
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint-plugin-import-x
dependency-version: 4.16.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.8.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: sinon
dependency-version: 21.0.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.57.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-25 17:53:49 +00:00
Sam Robson
d5bb39fa0b
refactor: single source of truth for getDiffRangesJsonFilePath and simplified getDiffRangeFilePaths
2026-03-25 15:51:51 +00:00
Sam Robson
521c3536d3
feat: always include files from diff in overlay changed files
2026-03-25 15:51:51 +00:00
Michael B. Gale
972365e142
Fix comment
2026-03-25 14:15:39 +00:00
Michael B. Gale
8a0b4f2746
fixup! Update CONTRIBUTING.md
2026-03-25 14:14:49 +00:00
Michael B. Gale
a5418e172c
Delete releases.ini
2026-03-25 13:49:47 +00:00
Michael B. Gale
fae4c28b51
Update CONTRIBUTING.md
2026-03-25 13:48:55 +00:00
Michael B. Gale
661a8fbbe3
Default ref to main
2026-03-25 13:40:05 +00:00
Michael B. Gale
e7c7b68c5f
Remove update-required-checks.sh
2026-03-25 13:38:28 +00:00
Michael B. Gale
fa568ebc69
Delete release-branches.py
2026-03-25 13:37:41 +00:00
Michael B. Gale
0da3139813
Rename to branchName
2026-03-25 13:35:02 +00:00
Michael B. Gale
0abe92ed20
Configure ESLint import/no-extraneous-dependencies rule for pr-checks
2026-03-25 13:17:37 +00:00
Michael B. Gale
07f235e5f2
Add --verbose option
2026-03-25 13:17:37 +00:00
Michael B. Gale
9fd40ff508
Tidy up pr-checks/package.json
2026-03-25 13:17:37 +00:00
Michael B. Gale
75ed461aaa
Add excluded.yml path to config.ts
2026-03-25 13:16:35 +00:00
Michael B. Gale
cfc18781e0
Rebuild
2026-03-25 13:16:34 +00:00
Michael B. Gale
9fe42f69b7
Add some unit tests for sync-checks.ts
2026-03-25 13:16:33 +00:00
Michael B. Gale
c5a984e1aa
Update CONTRIBUTING.md
2026-03-25 13:16:33 +00:00
Michael B. Gale
0543156694
Actually perform the update when necessary and requested
2026-03-25 13:16:33 +00:00
Michael B. Gale
4cec5d2830
Call updateBranch for main
2026-03-25 13:16:32 +00:00
Michael B. Gale
74dd691a45
Identify changes before applying them
2026-03-25 13:16:32 +00:00
Michael B. Gale
a5244bf7dd
Fetch release branches and identify major versions
2026-03-25 13:16:32 +00:00
Michael B. Gale
1bc611ed0c
Fetch and filter check runs for ref
2026-03-25 13:16:32 +00:00
Michael B. Gale
d2008eee7c
Add type to represent exclusions.yml and loading helper
2026-03-25 13:16:32 +00:00
Michael B. Gale
9481177f3d
Initialise API client
2026-03-25 13:16:31 +00:00
Michael B. Gale
9813849e61
Add initial TS implementation of update-required-checks.sh
2026-03-25 13:16:31 +00:00
Michael B. Gale
4867f5927a
Add config file for excluded checks from update-required-checks.sh
2026-03-25 13:16:31 +00:00
Michael B. Gale
49af37b7ab
Add tests for release-branches.ts
2026-03-25 13:16:31 +00:00
Michael B. Gale
b72f4fec40
Validate inputs
2026-03-25 13:16:30 +00:00
Michael B. Gale
0d87a75829
Refactor backport computation into computeReleaseBranches
2026-03-25 13:16:30 +00:00
Michael B. Gale
3db9a05c73
Replace release-branches.py with TS version in release-branches action
2026-03-25 13:16:30 +00:00
Michael B. Gale
aa2773169b
Install node in release-initialise action
2026-03-25 13:16:30 +00:00
Michael B. Gale
054745baee
Convert release-branches.py to TypeScript
2026-03-25 13:16:30 +00:00
Michael B. Gale
3d564d9359
Merge pull request #3579 from github/mbg/start-proxy/token-check-fixes
...
Fix warning for PAT-like token with username
2026-03-25 13:02:47 +00:00
Michael B. Gale
137e0dec2b
Merge remote-tracking branch 'origin/main' into mbg/start-proxy/token-check-fixes
2026-03-25 12:39:48 +00:00
Michael B. Gale
d128e5daa8
Fix test names
2026-03-25 12:39:42 +00:00
Henry Mercer
eedab83377
Merge pull request #3767 from github/henrymercer/overlay-reduce-minimum-git-version
...
Reduce the minimum Git version required for overlay
2026-03-24 11:26:07 +00:00
Henry Mercer
8c023a6b07
Add changelog note
2026-03-23 18:40:55 +00:00
Henry Mercer
28f56f2bed
Update minimum Git version required for overlay
2026-03-23 18:36:25 +00:00
Henry Mercer
d48d054533
Use --stage instead of --format in git ls-files
2026-03-23 18:33:59 +00:00
Henry Mercer
72c0b0efb7
Merge pull request #3587 from github/dependabot/npm_and_yarn/fast-xml-parser-5.5.7
...
Bump fast-xml-parser from 5.5.6 to 5.5.7
2026-03-23 14:22:53 +00:00
Henry Mercer
05b1a5d28f
Merge pull request #3764 from github/mergeback/v4.34.1-to-main-38697555
...
Mergeback v4.34.1 refs/heads/releases/v4 into main
2026-03-20 18:38:55 +00:00
github-actions[bot]
8dc2e5d9d2
Rebuild
2026-03-20 18:19:40 +00:00
github-actions[bot]
8fd6c0e573
Update changelog and version after v4.34.1
2026-03-20 18:14:55 +00:00
Henry Mercer
3869755554
Merge pull request #3763 from github/update-v4.34.1-095e0fe50
...
Merge main into releases/v4
2026-03-20 18:10:50 +00:00
github-actions[bot]
20e68ac12b
Update changelog for v4.34.1
2026-03-20 17:33:39 +00:00
Henry Mercer
095e0fe505
Merge pull request #3762 from github/henrymercer/downgrade-default-bundle
...
Downgrade default bundle to 2.24.3
2026-03-20 17:06:34 +00:00
Henry Mercer
47b94fe61c
Add changelog note
2026-03-20 16:46:45 +00:00
Henry Mercer
51a1d6917f
Downgrade default bundle to codeql-bundle-v2.24.3
2026-03-20 16:45:20 +00:00
Óscar San José
510cf736e3
Merge pull request #3589 from github/mergeback/v4.34.0-to-main-c6f93110
...
Mergeback v4.34.0 refs/heads/releases/v4 into main
2026-03-20 15:15:34 +00:00
github-actions[bot]
89f0c86efa
Rebuild
2026-03-20 12:03:59 +00:00
github-actions[bot]
c3f90ba975
Update changelog and version after v4.34.0
2026-03-20 11:56:24 +00:00
Óscar San José
c6f931105c
Merge pull request #3588 from github/update-v4.34.0-30c555a52
...
Merge main into releases/v4
2026-03-20 12:53:53 +01:00
github-actions[bot]
eeb9b3f424
Update changelog for v4.34.0
2026-03-20 10:35:57 +00:00
github-actions[bot]
64507ed148
Rebuild
2026-03-20 01:40:06 +00:00
dependabot[bot]
1a45a9b9d0
Bump fast-xml-parser from 5.5.6 to 5.5.7
...
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.5.6 to 5.5.7.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.5.6...v5.5.7 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.5.7
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-20 01:38:13 +00:00
Idriss Riouak
30c555a528
Merge pull request #3584 from github/idrissrio/cpp/overlay
...
Feature flag: C/C++ overlay
2026-03-19 15:26:48 +00:00
Idriss Riouak
39191bd27f
Merge branch 'main' into idrissrio/cpp/overlay
2026-03-19 15:42:47 +01:00
Óscar San José
147e93e5dc
Merge pull request #3585 from github/update-bundle/codeql-bundle-v2.25.0
...
Update default bundle to 2.25.0
2026-03-19 14:14:03 +00:00
Idriss Riouak
e6d83bce6d
Update CHANGELOG.md
...
Co-authored-by: Henry Mercer <henrymercer@github.com >
2026-03-19 14:58:16 +01:00
idrissrio
0d057ccbce
Add changelog note for C/C++ overlay
2026-03-19 14:11:02 +01:00
idrissrio
074a0dbd16
Feature flag: update test without overlay support
2026-03-19 14:11:02 +01:00
idrissrio
ab3b6fd199
Feature flag: address copilot comment
...
Wire C/C++ overlay feature flags into overlay mapping
2026-03-19 14:11:00 +01:00
idrissrio
ce4a1feb6a
Feature flag: update generated lib after build
2026-03-19 14:10:57 +01:00
idrissrio
899a672743
Feature flag: C/C++ overlay
2026-03-19 14:10:56 +01:00
github-actions[bot]
f4be604881
Add changelog note
2026-03-19 12:01:31 +00:00
github-actions[bot]
0bc1b6f632
Update default bundle to codeql-bundle-v2.25.0
2026-03-19 12:01:20 +00:00
Henry Mercer
3d8036cf7f
Merge pull request #3583 from github/dependabot/github_actions/dot-github/workflows/actions/create-github-app-token-3.0.0
...
Bump actions/create-github-app-token from 2.2.1 to 3.0.0 in /.github/workflows
2026-03-19 10:37:38 +00:00
Henry Mercer
9fecf32c77
Merge pull request #3581 from github/dependabot/npm_and_yarn/npm-minor-a87b0427cc
...
Bump the npm-minor group with 2 updates
2026-03-19 10:34:28 +00:00
Henry Mercer
07d509fbaf
Merge pull request #3569 from github/henrymercer/overlay-no-trap-caching
...
Disable TRAP caching when overlay is enabled
2026-03-19 10:12:30 +00:00
dependabot[bot]
23674c1f2a
Bump actions/create-github-app-token in /.github/workflows
...
Bumps [actions/create-github-app-token](https://github.com/actions/create-github-app-token ) from 2.2.1 to 3.0.0.
- [Release notes](https://github.com/actions/create-github-app-token/releases )
- [Commits](https://github.com/actions/create-github-app-token/compare/v2.2.1...v3.0.0 )
---
updated-dependencies:
- dependency-name: actions/create-github-app-token
dependency-version: 3.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-18 18:10:06 +00:00
dependabot[bot]
ecd1c77ffa
Bump the npm-minor group with 2 updates
...
Bumps the npm-minor group with 2 updates: [@eslint/compat](https://github.com/eslint/rewrite/tree/HEAD/packages/compat ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `@eslint/compat` from 2.0.2 to 2.0.3
- [Release notes](https://github.com/eslint/rewrite/releases )
- [Changelog](https://github.com/eslint/rewrite/blob/main/packages/compat/CHANGELOG.md )
- [Commits](https://github.com/eslint/rewrite/commits/compat-v2.0.3/packages/compat )
Updates `typescript-eslint` from 8.56.1 to 8.57.0
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.57.0/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: "@eslint/compat"
dependency-version: 2.0.3
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.57.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-18 17:53:32 +00:00
Henry Mercer
5b630489d6
Fix changelog automerge
2026-03-18 17:10:57 +00:00
Henry Mercer
582d08c553
Explicitly set C/C++ trap caching env var to false
2026-03-18 17:10:13 +00:00
Henry Mercer
60a0dce0ad
Merge branch 'main' into henrymercer/overlay-no-trap-caching
...
# Conflicts:
# lib/start-proxy-action.js
2026-03-18 16:35:51 +00:00
Henry Mercer
7da6361ba5
Merge pull request #3580 from github/dependabot/npm_and_yarn/fast-xml-parser-5.5.6
...
Bump fast-xml-parser from 5.4.1 to 5.5.6
2026-03-18 11:50:18 +00:00
Sam Robson
08d1198b01
Merge pull request #3248 from github/kaspersv/move-diff-range-absolute-path-conversion
...
Move conversion of PR diff-range paths to absolute paths
2026-03-18 11:41:58 +00:00
Sam Robson
5e54629286
Merge branch 'main' into kaspersv/move-diff-range-absolute-path-conversion
...
* main: (112 commits)
Rebuild
Update changelog and version after v4.33.0
Add changelog entry for #3570
Bump minor version
Update changelog for v4.32.7
Only emit one message with accumulated property names
Remove `cache-dependency-path` options as well
Remove `package-lock.json` that's no longer needed
Add step (in root directory) to install dependencies
Add explicit cache dependency paths in `pr-checks.yml`
Fix linter errors in `sync-back.test.ts`
Fix linter errors in `sync-back.ts`
Rename `sync_back` to `sync-back`
Fix linter errors in `sync.ts`
Add eslint configuration for `pr-checks`
Add minimal `Step` type
Add `workspaces` to root `package.json`
Avoid bundling `package.json`
Move `ava` config out of `package.json`
Emit warning for unrecognised repo properties with our common prefix
...
# Conflicts:
# lib/init-action-post.js
2026-03-18 10:47:46 +00:00
github-actions[bot]
f254006ed7
Rebuild
2026-03-18 01:38:11 +00:00
dependabot[bot]
573e7dd341
Bump fast-xml-parser from 5.4.1 to 5.5.6
...
Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser ) from 5.4.1 to 5.5.6.
- [Release notes](https://github.com/NaturalIntelligence/fast-xml-parser/releases )
- [Changelog](https://github.com/NaturalIntelligence/fast-xml-parser/blob/master/CHANGELOG.md )
- [Commits](https://github.com/NaturalIntelligence/fast-xml-parser/compare/v5.4.1...v5.5.6 )
---
updated-dependencies:
- dependency-name: fast-xml-parser
dependency-version: 5.5.6
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-18 01:36:15 +00:00
Michael B. Gale
f88d49ee5d
Fix warning for PAT-like token with username
2026-03-16 19:34:33 +00:00
Michael B. Gale
28f515d9ad
Add tests for the absence of the warning
2026-03-16 19:34:33 +00:00
Michael B. Gale
de06821112
Add hasMessage to RecordingLogger
2026-03-16 19:34:33 +00:00
Michael B. Gale
ddafddb826
Replace getRecordingLogger implementation with RecordingLogger
2026-03-16 19:34:32 +00:00
Michael B. Gale
740f177889
Add assertNotLogged test helper
2026-03-16 19:34:32 +00:00
Michael B. Gale
0393130759
Add "token without a username" test
2026-03-16 19:34:32 +00:00
Michael B. Gale
f86097dfdb
Add params for credentials and checkAccepted to testPATWarning
2026-03-16 19:34:32 +00:00
Michael B. Gale
6e67ef61f2
Refactor PAT test into a test.macro
2026-03-16 19:34:32 +00:00
Michael B. Gale
193dd19c2d
Add snippet to scaffold test.macros
2026-03-16 19:34:32 +00:00
Michael B. Gale
fd1ca02d0d
Merge pull request #3576 from github/mergeback/v4.33.0-to-main-b1bff819
...
Mergeback v4.33.0 refs/heads/releases/v4 into main
2026-03-16 12:22:52 +00:00
github-actions[bot]
a0e3ed6555
Rebuild
2026-03-16 09:08:32 +00:00
github-actions[bot]
fbb2eb9556
Update changelog and version after v4.33.0
2026-03-16 09:03:58 +00:00
Michael B. Gale
b1bff81932
Merge pull request #3574 from github/update-v4.32.7-7dd76e6bf
...
Merge main into releases/v4
2026-03-16 09:01:14 +00:00
Michael B. Gale
e682234222
Add changelog entry for #3570
2026-03-16 08:43:35 +00:00
Michael B. Gale
95be291f41
Bump minor version
2026-03-16 08:38:13 +00:00
github-actions[bot]
59bcb6025e
Update changelog for v4.32.7
2026-03-16 08:20:09 +00:00
Michael B. Gale
7dd76e6bf7
Merge pull request #3572 from github/mbg/pr-checks/eslint
...
Add eslint for `pr-checks`
2026-03-13 18:51:29 +00:00
Michael B. Gale
e3200e331b
Merge pull request #3563 from github/mbg/private-registry/oidc
...
Accept OIDC configurations in `start-proxy`
2026-03-13 11:58:36 +00:00
Michael B. Gale
4c356c71a2
Merge pull request #3570 from github/mbg/repo-props/warn-on-unexpected-props
...
Emit warning for unrecognised repo properties with our common prefix
2026-03-13 11:13:21 +00:00
Michael B. Gale
b4937c19e5
Only emit one message with accumulated property names
2026-03-13 10:56:36 +00:00
Michael B. Gale
136b8ab377
Remove cache-dependency-path options as well
2026-03-13 10:46:40 +00:00
Michael B. Gale
a5aba5952c
Remove package-lock.json that's no longer needed
...
Since `pr-checks` is now a workspace of the main `package.json`
2026-03-13 10:43:43 +00:00
Michael B. Gale
dafe74070a
Merge pull request #3573 from github/mbg/esbuild/no-package-json
...
Avoid bundling `package.json` in JavaScript files
2026-03-13 10:38:58 +00:00
Michael B. Gale
fc8d303906
Add step (in root directory) to install dependencies
2026-03-12 22:39:45 +00:00
Michael B. Gale
3bc3228be2
Add explicit cache dependency paths in pr-checks.yml
2026-03-12 22:39:45 +00:00
Michael B. Gale
b4cb1049fb
Fix linter errors in sync-back.test.ts
2026-03-12 22:39:45 +00:00
Michael B. Gale
b171c1c6d9
Fix linter errors in sync-back.ts
2026-03-12 22:39:44 +00:00
Michael B. Gale
967ca853e1
Rename sync_back to sync-back
2026-03-12 22:39:44 +00:00
Michael B. Gale
7950e47b7f
Fix linter errors in sync.ts
2026-03-12 22:39:44 +00:00
Michael B. Gale
e608db4784
Add eslint configuration for pr-checks
2026-03-12 22:39:44 +00:00
Michael B. Gale
7df3db2b6f
Add minimal Step type
2026-03-12 22:39:44 +00:00
Michael B. Gale
b5e1fb009d
Add workspaces to root package.json
2026-03-12 22:39:44 +00:00
Michael B. Gale
ea703668e0
Avoid bundling package.json
...
- `package.json` is bundled by `esbuild` because we depend on it in `actions-util.ts`
- That is so we can access the `version` property
- We now use `build.mjs` to define a constant for it instead
- We also set this constant in `ava.setup.mjs` for tests
- This reduces the size of the generated `.js` files and avoids changing them entirely in some cases
2026-03-12 18:55:03 +00:00
Michael B. Gale
c183dca871
Move ava config out of package.json
2026-03-12 18:43:14 +00:00
Michael B. Gale
a717db1a90
Emit warning for unrecognised repo properties with our common prefix
2026-03-12 11:49:17 +00:00
Henry Mercer
1dbebad653
Merge pull request #3566 from github/dependabot/npm_and_yarn/npm-minor-aebc49e072
...
Bump the npm-minor group with 2 updates
2026-03-11 20:49:27 +00:00
Henry Mercer
82d7a77abc
Merge pull request #3567 from github/dependabot/npm_and_yarn/ava-7.0.0
...
Bump ava from 6.4.1 to 7.0.0
2026-03-11 20:47:14 +00:00
Henry Mercer
926e6dfee5
Stub RUNNER_NAME in unit tests
2026-03-11 20:16:47 +00:00
Henry Mercer
b1f1e7bd31
Add changelog note
2026-03-11 19:56:42 +00:00
Henry Mercer
a91b7a3e57
Add unit tests for isTrapCachingEnabled
2026-03-11 19:52:12 +00:00
github-actions[bot]
0d0df94d93
Rebuild
2026-03-11 19:51:54 +00:00
github-actions[bot]
373dec9f22
Rebuild
2026-03-11 19:51:53 +00:00
Henry Mercer
9771a765ac
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-aebc49e072
2026-03-11 19:49:56 +00:00
Henry Mercer
363219d88d
Merge branch 'main' into dependabot/npm_and_yarn/ava-7.0.0
2026-03-11 19:49:53 +00:00
Henry Mercer
556dd79c4b
Drive-by comment fixes
2026-03-11 19:33:57 +00:00
Henry Mercer
19544bb9b4
Remove dead Python library extraction code
2026-03-11 19:32:36 +00:00
Henry Mercer
d74701caa1
Drive-by cleanup: Always use --cache-cleanup
2026-03-11 19:31:03 +00:00
Henry Mercer
d05b50b13f
Clean up: Remove unneeded CodeQL version guard
2026-03-11 19:30:13 +00:00
Henry Mercer
70d5cccce1
Disable TRAP caching when conditions met
2026-03-11 19:25:29 +00:00
Henry Mercer
b04e63ffdf
Enablement: Move TRAP caching check after overlay
2026-03-11 19:21:17 +00:00
Henry Mercer
378e4b367d
Merge pull request #3568 from github/henrymercer/fix-rebuild
...
Fix rebuild Action
2026-03-11 19:18:28 +00:00
Henry Mercer
309fd2aac7
Merge pull request #3565 from github/henrymercer/go-macos-checks
...
PR checks: Only run Go macOS tests on latest CodeQL versions
2026-03-11 19:11:16 +00:00
Henry Mercer
b0f877255d
Add FF for disabling TRAP caching when overlay enabled
2026-03-11 18:44:41 +00:00
Henry Mercer
567ca73ff8
Address review comments
2026-03-11 18:40:22 +00:00
Henry Mercer
5f3f250f83
Fix finishing up in progress merge
2026-03-11 18:24:00 +00:00
Henry Mercer
6fb1c2a300
Fix merge in progress detection
2026-03-11 18:23:04 +00:00
Henry Mercer
44720043ea
CI: Set up Node.js 24 in rebuild workflow
2026-03-11 18:18:30 +00:00
dependabot[bot]
f9f5edb76f
Bump ava from 6.4.1 to 7.0.0
...
Bumps [ava](https://github.com/avajs/ava ) from 6.4.1 to 7.0.0.
- [Release notes](https://github.com/avajs/ava/releases )
- [Commits](https://github.com/avajs/ava/compare/v6.4.1...v7.0.0 )
---
updated-dependencies:
- dependency-name: ava
dependency-version: 7.0.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-11 17:53:48 +00:00
dependabot[bot]
de2997a8c8
Bump the npm-minor group with 2 updates
...
Bumps the npm-minor group with 2 updates: [globals](https://github.com/sindresorhus/globals ) and [sinon](https://github.com/sinonjs/sinon ).
Updates `globals` from 17.3.0 to 17.4.0
- [Release notes](https://github.com/sindresorhus/globals/releases )
- [Commits](https://github.com/sindresorhus/globals/compare/v17.3.0...v17.4.0 )
Updates `sinon` from 21.0.1 to 21.0.2
- [Release notes](https://github.com/sinonjs/sinon/releases )
- [Changelog](https://github.com/sinonjs/sinon/blob/main/docs/changelog.md )
- [Commits](https://github.com/sinonjs/sinon/compare/v21.0.1...v21.0.2 )
---
updated-dependencies:
- dependency-name: globals
dependency-version: 17.4.0
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: sinon
dependency-version: 21.0.2
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-11 17:53:18 +00:00
Henry Mercer
117bf916af
Sort OS list and versions consistently
2026-03-11 17:11:07 +00:00
Henry Mercer
30ecc82e64
PR checks: Replace inline arrays
...
Lists are easier to modify
2026-03-11 17:11:07 +00:00
Henry Mercer
4174779474
PR checks: Only run Go macOS tests on latest CodeQL versions
2026-03-11 17:10:56 +00:00
Henry Mercer
2bc06587aa
PR checks: Add support for per-OS CodeQL version
2026-03-11 17:10:45 +00:00
Michael B. Gale
6c99ca514e
Merge remote-tracking branch 'origin/main' into mbg/private-registry/oidc
2026-03-11 16:15:07 +00:00
Michael B. Gale
1a97b0f94e
Merge pull request #3541 from github/mbg/pr-checks/validation-jobs
...
Add support for validation jobs to `sync.ts`, and refactor
2026-03-11 14:43:46 +00:00
Michael B. Gale
d1a7580bd3
Verify PR checks in a different job, with newer Node
2026-03-11 12:29:36 +00:00
Michael B. Gale
89f63211ed
Use version in error message
2026-03-11 12:18:41 +00:00
Michael B. Gale
6570ad3440
Extend base tsconfig.json
2026-03-11 12:16:28 +00:00
Michael B. Gale
be7fe2bca6
Make it more explicit by construction that known inputs always have the same specifications
2026-03-11 12:14:41 +00:00
Michael B. Gale
2e1f08fe70
Remove installPython condition in sync.ts
...
The behaviour of `installPython` now mirrors other `install*` options
2026-03-11 11:55:59 +00:00
Michael B. Gale
b9b42bed94
Remove last use of installPython
...
- Add explicit `setup-python` step with condition to the workflow that was still using it
- This allows simplifying the logic in `sync.ts`
2026-03-11 11:55:16 +00:00
Henry Mercer
997acaf7eb
Merge pull request #3562 from github/henrymercer/skip-file-coverage-rollout
...
Prepare for rolling out skipping computing file coverage information on PRs
2026-03-11 11:33:21 +00:00
Henry Mercer
2e7e91fd63
Merge pull request #3550 from github/sam-robson/overlay-per-lang-min-bundle-version
...
feat: add minimumVersion values for language overlay flags
2026-03-11 10:28:14 +00:00
Henry Mercer
5cb13d6ab8
Merge pull request #3564 from github/henrymercer/fix-database-upload-retries
...
Fix retries when uploading databases
2026-03-10 16:56:27 +00:00
Henry Mercer
a63886bff5
Refactor: Extract separate function for uploadBundledDatabase
2026-03-10 16:36:02 +00:00
Henry Mercer
a11c6cbbc8
Merge branch 'main' into henrymercer/skip-file-coverage-rollout
2026-03-10 16:25:21 +00:00
Michael B. Gale
048d0ea295
Address review comments
2026-03-10 15:54:58 +00:00
Henry Mercer
cf972cde0e
Update database upload tests to use checkExpectedLogMessages
2026-03-10 15:52:14 +00:00
Henry Mercer
ee5ede79f7
Address review comments
2026-03-10 15:51:28 +00:00
Henry Mercer
e07c3055d7
Tweak changelog formatting
2026-03-10 15:43:28 +00:00
Henry Mercer
55a0f2b2aa
Add environment variable override
2026-03-10 15:41:40 +00:00
Michael B. Gale
c92efdb98d
Type result of parsing JSON as unknown until narrowed
2026-03-10 15:31:21 +00:00
Michael B. Gale
c6e75ac1e8
Add JSON helper types and functions
2026-03-10 15:31:21 +00:00
Sam Robson
79ea59d97e
Merge branch 'main' into sam-robson/overlay-per-lang-min-bundle-version
2026-03-10 14:13:22 +00:00
Michael B. Gale
823869da10
Use isDefined for password and token in credentialToStr
2026-03-10 13:30:52 +00:00
Michael B. Gale
131392e95f
Fix changelog entry
2026-03-10 13:23:16 +00:00
Henry Mercer
bef08edf32
Update to log deprecation warning
...
Move rollout to April
2026-03-10 13:14:00 +00:00
Henry Mercer
edfcb0a509
Update tests
2026-03-10 12:49:58 +00:00
Henry Mercer
ca969a91db
Add changelog note
2026-03-10 12:34:47 +00:00
Henry Mercer
13c548978d
Fix retries when uploading databases
2026-03-10 12:34:18 +00:00
Michael B. Gale
87c3b7b6a1
Merge pull request #3519 from github/mbg/csra/upload-failed-sarif-artifact
...
Upload failed SARIF for risk assessments in `init-post` step
2026-03-10 11:53:12 +00:00
Henry Mercer
ce321daddb
Merge branch 'main' into henrymercer/skip-file-coverage-rollout
2026-03-10 11:46:08 +00:00
Henry Mercer
55ae11793a
Reduce duplication of getFileCoverageInformationEnabled
2026-03-10 11:42:53 +00:00
Henry Mercer
3d2bdbbd3b
Simplify default repo properties
2026-03-10 11:33:00 +00:00
Michael B. Gale
e90d128a3c
Add preliminary change note
2026-03-10 02:14:53 +00:00
Michael B. Gale
88bd340eb0
Add OIDC tests for getCredentials
2026-03-10 02:14:52 +00:00
Michael B. Gale
4649e158bc
Fix old test
2026-03-10 02:14:52 +00:00
Michael B. Gale
3d574205fc
Run more start-proxy tests in parallel
2026-03-10 02:14:52 +00:00
Michael B. Gale
e168f8e52a
Move credentialToStr and update it
2026-03-10 02:14:52 +00:00
Michael B. Gale
7263be2084
Extract AuthConfig from Credential
2026-03-10 01:26:15 +00:00
Michael B. Gale
37eb89b173
Add predicates for Auth types
2026-03-10 01:26:15 +00:00
Michael B. Gale
9e26f9e6e0
Add OIDC config types
2026-03-10 01:26:15 +00:00
Michael B. Gale
01b52624a0
Move out auth config from Credential type
2026-03-10 01:26:15 +00:00
Sam Robson
8bddab0644
Merge branch 'main' into sam-robson/overlay-per-lang-min-bundle-version
2026-03-09 20:23:29 +00:00
Michael B. Gale
65f7f36302
Extend isPrintable check to all keys with string values
2026-03-09 19:06:06 +00:00
Michael B. Gale
746f940d10
Merge remote-tracking branch 'origin/main' into mbg/csra/upload-failed-sarif-artifact
2026-03-09 18:32:36 +00:00
Michael B. Gale
babab88e54
Merge pull request #3561 from github/henrymercer/eslint-unused-vars
...
Linting: Require unused function parameters to start with `_`
2026-03-09 18:00:46 +00:00
Michael B. Gale
0ad7d7be2f
Merge pull request #3560 from github/henrymercer/ghes-3.13-cleanup
...
Clean up pre GHES 3.14 code paths
2026-03-09 18:00:31 +00:00
Michael B. Gale
8ba8180559
Merge remote-tracking branch 'origin/main' into mbg/pr-checks/validation-jobs
2026-03-09 17:58:41 +00:00
Henry Mercer
3592fe5d7a
Address review comments
2026-03-09 17:32:57 +00:00
Henry Mercer
3c97288d80
Merge pull request #3559 from github/henrymercer/ghes-repository-properties
...
Load custom repository properties on GHES and remove feature flag
2026-03-09 17:26:59 +00:00
Henry Mercer
6773afd159
Add changelog note
2026-03-09 17:14:12 +00:00
Henry Mercer
a3fdd0e0b5
Add telemetry diagnostic to track whether repo property is used
2026-03-09 17:13:41 +00:00
Henry Mercer
9e8c05933f
Add ability to override via repository property
2026-03-09 17:08:13 +00:00
Henry Mercer
c102a6d8cd
Require tools feature flag
...
And now that we have this, drop the restriction to `github` org.
2026-03-09 17:07:10 +00:00
Sam Robson
867f2b0e0a
test: verify overlay analysis is disabled for languages without per-language feature flags
2026-03-09 16:46:38 +00:00
Sam Robson
e04697664c
feat: add minimumVersion values for existing language-specific overlay feature flags
2026-03-09 16:45:20 +00:00
Henry Mercer
fdecf48e22
Linting: Require unused function parameters to start with _
2026-03-09 16:43:17 +00:00
Henry Mercer
ab180c9eeb
Clean up pre GHES 3.14 code paths
2026-03-09 16:35:29 +00:00
Henry Mercer
1b7fa1a121
Drop unused variable
2026-03-09 16:30:34 +00:00
Henry Mercer
b0642f9e86
Remove unused imports
2026-03-09 16:25:20 +00:00
Henry Mercer
a770e76359
Add changelog note
2026-03-09 16:20:52 +00:00
Henry Mercer
8924dfb7d0
Remove GHES feature gate
...
All supported versions of GHES support the repository properties API.
2026-03-09 16:19:32 +00:00
Henry Mercer
b35c0d37b1
Clean up repository properties feature flag
2026-03-09 16:15:04 +00:00
Michael B. Gale
b39251fe78
Merge pull request #3557 from github/mbg/repo-props/multi-select
...
Fix handling of non-`string` values from repository properties API
2026-03-09 14:48:17 +00:00
Michael B. Gale
f054eea342
Merge pull request #3549 from github/mbg/pr-checks/remove-python-setup
...
Remove `installPython` from checks which should no longer need it
2026-03-09 14:48:05 +00:00
Michael B. Gale
6f90eb695f
Add changelog entry
2026-03-09 14:24:29 +00:00
Michael B. Gale
149fd14ac7
Add unknown property with string[] value
2026-03-09 13:12:37 +00:00
Michael B. Gale
5311ed41ea
Include type in error message
2026-03-09 13:09:34 +00:00
Michael B. Gale
58314dce95
Export types that weren't already
2026-03-09 13:03:47 +00:00
Michael B. Gale
58991590bd
Validate value types returned by API against expectations
2026-03-09 12:46:24 +00:00
Michael B. Gale
9c75a5f60c
Only validate property value type if we care about the property
2026-03-09 12:13:48 +00:00
Michael B. Gale
8e70ae21a1
Update GitHubRepositoryProperty to match schema
2026-03-09 12:03:34 +00:00
Sam Robson
9082319f5c
Merge branch 'main' into kaspersv/move-diff-range-absolute-path-conversion
2026-03-06 15:03:13 +00:00
Sam Robson
cdafc35ccb
refactor: pass checkoutPath as param to writeDiffRangeDataExtensionPack
2026-03-06 10:12:08 +00:00
Óscar San José
d1a65275e8
Merge pull request #3552 from github/mergeback/v4.32.6-to-main-0d579ffd
...
Mergeback v4.32.6 refs/heads/releases/v4 into main
2026-03-06 10:03:43 +00:00
Sam Robson
c10020e6a8
Merge remote-tracking branch 'origin/main' into kaspersv/move-diff-range-absolute-path-conversion
...
* origin/main: (32 commits)
Add changelog note
Update default bundle to codeql-bundle-v2.24.3
Bump tar from 7.5.7 to 7.5.10
Rebuild
Rebuild
Bump actions/upload-artifact from 6 to 7 in /.github/workflows
Bump actions/download-artifact from 7 to 8 in /.github/workflows
Bump the npm-minor group with 2 updates
Fix some tests that should be serial
Update method naming and JSDoc
Rename to `EnabledOverlayConfig`
Address review comments
Use `Result`s for enablement return types
Add disabled by env var disablement reason
Rename to `usesDefaultQueriesOnly`
Update `NonDefaultQueries` documentation
Refactor `getOverlayDatabaseMode` and add new disablement reason
Address review comments
Add JSDoc
Sort `OverlayDisabledReason` enum
...
2026-03-06 09:10:13 +00:00
github-actions[bot]
0ccdcb8c0a
Rebuild
2026-03-05 19:44:36 +00:00
github-actions[bot]
05a48207b3
Update changelog and version after v4.32.6
2026-03-05 19:33:19 +00:00
Óscar San José
0d579ffd05
Merge pull request #3551 from github/update-v4.32.6-72d2d850d
...
Merge main into releases/v4
2026-03-05 20:29:07 +01:00
github-actions[bot]
d4c6be7cf1
Update changelog for v4.32.6
2026-03-05 18:58:14 +00:00
Sam Robson
b2de4934cf
refactor: pass checkoutPath as param and fix docs for relative path semantics
2026-03-05 18:09:06 +00:00
Michael B. Gale
0da2e79318
Remove installPython from checks which should no longer need it
2026-03-05 16:17:19 +00:00
Óscar San José
72d2d850d1
Merge pull request #3548 from github/update-bundle/codeql-bundle-v2.24.3
...
Update default bundle to 2.24.3
2026-03-05 16:02:55 +00:00
Michael B. Gale
23f983ce00
Merge pull request #3544 from github/dependabot/github_actions/dot-github/workflows/actions/download-artifact-8
...
Bump actions/download-artifact from 7 to 8 in /.github/workflows
2026-03-05 15:54:50 +00:00
Michael B. Gale
832e97ccad
Merge pull request #3545 from github/dependabot/github_actions/dot-github/workflows/actions/upload-artifact-7
...
Bump actions/upload-artifact from 6 to 7 in /.github/workflows
2026-03-05 15:52:06 +00:00
Michael B. Gale
5ef38c0b13
Merge pull request #3546 from github/dependabot/npm_and_yarn/tar-7.5.10
...
Bump tar from 7.5.7 to 7.5.10
2026-03-05 15:48:25 +00:00
github-actions[bot]
80c9cda739
Add changelog note
2026-03-05 15:34:29 +00:00
github-actions[bot]
f2669dd916
Update default bundle to codeql-bundle-v2.24.3
2026-03-05 15:34:19 +00:00
Michael B. Gale
bd03c44cf4
Merge branch 'main' into dependabot/github_actions/dot-github/workflows/actions/download-artifact-8
2026-03-05 15:32:00 +00:00
dependabot[bot]
102d7627b6
Bump tar from 7.5.7 to 7.5.10
...
Bumps [tar](https://github.com/isaacs/node-tar ) from 7.5.7 to 7.5.10.
- [Release notes](https://github.com/isaacs/node-tar/releases )
- [Changelog](https://github.com/isaacs/node-tar/blob/main/CHANGELOG.md )
- [Commits](https://github.com/isaacs/node-tar/compare/v7.5.7...v7.5.10 )
---
updated-dependencies:
- dependency-name: tar
dependency-version: 7.5.10
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-05 14:47:50 +00:00
Henry Mercer
0c0c5dc2f1
Merge pull request #3543 from github/dependabot/npm_and_yarn/npm-minor-af60a9b329
...
Bump the npm-minor group with 2 updates
2026-03-05 13:40:16 +00:00
github-actions[bot]
e96635d9ff
Rebuild
2026-03-05 13:19:38 +00:00
github-actions[bot]
77f9a86c60
Rebuild
2026-03-05 13:19:28 +00:00
github-actions[bot]
e681b9fb11
Merge remote-tracking branch 'origin/main' into dependabot/github_actions/dot-github/workflows/actions/upload-artifact-7
2026-03-05 13:18:44 +00:00
github-actions[bot]
bc4b00aadc
Merge remote-tracking branch 'origin/main' into dependabot/npm_and_yarn/npm-minor-af60a9b329
2026-03-05 13:18:38 +00:00
Henry Mercer
05b6a6cfaa
Merge pull request #3538 from github/henrymercer/breakdown-overlay-disabled-reason
...
Break down overlay disabled reason
2026-03-05 13:13:13 +00:00
Sam Robson
1443f5865e
chore: merge main into kaspersv/move-diff-range-absolute-path-conversion
2026-03-05 11:38:11 +00:00
dependabot[bot]
31d26f2397
Bump actions/upload-artifact from 6 to 7 in /.github/workflows
...
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact ) from 6 to 7.
- [Release notes](https://github.com/actions/upload-artifact/releases )
- [Commits](https://github.com/actions/upload-artifact/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/upload-artifact
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-04 18:01:17 +00:00
dependabot[bot]
4d433615e7
Bump actions/download-artifact from 7 to 8 in /.github/workflows
...
Bumps [actions/download-artifact](https://github.com/actions/download-artifact ) from 7 to 8.
- [Release notes](https://github.com/actions/download-artifact/releases )
- [Commits](https://github.com/actions/download-artifact/compare/v7...v8 )
---
updated-dependencies:
- dependency-name: actions/download-artifact
dependency-version: '8'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-04 18:00:15 +00:00
dependabot[bot]
545356f200
Bump the npm-minor group with 2 updates
...
Bumps the npm-minor group with 2 updates: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-plugin-jsdoc ) and [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint ).
Updates `eslint-plugin-jsdoc` from 62.6.0 to 62.7.1
- [Release notes](https://github.com/gajus/eslint-plugin-jsdoc/releases )
- [Commits](https://github.com/gajus/eslint-plugin-jsdoc/compare/v62.6.0...v62.7.1 )
Updates `typescript-eslint` from 8.56.0 to 8.56.1
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases )
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md )
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.56.1/packages/typescript-eslint )
---
updated-dependencies:
- dependency-name: eslint-plugin-jsdoc
dependency-version: 62.7.1
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: npm-minor
- dependency-name: typescript-eslint
dependency-version: 8.56.1
dependency-type: direct:development
update-type: version-update:semver-patch
dependency-group: npm-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-04 17:53:15 +00:00
Henry Mercer
6d1c37ed8f
Fix some tests that should be serial
2026-03-04 18:02:17 +01:00
Henry Mercer
759b5db350
Merge branch 'main' into henrymercer/breakdown-overlay-disabled-reason
...
# Conflicts:
# src/config-utils.test.ts
2026-03-04 17:54:35 +01:00
Henry Mercer
60a0e2bf96
Update method naming and JSDoc
2026-03-04 17:50:30 +01:00
Henry Mercer
7449e3294d
Rename to EnabledOverlayConfig
2026-03-04 17:38:56 +01:00
Henry Mercer
4cd47adfe1
Address review comments
2026-03-04 17:38:24 +01:00
Henry Mercer
5fa8dad095
Use Results for enablement return types
2026-03-04 17:36:42 +01:00
Henry Mercer
6a77217a46
Add disabled by env var disablement reason
2026-03-04 17:27:44 +01:00
Henry Mercer
be20394012
Rename to usesDefaultQueriesOnly
2026-03-04 13:56:56 +01:00
Henry Mercer
d1c255c293
Update NonDefaultQueries documentation
2026-03-04 13:55:29 +01:00
Henry Mercer
b371ccd8ea
Refactor getOverlayDatabaseMode and add new disablement reason
2026-03-04 13:53:12 +01:00
Henry Mercer
776fd85f8c
Address review comments
2026-03-03 18:48:23 +01:00
Henry Mercer
f654d61146
Add JSDoc
2026-03-03 17:24:47 +01:00
Henry Mercer
eddf33655d
Sort OverlayDisabledReason enum
2026-03-03 17:22:36 +01:00
Henry Mercer
9f77ff18bb
Make "insufficient resources" reason more specific
2026-03-03 17:21:59 +01:00
Henry Mercer
0158d05946
Make "feature not enabled" reason more specific
2026-03-03 17:17:07 +01:00
Michael B. Gale
f3663cdc32
Fix typos in comments
2026-02-28 15:18:25 +00:00
Michael B. Gale
e995ba3522
Add more tests/assertions
2026-02-27 12:52:54 +00:00
Michael B. Gale
1e7e52a330
Add tests where upload should get skipped
2026-02-27 12:40:04 +00:00
Michael B. Gale
383b86ddcb
Refactor some test setup code into mockRiskAssessmentEnv
2026-02-27 12:27:32 +00:00
Michael B. Gale
ca32b84657
Ensure correct failed SARIF file names for CSRA
2026-02-26 19:56:07 +00:00
Michael B. Gale
ce97dfe405
Sanitise artifact name
2026-02-26 19:47:55 +00:00
Michael B. Gale
003044eb84
Add test
2026-02-26 19:18:32 +00:00
Michael B. Gale
5b9d1f4fdf
Simplify prepareFailedSarif for risk assessments
2026-02-26 19:18:29 +00:00
Michael B. Gale
f265dd9392
Separate generateFailedSarif out of prepareFailedSarif
2026-02-26 18:44:50 +00:00
Michael B. Gale
44b66a8064
Upload failed SARIF as artifact for risk assessments
2026-02-26 18:40:00 +00:00
Michael B. Gale
60ca40ecd4
Refactor prepareFailedSarif out of maybeUploadFailedSarif
2026-02-26 18:07:00 +00:00
Michael B. Gale
56d1ccc87a
Change skipped reason message
2026-02-26 17:51:06 +00:00
Michael B. Gale
e9ce32d807
Change order of checks in tryUploadSarifIfRunFailed
2026-02-26 17:51:06 +00:00
Michael B. Gale
0f3e632580
Rename secondary run to uploadFailureInfo
2026-02-26 17:47:32 +00:00
Kasper Svendsen
4eb247591f
Move conversion of PR diff-range paths to absolute paths
2025-11-12 08:10:40 +01:00
Kasper Svendsen
df4e1992c0
Add unit test for diffRangeExtensionPackContents
2025-11-12 08:10:40 +01:00
Kasper Svendsen
d18f3acf74
Move diff-range extension pack generation into testable function
2025-11-12 08:10:39 +01:00
Kasper Svendsen
035c1179af
upload-lib: Unit test filterAlertsByDiffRange
2025-11-12 08:10:39 +01:00