dependabot[bot]
|
56d3bb78be
|
GHA: bump actions/checkout from 4.2.2 to 5.0.0
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.2 to 5.0.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v4.2.2...08c6903cd8c0fde910a37f88322edcfb5dd907a8)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: 5.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
Closes #18556
|
2025-09-15 23:15:19 +02:00 |
|
Viktor Szakats
|
ac24e0a80e
|
GHA/codeql: tidy up config names
Before this patch there was a single C config detected, named `build:`.
Closes #18555
|
2025-09-15 15:49:08 +02:00 |
|
Viktor Szakats
|
c1be5459d9
|
GHA/codeql: analyse Windows Schannel WinIDN build
Follow-up to cc50f05370 #18528
Closes #18545
|
2025-09-14 14:55:30 +02:00 |
|
Viktor Szakats
|
83c457f9f3
|
GHA: document permissions as required by zizmor 1.13.0
Ref: https://github.com/zizmorcore/zizmor/pull/1131
Ref: https://docs.zizmor.sh/audits/#undocumented-permissions
Bug: https://github.com/curl/curl/pull/18539#issuecomment-3288151910
Closes #18541
|
2025-09-13 18:11:53 +02:00 |
|
Viktor Szakats
|
cc50f05370
|
GHA/codeql: re-enable for C with the default query pack
Earlier we used `security-extended` and tried `security-and-quality`.
Try the default to see how it works.
CodeQL no longer uses the project's Actions cache, also fixing
the previously seen repeat cache entry issue.
- switch to `manual` build. It's 3x faster than the default `autobuild`.
- enable more dependencies to increase coverage.
- docs/tests/CI.md: re-add CodeQL.
Ref: https://docs.github.com/en/code-security/code-scanning/managing-your-code-scanning-configuration/codeql-query-suites
Ref: https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages
Ref: #16263
Ref: 173805b2e7 #15798
Closes #18528
|
2025-09-12 11:03:44 +02:00 |
|
renovate[bot]
|
39c2d4b543
|
GHA: update github/codeql-action digest to 192325c
Closes #18516
|
2025-09-11 08:40:57 +02:00 |
|
renovate[bot]
|
82449d4d91
|
GHA: update github/codeql-action digest to d3678e2
Closes #18507
|
2025-09-09 23:47:41 +02:00 |
|
Viktor Szakats
|
c70f7b7a7c
|
GHA/codeql: scan GHA workflows and Python
Closes #18504
|
2025-09-09 21:51:09 +02:00 |
|