chore(deps): bump github/codeql-action from 3 to 4#33
Conversation
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3 to 4. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@v3...v4) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
276056e to
6c8d70a
Compare
Consolidates the 8 open Dependabot PRs into this branch so there is one PR to review/merge and the whole set is tested together (rather than 8 stale, separately-resolved CI runs). Dependencies (pyproject.toml): - pydantic >=2.8 -> >=2.13.3 (#32) - orjson >=3.9.0 -> >=3.11.8 (#34) - cryptography >=42.0.0 -> >=46.0.7 (#36) - numpy >=1.24.0 -> >=2.2.6 (#37) GitHub Actions (.github/workflows): - actions/checkout 4 -> 7 (#42) - actions/setup-python 5 -> 6 (#30) - codecov/codecov-action 4 -> 7 (#41) - github/codeql-action 3 -> 4 (#33) Verified locally with the bumped set installed: dependency resolution succeeds (no resolution-too-deep), and the full suite passes 3380/3380. numpy 2.x is confirmed compatible (the suite was already running on numpy 2.4.3). The remaining pip-check conflicts are non-promptise packages in the local dev venv, absent from CI's clean install. Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
|
Folded into the consolidated v1.1.0 PR #43 (commit |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps github/codeql-action from 3 to 4.
Release notes
Sourced from github/codeql-action's releases.
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
43d8420Do not run Swift in debug artifacts after failure check76a687eMerge pull request #3804 from github/dependabot/npm_and_yarn/npm-minor-e84c60...751f3e2Bump eslint-plugin-jsdoc from 62.8.1 to 62.9.0 in the npm-minor group808513fUpdate language aliases teste452857Throw error early rather than warningb623f5fMerge pull request #3799 from github/mario-campos/test-multiple-registries