Skip to content

chore(deps): update github/codeql-action action to v4.37.7 - #379

Merged
renovate[bot] merged 1 commit into
mainfrom
renovate/github-codeql-action-4.37.x
Aug 13, 2026
Merged

chore(deps): update github/codeql-action action to v4.37.7#379
renovate[bot] merged 1 commit into
mainfrom
renovate/github-codeql-action-4.37.x

Conversation

@renovate

@renovate renovate Bot commented Aug 13, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
github/codeql-action action patch v4.37.6v4.37.7

Release Notes

github/codeql-action (github/codeql-action)

v4.37.7

Compare Source


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Copilot AI lite review requested due to automatic review settings August 13, 2026 16:57
@renovate
renovate Bot requested a review from felixcicatt as a code owner August 13, 2026 16:57
@renovate
renovate Bot enabled auto-merge August 13, 2026 16:57

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Note

Copilot could not run the full agentic suite for this review because it was automatically requested on a bot-authored pull request. Request a review from Copilot under Reviewers to retry with the full agentic suite. Improved support for bot-authored pull requests is coming soon.

Updates GitHub CodeQL Action pins used in security/code-scanning workflows to the next patch release to keep the CI security tooling up to date.

Changes:

  • Bump github/codeql-action/* from v4.37.6 to v4.37.7 (pinned by commit SHA) in Trivy SARIF upload workflow
  • Bump github/codeql-action/upload-sarif from v4.37.6 to v4.37.7 in Snyk SARIF upload workflow
  • Bump github/codeql-action/init and github/codeql-action/analyze from v4.37.6 to v4.37.7 in CodeQL analysis workflow

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

File Description
.github/workflows/trivy-code-scanning.yml Updates the pinned upload-sarif action used to publish Trivy results.
.github/workflows/snyk-code-scanning.yml Updates the pinned upload-sarif action used to publish Snyk results.
.github/workflows/codeql-analysis.yml Updates the pinned CodeQL init and analyze actions to the new patch release.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@codecov

codecov Bot commented Aug 13, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 57.09%. Comparing base (b886c91) to head (354cb54).

Additional details and impacted files
@@            Coverage Diff            @@
##               main     #379   +/-   ##
=========================================
  Coverage     57.09%   57.09%           
  Complexity      346      346           
=========================================
  Files            33       33           
  Lines          2433     2433           
  Branches        403      403           
=========================================
  Hits           1389     1389           
  Misses          839      839           
  Partials        205      205           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@renovate
renovate Bot added this pull request to the merge queue Aug 13, 2026
Merged via the queue into main with commit 802dbd1 Aug 13, 2026
17 checks passed
@renovate
renovate Bot deleted the renovate/github-codeql-action-4.37.x branch August 13, 2026 17:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant