Skip to content

chore(deps-dev): bump the tooling group with 7 updates #10

chore(deps-dev): bump the tooling group with 7 updates

chore(deps-dev): bump the tooling group with 7 updates #10

Triggered via pull request May 10, 2026 11:40
Status Success
Total duration 1m 6s
Artifacts 1

security.yml

on: pull_request
Dependency review
15s
Dependency review
npm audit
31s
npm audit
Secret scan
7s
Secret scan
Matrix: CodeQL
Fit to window
Zoom out
Zoom in

Annotations

8 warnings
Secret scan
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, gitleaks/gitleaks-action@v2. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Dependency review
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/dependency-review-action@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
OpenSSF Scorecard Warning
npm/jsesc has an OpenSSF Scorecard of 2.1, which is less than this repository's threshold of 3.
OpenSSF Scorecard Warning
npm/gensync has an OpenSSF Scorecard of 2.1, which is less than this repository's threshold of 3.
npm audit
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/setup-node@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
CodeQL (javascript-typescript)
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, github/codeql-action/analyze@v3, github/codeql-action/init@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
CodeQL (javascript-typescript)
Starting April 2026, the CodeQL Action will skip computing file coverage information on pull requests to improve analysis performance. File coverage information will still be computed on non-PR analyses. To opt out of this change, set the `CODEQL_ACTION_FILE_COVERAGE_ON_PRS` environment variable to `true`.
CodeQL (javascript-typescript)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/

Artifacts

Produced during runtime
Name Size Digest
gitleaks-results.sarif
6.69 KB
sha256:f1f5f42858a520409585162d430e1c32e15e14b39aacdee0d0a80b778562f638