Skip to content

fix: allow Dependabot action bumps through workflow tests#48

Merged
FanaticPythoner merged 1 commit into
masterfrom
fix/issue-47-fix-dependabot-blockers
May 30, 2026
Merged

fix: allow Dependabot action bumps through workflow tests#48
FanaticPythoner merged 1 commit into
masterfrom
fix/issue-47-fix-dependabot-blockers

Conversation

@FanaticPythoner

Copy link
Copy Markdown
Owner

Replace stale security-action SHA literals with a shared workflow contract
that preserves full-SHA pinning and CodeQL revision pairing.

Add regression vectors for the dependency-review and CodeQL action bumps
that failed the CI test harness.

Fixes #47

Replace stale security-action SHA literals with a shared workflow contract
that preserves full-SHA pinning and CodeQL revision pairing.

Add regression vectors for the dependency-review and CodeQL action bumps
that failed the CI test harness.

Fixes #47
@FanaticPythoner FanaticPythoner merged commit 4022546 into master May 30, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Fix Dependabot blockers

1 participant