Skip to content

chore(deps): bump github/codeql-action from 4.37.8 to 4.37.9 - #876

Merged
leseb merged 3 commits into
praxis-proxy:mainfrom
aslakknutsen:chore/codeql-action-4.37.9
Sep 2, 2026
Merged

chore(deps): bump github/codeql-action from 4.37.8 to 4.37.9#876
leseb merged 3 commits into
praxis-proxy:mainfrom
aslakknutsen:chore/codeql-action-4.37.9

Conversation

@aslakknutsen

Copy link
Copy Markdown
Contributor

Summary

Cherry-picks the Dependabot commits from #865 and #867 onto one branch so init and analyze stay on the same CodeQL action version (4.37.9 / bundle 2.26.4).

Related issue

Closes #865
Closes #867

Validation

  • CodeQL workflow passes on this PR

Checklist

  • I reviewed every changed line and can explain the change.
  • New capabilities include an example config and functional example test. — N/A
  • User-facing behavior and generated documentation are updated. — N/A
  • Performance-sensitive changes include appropriate benchmark or load-test evidence. — N/A
  • Commits are signed and include a Signed-off-by trailer. (preserved from Dependabot cherry-picks)

Breaking changes

None.

dependabot Bot added 2 commits September 2, 2026 12:45
Bumps [github/codeql-action/analyze](https://github.com/github/codeql-action) from 4.37.8 to 4.37.9.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@db488dd...cdf488f)

---
updated-dependencies:
- dependency-name: github/codeql-action/analyze
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [github/codeql-action/init](https://github.com/github/codeql-action) from 4.37.8 to 4.37.9.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](github/codeql-action@db488dd...cdf488f)

---
updated-dependencies:
- dependency-name: github/codeql-action/init
  dependency-version: 4.37.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@aslakknutsen
aslakknutsen requested review from a team and leseb September 2, 2026 10:46
Bundle github/codeql-action/init and analyze bumps into one PR so both
sub-actions stay on the same release and CodeQL CI does not fail.

Signed-off-by: Aslak Knutsen <aslak@4fs.no>
@leseb
leseb added this pull request to the merge queue Sep 2, 2026
Merged via the queue into praxis-proxy:main with commit 5945ae0 Sep 2, 2026
20 checks passed
leseb added a commit to leseb/praxis-ai that referenced this pull request Sep 2, 2026
Bring the branch up to date with origin/main (codeql-action 4.37.8 -> 4.37.9, praxis-proxy#876). The incoming change touches only .github/ CI config and does not overlap the web_search changes on this branch, so the merge is clean.

Signed-off-by: Sébastien Han <seb@redhat.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants