chore(deps): update github/codeql-action digest to 6bc82e0#1351
chore(deps): update github/codeql-action digest to 6bc82e0#1351ZohebShaikh merged 1 commit intomainfrom
Conversation
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #1351 +/- ##
=======================================
Coverage 95.03% 95.03%
=======================================
Files 43 43
Lines 2782 2782
=======================================
Hits 2644 2644
Misses 138 138 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
0df3e75 to
3f05c49
Compare
3f05c49 to
05b6902
Compare
|
Does the codeql action provide any value ? |
99624e0 to
234a6ae
Compare
|
It doesn't look like it has ever failed. What is it supposed to catch? |
ae8feb9 to
f5986cd
Compare
|
I had another look at this, It does give some value for security we have disabled dependabot so it is not giving us PRs. Are there any plans to purchase the mend sca similar to what dependabot used to do or to re-enable dependabot ? And CodeQL is very sophisticated tool which can be used to have our custom policy for example secret should be saved in SecretStr etc. But we have not written any CodeQL queries so it has never failed. |
f5986cd to
8a7da0c
Compare
8a7da0c to
fdeef6b
Compare
fdeef6b to
c4b38c2
Compare
This PR contains the following updates:
cdefb33→6bc82e0Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.