- 
                Notifications
    You must be signed in to change notification settings 
- Fork 409
Merge releases/v4 into releases/v3 #3216
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
Mergeback v4.30.8 refs/heads/releases/v4 into main
Skip failed SARIF upload if Code Quality is the only analysis kind
Install Python 3.13 to fix failing PR checks with older CLI versions
…uring the first call
Add `setup-codeql` action
| Pushed a commit to rebuild the Action. Please mark the PR as ready for review to trigger PR checks. | 
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Pull Request Overview
This is a release PR that merges changes from releases/v4 into releases/v3, containing updates and enhancements across multiple areas. The PR updates the default CodeQL bundle version to 2.23.3 and introduces an experimental setup-codeql action.
Key changes:
- Update default CodeQL bundle version from 2.23.2 to 2.23.3
- Add experimental setup-codeqlaction that installs CodeQL CLI without initializing databases
- Refactor analysis kinds handling to improve code organization and add validation for setup-codeql usage
Reviewed Changes
Copilot reviewed 49 out of 51 changed files in this pull request and generated no comments.
Show a summary per file
| File | Description | 
|---|---|
| src/defaults.json | Updates CodeQL bundle and CLI versions to 2.23.3 | 
| src/setup-codeql-action.ts | New experimental action for installing CodeQL CLI only | 
| setup-codeql/action.yml | Action definition for the new setup-codeql action | 
| src/analyses.ts | Refactors analysis kinds parsing with caching and setup-codeql validation | 
| src/init-action.ts | Updates to use refactored analysis kinds handling and prevent concurrent setup-codeql usage | 
| src/environment.ts | Adds environment variable for tracking setup-codeql execution | 
| src/status-report.ts | Adds SetupCodeQL action name and tools download fields interface | 
| src/config-utils.ts | Removes analysis kinds input parameters from config initialization | 
| src/init-action-post-helper.ts | Adds code scanning enablement check for failed SARIF uploads | 
| pr-checks/sync.py | Adds Python installation support to PR check workflows | 
| pr-checks/checks/*.yml | Updates various check configurations to install Python | 
| package.json | Version bump to 3.30.9 | 
| lib/*.js | Generated JavaScript files reflecting all source changes | 
| CHANGELOG.md | Documents the new version changes | 
| README.md | Adds documentation for the new setup-codeql action | 
Merging 16140ae into
releases/v3.Conductor for this PR is @henrymercer.
Contains the following pull requests:
setup-codeqlaction #3204 (@mbg)startingstatus report #3211 (@mbg)Please do the following:
releases/v3branch.Create a merge commitis selected rather thanSquash and mergeorRebase and merge.