Skip to content

Update github actions (main) (patch)#226

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/main-patch-github-actions
Open

Update github actions (main) (patch)#226
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/main-patch-github-actions

Conversation

@renovate

@renovate renovate Bot commented Mar 3, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
actions/checkout action patch v6.0.2v6.0.3
github/codeql-action action patch v4.32.4v4.32.6
step-security/harden-runner action patch v2.19.3v2.19.4

Release Notes

actions/checkout (actions/checkout)

v6.0.3

Compare Source

github/codeql-action (github/codeql-action)

v4.32.6

Compare Source

v4.32.5

Compare Source

  • Repositories owned by an organization can now set up the github-codeql-disable-overlay custom repository property to disable improved incremental analysis for CodeQL. First, create a custom repository property with the name github-codeql-disable-overlay and the type "True/false" in the organization's settings. Then in the repository's settings, set this property to true to disable improved incremental analysis. For more information, see Managing custom properties for repositories in your organization. This feature is not yet available on GitHub Enterprise Server. #​3507
  • Added an experimental change so that when improved incremental analysis fails on a runner — potentially due to insufficient disk space — the failure is recorded in the Actions cache so that subsequent runs will automatically skip improved incremental analysis until something changes (e.g. a larger runner is provisioned or a new CodeQL version is released). We expect to roll this change out to everyone in March. #​3487
  • The minimum memory check for improved incremental analysis is now skipped for CodeQL 2.24.3 and later, which has reduced peak RAM usage. #​3515
  • Reduced log levels for best-effort private package registry connection check failures to reduce noise from workflow annotations. #​3516
  • Added an experimental change which lowers the minimum disk space requirement for improved incremental analysis, enabling it to run on standard GitHub Actions runners. We expect to roll this change out to everyone in March. #​3498
  • Added an experimental change which allows the start-proxy action to resolve the CodeQL CLI version from feature flags instead of using the linked CLI bundle version. We expect to roll this change out to everyone in March. #​3512
  • The previously experimental changes from versions 4.32.3, 4.32.4, 3.32.3 and 3.32.4 are now enabled by default. #​3503, #​3504
step-security/harden-runner (step-security/harden-runner)

v2.19.4

Compare Source

What's Changed
  • Improvements for HTTPS Monitoring for the Enterprise tier of Harden Runner

Full Changelog: step-security/harden-runner@v2.19.3...v2.19.4


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • Between 12:00 AM and 03:59 AM (* 0-3 * * *)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot enabled auto-merge (squash) March 3, 2026 01:38
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch 2 times, most recently from 7f21173 to c0af43a Compare March 5, 2026 22:01
@renovate renovate Bot changed the title Update github/codeql-action action to v4.32.5 (main) Update github actions (main) (patch) Mar 5, 2026
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch 2 times, most recently from 7ab5904 to 369ce47 Compare May 13, 2026 21:00
@renovate renovate Bot changed the title Update github actions (main) (patch) Update github/codeql-action action to v4.32.6 (main) May 19, 2026
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch 10 times, most recently from 80f908d to 6ad65c3 Compare May 21, 2026 14:26
@codecov

codecov Bot commented May 21, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.

Flag Coverage Δ
unit-tests 53.35% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch from 6ad65c3 to 950a120 Compare May 21, 2026 18:26
@renovate renovate Bot changed the title Update github/codeql-action action to v4.32.6 (main) Update github actions (main) (patch) May 21, 2026
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch 2 times, most recently from 5fcf875 to f200f2e Compare June 2, 2026 18:42
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch from f200f2e to d12a8a4 Compare June 7, 2026 04:44
@renovate renovate Bot force-pushed the renovate/main-patch-github-actions branch from d12a8a4 to fd189b9 Compare June 11, 2026 16:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants