Skip to content

Commit 2755e9c

Browse files
hyperpolymathclaude
andcommitted
fix(ci): repoint codeql-action at a SHA that exists
github/codeql-action@29b1f65 is pinned here but exists in no repository -- the GitHub API returns 422 for it. CodeQL therefore could not start: the run graph fails to build and the job reports startup_failure, so this repository has had no CodeQL scanning at all. Repointed at 4187e74d05793876e9989daffde9c3e66b4acd07, which is what the v3 tag currently resolves to (v3.37.3), verified against the API. Found while auditing the estate: the same non-existent SHA is pinned in over 100 repositories, so CodeQL is dead across nearly all of them. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Signed-off-by: Jonathan D.A. Jewell <6759885+hyperpolymath@users.noreply.github.com>
1 parent 92dc25a commit 2755e9c

1 file changed

Lines changed: 3 additions & 3 deletions

File tree

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -33,13 +33,13 @@ jobs:
3333
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4
3434

3535
- name: Initialize CodeQL
36-
uses: github/codeql-action/init@29b1f65c1f735799893313399435a59f54045865 # v3
36+
uses: github/codeql-action/init@4187e74d05793876e9989daffde9c3e66b4acd07 # v3
3737
with:
3838
languages: ${{ matrix.language }}
3939
build-mode: ${{ matrix.build-mode }}
4040

4141
- name: Autobuild
42-
uses: github/codeql-action/autobuild@29b1f65c1f735799893313399435a59f54045865 # v3
42+
uses: github/codeql-action/autobuild@4187e74d05793876e9989daffde9c3e66b4acd07 # v3
4343

4444
- name: Perform CodeQL Analysis
45-
uses: github/codeql-action/analyze@29b1f65c1f735799893313399435a59f54045865 # v3
45+
uses: github/codeql-action/analyze@4187e74d05793876e9989daffde9c3e66b4acd07 # v3

0 commit comments

Comments
 (0)