Bump actions/checkout from 4 to 7 - #9
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
Bot
force-pushed
the
dependabot/github_actions/actions/checkout-7
branch
from
September 14, 2026 13:22
a23ce58 to
116db98
Compare
voidstackloop
added a commit
that referenced
this pull request
Sep 15, 2026
Large-scale improvement, back to a new check rather than performance - the last several rounds fixed history I/O; this one follows the same design as check #9/#10 (design -> implement -> mutation-verify -> fmt/clippy -> commit -> push -> confirm CI). check_input_type_mismatch reuses check_autofill_hints' exact mechanism (guess a field's semantic purpose from its label with a regex) but checks the type attribute instead of autocomplete. A field labeled like an email address or phone number left as type="text" (or untyped, which is the same thing) gets no native format validation, and - the real cost that makes this worth a mobile-usability-focused tool - the wrong virtual keyboard on a phone: a full alphabetic layout instead of an email-optimized or numeric-telephone one. Deliberately scoped to only email and phone: both have a well- supported dedicated input type AND an unambiguous label pattern. Something like a ZIP code was deliberately left out - type="number" would actively be the wrong fix there, since it strips a leading zero and adds spinner arrows nobody wants on a ZIP field. A heuristic guess from label wording, same as Autofill hints, so a mismatch is a Warn, not a Fail. New fixture (fixtures/input-type-mismatch-form.html) covers both true positives (email + phone guessed, left as text) and the two negative cases that matter: a field with the identical email-guess label wording but correctly wired as type="email" (no false positive on a form that got it right), and a field matching neither guess. Verified with a mutation test: widened the check's own field selector to also match already-correctly-typed type="email" fields, confirmed the new integration test failed exactly as predicted (the correctly- wired "Confirm email" field got flagged, breaking the false-positive assertion), then restored the fix. cargo fmt/clippy -D warnings clean, full suite green (159 tests). Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps actions/checkout from 4 to 7.
Release notes
Sourced from actions/checkout's releases.
... (truncated)
Changelog
Sourced from actions/checkout's changelog.
... (truncated)
Commits
3d3c42eprep v7.0.1 release (#2531)2880268escape values passed to --unset (#2530)12cd223trim only ascii whitespace for branch (#2521)62661c4skip running unsafe pr check if input is default (#2518)e8d4307Bump the minor-actions-dependencies group with 2 updates (#2499)631c942eslint 9 (#2474)4f1f4aeBump actions/upload-artifact from 4 to 7 (#2476)ba09753Bump actions/checkout from 6 to 7 (#2488)b9e0990Bump docker/login-action from 3.3.0 to 4.2.0 (#2479)e8cb398Bump docker/build-push-action from 6.5.0 to 7.2.0 (#2478)