Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
55 commits
Select commit Hold shift + click to select a range
c4b7372
Add overlay-base database cache key tests
cklin Sep 24, 2025
b4ce335
Ensure uniqueness of overlay-base database cache keys
kaspersv Oct 24, 2025
cbcae45
Reorder components of overlay-base cache key postfix
kaspersv Oct 24, 2025
66759e5
Improve error handling for overlay-base cache key creation
kaspersv Oct 24, 2025
fa46f22
Update changelog and version after v4.31.0
github-actions[bot] Oct 24, 2025
dd565f3
Rebuild
github-actions[bot] Oct 24, 2025
ae78991
Merge pull request #3236 from github/mergeback/v4.31.0-to-main-4e94bd11
mbg Oct 24, 2025
4e0b2cd
Merge pull request #3232 from github/kaspersv/unique-overlay-base-keys
kaspersv Oct 27, 2025
91ec0ed
Move diff-range computation into utils for reuse
kaspersv Oct 27, 2025
cc17bed
Move diff-range computation tests
kaspersv Oct 27, 2025
db47d17
Remove `add-snippets` input
mbg Oct 27, 2025
8d77149
Merge pull request #3238 from github/kaspersv/extract-diff-range-comp…
kaspersv Oct 27, 2025
127851b
Add environment variable for skipping workflow validation
mbg Oct 27, 2025
06fbd89
Move workflow check to a function in `init.ts` and add tests
mbg Oct 27, 2025
5060176
Also skip workflow validation for `dynamic` workflows
mbg Oct 27, 2025
55c0837
Move `checkWorkflow` to `workflow.ts`
mbg Oct 27, 2025
52cec41
Downgrade log message from warning to debug level
mbg Oct 27, 2025
42f957b
Bump actions/upload-artifact from 4 to 5 in /.github/workflows
dependabot[bot] Oct 27, 2025
714962e
Rebuild
github-actions[bot] Oct 27, 2025
c9d47e2
Bump the npm-minor group with 4 updates
dependabot[bot] Oct 27, 2025
df9e49e
Rebuild
github-actions[bot] Oct 27, 2025
f9eed03
Bump @actions/artifact from 2.3.1 to 4.0.0
dependabot[bot] Oct 27, 2025
723a946
Rebuild
github-actions[bot] Oct 27, 2025
b5bbb5a
Bump ruby/setup-ruby
dependabot[bot] Oct 27, 2025
fcc1377
Rebuild
github-actions[bot] Oct 27, 2025
239e305
Check disk usage using Node.js API
henrymercer Oct 27, 2025
ad8ad98
Merge pull request #3240 from github/mbg/allow-skip-workflow-validation
mbg Oct 28, 2025
20900ee
Build: Run npm install when `package-lock.json` out of date
henrymercer Oct 28, 2025
8b1e55d
Use Actions logger in API client
henrymercer Oct 28, 2025
57c7b6a
Disable SIP disablement check
henrymercer Oct 28, 2025
fe16891
Add unit test for `checkDiskUsage`
henrymercer Oct 28, 2025
55895ef
Stub `GITHUB_WORKSPACE` in test
henrymercer Oct 28, 2025
d4ba404
Tweak assertions
henrymercer Oct 28, 2025
41c0a26
Use Node `fs` APIs instead of `del`
henrymercer Oct 28, 2025
d84f470
Improve method naming
henrymercer Oct 28, 2025
a53e78e
Merge pull request #3243 from github/dependabot/npm_and_yarn/actions/…
henrymercer Oct 28, 2025
284bf9b
Merge pull request #3241 from github/dependabot/github_actions/dot-gi…
henrymercer Oct 28, 2025
311fc42
Merge pull request #3242 from github/dependabot/npm_and_yarn/npm-mino…
henrymercer Oct 28, 2025
1af9394
Merge pull request #3244 from github/dependabot/github_actions/dot-gi…
henrymercer Oct 28, 2025
66459ea
Apply suggestion
henrymercer Oct 28, 2025
4256e2e
Merge branch 'main' into henrymercer/disk-usage-node-api
henrymercer Oct 28, 2025
e1c8976
Merge pull request #3247 from github/henrymercer/disk-usage-node-api
henrymercer Oct 28, 2025
ea5cb4a
Merge branch 'main' into henrymercer/prefer-fs-delete
henrymercer Oct 28, 2025
8cc18ac
Merge pull request #3250 from github/henrymercer/prefer-fs-delete
henrymercer Oct 28, 2025
3d988b2
Pass minimal copy of `core`
henrymercer Oct 28, 2025
d49e837
Merge branch 'main' into henrymercer/api-logging
henrymercer Oct 28, 2025
ac9aeee
Merge pull request #3249 from github/henrymercer/api-logging
henrymercer Oct 28, 2025
53acf0b
Turn enablement errors into configuration errors
mbg Oct 28, 2025
194ba0e
Make error message tests less brittle
mbg Oct 29, 2025
52a7bd7
Check for 403 status
mbg Oct 29, 2025
4ae68af
Warn if the `add-snippets` input is used
mbg Oct 29, 2025
34c50c1
Merge pull request #3251 from github/mbg/user-error/enablement
mbg Oct 29, 2025
74c8748
Update analyze/action.yml
mbg Oct 29, 2025
777daa0
Merge pull request #3239 from github/mbg/remove/add-snippets
mbg Oct 29, 2025
237497c
Update changelog for v4.31.1
github-actions[bot] Oct 30, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion .github/workflows/__bundle-zstd.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion .github/workflows/__config-export.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion .github/workflows/__diagnostics-export.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion .github/workflows/__export-file-baseline-information.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion .github/workflows/__job-run-uuid-sarif.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

6 changes: 3 additions & 3 deletions .github/workflows/__quality-queries.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion .github/workflows/__rubocop-multi-language.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

4 changes: 4 additions & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,10 @@

See the [releases page](https://github.com/github/codeql-action/releases) for the relevant changes to the CodeQL CLI and language packs.

## 4.31.1 - 30 Oct 2025

- The `add-snippets` input has been removed from the `analyze` action. This input has been deprecated since CodeQL Action 3.26.4 in August 2024 when this removal was announced.

## 4.31.0 - 24 Oct 2025

- Bump minimum CodeQL bundle version to 2.17.6. [#3223](https://github.com/github/codeql-action/pull/3223)
Expand Down
8 changes: 2 additions & 6 deletions analyze/action.yml
Original file line number Diff line number Diff line change
Expand Up @@ -32,14 +32,10 @@ inputs:
and 13GB for macOS).
required: false
add-snippets:
description: Specify whether or not to add code snippets to the output sarif file.
description: Does not have any effect.
required: false
default: "false"
deprecationMessage: >-
The input "add-snippets" is deprecated and will be removed on the first release in August 2025.
When this input is set to true it is expected to add code snippets with an alert to the SARIF file.
However, since Code Scanning ignores code snippets provided as part of a SARIF file this is currently
a no operation. No alternative is available.
The input "add-snippets" has been removed and no longer has any effect.
skip-queries:
description: If this option is set, the CodeQL database will be built but no queries will be run on it. Thus, no results will be produced.
required: false
Expand Down
Loading
Loading