Skip to content

Commit 6c0f27e

Browse files
hyperpolymathclaude
andcommitted
fix(ci): repoint codeql-action at a SHA that exists
github/codeql-action@29b1f65 is pinned here but exists in no repository -- the GitHub API returns 422 for it. CodeQL therefore could not start: the run graph fails to build and the job reports startup_failure, so this repository has had no CodeQL scanning at all. Repointed at 4187e74d05793876e9989daffde9c3e66b4acd07, which is what the v3 tag currently resolves to (v3.37.3), verified against the API. Found while auditing the estate: the same non-existent SHA is pinned in over 100 repositories, so CodeQL is dead across nearly all of them. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Signed-off-by: Jonathan D.A. Jewell <6759885+hyperpolymath@users.noreply.github.com>
1 parent 85cae94 commit 6c0f27e

1 file changed

Lines changed: 2 additions & 2 deletions

File tree

.github/workflows/codeql.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -41,11 +41,11 @@ jobs:
4141
- name: Checkout repository
4242
uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
4343
- name: Initialize CodeQL
44-
uses: github/codeql-action/init@29b1f65c1f735799893313399435a59f54045865 # v3
44+
uses: github/codeql-action/init@4187e74d05793876e9989daffde9c3e66b4acd07 # v3
4545
with:
4646
languages: ${{ matrix.language }}
4747
build-mode: ${{ matrix.build-mode }}
4848
- name: Perform CodeQL Analysis
49-
uses: github/codeql-action/analyze@29b1f65c1f735799893313399435a59f54045865 # v3
49+
uses: github/codeql-action/analyze@4187e74d05793876e9989daffde9c3e66b4acd07 # v3
5050
with:
5151
category: "/language:${{matrix.language}}"

0 commit comments

Comments
 (0)