Skip to content

Commit a9b91e4

Browse files
compwronclaude
andauthored
Fix .github issues: bugs, security, inconsistencies, and gaps (#6884)
- autoapproval.yml: dependabot-preview → dependabot[bot] (bot was shut down) - Issue templates: fix double-protocol Slack URLs (https:https:// → https://) - npm_lint_and_test.yml: fix path trigger typo package.lock.json → package-lock.json - remove-helped-wanted.yml: pin andymckay/labeler@master → @1.0.4 (mutable ref) - stale.yml: days-before-issue-close 9999 → -1 (proper disable value) - factory_bot_lint.yml, rake-after_party.yml: postgres 12.3 → 14.8 (match rspec) - codeql-analysis.yml: add ruby to language matrix (was JS-only) - dependabot.yml: add docker ecosystem to track base image updates - Add timeout-minutes to 9 workflows missing them (brakeman: 10, ruby_lint: 10, erb_lint: 10, spec_checker: 10, yaml_lint: 5, npm_lint: 10, factory_bot: 15, rake-after_party: 15, codeql: 30) Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>
1 parent 75e562a commit a9b91e4

19 files changed

Lines changed: 28 additions & 17 deletions

.github/ISSUE_TEMPLATE/bug_report.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -43,4 +43,4 @@ password for all users: 12345678
4343

4444
### Questions? Join Slack!
4545

46-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly. And [discord](https://discord.gg/qJcw2RZH8Q) for office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
46+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly. And [discord](https://discord.gg/qJcw2RZH8Q) for office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/ISSUE_TEMPLATE/chore.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,4 +6,4 @@
66

77
### Questions? Join Slack!
88

9-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
9+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/ISSUE_TEMPLATE/documentation.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,4 +6,4 @@
66

77
### Questions? Join Slack!
88

9-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
9+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/ISSUE_TEMPLATE/feature_request.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -31,4 +31,4 @@ password for all users: 12345678
3131

3232
### Questions? Join Slack!
3333

34-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly. And [discord](https://discord.gg/qJcw2RZH8Q) for office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
34+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly. And [discord](https://discord.gg/qJcw2RZH8Q) for office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/ISSUE_TEMPLATE/flaky_test.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,4 +16,4 @@ rspec or rspec in docker?
1616

1717
### Questions? Join Slack!
1818

19-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
19+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/ISSUE_TEMPLATE/problem_validation.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,4 +15,4 @@ Please use this template to document problems mentioned by CASA stakeholders so
1515

1616
### Questions? Join Slack!
1717

18-
We highly recommend that you join us in [slack](https:https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.
18+
We highly recommend that you join us in [slack](https://join.slack.com/t/rubyforgood/shared_invite/zt-35218k86r-vlIiWqig54c9t~_LkGpQ7Q) #casa channel to ask questions quickly and hear about office hours (currently Tuesday 5-7pm Pacific), stakeholder news, and upcoming new issues.

.github/autoapproval.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,2 @@
11
from_owner:
2-
- dependabot-preview
2+
- dependabot[bot]

.github/dependabot.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -29,3 +29,8 @@ updates:
2929
directory: "/"
3030
schedule:
3131
interval: "weekly"
32+
33+
- package-ecosystem: "docker"
34+
directory: "/"
35+
schedule:
36+
interval: "weekly"

.github/workflows/codeql-analysis.yml

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -33,14 +33,12 @@ jobs:
3333
analyze:
3434
name: Analyze
3535
runs-on: ubuntu-latest
36+
timeout-minutes: 30
3637

3738
strategy:
3839
fail-fast: false
3940
matrix:
40-
language: ['javascript']
41-
# CodeQL supports ['cpp', 'csharp', 'go', 'java', 'javascript', 'python']
42-
# Learn more:
43-
# https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#changing-the-languages-that-are-analyzed
41+
language: ['javascript', 'ruby']
4442

4543
steps:
4644
- name: Checkout repository

.github/workflows/erb_lint.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -19,6 +19,7 @@ jobs:
1919
erb_lint:
2020

2121
runs-on: ubuntu-latest
22+
timeout-minutes: 10
2223

2324
steps:
2425
- uses: actions/checkout@v6

0 commit comments

Comments
 (0)