Commit Graph
37 Commits
Author SHA1 Message Date
dependabot[bot] a2ac229f8d Bump github/codeql-action from 3.27.7 to 3.27.9 (#24674) 2024-12-13 10:18:20 -08:00
dependabot[bot] 88fdadf399 Bump github/codeql-action from 3.27.6 to 3.27.7 (#24659) 2024-12-12 13:26:28 -08:00
dependabot[bot] 75961d5afb Bump github/codeql-action from 3.27.0 to 3.27.6 (#24639)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.0 to 3.27.6.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/662472033e021d55d94146f66f6058822b0b39fd...aa578102511db1f4524ed59b8cc2bae4f6e88195)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-09 10:19:54 -08:00
dependabot[bot] 1061a2e9bc Bump actions/checkout from 4.2.1 to 4.2.2 (#24488)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.1 to 4.2.2.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871...11bd71901bbe5b1630ceea73d27597364c9af683)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-05 09:38:07 -08:00
dependabot[bot] a4552be9e3 Bump github/codeql-action from 3.26.10 to 3.27.0 (#24483)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.10 to 3.27.0.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/e2b3eafc8d227b0241d48be5f425d47c2d750a13...662472033e021d55d94146f66f6058822b0b39fd)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-05 09:32:16 -08:00
dependabot[bot] f8ae87975e Bump actions/checkout from 4.2.0 to 4.2.1 (#24395)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.0 to 4.2.1.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/d632683dd7b4114ad314bca15554477dd762a938...eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-10 13:35:26 -07:00
dependabot[bot] 4a129cd955 Bump actions/checkout from 4.1.7 to 4.2.0 (#24348)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.1.7 to 4.2.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/692973e3d937129bcbf40652eb9f2f61becf3332...d632683dd7b4114ad314bca15554477dd762a938)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-03 13:35:16 -07:00
dependabot[bot] 0aedc61a18 Bump github/codeql-action from 3.26.8 to 3.26.10 (#24364)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.8 to 3.26.10.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/294a9d92911152fe08befb9ec03e240add280cb3...e2b3eafc8d227b0241d48be5f425d47c2d750a13)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-03 13:34:39 -07:00
dependabot[bot] 389f9dba88 Bump github/codeql-action from 3.26.6 to 3.26.8 (#24325)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.6 to 3.26.8.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/4dd16135b69a43b6c8efb853346f8437d92d3c93...294a9d92911152fe08befb9ec03e240add280cb3)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-20 11:40:42 -07:00
dependabot[bot] 7e3672e2e0 Bump github/codeql-action from 3.26.5 to 3.26.6 (#24231)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.5 to 3.26.6.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/2c779ab0d087cd7fe7b826087247c2c81f27bfa6...4dd16135b69a43b6c8efb853346f8437d92d3c93)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-06 09:24:41 -07:00
Travis Plunk c83bd87e4f Capture environment better (#24148)
* Capture environment better

* Capture env better
2024-09-05 14:49:23 -07:00
dependabot[bot] 0a0548ba69 Bump github/codeql-action from 3.26.2 to 3.26.5 (#24207) 2024-08-26 15:21:27 -07:00
dependabot[bot] 79366d6dbf Bump github/codeql-action from 3.26.0 to 3.26.2 (#24166) 2024-08-19 10:31:14 -07:00
dependabot[bot] 828c32709c Bump github/codeql-action from 3.25.15 to 3.26.0 (#24118) 2024-08-09 11:05:42 -07:00
dependabot[bot] 963a4bd09b Bump github/codeql-action from 3.25.13 to 3.25.15 (#24095) 2024-07-30 13:15:25 -07:00
dependabot[bot] 1f84053ebf Bump github/codeql-action from 3.25.12 to 3.25.13 (#24069) 2024-07-22 16:18:45 -07:00
dependabot[bot] 54e8b8bc9c Bump github/codeql-action from 3.25.11 to 3.25.12 (#24053) 2024-07-18 11:15:16 -07:00
dependabot[bot] 8ec223895d Bump github/codeql-action from 3.25.10 to 3.25.11 (#23999) 2024-07-01 11:16:53 -07:00
dependabot[bot] 47e804a8c2 Bump actions/checkout from 4.1.6 to 4.1.7 (#23947) 2024-06-17 15:54:25 -07:00
dependabot[bot] b8e3ee5261 Bump github/codeql-action from 3.25.8 to 3.25.10 (#23953) 2024-06-17 12:41:09 -07:00
dependabot[bot] 3f32e915c1 Bump github/codeql-action from 3.25.6 to 3.25.8 (#23893) 2024-06-10 10:23:23 -07:00
dependabot[bot] 74d8bdba44 Bump github/codeql-action from 3.25.5 to 3.25.6 2024-05-21 13:46:29 -07:00
dependabot[bot] d4c9b186bc Bump github/codeql-action from 3.25.4 to 3.25.5 (#23801) 2024-05-20 10:46:04 -07:00
dependabot[bot] d0f463aa25 Bump actions/checkout from 4.1.5 to 4.1.6 (#23813) 2024-05-20 10:23:38 -07:00
dependabot[bot] eb418f7d2e Bump actions/checkout from 4.1.2 to 4.1.5 (#21613) 2024-05-13 10:09:11 -07:00
dependabot[bot] f56a5a81d7 Bump github/codeql-action from 3.25.1 to 3.25.4 (#22071) 2024-05-13 10:08:47 -07:00
dependabot[bot] 401b1eb236 Bump actions/checkout from 3.6.0 to 4.1.2 (#21482)
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.6.0 to 4.1.2.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v3.6.0...9bb56186c3b09b4f86b1c65136769dd318469633)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-18 10:01:31 -07:00
dependabot[bot] 6e05e2721d Bump github/codeql-action from 2.25.0 to 3.25.1 (#21498)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.25.0 to 3.25.1.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v2.25.0...c7f9125735019aa87cfc361530512d50ea439c71)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-18 09:58:17 -07:00
StepSecurity BotandTravis Plunk c19b65133c [StepSecurity] Apply security best practices (#21480)
* [StepSecurity] Apply security best practices

Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>

* Update dependabot.yml

* Delete tools/releaseBuild/Images/microsoft_powershell_centos7 directory

* Delete tools/releaseBuild/Images/microsoft_powershell_ubuntu16.04 directory

* Delete tools/releaseBuild/Images/microsoft_powershell_ubuntu18.04 directory

* Delete tools/releaseBuild/Images/microsoft_powershell_windowsservercore/Dockerfile

---------

Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
Co-authored-by: Travis Plunk <travis.plunk@microsoft.com>
2024-04-16 21:58:26 +00:00
dependabot[bot] 350d88a709 Bump github/codeql-action from 2 to 3 (#20927) 2023-12-14 10:10:01 -08:00
dependabot[bot] 1082b808ee Bump actions/checkout from 3 to 4 (#20205) 2023-09-06 10:09:24 -07:00
Dongbo Wang bfef3a4814 Update CodeQL build agent (#19113) 2023-02-07 20:13:54 +00:00
Varun Sharma 65b83e90d5 Add GitHub token permissions for workflows (#17781)
Signed-off-by: Varun Sharma <varunsh@stepsecurity.io>
2022-08-04 12:12:34 -07:00
dependabot[bot] ef5e36df01 Bump actions/checkout from 2 to 3 (#17828) 2022-08-03 10:57:12 -07:00
dependabot[bot] a63c598c5e Bump github/codeql-action from 1 to 2 (#17830) 2022-08-03 10:56:25 -07:00
Travis Plunk bf4740dec6 Update CodeQL workflow to use ubuntu-18.04 (#15868) 2021-08-04 11:05:40 -07:00
Travis Plunk 191c00da17 Enable CodeQL Security scanning (#13894) 2020-10-27 10:20:15 -07:00