Skip to content

Bump github/codeql-action/analyze from 4.37.0 to 4.37.4 #182

Bump github/codeql-action/analyze from 4.37.0 to 4.37.4

Bump github/codeql-action/analyze from 4.37.0 to 4.37.4 #182

Triggered via pull request August 3, 2026 16:53
Status Success
Total duration 29s
Artifacts 1

security-scan.yml Required

on: pull_request
cancel-closed-pr-runs
0s
cancel-closed-pr-runs
osv-scan
24s
osv-scan
dependency-review
8s
dependency-review
trivy-fs
17s
trivy-fs
scorecard
10s
scorecard
Fit to window
Zoom out
Zoom in

Annotations

1 notice
osv-scan
OSV hard gate scans direct manifest and lockfile evidence with --no-resolve so external transitive registry resolver stalls cannot hold the required-check queue indefinitely. The job is capped at 25 minutes; if this budget is exceeded, rerun after the upstream registry/service recovers or inspect the uploaded debug artifacts.

Artifacts

Produced during runtime
Name Size Digest
osv-scan-debug
1023 Bytes
sha256:e31b5acf07b70a36caa64240366dd163707da98d110ef8363c21e4a8f81ebeb8