From 55e16d4eee46a47c9d144b87c306a60b4d47ff20 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Sat, 14 Dec 2024 02:20:48 +0000 Subject: [PATCH 1/2] chore(deps): update github/codeql-action action to v3.27.9 --- .github/workflows/codeql-analysis.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index 96f3301..930c0d3 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -43,12 +43,12 @@ jobs: uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2 - name: Initialize CodeQL - uses: github/codeql-action/init@babb554ede22fd5605947329c4d04d8e7a0b8155 # v3.27.7 + uses: github/codeql-action/init@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9 with: languages: ${{ matrix.language }} queries: +security-and-quality - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@babb554ede22fd5605947329c4d04d8e7a0b8155 # v3.27.7 + uses: github/codeql-action/analyze@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3.27.9 with: category: "/language:${{ matrix.language }}" From 76d6d7603f31b20db91d33423d6361acc9cd5b84 Mon Sep 17 00:00:00 2001 From: Unsung Hero <66092015+myrotvorets-team@users.noreply.github.com> Date: Mon, 16 Dec 2024 01:03:46 +0200 Subject: [PATCH 2/2] Update endpoints --- .github/workflows/sonarscan.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/sonarscan.yml b/.github/workflows/sonarscan.yml index 1546ef5..bc11be0 100644 --- a/.github/workflows/sonarscan.yml +++ b/.github/workflows/sonarscan.yml @@ -30,6 +30,8 @@ jobs: egress-policy: block allowed-endpoints: > api.github.com:443 + api.sonarcloud.io:443 + binaries.sonarsource.com:443 github.com:443 npm.pkg.github.com:443 objects.githubusercontent.com:443