Skip to content

Bump github/codeql-action/upload-sarif from 4.37.7 to 4.37.9 - #8

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/github/codeql-action/upload-sarif-4.37.9
Open

Bump github/codeql-action/upload-sarif from 4.37.7 to 4.37.9#8
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/github/codeql-action/upload-sarif-4.37.9

Bump github/codeql-action/upload-sarif from 4.37.7 to 4.37.9

ea3f2c0
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Aug 31, 2026 in 23s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

馃搵 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
auto_cherry_pick.yml 33431528638 - - Harden-Runner not enabled
auto_cherry_pick.yml 33431528808 - - Harden-Runner not enabled
auto_cherry_pick.yml 33431528478 - - Harden-Runner not enabled
claude_review.yml 33431528649 1 4 View Insights
claude_review.yml 33431528195 1 4 View Insights
dependency-review.yml 33431528108 3 3 View Insights
claude_review.yml 33431527763 1 4 View Insights
claude_review.yml 33431528849 1 4 View Insights
auto_cherry_pick.yml 33431527869 - - Harden-Runner not enabled
auto_cherry_pick.yml 33431527766 - - Harden-Runner not enabled
claude_review.yml 33431527863 1 4 View Insights

馃摎 Learn More

You can learn more about this GitHub check here