From 1674d31fd75073df540fa915cbf47e21fd14dde7 Mon Sep 17 00:00:00 2001 From: Xander Date: Wed, 15 Apr 2026 19:43:13 +0100 Subject: [PATCH] fix(ci): update codeql-action SHA to match v4 tag The v4 tag for github/codeql-action was updated upstream, causing zizmor's ref-version-mismatch check to fail on all PRs. Co-Authored-By: Claude Opus 4.6 (1M context) --- .github/workflows/codeql.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 81bc6b16f8..b214fb5c32 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -46,11 +46,11 @@ jobs: persist-credentials: false - name: Initialize CodeQL - uses: github/codeql-action/init@c10b8064de6f491fea524254123dbe5e09572f13 # v4 + uses: github/codeql-action/init@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v4 with: languages: actions - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@c10b8064de6f491fea524254123dbe5e09572f13 # v4 + uses: github/codeql-action/analyze@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v4 with: category: "/language:actions"