-
Notifications
You must be signed in to change notification settings - Fork 305
chore(ci): bump github/codeql-action from 3.28.19 to 3.29.0 in the gh-actions-packages group #8996
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
PerfectSlayer
merged 1 commit into
master
from
dependabot/github_actions/gh-actions-packages-25b351fe54
Jun 17, 2025
Merged
chore(ci): bump github/codeql-action from 3.28.19 to 3.29.0 in the gh-actions-packages group #8996
PerfectSlayer
merged 1 commit into
master
from
dependabot/github_actions/gh-actions-packages-25b351fe54
Jun 17, 2025
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the gh-actions-packages group with 1 update: [github/codeql-action](https://github.com/github/codeql-action). Updates `github/codeql-action` from 3.28.19 to 3.29.0 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@fca7ace...ce28f5b) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: 3.29.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: gh-actions-packages ... Signed-off-by: dependabot[bot] <support@github.com>
BenchmarksStartupParameters
See matching parameters
SummaryFound 0 performance improvements and 0 performance regressions! Performance is the same for 56 metrics, 15 unstable metrics. Startup time reports for petclinicgantt
title petclinic - global startup overhead: candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.027 s) : 0, 1027324
Total [baseline] (10.609 s) : 0, 10608639
Agent [candidate] (1.037 s) : 0, 1036602
Total [candidate] (10.654 s) : 0, 10653715
section appsec
Agent [baseline] (1.176 s) : 0, 1176399
Total [baseline] (10.706 s) : 0, 10706050
Agent [candidate] (1.18 s) : 0, 1179892
Total [candidate] (10.705 s) : 0, 10705247
section iast
Agent [baseline] (1.162 s) : 0, 1161670
Total [baseline] (10.863 s) : 0, 10863323
Agent [candidate] (1.162 s) : 0, 1161786
Total [candidate] (10.899 s) : 0, 10899119
section profiling
Agent [baseline] (1.284 s) : 0, 1283520
Total [baseline] (10.981 s) : 0, 10980605
Agent [candidate] (1.274 s) : 0, 1273889
Total [candidate] (10.85 s) : 0, 10850159
gantt
title petclinic - break down per module: candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (683.919 ms) : 0, 683919
BytebuddyAgent [candidate] (689.111 ms) : 0, 689111
GlobalTracer [baseline] (241.396 ms) : 0, 241396
GlobalTracer [candidate] (243.036 ms) : 0, 243036
AppSec [baseline] (59.869 ms) : 0, 59869
AppSec [candidate] (59.651 ms) : 0, 59651
Debugger [baseline] (6.836 ms) : 0, 6836
Debugger [candidate] (6.229 ms) : 0, 6229
Remote Config [baseline] (741.156 µs) : 0, 741
Remote Config [candidate] (782.665 µs) : 0, 783
Telemetry [baseline] (11.051 ms) : 0, 11051
Telemetry [candidate] (14.04 ms) : 0, 14040
section appsec
BytebuddyAgent [baseline] (705.108 ms) : 0, 705108
BytebuddyAgent [candidate] (706.465 ms) : 0, 706465
GlobalTracer [baseline] (234.026 ms) : 0, 234026
GlobalTracer [candidate] (235.186 ms) : 0, 235186
IAST [baseline] (21.766 ms) : 0, 21766
IAST [candidate] (21.886 ms) : 0, 21886
AppSec [baseline] (178.314 ms) : 0, 178314
AppSec [candidate] (179.199 ms) : 0, 179199
Debugger [baseline] (5.832 ms) : 0, 5832
Debugger [candidate] (5.843 ms) : 0, 5843
Remote Config [baseline] (619.169 µs) : 0, 619
Remote Config [candidate] (609.886 µs) : 0, 610
Telemetry [baseline] (7.28 ms) : 0, 7280
Telemetry [candidate] (7.231 ms) : 0, 7231
section iast
BytebuddyAgent [baseline] (809.405 ms) : 0, 809405
BytebuddyAgent [candidate] (808.947 ms) : 0, 808947
GlobalTracer [baseline] (232.555 ms) : 0, 232555
GlobalTracer [candidate] (232.391 ms) : 0, 232391
IAST [baseline] (27.56 ms) : 0, 27560
IAST [candidate] (26.192 ms) : 0, 26192
AppSec [baseline] (53.931 ms) : 0, 53931
AppSec [candidate] (56.015 ms) : 0, 56015
Debugger [baseline] (6.002 ms) : 0, 6002
Debugger [candidate] (6.032 ms) : 0, 6032
Remote Config [baseline] (610.609 µs) : 0, 611
Remote Config [candidate] (605.532 µs) : 0, 606
Telemetry [baseline] (7.944 ms) : 0, 7944
Telemetry [candidate] (7.973 ms) : 0, 7973
section profiling
BytebuddyAgent [baseline] (679.347 ms) : 0, 679347
BytebuddyAgent [candidate] (677.578 ms) : 0, 677578
GlobalTracer [baseline] (363.329 ms) : 0, 363329
GlobalTracer [candidate] (359.058 ms) : 0, 359058
AppSec [baseline] (65.118 ms) : 0, 65118
AppSec [candidate] (64.564 ms) : 0, 64564
Debugger [baseline] (6.225 ms) : 0, 6225
Debugger [candidate] (6.133 ms) : 0, 6133
Remote Config [baseline] (667.53 µs) : 0, 668
Remote Config [candidate] (649.872 µs) : 0, 650
Telemetry [baseline] (8.239 ms) : 0, 8239
Telemetry [candidate] (8.186 ms) : 0, 8186
ProfilingAgent [baseline] (109.377 ms) : 0, 109377
ProfilingAgent [candidate] (106.601 ms) : 0, 106601
Profiling [baseline] (109.402 ms) : 0, 109402
Profiling [candidate] (106.627 ms) : 0, 106627
Startup time reports for insecure-bankgantt
title insecure-bank - global startup overhead: candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.03 s) : 0, 1029934
Total [baseline] (8.523 s) : 0, 8523053
Agent [candidate] (1.03 s) : 0, 1030128
Total [candidate] (8.521 s) : 0, 8520624
section iast
Agent [baseline] (1.154 s) : 0, 1153679
Total [baseline] (9.206 s) : 0, 9206226
Agent [candidate] (1.168 s) : 0, 1168276
Total [candidate] (9.225 s) : 0, 9224663
section iast_HARDCODED_SECRET_DISABLED
Agent [baseline] (1.165 s) : 0, 1164552
Total [baseline] (9.255 s) : 0, 9254893
Agent [candidate] (1.164 s) : 0, 1163674
Total [candidate] (9.189 s) : 0, 9188972
section iast_TELEMETRY_OFF
Agent [baseline] (1.16 s) : 0, 1159859
Total [baseline] (9.243 s) : 0, 9242507
Agent [candidate] (1.15 s) : 0, 1149937
Total [candidate] (9.175 s) : 0, 9175055
gantt
title insecure-bank - break down per module: candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (684.883 ms) : 0, 684883
BytebuddyAgent [candidate] (685.513 ms) : 0, 685513
GlobalTracer [baseline] (241.621 ms) : 0, 241621
GlobalTracer [candidate] (241.892 ms) : 0, 241892
AppSec [baseline] (58.51 ms) : 0, 58510
AppSec [candidate] (61.207 ms) : 0, 61207
Debugger [baseline] (6.972 ms) : 0, 6972
Debugger [candidate] (6.125 ms) : 0, 6125
Remote Config [baseline] (746.715 µs) : 0, 747
Remote Config [candidate] (736.701 µs) : 0, 737
Telemetry [baseline] (13.731 ms) : 0, 13731
Telemetry [candidate] (11.169 ms) : 0, 11169
section iast
BytebuddyAgent [baseline] (803.188 ms) : 0, 803188
BytebuddyAgent [candidate] (814.398 ms) : 0, 814398
GlobalTracer [baseline] (230.965 ms) : 0, 230965
GlobalTracer [candidate] (233.191 ms) : 0, 233191
AppSec [baseline] (56.316 ms) : 0, 56316
AppSec [candidate] (54.488 ms) : 0, 54488
Debugger [baseline] (5.987 ms) : 0, 5987
Debugger [candidate] (6.052 ms) : 0, 6052
Remote Config [baseline] (621.908 µs) : 0, 622
Remote Config [candidate] (603.004 µs) : 0, 603
Telemetry [baseline] (7.875 ms) : 0, 7875
Telemetry [candidate] (7.963 ms) : 0, 7963
IAST [baseline] (25.251 ms) : 0, 25251
IAST [candidate] (27.926 ms) : 0, 27926
section iast_HARDCODED_SECRET_DISABLED
BytebuddyAgent [baseline] (809.405 ms) : 0, 809405
BytebuddyAgent [candidate] (811.192 ms) : 0, 811192
GlobalTracer [baseline] (233.543 ms) : 0, 233543
GlobalTracer [candidate] (232.365 ms) : 0, 232365
AppSec [baseline] (54.967 ms) : 0, 54967
AppSec [candidate] (54.254 ms) : 0, 54254
Debugger [baseline] (6.159 ms) : 0, 6159
Debugger [candidate] (5.993 ms) : 0, 5993
Remote Config [baseline] (606.194 µs) : 0, 606
Remote Config [candidate] (597.927 µs) : 0, 598
Telemetry [baseline] (8.169 ms) : 0, 8169
Telemetry [candidate] (7.917 ms) : 0, 7917
IAST [baseline] (28.209 ms) : 0, 28209
IAST [candidate] (27.692 ms) : 0, 27692
section iast_TELEMETRY_OFF
BytebuddyAgent [baseline] (806.906 ms) : 0, 806906
BytebuddyAgent [candidate] (800.022 ms) : 0, 800022
GlobalTracer [baseline] (232.725 ms) : 0, 232725
GlobalTracer [candidate] (231.198 ms) : 0, 231198
AppSec [baseline] (54.675 ms) : 0, 54675
AppSec [candidate] (52.098 ms) : 0, 52098
Debugger [baseline] (6.14 ms) : 0, 6140
Debugger [candidate] (6.009 ms) : 0, 6009
Remote Config [baseline] (599.486 µs) : 0, 599
Remote Config [candidate] (593.149 µs) : 0, 593
Telemetry [baseline] (7.875 ms) : 0, 7875
Telemetry [candidate] (7.794 ms) : 0, 7794
IAST [baseline] (27.342 ms) : 0, 27342
IAST [candidate] (28.781 ms) : 0, 28781
LoadDacapoParameters
See matching parameters
SummaryFound 0 performance improvements and 0 performance regressions! Performance is the same for 12 metrics, 0 unstable metrics. Execution time for tomcatgantt
title tomcat - execution time [CI 0.99] : candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section baseline
no_agent (1.484 ms) : 1472, 1495
. : milestone, 1484,
appsec (2.404 ms) : 2355, 2452
. : milestone, 2404,
iast (2.192 ms) : 2131, 2253
. : milestone, 2192,
iast_GLOBAL (2.237 ms) : 2175, 2298
. : milestone, 2237,
profiling (2.034 ms) : 1985, 2084
. : milestone, 2034,
tracing (2.003 ms) : 1956, 2050
. : milestone, 2003,
section candidate
no_agent (1.475 ms) : 1464, 1487
. : milestone, 1475,
appsec (2.406 ms) : 2358, 2455
. : milestone, 2406,
iast (2.201 ms) : 2140, 2263
. : milestone, 2201,
iast_GLOBAL (2.227 ms) : 2165, 2289
. : milestone, 2227,
profiling (2.06 ms) : 2009, 2110
. : milestone, 2060,
tracing (2.017 ms) : 1970, 2065
. : milestone, 2017,
Execution time for biojavagantt
title biojava - execution time [CI 0.99] : candidate=1.50.0-SNAPSHOT~47169a8968, baseline=1.50.0-SNAPSHOT~d56d38c890
dateFormat X
axisFormat %s
section baseline
no_agent (14.883 s) : 14883000, 14883000
. : milestone, 14883000,
appsec (14.801 s) : 14801000, 14801000
. : milestone, 14801000,
iast (18.758 s) : 18758000, 18758000
. : milestone, 18758000,
iast_GLOBAL (18.119 s) : 18119000, 18119000
. : milestone, 18119000,
profiling (15.646 s) : 15646000, 15646000
. : milestone, 15646000,
tracing (14.869 s) : 14869000, 14869000
. : milestone, 14869000,
section candidate
no_agent (15.0 s) : 15000000, 15000000
. : milestone, 15000000,
appsec (14.664 s) : 14664000, 14664000
. : milestone, 14664000,
iast (18.921 s) : 18921000, 18921000
. : milestone, 18921000,
iast_GLOBAL (18.029 s) : 18029000, 18029000
. : milestone, 18029000,
profiling (15.265 s) : 15265000, 15265000
. : milestone, 15265000,
tracing (14.901 s) : 14901000, 14901000
. : milestone, 14901000,
|
PerfectSlayer
approved these changes
Jun 17, 2025
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
comp: tooling
Build & Tooling
tag: dependencies
Dependencies related changes
tag: no release notes
Changes to exclude from release notes
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the gh-actions-packages group with 1 update: github/codeql-action.
Updates
github/codeql-action
from 3.28.19 to 3.29.0Release notes
Sourced from github/codeql-action's releases.
Changelog
Sourced from github/codeql-action's changelog.
... (truncated)
Commits
ce28f5b
Merge pull request #2926 from github/update-v3.29.0-e8799281cbc251b7
Update changelog for v3.29.0e879928
Merge pull request #2925 from github/update-bundle/codeql-bundle-v2.22.0efd43b3
Merge branch 'main' into update-bundle/codeql-bundle-v2.22.07cb9b16
Merge pull request #2912 from github/henrymercer/bump-minimum-codeql-2.16.63855117
Add changelog notef5d4e2a
Update default bundle to codeql-bundle-v2.22.022deae8
Update package-lock.jsondf2a830
Merge branch 'main' into henrymercer/bump-minimum-codeql-2.16.6b1e4dc3
Merge pull request #2916 from github/dependabot/npm_and_yarn/npm-5cdccdc43fDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions