René's URL Explorer Experiment


Title: Bump the actions group with 2 updates by dependabot[bot] · Pull Request #82 · matplotlib/matplotlib.org · GitHub

Open Graph Title: Bump the actions group with 2 updates by dependabot[bot] · Pull Request #82 · matplotlib/matplotlib.org

X Title: Bump the actions group with 2 updates by dependabot[bot] · Pull Request #82 · matplotlib/matplotlib.org

Description: Bumps the actions group with 2 updates: github/codeql-action/init and github/codeql-action/analyze. Updates github/codeql-action/init from 4.36.3 to 4.37.0 Release notes Sourced from github/codeql-action/init's releases. v4.37.0 Update default CodeQL bundle version to 2.26.0. #3995 In addition to the existing input format, the config-file input for the codeql-action/init step will soon support a new [owner/]repo[@ref][:path] format. All components except the repository name are optional. If omitted, owner defaults to the same owner as the repository the analysis is running for, ref to main, and path to .github/codeql-action.yaml. Support for this format ships in this version of the CodeQL Action, but will only be enabled over the coming weeks. #3973 Changelog Sourced from github/codeql-action/init's changelog. CodeQL Action Changelog See the releases page for the relevant changes to the CodeQL CLI and language packs. [UNRELEASED] Upcoming breaking change: Add a deprecation warning for customers using CodeQL version 2.20.6 and earlier. These versions of CodeQL were discontinued on 1 July 2026 alongside GitHub Enterprise Server 3.16, and will be unsupported by the next minor release of the CodeQL Action. #3956 4.37.0 - 08 Jul 2026 Update default CodeQL bundle version to 2.26.0. #3995 In addition to the existing input format, the config-file input for the codeql-action/init step will soon support a new [owner/]repo[@ref][:path] format. All components except the repository name are optional. If omitted, owner defaults to the same owner as the repository the analysis is running for, ref to main, and path to .github/codeql-action.yaml. Support for this format ships in this version of the CodeQL Action, but will only be enabled over the coming weeks. #3973 4.36.3 - 01 Jul 2026 No user facing changes. 4.36.2 - 04 Jun 2026 Cache CodeQL CLI version information across Actions steps. #3943 Reduce requests while waiting for analysis processing by using exponential backoff when polling SARIF processing status. #3937 Update default CodeQL bundle version to 2.25.6. #3948 4.36.1 - 02 Jun 2026 No user facing changes. 4.36.0 - 22 May 2026 Breaking change: Bump the minimum required CodeQL bundle version to 2.19.4. #3894 Add support for SHA-256 Git object IDs. #3893 Update default CodeQL bundle version to 2.25.5. #3926 4.35.5 - 15 May 2026 We have improved how the JavaScript bundles for the CodeQL Action are generated to avoid duplication across bundles and reduce the size of the repository by around 70%. This should have no effect on the runtime behaviour of the CodeQL Action. #3899 For performance and accuracy reasons, improved incremental analysis will now only be enabled on a pull request when diff-informed analysis is also enabled for that run. If diff-informed analysis is unavailable (for example, because the PR diff ranges could not be computed), the action will fall back to a full analysis. #3791 If multiple inputs are provided for the GitHub-internal analysis-kinds input, only code-scanning will be enabled. The analysis-kinds input is experimental, for GitHub-internal use only, and may change without notice at any time. #3892 Added an experimental change which, when running a Code Scanning analysis for a PR with improved incremental analysis enabled, prefers CodeQL CLI versions that have a cached overlay-base database for the configured languages. This speeds up analysis for a repository when there is not yet a cached overlay-base database for the latest CLI version. We expect to roll this change out to everyone in May. #3880 4.35.4 - 07 May 2026 Update default CodeQL bundle version to 2.25.4. #3881 4.35.3 - 01 May 2026 Upcoming breaking change: Add a deprecation warning for customers using CodeQL version 2.19.3 and earlier. These versions of CodeQL were discontinued on 9 April 2026 alongside GitHub Enterprise Server 3.15, and will be unsupported by the next minor release of the CodeQL Action. #3837 Configurations for private registries that use Cloudsmith or GCP OIDC are now accepted. #3850 Best-effort connection tests for private registries now use GET requests instead of HEAD for better compatibility with various registry implementations. For NuGet feeds, the test is now always performed against the service index. #3853 Fixed a bug where two diagnostics produced within the same millisecond could overwrite each other on disk, causing one of them to be lost. #3852 ... (truncated) Commits 99df26d Merge pull request #3996 from github/update-v4.37.0-c7c896d71 31c2707 Add changenote for #3973 72df218 Update changelog for v4.37.0 c7c896d Merge pull request #3995 from github/update-bundle/codeql-bundle-v2.26.0 3f34ff0 Add changelog note 43bec09 Update default bundle to codeql-bundle-v2.26.0 f58f0d1 Merge pull request #3973 from github/mbg/repo-props/config-file-shorthands 7dc37cb Merge remote-tracking branch 'origin/main' into mbg/repo-props/config-file-sh... 8e22350 Thread ActionState to initConfig 69c9e8c Mark some status-report imports as type-only to avoid circular dependencies Additional commits viewable in compare view Updates github/codeql-action/analyze from 4.36.3 to 4.37.0 Release notes Sourced from github/codeql-action/analyze's releases. v4.37.0 Update default CodeQL bundle version to 2.26.0. #3995 In addition to the existing input format, the config-file input for the codeql-action/init step will soon support a new [owner/]repo[@ref][:path] format. All components except the repository name are optional. If omitted, owner defaults to the same owner as the repository the analysis is running for, ref to main, and path to .github/codeql-action.yaml. Support for this format ships in this version of the CodeQL Action, but will only be enabled over the coming weeks. #3973 Changelog Sourced from github/codeql-action/analyze's changelog. CodeQL Action Changelog See the releases page for the relevant changes to the CodeQL CLI and language packs. [UNRELEASED] Upcoming breaking change: Add a deprecation warning for customers using CodeQL version 2.20.6 and earlier. These versions of CodeQL were discontinued on 1 July 2026 alongside GitHub Enterprise Server 3.16, and will be unsupported by the next minor release of the CodeQL Action. #3956 4.37.0 - 08 Jul 2026 Update default CodeQL bundle version to 2.26.0. #3995 In addition to the existing input format, the config-file input for the codeql-action/init step will soon support a new [owner/]repo[@ref][:path] format. All components except the repository name are optional. If omitted, owner defaults to the same owner as the repository the analysis is running for, ref to main, and path to .github/codeql-action.yaml. Support for this format ships in this version of the CodeQL Action, but will only be enabled over the coming weeks. #3973 4.36.3 - 01 Jul 2026 No user facing changes. 4.36.2 - 04 Jun 2026 Cache CodeQL CLI version information across Actions steps. #3943 Reduce requests while waiting for analysis processing by using exponential backoff when polling SARIF processing status. #3937 Update default CodeQL bundle version to 2.25.6. #3948 4.36.1 - 02 Jun 2026 No user facing changes. 4.36.0 - 22 May 2026 Breaking change: Bump the minimum required CodeQL bundle version to 2.19.4. #3894 Add support for SHA-256 Git object IDs. #3893 Update default CodeQL bundle version to 2.25.5. #3926 4.35.5 - 15 May 2026 We have improved how the JavaScript bundles for the CodeQL Action are generated to avoid duplication across bundles and reduce the size of the repository by around 70%. This should have no effect on the runtime behaviour of the CodeQL Action. #3899 For performance and accuracy reasons, improved incremental analysis will now only be enabled on a pull request when diff-informed analysis is also enabled for that run. If diff-informed analysis is unavailable (for example, because the PR diff ranges could not be computed), the action will fall back to a full analysis. #3791 If multiple inputs are provided for the GitHub-internal analysis-kinds input, only code-scanning will be enabled. The analysis-kinds input is experimental, for GitHub-internal use only, and may change without notice at any time. #3892 Added an experimental change which, when running a Code Scanning analysis for a PR with improved incremental analysis enabled, prefers CodeQL CLI versions that have a cached overlay-base database for the configured languages. This speeds up analysis for a repository when there is not yet a cached overlay-base database for the latest CLI version. We expect to roll this change out to everyone in May. #3880 4.35.4 - 07 May 2026 Update default CodeQL bundle version to 2.25.4. #3881 4.35.3 - 01 May 2026 Upcoming breaking change: Add a deprecation warning for customers using CodeQL version 2.19.3 and earlier. These versions of CodeQL were discontinued on 9 April 2026 alongside GitHub Enterprise Server 3.15, and will be unsupported by the next minor release of the CodeQL Action. #3837 Configurations for private registries that use Cloudsmith or GCP OIDC are now accepted. #3850 Best-effort connection tests for private registries now use GET requests instead of HEAD for better compatibility with various registry implementations. For NuGet feeds, the test is now always performed against the service index. #3853 Fixed a bug where two diagnostics produced within the same millisecond could overwrite each other on disk, causing one of them to be lost. #3852 ... (truncated) Commits 99df26d Merge pull request #3996 from github/update-v4.37.0-c7c896d71 31c2707 Add changenote for #3973 72df218 Update changelog for v4.37.0 c7c896d Merge pull request #3995 from github/update-bundle/codeql-bundle-v2.26.0 3f34ff0 Add changelog note 43bec09 Update default bundle to codeql-bundle-v2.26.0 f58f0d1 Merge pull request #3973 from github/mbg/repo-props/config-file-shorthands 7dc37cb Merge remote-tracking branch 'origin/main' into mbg/repo-props/config-file-sh... 8e22350 Thread ActionState to initConfig 69c9e8c Mark some status-report imports as type-only to avoid circular dependencies Additional commits viewable in compare view Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase. Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: @dependabot rebase will rebase this PR @dependabot recreate will recreate this PR, overwriting any edits that have been made to it @dependabot show ignore conditions will show all of the ignore conditions of the specified dependency @dependabot ignore major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) @dependabot ignore minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) @dependabot ignore will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) @dependabot unignore will remove all of the ignore conditions of the specified dependency @dependabot unignore will remove the ignore condition of the specified dependency and ignore conditions

Open Graph Description: Bumps the actions group with 2 updates: github/codeql-action/init and github/codeql-action/analyze. Updates github/codeql-action/init from 4.36.3 to 4.37.0 Release notes Sourced from github/codeql...

X Description: Bumps the actions group with 2 updates: github/codeql-action/init and github/codeql-action/analyze. Updates github/codeql-action/init from 4.36.3 to 4.37.0 Release notes Sourced from github/codeql...

Opengraph URL: https://github.com/matplotlib/matplotlib.org/pull/82

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:be62a351-91e5-a5d2-8c2e-3f2a8d1b2f94
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idEC8A:20569A:6FD676:9FEB79:6A63761A
html-safe-noncee01bfbd6c945f41f777452071ee438971e9be1d651c01c789d1ce62746767323
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJFQzhBOjIwNTY5QTo2RkQ2NzY6OUZFQjc5OjZBNjM3NjFBIiwidmlzaXRvcl9pZCI6IjY4NDE3ODc4Mzk1MDY3NzM1MzAiLCJyZWdpb25fZWRnZSI6ImlhZCIsInJlZ2lvbl9yZW5kZXIiOiJpYWQifQ==
visitor-hmace3402a243d69a2fece29eef8fbe9acc9daa68b4091a85cf2e27d74d2a88de53c
hovercard-subject-tagpull_request:4041186793
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/matplotlib/matplotlib.org/pull/82/files
twitter:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
og:image:altBumps the actions group with 2 updates: github/codeql-action/init and github/codeql-action/analyze. Updates github/codeql-action/init from 4.36.3 to 4.37.0 Release notes Sourced from github/codeql...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None15e78334bb345f3864e70c5a376ed0383374123629b9e3022398d9431f6cd8bf
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/matplotlib/matplotlib.org git https://github.com/matplotlib/matplotlib.org.git
octolytics-dimension-user_id215947
octolytics-dimension-user_loginmatplotlib
octolytics-dimension-repository_id457721632
octolytics-dimension-repository_nwomatplotlib/matplotlib.org
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id457721632
octolytics-dimension-repository_network_root_nwomatplotlib/matplotlib.org
turbo-body-classeslogged-out env-production page-responsive
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release51da2d8d0a841a1393b806a6559fa9ad757e1666
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/matplotlib/matplotlib.org/pull/82/files#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fmatplotlib%2Fmatplotlib.org%2Fpull%2F82%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub Copilot appDirect agents from issue to mergehttps://github.com/features/ai/github-app
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
Code QualityEnforce quality at mergehttps://github.com/features/code-quality
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
View all resourceshttps://github.com/resources
GitHub SponsorsFund open source developershttps://github.com/open-source/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/open-source/accelerator
GitHub Starshttps://stars.github.com
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/enterprise/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fmatplotlib%2Fmatplotlib.org%2Fpull%2F82%2Ffiles
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=matplotlib%2Fmatplotlib.org
Reloadhttps://github.com/matplotlib/matplotlib.org/pull/82/files
Reloadhttps://github.com/matplotlib/matplotlib.org/pull/82/files
Reloadhttps://github.com/matplotlib/matplotlib.org/pull/82/files
Please reload this pagehttps://github.com/matplotlib/matplotlib.org/pull/82/files
matplotlib https://github.com/matplotlib
matplotlib.orghttps://github.com/matplotlib/matplotlib.org
Notifications https://github.com/login?return_to=%2Fmatplotlib%2Fmatplotlib.org
Fork 5 https://github.com/login?return_to=%2Fmatplotlib%2Fmatplotlib.org
Star 1 https://github.com/login?return_to=%2Fmatplotlib%2Fmatplotlib.org
Code https://github.com/matplotlib/matplotlib.org
Issues 3 https://github.com/matplotlib/matplotlib.org/issues
Pull requests 2 https://github.com/matplotlib/matplotlib.org/pulls
Actions https://github.com/matplotlib/matplotlib.org/actions
Projects https://github.com/matplotlib/matplotlib.org/projects
Security and quality 0 https://github.com/matplotlib/matplotlib.org/security
Insights https://github.com/matplotlib/matplotlib.org/pulse
Code https://github.com/matplotlib/matplotlib.org
Issues https://github.com/matplotlib/matplotlib.org/issues
Pull requests https://github.com/matplotlib/matplotlib.org/pulls
Actions https://github.com/matplotlib/matplotlib.org/actions
Projects https://github.com/matplotlib/matplotlib.org/projects
Security and quality https://github.com/matplotlib/matplotlib.org/security
Insights https://github.com/matplotlib/matplotlib.org/pulse
Sign up for GitHub https://github.com/signup?return_to=%2Fmatplotlib%2Fmatplotlib.org%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2Fmatplotlib%2Fmatplotlib.org%2Fissues%2Fnew%2Fchoose
QuLogichttps://github.com/QuLogic
mainhttps://github.com/matplotlib/matplotlib.org/tree/main
dependabot/github_actions/actions-6872eef3cbhttps://github.com/matplotlib/matplotlib.org/tree/dependabot/github_actions/actions-6872eef3cb
Conversation 0 https://github.com/matplotlib/matplotlib.org/pull/82
Commits 1 https://github.com/matplotlib/matplotlib.org/pull/82/commits
Checks 12 https://github.com/matplotlib/matplotlib.org/pull/82/checks
Files changed https://github.com/matplotlib/matplotlib.org/pull/82/files
Please reload this pagehttps://github.com/matplotlib/matplotlib.org/pull/82/files
Bump the actions group with 2 updates https://github.com/matplotlib/matplotlib.org/pull/82/files#top
Show all changes 1 commit https://github.com/matplotlib/matplotlib.org/pull/82/files
78cb004 Bump the actions group with 2 updates dependabot[bot] Jul 13, 2026 https://github.com/matplotlib/matplotlib.org/pull/82/commits/78cb004e320d16db079a1cef5347def38c1e5df3
Clear filters https://github.com/matplotlib/matplotlib.org/pull/82/files
Please reload this pagehttps://github.com/matplotlib/matplotlib.org/pull/82/files
Please reload this pagehttps://github.com/matplotlib/matplotlib.org/pull/82/files
.github/workflows/codeql-analysis.ymlhttps://github.com/matplotlib/matplotlib.org/pull/82/files#diff-63bd641104d10e25f141d518a16b22a151d125e12701df2f9e79734b23b90188
View file https://github.com/matplotlib/matplotlib.org/blob/78cb004e320d16db079a1cef5347def38c1e5df3/.github/workflows/codeql-analysis.yml
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/matplotlib/matplotlib.org/pull/82/{{ revealButtonHref }}
https://github.com/matplotlib/matplotlib.org/pull/82/files#diff-63bd641104d10e25f141d518a16b22a151d125e12701df2f9e79734b23b90188
Please reload this pagehttps://github.com/matplotlib/matplotlib.org/pull/82/files
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.