Skip to content

d

a67eb46
Select commit
Loading
Failed to load commit list.
Merged

Roll up and merge #59

d
a67eb46
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL completed Apr 18, 2026 in 6s

1 configuration not found

Warning: Code scanning may not have found all the alerts introduced by this pull request, because 1 configuration present on refs/heads/master was not found:

Default setup

  • ❓  /language:python

New alerts in code changed by this pull request

Security Alerts:

  • 12 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 33 in .github/workflows/auto-assign-pr.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {}

Check warning on line 71 in .github/workflows/auto-copilot-org-playwright-loop.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Check warning on line 57 in .github/workflows/auto-copilot-org-playwright-loop.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Org-wide: Copilot Playwright Test, Review, Auto-fix, PR, Merge' step
Uses Step
uses 'peter-evans/create-pull-request' with ref 'main', not a pinned commit hash

Check warning on line 67 in .github/workflows/auto-copilot-org-playwright-loop.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Org-wide: Copilot Playwright Test, Review, Auto-fix, PR, Merge' step
Uses Step
uses 'pascalgn/automerge-action' with ref 'main', not a pinned commit hash

Check warning on line 57 in .github/workflows/auto-copilot-org-playwright-loopv2.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Check warning on line 44 in .github/workflows/auto-copilot-org-playwright-loopv2.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Org-wide: Copilot Playwright Test, Review, Auto-fix, PR, Merge' step
Uses Step
uses 'peter-evans/create-pull-request' with ref 'main', not a pinned commit hash

Check warning on line 53 in .github/workflows/auto-copilot-org-playwright-loopv2.yaml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Org-wide: Copilot Playwright Test, Review, Auto-fix, PR, Merge' step
Uses Step
uses 'pascalgn/automerge-action' with ref 'main', not a pinned commit hash

Check warning on line 62 in .github/workflows/auto-copilot-playwright-auto-test.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Check warning on line 49 in .github/workflows/auto-copilot-playwright-auto-test.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Copilot: Generate and Run Playwright Tests Until Passing' step
Uses Step
uses 'peter-evans/create-pull-request' with ref 'main', not a pinned commit hash

Check warning on line 58 in .github/workflows/auto-copilot-playwright-auto-test.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Copilot: Generate and Run Playwright Tests Until Passing' step
Uses Step
uses 'pascalgn/automerge-action' with ref 'main', not a pinned commit hash

Check warning on line 41 in .github/workflows/auto-label-comment-prs.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {}

Check warning on line 33 in .github/workflows/auto-label.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {}