Skip to content

fix(codeql): switch language matrix to 'actions' (no JS/TS in repo)#29

Merged
hyperpolymath merged 1 commit into
mainfrom
fix/codeql-language-matrix-actions
May 14, 2026
Merged

fix(codeql): switch language matrix to 'actions' (no JS/TS in repo)#29
hyperpolymath merged 1 commit into
mainfrom
fix/codeql-language-matrix-actions

Conversation

@hyperpolymath
Copy link
Copy Markdown
Owner

CodeQL was pinned to language: javascript-typescript on a repo with no JS/TS source files, so the analyze job failed with a configuration error every run — blocking all Dependabot PRs.

Same root cause as IJ.jl#6 (and the same fix applied to JuliaKids.jl#7, PRComms.jl#7, etc.). Switches to �ctions, which scans the workflow files every repo has.

Going forward: a workflow_audit rule will be added to hypatia to flag any codeql.yml whose language matrix doesn't match the repo's actual source languages.

Same root cause as IJ.jl#6: CodeQL was pinned to `language: javascript-typescript` on a repo with no JS/TS source files, so the analyze job failed with a configuration error every run — blocking all Dependabot PRs.

Switches to `actions`, which scans the workflow files every repo has.

Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
@hyperpolymath hyperpolymath merged commit d39453c into main May 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant