Skip to content

Bump actions/checkout from 6.0.3 to 7.0.1 - #1344

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-7.0.1
Open

Bump actions/checkout from 6.0.3 to 7.0.1#1344
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-7.0.1

Bump actions/checkout from 6.0.3 to 7.0.1

b4b76d1
Select commit
Loading
Failed to load commit list.
SonarQubeCloud / SonarCloud Code Analysis failed Jul 25, 2026 in 28s

Quality Gate failed

Failed conditions
C Security Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

Annotations

Check warning on line 37 in .github/workflows/release.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Omitting "--ignore-scripts" allows lifecycle scripts to run during package installation.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-Yekri_mlnSya70Nmr&open=AZ-Yekri_mlnSya70Nmr&pullRequest=1344

Check warning on line 70 in .github/workflows/ci.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Omitting "--ignore-scripts" allows lifecycle scripts to run during package installation.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-YekoA_mlnSya70Nmp&open=AZ-YekoA_mlnSya70Nmp&pullRequest=1344

Check warning on line 45 in .github/workflows/release.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Not disabling redirects might allow for redirections to insecure websites. Make sure it is safe here.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-Yekri_mlnSya70Nms&open=AZ-Yekri_mlnSya70Nms&pullRequest=1344

Check warning on line 28 in .github/workflows/update-docker-image.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

"npx" can install packages on-demand and run their lifecycle scripts.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-Yekr0_mlnSya70Nmt&open=AZ-Yekr0_mlnSya70Nmt&pullRequest=1344

Check warning on line 25 in .github/workflows/ci.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Omitting "--ignore-scripts" allows lifecycle scripts to run during package installation.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-YekoA_mlnSya70Nmn&open=AZ-YekoA_mlnSya70Nmn&pullRequest=1344

Check warning on line 92 in .github/workflows/ci.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Not disabling redirects might allow for redirections to insecure websites. Make sure it is safe here.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-YekoA_mlnSya70Nmq&open=AZ-YekoA_mlnSya70Nmq&pullRequest=1344

Check warning on line 32 in .github/workflows/update-docker-image.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Not disabling redirects might allow for redirections to insecure websites. Make sure it is safe here.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-Yekr0_mlnSya70Nmu&open=AZ-Yekr0_mlnSya70Nmu&pullRequest=1344

Check warning on line 45 in .github/workflows/ci.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Omitting "--ignore-scripts" allows lifecycle scripts to run during package installation.

See more on https://sonarcloud.io/project/issues?id=eclipse-pass_pass-ui&issues=AZ-YekoA_mlnSya70Nmo&open=AZ-YekoA_mlnSya70Nmo&pullRequest=1344