Merge main into releases/v4 by github-actions[bot] · Pull Request #3235 · github/codeql-action

and others added 30 commits

October 14, 2025 19:49
- Throws a `ConfigurationError` if parsing the YAML fails
- Add a couple of tests for it
Mergeback v4.30.9 refs/heads/releases/v4 into main
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Michael B. Gale <mbg@github.com>
Add experimental functionality for labelling PRs by their size
…thub/workflows/actions/setup-node-6

Bump actions/setup-node from 5 to 6 in /.github/workflows
…r-5ed6ededba

Bump the npm-minor group with 5 updates
Handle user errors for invalid `UserConfig`s and missing query files

mbg and others added 19 commits

October 23, 2025 13:34
Bump timeout for `analyze-action-env` test
Update wording in some log messages
…-limit

Overlay: Lower size limit for overlay base databases
Perform SARIF post-processing independently of upload
Also add tests for it and `getRequiredEnvParam`
Bump minimum CodeQL Bundle version to 2.17.6
Add `getOptionalEnvVar` helper
Add changelog entry for post-processing change

@mbg mbg marked this pull request as ready for review

October 24, 2025 16:51

Copilot AI review requested due to automatic review settings

October 24, 2025 16:51

mbg

mbg approved these changes Oct 24, 2025

@mbg mbg deleted the update-v4.31.0-1d36546c1 branch

October 24, 2025 17:08