fix: bump OSV-Scanner from v1.7.1 to v1.9.2 - #41
Conversation
Updates both scan-scheduled and scan-pr workflows. Stays within v1.x line to avoid v1->v2 workflow path breakage. SHA pinned to v1.9.2 tag (764c9181).
|
Note
|
| Layer / File(s) | Summary |
|---|---|
Update scanner action revisions .github/workflows/osv-scanner.yml |
Scheduled/push and pull-request/merge-group jobs now reference the newer pinned OSV Scanner workflow revision. |
Estimated code review effort: 1 (Trivial) | ~2 minutes
🚥 Pre-merge checks | ✅ 5
✅ Passed checks (5 passed)
| Check name | Status | Explanation |
|---|---|---|
| Description Check | ✅ Passed | Check skipped - CodeRabbit’s high-level summary is enabled. |
| Title check | ✅ Passed | The title accurately summarizes the main change: upgrading OSV-Scanner from v1.7.1 to v1.9.2. |
| Docstring Coverage | ✅ Passed | No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. |
| Linked Issues check | ✅ Passed | Check skipped because no linked issues were found for this pull request. |
| Out of Scope Changes check | ✅ Passed | Check skipped because no linked issues were found for this pull request. |
✨ Finishing Touches
🧪 Generate unit tests (beta)
- Create PR with unit tests
- Commit unit tests in branch
ci/osv-scanner-upgrade
Comment @coderabbitai help to get the list of available commands.
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
|



Updates both scan-scheduled and scan-pr reusable workflows. Stays within v1.x line to avoid v1→v2 workflow path breakage. SHA pinned to v1.9.2 tag (764c9181).
Verification
Summary by CodeRabbit