enix-renovate[bot] and Thibault VINCENT
255ddb5399
chore: update github-actions
2026-08-04 18:55:59 +02:00
enix-renovate[bot] and Thibault VINCENT
06406e0830
chore: update github-actions to v7
2026-08-04 16:11:36 +02:00
enix-renovate[bot] and Thibault VINCENT
9f5ff5330b
chore: update github-actions
2026-08-04 15:26:20 +02:00
enix-renovate[bot] and Thibault VINCENT
0332c8dc75
chore: update github-actions
2026-07-06 16:30:39 +02:00
enix-renovate[bot] and Thibault VINCENT
c9525d9e41
chore: update actions/checkout action to v7
2026-06-30 18:41:58 +02:00
enix-renovate[bot] and Thibault VINCENT
f04a94a832
chore: update github-actions
2026-06-30 18:08:25 +02:00
enix-renovate[bot] and Thibault VINCENT
69e244467d
chore: update github-actions
2026-06-15 16:57:44 +02:00
enix-renovate[bot] and Thibault VINCENT
32ae8bbb84
chore: update github-actions
2026-05-25 11:34:44 +02:00
Thibault VINCENT and Thibault VINCENT
8e3bdfe833
ci(codeql): exclude weak-sensitive-data-hashing for JKS/JCEKS HMAC
...
The JKS/JCEKS wire format mandates SHA-1 in its keyed digest
(com.sun.crypto.provider.JceKeyStore.getPreKeyedHash). The exporter
verifies this digest before parsing — it never derives a key or signs
anything. Project-wide suppression is safe because the codebase has
no other password-hashing surface.
2026-05-15 16:54:25 +02:00
Thibault VINCENT
ca8e314ae8
bump(ci): upgrade actions
2026-05-15 15:41:05 +02:00
enix-renovate[bot] and Thibault VINCENT
73ef68f5be
chore: update github-actions
2026-05-11 11:13:47 +02:00
Thibault VINCENT
cbfbb2caa8
ci(codeql): switch to advanced mode with a workflow file
2026-05-02 16:04:14 +02:00