12 Commits
Author SHA1 Message Date
enix-renovate[bot]andThibault VINCENT 255ddb5399 chore: update github-actions 2026-08-04 18:55:59 +02:00
enix-renovate[bot]andThibault VINCENT 06406e0830 chore: update github-actions to v7 2026-08-04 16:11:36 +02:00
enix-renovate[bot]andThibault VINCENT 9f5ff5330b chore: update github-actions 2026-08-04 15:26:20 +02:00
enix-renovate[bot]andThibault VINCENT 0332c8dc75 chore: update github-actions 2026-07-06 16:30:39 +02:00
enix-renovate[bot]andThibault VINCENT c9525d9e41 chore: update actions/checkout action to v7 2026-06-30 18:41:58 +02:00
enix-renovate[bot]andThibault VINCENT f04a94a832 chore: update github-actions 2026-06-30 18:08:25 +02:00
enix-renovate[bot]andThibault VINCENT 69e244467d chore: update github-actions 2026-06-15 16:57:44 +02:00
enix-renovate[bot]andThibault VINCENT 32ae8bbb84 chore: update github-actions 2026-05-25 11:34:44 +02:00
Thibault VINCENTandThibault VINCENT 8e3bdfe833 ci(codeql): exclude weak-sensitive-data-hashing for JKS/JCEKS HMAC
The JKS/JCEKS wire format mandates SHA-1 in its keyed digest
(com.sun.crypto.provider.JceKeyStore.getPreKeyedHash). The exporter
verifies this digest before parsing — it never derives a key or signs
anything. Project-wide suppression is safe because the codebase has
no other password-hashing surface.
2026-05-15 16:54:25 +02:00
Thibault VINCENT ca8e314ae8 bump(ci): upgrade actions 2026-05-15 15:41:05 +02:00
enix-renovate[bot]andThibault VINCENT 73ef68f5be chore: update github-actions 2026-05-11 11:13:47 +02:00
Thibault VINCENT cbfbb2caa8 ci(codeql): switch to advanced mode with a workflow file 2026-05-02 16:04:14 +02:00