Skip to content

[CI] Bump upload-artifact v4->v7 + codeql-action v3->v4 (manual, supersedes 539/541) #590

@atlas-apex

Description

@atlas-apex

Driver

Dependabot opened bumps for actions/upload-artifact (v4→v7, #539) and github/codeql-action (v3→v4, #541), but their branches were cut from main and conflict with dev's diverged workflow files; dependabot can't auto-target dev until the target-branch: dev config (merged in #588) reaches main via a release. Apply the two major bumps manually against dev and close the conflicting dependabot PRs.

Scope

Acceptance Criteria

Glossary

Term Definition
Major action bump Upgrading a pinned GitHub Action across a major version, possibly with breaking changes — validated by the PR's own CI.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions