Skip to content

BUILD-10765 Important: Update SonarSource/gh-action_release to 6.5.0#314

Merged
guillaume-dequenne merged 1 commit intomasterfrom
feat/BUILD-10765/update-gh-action_release-v2
Apr 10, 2026
Merged

BUILD-10765 Important: Update SonarSource/gh-action_release to 6.5.0#314
guillaume-dequenne merged 1 commit intomasterfrom
feat/BUILD-10765/update-gh-action_release-v2

Conversation

@SonarTech
Copy link
Copy Markdown
Contributor

Important: Update SonarSource/gh-action_release to c52861bb0e5dd564187f3fd74e048f20aef0f761 (6.5.0) for compliance with allowed versions.

See: https://discuss.sonarsource.com/t/action-required-update-your-github-actions-cache-release-and-releasability-before-10-04/23899/5

@sonar-review-alpha
Copy link
Copy Markdown

sonar-review-alpha bot commented Apr 8, 2026

Summary

Updates the SonarSource/gh-action_release action from 6.4.1 to 6.5.0 in both release workflow jobs. The change involves updating the commit hash and version comment in two places within .github/workflows/release.yml. This is a compliance update per SonarSource's guidance on maintaining allowed action versions.

What reviewers should know

The changes are minimal and focused: the commit hash and corresponding version comment are updated identically in both the test PyPI and production PyPI release job definitions (lines 14 and 23 in release.yml). Verify that both jobs reference the correct commit hash c52861bb0e5dd564187f3fd74e048f20aef0f761 and that the version comment # 6.5.0 matches.


  • Generate Walkthrough
  • Generate Diagram

🗣️ Give feedback

@hashicorp-vault-sonar-prod
Copy link
Copy Markdown

hashicorp-vault-sonar-prod bot commented Apr 8, 2026

BUILD-10765

@sonarqube-next
Copy link
Copy Markdown

sonarqube-next bot commented Apr 8, 2026

Quality Gate passed Quality Gate passed for 'Python Scanner'

Issues
0 New issues
0 Fixed issues
0 Accepted issues

Measures
0 Security Hotspots
0 Dependency risks
No data about Coverage
No data about Duplication

See analysis details on SonarQube

Copy link
Copy Markdown

@sonar-review-alpha sonar-review-alpha bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM! ✅

Minimal, clean change — two identical version bumps in the release workflow with no functional logic changes. Safe to merge.

🗣️ Give feedback

Copy link
Copy Markdown
Contributor

@guillaume-dequenne guillaume-dequenne left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@guillaume-dequenne guillaume-dequenne merged commit 5900949 into master Apr 10, 2026
22 checks passed
@guillaume-dequenne guillaume-dequenne deleted the feat/BUILD-10765/update-gh-action_release-v2 branch April 10, 2026 11:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants