Skip to content

BUILD-10765 Update gh-action_release to v6.4.0#303

Merged
marc-jasper-sonarsource merged 1 commit into
masterfrom
BUILD-10765-update-gh-action-release
Mar 23, 2026
Merged

BUILD-10765 Update gh-action_release to v6.4.0#303
marc-jasper-sonarsource merged 1 commit into
masterfrom
BUILD-10765-update-gh-action-release

Conversation

@mikolaj-matuszny-ext-sonarsource
Copy link
Copy Markdown
Contributor

Summary

  • Update gh-action_release to v6.4.0 (7b055eca5ce771ff254fbec2697c0fc1c7207e1e)

See: https://discuss.sonarsource.com/t/action-required-update-your-github-actions-cache-release-and-releasability-before-16-03/23899

Test plan

  • Verify release workflow runs successfully

@sonar-review-alpha
Copy link
Copy Markdown

sonar-review-alpha Bot commented Mar 20, 2026

Summary

Updates the gh-action_release GitHub Action from v6.1.0 to v6.4.0 in both test and production release workflows. This is a required update per SonarSource guidance to ensure GitHub Actions cache and releasability compatibility.

What reviewers should know

Changes: Only .github/workflows/release.yml is modified — both the test release job (lines 14) and production release job (lines 23) have identical version updates, with the commit hash pinned for reproducibility.

For reviewers: Check the gh-action_release v6.4.0 release notes to confirm there are no breaking changes or new configuration requirements. The test plan (verify the workflow runs successfully) should catch any issues, but familiarizing yourself with what changed in the action can help spot any edge cases specific to this project's Python packaging setup.


  • Generate Walkthrough
  • Generate Diagram

🗣️ Give feedback

@hashicorp-vault-sonar-prod
Copy link
Copy Markdown

hashicorp-vault-sonar-prod Bot commented Mar 20, 2026

BUILD-10765

Copy link
Copy Markdown

@sonar-review-alpha sonar-review-alpha Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Conclusion: Minimal, mechanical update — both release jobs are consistently bumped to the same pinned commit hash. No logic changes, no new configuration, nothing to trip over.

🗣️ Give feedback

@sonarqube-next
Copy link
Copy Markdown

Quality Gate passed Quality Gate passed for 'Python Scanner'

Issues
0 New issues
0 Fixed issues
0 Accepted issues

Measures
0 Security Hotspots
0 Dependency risks
No data about Coverage
No data about Duplication

See analysis details on SonarQube

Copy link
Copy Markdown
Contributor

@marc-jasper-sonarsource marc-jasper-sonarsource left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM.

@marc-jasper-sonarsource marc-jasper-sonarsource merged commit d91966b into master Mar 23, 2026
36 of 37 checks passed
@marc-jasper-sonarsource marc-jasper-sonarsource deleted the BUILD-10765-update-gh-action-release branch March 23, 2026 14:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants