Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
💡 Verification agent
🧩 Analysis chain
Critical: Verify PR scanning coverage after trigger changes.
By removing the
pull_requestevent, you’ve disabled CodeQL scans on PRs, which prevents early security feedback for contributors. If you still need scanning during pull requests, re-add the trigger. For example:🏁 Script executed:
Length of output: 302
Add
pull_requesttrigger to.github/workflows/codeql.yamlYou’ve removed the
pull_requestevent, which means CodeQL will only run on pushes and manual dispatches—PRs won’t be scanned automatically. To restore early security feedback on pull requests, update your workflow’s triggers:on: push: branches: - '**' + pull_request: + branches: + - '**' workflow_dispatch:• File:
.github/workflows/codeql.yaml(lines 2–6)• Include the
pull_requestblock to ensure scans run on PRs as well.📝 Committable suggestion