Skip to content

[release/v7.4.21] Bump actions/github-script from 8.0.0 to 9.0.0 - #28047

Merged
Aditya Patwardhan (adityapatwardhan) merged 1 commit into
PowerShell:release/v7.4.21from
adityapatwardhan:backport/release/v7.4.21/27249-d2c126918
Sep 22, 2026
Merged

Aditya Patwardhan (adityapatwardhan) merged 1 commit into
PowerShell:release/v7.4.21from
adityapatwardhan:backport/release/v7.4.21/27249-d2c126918

Conversation

@adityapatwardhan

Copy link
Copy Markdown
Member

Backport of #27249 to release/v7.4.21

Triggered by Aditya Patwardhan (@adityapatwardhan) on behalf of @app/dependabot

Original CL Label: CL-BuildPackaging

/cc @PowerShell/powershell-maintainers

Impact

REQUIRED: Choose either Tooling Impact or Customer Impact (or both). At least one checkbox must be selected.

Tooling Impact

  • Required tooling change
  • Optional tooling change (include reasoning)

Updates actions/github-script to v9 in the labels workflow so release-branch automation uses the maintained approved action version.

Customer Impact

  • Customer reported
  • Found internally

Regression

REQUIRED: Check exactly one box.

  • Yes
  • No

This is not a regression.

Testing

Cherry-pick completed cleanly and git diff --check passed. The change is a single pinned action revision in the labels workflow; full execution will be validated by backport CI.

Risk

REQUIRED: Check exactly one box.

  • High
  • Medium
  • Low

High risk under repository guidance because this is a major-version update to an action used by repository automation, with upstream breaking changes. Scope in this repository is limited to the approved pinned action reference already merged on master.

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@adityapatwardhan Aditya Patwardhan (adityapatwardhan) added the CL-BuildPackaging Indicates that a PR should be marked as a build or packaging change in the Change Log label Sep 21, 2026
Copilot AI lite review requested due to automatic review settings September 21, 2026 21:20
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
There may be pipelines that require an authorized user to comment /azp run to run.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🔵 Needs a closer look

This major-version update affects repository automation and warrants final human review.

Review effort: Lite
Findings: None

What changed in this PR

Updates the labels workflow to actions/github-script v9 with immutable SHA pinning.

Changes:

  • Replaces the v8.0.0 action revision with the approved v9.0.0 revision.
  • Retains script compatibility with v9.
File Description
.github/​workflows/​labels.yml Updates the pinned GitHub Script action used for PR label validation.

💡 Add a code-review agent skill for context-aware, tailored reviews. Learn more in the docs.

@adityapatwardhan
Aditya Patwardhan (adityapatwardhan) merged commit 1214633 into PowerShell:release/v7.4.21 Sep 22, 2026
37 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CL-BuildPackaging Indicates that a PR should be marked as a build or packaging change in the Change Log

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants