James Cole
66af080b09
Update lock-threads action to use dessant version
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-28 05:10:49 +02:00
James Cole
2c14a605e4
Remove AI assistance disclosure comments
...
Removed AI assistance disclosure comments from the workflow.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-21 12:32:32 +02:00
James Cole
f00852aa6a
Merge branch 'main' into develop
2026-05-21 06:22:28 +02:00
James Cole
195fb6cdb7
Update pr-reply-no-disclosure.yml
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-21 06:07:37 +02:00
James Cole
8b0f790a56
Merge branch 'main' into develop
2026-05-20 20:18:10 +02:00
James Cole
b70ed32952
Merge pull request #12271 from alanturing881/fix/stored-xss-ale-piggy-name
...
Fix stored XSS in audit log view via piggy bank name (ale.twig)
2026-05-20 20:16:16 +02:00
James Cole
9e511c822e
Update pr-reply-no-disclosure.yml
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-20 20:12:40 +02:00
James Cole
ec1dfca2b5
Enhance PR workflow to check for author
...
Added logic to check for the author of the pull request.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-19 08:15:40 +02:00
James Cole
fe0e8796ca
Merge branch 'main' into develop
2026-05-17 04:50:57 +02:00
James Cole
e83c5b9f86
New workflow.
2026-05-17 04:50:34 +02:00
James Cole
9558f05947
Merge branch 'main' into develop
2026-05-17 04:29:39 +02:00
James Cole
9436eeacaf
Update warning about AI-generated security advisories
...
Clarified consequences of reporting AI-generated security advisories.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-17 03:44:01 +02:00
James Cole
e059753c43
Merge branch 'main' into develop
2026-05-16 20:39:12 +02:00
James Cole
2a68c48e2a
Update security reporting guidelines in security.md
...
Clarified instructions for reporting false security issues.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-16 20:05:44 +02:00
James Cole
c394034876
Clarify AI hallucinations in security reporting
...
Reworded the third point to clarify AI hallucinations in security issues.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-16 20:05:20 +02:00
James Cole
7bd91048ea
Update security.md with reporting guidelines
...
Clarified reporting guidelines for security issues to prevent false reports.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-16 20:03:49 +02:00
James Cole
d64bca7700
Merge branch 'main' into develop
2026-05-16 19:54:22 +02:00
James Cole
7d768cfa23
Add AI-generated security advisories section
...
Added a section regarding AI-generated security advisories to clarify reporting policies and potential consequences.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-05-16 19:52:56 +02:00
James Cole
fd50fbf193
Merge branch 'main' into develop
2026-05-12 18:48:04 +02:00
dependabot[bot]
8cf8e91448
Bump actions/dependency-review-action from 4 to 5
...
Bumps [actions/dependency-review-action](https://github.com/actions/dependency-review-action ) from 4 to 5.
- [Release notes](https://github.com/actions/dependency-review-action/releases )
- [Commits](https://github.com/actions/dependency-review-action/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/dependency-review-action
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-05-11 03:56:03 +00:00
James Cole
1cc471fcc4
New guidelines.
2026-05-05 19:51:57 +02:00
github-actions[bot]
8c8af51bc4
Merge pull request #12200 from firefly-iii/develop
...
🤖 Automatically merge the PR into the main branch.
2026-04-27 18:55:46 +02:00
James Cole
e4b1c3045e
Update Mago Lint command to use vendor path
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-27 18:50:27 +02:00
James Cole
e974594fe3
Merge branch 'main' into develop
2026-04-27 18:46:22 +02:00
James Cole
c93a2dc23a
Refactor CI workflow by removing Mago setup
...
Removed Mago setup step and updated command path.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-27 18:41:58 +02:00
James Cole
eb4971fec6
Add latest version setup for Mago in release workflow
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-27 18:36:24 +02:00
James Cole
0c63a3380d
Refactor Setup Mago step in release workflow
...
Removed working-directory input from Setup Mago step.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-27 18:32:52 +02:00
James Cole
edd30b2d42
Merge branch 'main' into develop
2026-04-27 18:28:03 +02:00
James Cole
e8ab7d8a93
Specify version for Mago setup in release workflow
...
Update Mago setup to use a specific version.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-27 18:20:27 +02:00
James Cole
c0eca4298a
Updated templates.
2026-04-27 18:14:58 +02:00
James Cole
1983eefe00
Merge branch 'main' into develop
2026-04-18 06:00:08 +02:00
James Cole
a9a03fe0d0
Update release.yml
...
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-18 05:59:50 +02:00
James Cole
a8bed2d316
Reorganize build job.
2026-04-18 05:54:41 +02:00
James Cole
b0a1070b51
Expand agents instructions
2026-04-16 04:33:19 +02:00
James Cole
fbb3c5a5aa
Merge branch 'main' into develop
...
# Conflicts:
# composer.lock
2026-04-13 18:52:23 +02:00
dependabot[bot]
7f604795b9
Bump actions/github-script from 8 to 9
...
Bumps [actions/github-script](https://github.com/actions/github-script ) from 8 to 9.
- [Release notes](https://github.com/actions/github-script/releases )
- [Commits](https://github.com/actions/github-script/compare/v8...v9 )
---
updated-dependencies:
- dependency-name: actions/github-script
dependency-version: '9'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-04-13 03:54:05 +00:00
James Cole
e3f9d55732
Merge branch 'main' into develop
2026-04-10 21:21:18 +02:00
James Cole
c74790322b
Enable verbose logging for npm build commands
...
Added verbose flag to npm commands for better logging.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-04-10 10:08:40 +02:00
James Cole
14783702bc
Update cookie names.
2026-04-06 15:42:29 +02:00
James Cole
b115b4ad92
Improve PR template.
2026-03-22 13:38:04 +01:00
James Cole
b05a38c0e2
So let's make this absolutely clear.
2026-03-20 23:48:42 +01:00
James Cole
15e29d133a
Expand the pull request template
2026-03-20 08:48:18 +01:00
James Cole
6c3b4a77b5
Small changes
2026-03-15 07:42:27 +01:00
James Cole
8abd2a6604
Add text about AI reports.
2026-03-14 08:36:39 +01:00
dependabot[bot]
10d2137723
Bump crazy-max/ghaction-import-gpg from 6 to 7
...
Bumps [crazy-max/ghaction-import-gpg](https://github.com/crazy-max/ghaction-import-gpg ) from 6 to 7.
- [Release notes](https://github.com/crazy-max/ghaction-import-gpg/releases )
- [Commits](https://github.com/crazy-max/ghaction-import-gpg/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: crazy-max/ghaction-import-gpg
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2026-03-09 03:53:55 +00:00
James Cole
7315825475
Update CI workflow to manage environment file
...
Copy .env.example to .env before running CI and remove .env afterward.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-03-04 10:55:56 +01:00
James Cole
eea23ed756
Update composer update command in CI workflow
...
Removed the '--no-plugins' option from composer update command.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-03-04 10:42:51 +01:00
James Cole
9b5cf09cc0
Update release.yml to enforce error handling
...
Removed '|| true' from Mago format, PHPCS, and lint commands to ensure they fail the workflow if errors occur.
Signed-off-by: James Cole <james@firefly-iii.org >
2026-03-04 09:26:08 +01:00
James Cole
4beef8be86
Merge branch 'main' into develop
2026-03-04 07:14:11 +01:00
James Cole
912a9f1ea7
Fix workflow for now.
2026-03-04 06:53:52 +01:00