From b3252f3c5d7624667bbcb5438aca040e729e7caf Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Wed, 22 Apr 2026 17:36:45 -0500 Subject: [PATCH 1/6] switch back to standard trigger --- .github/workflows/dependency-review.yml | 8 +------- 1 file changed, 1 insertion(+), 7 deletions(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 8c3b3e4..b77accd 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -1,12 +1,6 @@ --- name: "Dependency Review" -on: - pull_request: - types: - - opened - - synchronize - - labeled - - unlabeled +on: [pull_request] permissions: contents: read From 20e0d58dde98fd854828e76ab457a4c3bbb9b2fb Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Wed, 22 Apr 2026 17:51:06 -0500 Subject: [PATCH 2/6] only latest scan per PR --- .github/workflows/dependency-review.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index b77accd..4a80566 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -6,6 +6,10 @@ permissions: contents: read pull-requests: write +concurrency: + group: ${{ github.workflow }}-${{ github.head_ref || github.run_id }} + cancel-in-progress: true + jobs: dependency-review: runs-on: ubuntu-latest From 1ee5b54ade8ac36c5475e13f84e3582de21c94af Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Thu, 23 Apr 2026 13:03:18 -0500 Subject: [PATCH 3/6] expand "on" --- .github/workflows/dependency-review.yml | 11 +++++++++-- 1 file changed, 9 insertions(+), 2 deletions(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 4a80566..81142fd 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -1,13 +1,20 @@ --- name: "Dependency Review" -on: [pull_request] + +on: + pull_request: + types: + - opened + - synchronize + - reopened + - edited permissions: contents: read pull-requests: write concurrency: - group: ${{ github.workflow }}-${{ github.head_ref || github.run_id }} + group: ${{ github.workflow }}-${{ github.head_ref }} cancel-in-progress: true jobs: From 7a3495c1eb8a9eaf1840f6eae63defec4645527b Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Thu, 23 Apr 2026 13:17:59 -0500 Subject: [PATCH 4/6] repo key --- .github/workflows/dependency-review.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 81142fd..25948f1 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -14,7 +14,7 @@ permissions: pull-requests: write concurrency: - group: ${{ github.workflow }}-${{ github.head_ref }} + group: ${{ github.workflow }}-${{ github.repository }}-${{ github.event.number }} cancel-in-progress: true jobs: From d5cebad3d074009f84563a4c933ce0cc424ecc77 Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Thu, 23 Apr 2026 13:30:51 -0500 Subject: [PATCH 5/6] test --- .github/workflows/dependency-review.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 25948f1..cd6c3b1 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -21,6 +21,8 @@ jobs: dependency-review: runs-on: ubuntu-latest steps: + - name: Debug concurrency group + run: echo "${{ github.workflow }}-${{ github.repository }}-${{ github.event.number }}" - name: Checkout Repository uses: actions/checkout@v6 - name: Check for dependency file changes From a8b4a40fc36c73ac05d28e728e191bb06b7544dc Mon Sep 17 00:00:00 2001 From: Ahmad Khan Date: Thu, 23 Apr 2026 13:35:50 -0500 Subject: [PATCH 6/6] remove test --- .github/workflows/dependency-review.yml | 2 -- 1 file changed, 2 deletions(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index cd6c3b1..25948f1 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -21,8 +21,6 @@ jobs: dependency-review: runs-on: ubuntu-latest steps: - - name: Debug concurrency group - run: echo "${{ github.workflow }}-${{ github.repository }}-${{ github.event.number }}" - name: Checkout Repository uses: actions/checkout@v6 - name: Check for dependency file changes