Skip to content

Build(deps): Bump pyjwt from 2.13.0 to 2.15.0 in /eng #380

Build(deps): Bump pyjwt from 2.13.0 to 2.15.0 in /eng

Build(deps): Bump pyjwt from 2.13.0 to 2.15.0 in /eng #380

name: PR Performance Report

Check warning on line 1 in .github/workflows/pr-profiler-report.yml

View workflow run for this annotation

GitHub Actions / PR Performance Report

Workflow execution policy warning (evaluate mode)

On November 2, 2026, GitHub will restrict `pull_request_target` on public repositories by default. To continue allowing the event trigger, configure an Actions policy. Learn more: https://gh.io/securely-using-pull_request_target#default-policy-for-pull_request_target
# Same-repo PRs may exercise their formatter directly. Forks use trusted base code.
on:
pull_request:
branches: [main]
types: [opened, synchronize, reopened, ready_for_review]
pull_request_target:
branches: [main]
types: [opened, synchronize, reopened, ready_for_review]
permissions:
contents: read
pull-requests: write
concurrency:
group: profiler-report-${{ github.event.pull_request.number }}-${{ github.event_name }}
cancel-in-progress: true
jobs:
report:
if: >-
(github.event_name == 'pull_request' &&
github.event.pull_request.head.repo.full_name == github.repository) ||
(github.event_name == 'pull_request_target' &&
github.event.pull_request.head.repo.full_name != github.repository)
runs-on: ubuntu-latest
timeout-minutes: 230
steps:
- uses: actions/checkout@11d5960a326750d5838078e36cf38b85af677262 # v4.4.0
with:
ref: ${{ github.event_name == 'pull_request' && github.event.pull_request.head.sha || github.event.pull_request.base.sha }}
persist-credentials: false
- uses: actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5.6.0
with:
python-version: "3.13"
- name: Publish validated paired benchmark results
env:
GH_TOKEN: ${{ github.token }}
PR_NUMBER: ${{ github.event.pull_request.number }}
PR_HEAD: ${{ github.event.pull_request.head.sha }}
run: python .github/scripts/post_profiler_comment.py --pr "$PR_NUMBER" --head "$PR_HEAD"