Per https://github.com/Framework-R-D/phlex/pull/123#issuecomment-3558615620 1. CodeQL as currently invoked does not flag in-PR alerts (existing or new). 2. Resolved alerts are not dismissed automatically. 3. PR comments are not as informative and clear as we need them to be.