File tree Expand file tree Collapse file tree 11 files changed +21
-21
lines changed
Expand file tree Collapse file tree 11 files changed +21
-21
lines changed Original file line number Diff line number Diff line change 4747 contents : write
4848 steps :
4949 - name : Harden Runner
50- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
50+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
5151 with :
5252 disable-sudo : true
5353 egress-policy : block
Original file line number Diff line number Diff line change 1616 actions : write
1717 steps :
1818 - name : Harden Runner
19- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
19+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2020 with :
2121 disable-sudo : true
2222 egress-policy : block
Original file line number Diff line number Diff line change 5353 # your codebase is analyzed, see https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages
5454 steps :
5555 - name : Harden Runner
56- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
56+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
5757 with :
5858 disable-sudo : true
5959 egress-policy : audit
6565
6666 # Initializes the CodeQL tools for scanning.
6767 - name : Initialize CodeQL
68- uses : github/codeql-action/init@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v3.28.9
68+ uses : github/codeql-action/init@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
6969 with :
7070 languages : ${{ matrix.language }}
7171 build-mode : ${{ matrix.build-mode }}
9494 exit 1
9595
9696 - name : Perform CodeQL Analysis
97- uses : github/codeql-action/analyze@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v3.28.9
97+ uses : github/codeql-action/analyze@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
9898 with :
9999 category : " /language:${{matrix.language}}"
Original file line number Diff line number Diff line change 1717 runs-on : ubuntu-latest
1818 steps :
1919 - name : Harden Runner
20- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
20+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2121 with :
2222 disable-sudo : true
2323 egress-policy : block
Original file line number Diff line number Diff line change 1616 pull-requests : write
1717 steps :
1818 - name : Harden Runner
19- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
19+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2020 with :
2121 disable-sudo : true
2222 egress-policy : block
Original file line number Diff line number Diff line change 2323 pull-requests : write
2424 steps :
2525 - name : Harden Runner
26- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
26+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2727 with :
2828 disable-sudo : true
2929 egress-policy : block
Original file line number Diff line number Diff line change 2222 runs-on : ubuntu-latest
2323 steps :
2424 - name : Harden Runner
25- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
25+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2626 with :
2727 disable-sudo : true
2828 egress-policy : block
4343 run : |
4444 python -m pip install --require-hashes -r CI/requirements_ci.txt
4545 - name : Environment Caching
46- uses : actions/cache@1bd1e32a3bdc45362d1e726936510720a7c30a57 # v4.2.0
46+ uses : actions/cache@d4323d4df104b026a6aa633fdb11d772146be0bf # v4.2.2
4747 with :
4848 path : |
4949 .tox
6868 tox-env : ' py3.10-coveralls-upstream'
6969 steps :
7070 - name : Harden Runner
71- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
71+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
7272 with :
7373 egress-policy : block
7474 allowed-endpoints : >
@@ -148,7 +148,7 @@ jobs:
148148 shell : bash -l {0}
149149 steps :
150150 - name : Harden Runner
151- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
151+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
152152 with :
153153 disable-sudo : true
154154 egress-policy : block
@@ -203,7 +203,7 @@ jobs:
203203 runs-on : ubuntu-latest
204204 steps :
205205 - name : Harden Runner
206- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
206+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
207207 with :
208208 disable-sudo : true
209209 egress-policy : audit
Original file line number Diff line number Diff line change 1818 runs-on : ubuntu-latest
1919 steps :
2020 - name : Harden Runner
21- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
21+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2222 with :
2323 disable-sudo : true
2424 egress-policy : block
Original file line number Diff line number Diff line change 3030 id-token : write
3131 steps :
3232 - name : Harden Runner
33- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
33+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
3434 with :
3535 disable-sudo : true
3636 egress-policy : block
5353 persist-credentials : false
5454
5555 - name : Run Analysis
56- uses : ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
56+ uses : ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 # v2.4.1
5757 with :
5858 results_file : results.sarif
5959 results_format : sarif
@@ -73,14 +73,14 @@ jobs:
7373 # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
7474 # format to the repository Actions tab.
7575 - name : Upload Artifact
76- uses : actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
76+ uses : actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
7777 with :
7878 name : SARIF file
7979 path : results.sarif
8080 retention-days : 5
8181
8282 # Upload the results to GitHub's code scanning dashboard.
8383 - name : Upload to code-scanning
84- uses : github/codeql-action/upload-sarif@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # 3.28.9
84+ uses : github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # 3.28.10
8585 with :
8686 sarif_file : results.sarif
Original file line number Diff line number Diff line change 1717 contents : write
1818 steps :
1919 - name : Harden Runner
20- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
20+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2121 with :
2222 egress-policy : audit
2323 - name : Checkout Repository
4444 runs-on : ubuntu-latest
4545 steps :
4646 - name : Harden Runner
47- uses : step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
47+ uses : step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
4848 with :
4949 disable-sudo : true
5050 egress-policy : block
You can’t perform that action at this time.
0 commit comments