Skip to content

Commit 3ee06ba

Browse files
Bump actions/attest-build-provenance from 1.4.2 to 1.4.3 (pyca#11554)
Bumps [actions/attest-build-provenance](https://github.com/actions/attest-build-provenance) from 1.4.2 to 1.4.3. - [Release notes](https://github.com/actions/attest-build-provenance/releases) - [Changelog](https://github.com/actions/attest-build-provenance/blob/main/RELEASE.md) - [Commits](actions/attest-build-provenance@6149ea5...1c608d1) --- updated-dependencies: - dependency-name: actions/attest-build-provenance dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent d44c37e commit 3ee06ba

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

.github/workflows/pypi-publish.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -93,7 +93,7 @@ jobs:
9393
# Do not perform attestation for things for TestPyPI. This is because
9494
# there's nothing that would prevent a malicious PyPI from serving a
9595
# signed TestPyPI asset in place of a release intended for PyPI.
96-
- uses: actions/attest-build-provenance@6149ea5740be74af77f260b9db67e633f6b0a9a1 # v1.4.2
96+
- uses: actions/attest-build-provenance@1c608d11d69870c2092266b3f9a6f3abbf17002c # v1.4.3
9797
with:
9898
subject-path: 'dist/**/cryptography*'
9999
if: env.TWINE_REPOSITORY == 'pypi'

0 commit comments

Comments
 (0)