Skip to content

Commit 33000f3

Browse files
authored
Pin CI action to commit hashes
1 parent 1fae3fb commit 33000f3

File tree

3 files changed

+15
-15
lines changed

3 files changed

+15
-15
lines changed

.github/workflows/Semgrep.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -24,18 +24,18 @@ jobs:
2424
steps:
2525
# Checkout the repository.
2626
- name: Clone source code
27-
uses: actions/checkout@v6
27+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2828

2929
# Checkout custom rules
3030
- name: Checkout custom rules
31-
uses: actions/checkout@v6
31+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
3232
with:
3333
repository: JuliaComputing/semgrep-rules-julia
3434
ref: main
3535
path: ./JuliaRules
3636

3737
# Prepare Python
38-
- uses: actions/setup-python@v6
38+
- uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6.2.0
3939
with:
4040
python-version: '3.10'
4141

@@ -54,13 +54,13 @@ jobs:
5454
--exclude=JuliaRules
5555
5656
- name: Save Semgrep report
57-
uses: actions/upload-artifact@v6
57+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
5858
with:
5959
name: report.sarif
6060
path: report.sarif
6161

6262
- name: Upload Semgrep report
63-
uses: github/codeql-action/upload-sarif@v4
63+
uses: github/codeql-action/upload-sarif@4e94bd11f71e507f7f87df81788dff88d1dacbfb # v4.34.1
6464
with:
6565
sarif_file: report.sarif
6666
category: semgrep

.github/workflows/TagBot.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ jobs:
99
if: github.event_name == 'workflow_dispatch' || github.actor == 'JuliaTagBot'
1010
runs-on: ubuntu-latest
1111
steps:
12-
- uses: JuliaRegistries/TagBot@v1
12+
- uses: JuliaRegistries/TagBot@bdfeaa1ff40e0ea449f9539aa21b2e587431ed49 # v1.24.6
1313
with:
1414
token: ${{ secrets.GITHUB_TOKEN }}
1515
ssh: ${{ secrets.DOCUMENTER_KEY }}

.github/workflows/ci.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -28,12 +28,12 @@ jobs:
2828
- os: ubuntu-latest
2929
prefix: xvfb-run
3030
steps:
31-
- uses: actions/checkout@v6
32-
- uses: julia-actions/setup-julia@v2
31+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
32+
- uses: julia-actions/setup-julia@4c0cb0fce8556fdb04a90347310e5db8b1f98fb9 # v2.7.0
3333
with:
3434
version: ${{ matrix.version }}
3535
arch: ${{ matrix.arch }}
36-
- uses: actions/cache@v5
36+
- uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5.0.4
3737
env:
3838
cache-name: cache-artifacts
3939
with:
@@ -43,10 +43,10 @@ jobs:
4343
${{ runner.os }}-test-${{ env.cache-name }}-
4444
${{ runner.os }}-test-
4545
${{ runner.os }}-
46-
- uses: julia-actions/julia-buildpkg@v1
47-
- uses: julia-actions/julia-runtest@v1
48-
- uses: julia-actions/julia-processcoverage@v1
49-
- uses: codecov/codecov-action@v5
46+
- uses: julia-actions/julia-buildpkg@e3eb439fad4f9aba7da2667e7510e4a46ebc46e1 # v1.7.0
47+
- uses: julia-actions/julia-runtest@d60b785c6f2bdf4ebfb18b2b6f7d93b7dfb0efe3 # v1.11.4
48+
- uses: julia-actions/julia-processcoverage@03114f09f119417c3242a9fb6e0b722676aedf38 # v1.2.2
49+
- uses: codecov/codecov-action@1af58845a975a7985b0beb0cbe6fbbb71a41dbad # v5.5.3
5050
env:
5151
CODECOV_TOKEN: ${{ secrets.CODECOV_TOKEN }}
5252
with:
@@ -55,8 +55,8 @@ jobs:
5555
name: Documentation
5656
runs-on: ubuntu-latest
5757
steps:
58-
- uses: actions/checkout@v6
59-
- uses: julia-actions/setup-julia@v2
58+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
59+
- uses: julia-actions/setup-julia@4c0cb0fce8556fdb04a90347310e5db8b1f98fb9 # v2.7.0
6060
with:
6161
version: '1'
6262
- run: |

0 commit comments

Comments
 (0)