Skip to content

Commit 0b9bb9c

Browse files
security: pin GitHub Actions dependencies to SHA hashes
- actions/checkout@v4.3.1 (34e11487) - shivammathur/setup-php@v2.36.0 (44454db4) - softprops/action-gh-release@v2.5.0 (a06a81a0)
1 parent 50d9b72 commit 0b9bb9c

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

.github/workflows/release.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -20,10 +20,10 @@ jobs:
2020

2121
steps:
2222
- name: Checkout
23-
uses: actions/checkout@v4
23+
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
2424

2525
- name: Setup PHP
26-
uses: shivammathur/setup-php@v2
26+
uses: shivammathur/setup-php@44454db4f0199b8b9685a5d763dc37cbf79108e1 # v2.36.0
2727
with:
2828
php-version: '8.2'
2929
tools: composer
@@ -79,7 +79,7 @@ jobs:
7979
./scripts/build-release.sh "${{ steps.version.outputs.version }}"
8080
8181
- name: Create GitHub Release
82-
uses: softprops/action-gh-release@v2
82+
uses: softprops/action-gh-release@a06a81a03ee405af7f2048a818ed3f03bbf83c7b # v2.5.0
8383
with:
8484
tag_name: v${{ steps.version.outputs.version }}
8585
name: v${{ steps.version.outputs.version }}

0 commit comments

Comments
 (0)