This repository was archived by the owner on Nov 21, 2025. It is now read-only.
File tree Expand file tree Collapse file tree 1 file changed +6
-4
lines changed Expand file tree Collapse file tree 1 file changed +6
-4
lines changed Original file line number Diff line number Diff line change @@ -17,17 +17,19 @@ jobs:
1717 permissions :
1818 # Needed to upload the results to code-scanning dashboard.
1919 security-events : write
20+ # Needed to publish results
21+ id-token : write
2022 actions : read
2123 contents : read
2224
2325 steps :
2426 - name : ' Checkout code'
25- uses : actions/checkout@2541b1294d2704b0964813337f33b291d3f8596b # v2.4.0
27+ uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2628 with :
2729 persist-credentials : false
2830
2931 - name : ' Run analysis'
30- uses : ossf/scorecard-action@f10ec7151e838890a3fbfa27875a33f80869977b # v1.0.2
32+ uses : ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
3133 with :
3234 results_file : results.sarif
3335 results_format : sarif
@@ -36,14 +38,14 @@ jobs:
3638
3739 # Upload the results as artifacts.
3840 - name : ' Upload artifact'
39- uses : actions/upload-artifact@3cea5372237819ed00197afe530f5a7ea3e805c8 # v2.3.1
41+ uses : actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
4042 with :
4143 name : SARIF file
4244 path : results.sarif
4345 retention-days : 5
4446
4547 # Upload the results to GitHub's code scanning dashboard.
4648 - name : ' Upload to code-scanning'
47- uses : github/codeql-action/upload-sarif@f0705a6d6f9c8ebf64b5188fdd89bc4cd20313bc # v1.0.26
49+ uses : github/codeql-action/upload-sarif@662472033e021d55d94146f66f6058822b0b39fd # v3.27.0
4850 with :
4951 sarif_file : results.sarif
You can’t perform that action at this time.
0 commit comments