File tree Expand file tree Collapse file tree 3 files changed +6
-6
lines changed Expand file tree Collapse file tree 3 files changed +6
-6
lines changed Original file line number Diff line number Diff line change 52
52
53
53
# Initializes the CodeQL tools for scanning.
54
54
- name : " Initialize CodeQL"
55
- uses : " github/codeql-action/init@60168efe1c415ce0f5521ea06d5c2062adbeed1b " # v3.28.17
55
+ uses : " github/codeql-action/init@fca7ace96b7d713c7035871441bd52efbe39e27e " # v3.28.19
56
56
with :
57
57
languages : " ${{ matrix.language }}"
58
58
# If you wish to specify custom queries, you can do so here or in a config file.
62
62
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
63
63
# If this step fails, then you should remove it and run the build manually (see below)
64
64
- name : " Autobuild"
65
- uses : " github/codeql-action/autobuild@60168efe1c415ce0f5521ea06d5c2062adbeed1b " # v3.28.17
65
+ uses : " github/codeql-action/autobuild@fca7ace96b7d713c7035871441bd52efbe39e27e " # v3.28.19
66
66
67
67
# ℹ️ Command-line programs to run using the OS shell.
68
68
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
75
75
# ./location_of_script_within_repo/buildscript.sh
76
76
77
77
- name : " Perform CodeQL Analysis"
78
- uses : " github/codeql-action/analyze@60168efe1c415ce0f5521ea06d5c2062adbeed1b " # v3.28.17
78
+ uses : " github/codeql-action/analyze@fca7ace96b7d713c7035871441bd52efbe39e27e " # v3.28.19
79
79
with :
80
80
category : " /language:${{matrix.language}}"
Original file line number Diff line number Diff line change 33
33
EMAIL : " github-actions[bot]@users.noreply.github.com"
34
34
35
35
- name : " Dependency Review"
36
- uses : " actions/dependency-review-action@ce3cf9537a52e8119d91fd484ab5b8a807627bf8 " # v4.6.0
36
+ uses : " actions/dependency-review-action@da24556b548a50705dd671f47852072ea4c105d9 " # v4.7.1
Original file line number Diff line number Diff line change 43
43
persist-credentials : false
44
44
45
45
- name : " Run analysis"
46
- uses : " ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 " # v2.4.1
46
+ uses : " ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde " # v2.4.2
47
47
with :
48
48
results_file : " results.sarif"
49
49
results_format : " sarif"
73
73
74
74
# Upload the results to GitHub's code scanning dashboard.
75
75
- name : " Upload to code-scanning"
76
- uses : " github/codeql-action/upload-sarif@60168efe1c415ce0f5521ea06d5c2062adbeed1b " # v3.28.17
76
+ uses : " github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e " # v3.28.19
77
77
with :
78
78
sarif_file : " results.sarif"
You can’t perform that action at this time.
0 commit comments