Skip to content

Commit 8aeee72

Browse files
fix(deps): update github-actions (#168)
Signed-off-by: Renovate Bot <[email protected]> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 parent e025cff commit 8aeee72

11 files changed

+28
-28
lines changed

.github/workflows/codeql.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -43,7 +43,7 @@ jobs:
4343

4444
steps:
4545
- name: "Harden Runner"
46-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
46+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
4747
with:
4848
egress-policy: "audit"
4949

@@ -52,7 +52,7 @@ jobs:
5252

5353
# Initializes the CodeQL tools for scanning.
5454
- name: "Initialize CodeQL"
55-
uses: "github/codeql-action/init@fca7ace96b7d713c7035871441bd52efbe39e27e" # v3.28.19
55+
uses: "github/codeql-action/init@39edc492dbe16b1465b0cafca41432d857bdb31a" # v3.29.1
5656
with:
5757
languages: "${{ matrix.language }}"
5858
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -62,7 +62,7 @@ jobs:
6262
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
6363
# If this step fails, then you should remove it and run the build manually (see below)
6464
- name: "Autobuild"
65-
uses: "github/codeql-action/autobuild@fca7ace96b7d713c7035871441bd52efbe39e27e" # v3.28.19
65+
uses: "github/codeql-action/autobuild@39edc492dbe16b1465b0cafca41432d857bdb31a" # v3.29.1
6666

6767
# ℹ️ Command-line programs to run using the OS shell.
6868
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
@@ -75,6 +75,6 @@ jobs:
7575
# ./location_of_script_within_repo/buildscript.sh
7676

7777
- name: "Perform CodeQL Analysis"
78-
uses: "github/codeql-action/analyze@fca7ace96b7d713c7035871441bd52efbe39e27e" # v3.28.19
78+
uses: "github/codeql-action/analyze@39edc492dbe16b1465b0cafca41432d857bdb31a" # v3.29.1
7979
with:
8080
category: "/language:${{matrix.language}}"

.github/workflows/comment-issue.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616
issues: "write"
1717
steps:
1818
- name: "Harden Runner"
19-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
19+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
2020
with:
2121
egress-policy: "audit"
2222

.github/workflows/dependency-review.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121
runs-on: "ubuntu-latest"
2222
steps:
2323
- name: "Harden Runner"
24-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
24+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
2525
with:
2626
egress-policy: "audit"
2727

.github/workflows/lint.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
package_json_lintable: "${{ steps.changes.outputs.package_json_lintable }}"
3636
steps:
3737
- name: "Harden Runner"
38-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
38+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
3939
with:
4040
egress-policy: "audit"
4141

@@ -60,7 +60,7 @@ jobs:
6060
runs-on: "ubuntu-latest"
6161
steps:
6262
- name: "Harden Runner"
63-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
63+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
6464
with:
6565
egress-policy: "audit"
6666

@@ -111,7 +111,7 @@ jobs:
111111
runs-on: "ubuntu-latest"
112112
steps:
113113
- name: "Harden Runner"
114-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
114+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
115115
with:
116116
egress-policy: "audit"
117117

@@ -162,7 +162,7 @@ jobs:
162162
runs-on: "ubuntu-latest"
163163
steps:
164164
- name: "Harden Runner"
165-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
165+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
166166
with:
167167
egress-policy: "audit"
168168

@@ -213,7 +213,7 @@ jobs:
213213
runs-on: "ubuntu-latest"
214214
steps:
215215
- name: "Harden Runner"
216-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
216+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
217217
with:
218218
egress-policy: "audit"
219219

@@ -237,7 +237,7 @@ jobs:
237237
runs-on: "ubuntu-latest"
238238
steps:
239239
- name: "Harden Runner"
240-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
240+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
241241
with:
242242
egress-policy: "audit"
243243

@@ -262,7 +262,7 @@ jobs:
262262
runs-on: "ubuntu-latest"
263263
steps:
264264
- name: "Harden Runner"
265-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
265+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
266266
with:
267267
egress-policy: "audit"
268268

@@ -280,7 +280,7 @@ jobs:
280280
- name: "Use Node.js 20.x"
281281
uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" # v4.4.0
282282
with:
283-
node-version: "20.x"
283+
node-version: "20.19.3"
284284
cache: "pnpm"
285285

286286
- name: "Verify the integrity of provenance attestations and registry signatures for installed dependencies"
@@ -312,7 +312,7 @@ jobs:
312312
# If any jobs we depend on fail, we will fail since this is a required check
313313
# NOTE: A timeout is considered a failure
314314
- name: "Harden Runner"
315-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
315+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
316316
with:
317317
egress-policy: "audit"
318318

.github/workflows/lock-file-maintenance.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121

2222
steps:
2323
- name: "Harden Runner"
24-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
24+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
2525
with:
2626
egress-policy: "audit"
2727

.github/workflows/preview-release.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@ jobs:
2626

2727
steps:
2828
- name: "Harden Runner"
29-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
29+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
3030
with:
3131
egress-policy: "audit"
3232

.github/workflows/require-allow-edits.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616

1717
steps:
1818
- name: "Harden Runner"
19-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
19+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
2020
with:
2121
egress-policy: "audit"
2222

.github/workflows/scorecards.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -33,7 +33,7 @@ jobs:
3333

3434
steps:
3535
- name: "Harden Runner"
36-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
36+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
3737
with:
3838
egress-policy: "audit"
3939

@@ -73,6 +73,6 @@ jobs:
7373

7474
# Upload the results to GitHub's code scanning dashboard.
7575
- name: "Upload to code-scanning"
76-
uses: "github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e" # v3.28.19
76+
uses: "github/codeql-action/upload-sarif@39edc492dbe16b1465b0cafca41432d857bdb31a" # v3.29.1
7777
with:
7878
sarif_file: "results.sarif"

.github/workflows/semantic-pull-request.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
name: "Semantic Pull Request"
2424
steps:
2525
- name: "Harden Runner"
26-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
26+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
2727
with:
2828
egress-policy: "audit"
2929

@@ -46,7 +46,7 @@ jobs:
4646
revert
4747
test
4848
49-
- uses: "marocchino/sticky-pull-request-comment@67d0dec7b07ed060a405f9b2a64b8ab319fdd7db" # v2.9.2
49+
- uses: "marocchino/sticky-pull-request-comment@d2ad0de260ae8b0235ce059e63f2949ba9e05943" # v2.9.3
5050
# When the previous steps fail, the workflow would stop. By adding this
5151
# condition you can continue the execution with the populated error message.
5252
if: "always() && (steps.lint_pr_title.outputs.error_message != null)"
@@ -65,7 +65,7 @@ jobs:
6565
6666
# Delete a previous comment when the issue has been resolved
6767
- if: "${{ steps.lint_pr_title.outputs.error_message == null }}"
68-
uses: "marocchino/sticky-pull-request-comment@67d0dec7b07ed060a405f9b2a64b8ab319fdd7db" # v2.9.2
68+
uses: "marocchino/sticky-pull-request-comment@d2ad0de260ae8b0235ce059e63f2949ba9e05943" # v2.9.3
6969
with:
7070
header: "pr-title-lint-error"
7171
message: |

.github/workflows/semantic-release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ jobs:
2828

2929
steps:
3030
- name: "Harden Runner"
31-
uses: "step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0" # v2.12.0
31+
uses: "step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863" # v2.12.1
3232
with:
3333
egress-policy: "audit"
3434

0 commit comments

Comments
 (0)