Skip to content

Commit d3489e5

Browse files
committed
return actions/attest-build-provenance to be pinned by ref
1 parent 75c5559 commit d3489e5

File tree

3 files changed

+2
-3
lines changed

3 files changed

+2
-3
lines changed

.github/workflows/build-all.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -114,7 +114,7 @@ jobs:
114114
registry: ${{ env.IMAGE_REGISTRY }}
115115

116116
- name: Generate attestation for images
117-
uses: actions/attest-build-provenance@db473fddc028af60658334401dc6fa3ffd8669fd # v2.3.0
117+
uses: actions/attest-build-provenance@v2
118118
with:
119119
subject-name: ${{ env.IMAGE_REGISTRY }}/${{ steps.build_image.outputs.image }}
120120
subject-digest: ${{ steps.push.outputs.digest }}

.github/workflows/build-image.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -109,7 +109,7 @@ jobs:
109109
if: inputs.publish-image
110110

111111
- name: Generate attestation for images
112-
uses: actions/attest-build-provenance@db473fddc028af60658334401dc6fa3ffd8669fd # v2.3.0
112+
uses: actions/attest-build-provenance@v2
113113
with:
114114
subject-name: ${{ env.IMAGE_REGISTRY }}/${{ steps.build_image.outputs.image }}
115115
subject-digest: ${{ steps.push.outputs.digest }}

zizmor.yml

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,6 @@ rules:
22
unpinned-uses:
33
config:
44
policies:
5-
actions/attest-build-provenance: hash-pin
65
actions/*: ref-pin
76
redhat-actions/*: hash-pin
87
"*": ref-pin

0 commit comments

Comments
 (0)