Skip to content

Commit 9fb1e16

Browse files
committed
Add ghasum, update dirty-waters action
1 parent b9bb8b2 commit 9fb1e16

File tree

2 files changed

+10
-3
lines changed

2 files changed

+10
-3
lines changed

.github/workflows/code-qualitiy.yml

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -106,20 +106,25 @@ jobs:
106106
pull-requests: write # To comment on a Pull Request
107107
steps:
108108
- name: Harden Runner
109-
uses: step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf # v2.11.1
109+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
110110
with:
111111
egress-policy: audit
112112

113113
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
114114
with:
115115
submodules: true
116+
117+
- name: Verify action checksums
118+
uses: ./.github/actions/ghasum
119+
116120
- name: Setup JDK17
117-
uses: actions/setup-java@3a4f6e1af504cf6a31855fa899c6aa5355ba6c12 # v4.7.0
121+
uses: actions/[email protected].1
118122
with:
119123
java-version: '17'
120124
distribution: 'temurin'
125+
121126
- name: Dirty Waters Analysis
122-
uses: chains-project/dirty-waters-action@57e2b7be964e687bdab629460efb274053fe3b28 # v1.11.45
127+
uses: chains-project/[email protected].48
123128
with:
124129
github_token: ${{ secrets.GITHUB_TOKEN }}
125130
package_manager: maven

.github/workflows/gha.sum

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -6,10 +6,12 @@ actions/[email protected] hJDiqW4455iVs8gVcWjiEbjhuvh0oXQKy9fN/BGF
66
actions/[email protected] vSiNC7HetrtPF3QhZDzPHWyJ1e8pFltzruLjcw65Sok=
77
actions/setup-java@387ac29b308b003ca37ba93a6cab5eb57c8f5f93 XE1eqHfEOlHsHx+3cUQA1OGC3jxGBnmx7eTIdEzwSoI=
88
actions/[email protected] cKZQn6p38RgADB4MCMpbFp94sScgm/u3B7rEDB9QS5I=
9+
actions/[email protected] MTHBGEHwb+MeIw3xRLiVuM/uyRfuK8hlVXL+Z/yEA8c=
910
actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 kZHHfo2NsxevBRTKrZnUpDu0Cxgtj5Vooe4x4rylvg8=
1011
actions/[email protected] kZHHfo2NsxevBRTKrZnUpDu0Cxgtj5Vooe4x4rylvg8=
1112
github/codeql-action@d6bbdef45e766d081b84a2def353b0055f728d3e a64qKQusITtfuxl3BMjHFBq/jN7uTJqDLVTWW80ij+s=
1213
github/[email protected] a64qKQusITtfuxl3BMjHFBq/jN7uTJqDLVTWW80ij+s=
14+
chains-project/[email protected] BlbW87cG7BWyVwIVCVZ404lqjY7rTn4kW8qvMsJMUTw=
1315
jreleaser/[email protected] Ixc/05XDYYHGUvtC6Jt9gB/mpHPIwBX7PR8At1yEWSs=
1416
ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde NlVzVIaycy3fhYp7tgiwvpWvzSsPa48uTVejF6tHEog=
1517
stefanzweifel/[email protected] 5+Y5J+dG+VvtR13IIYuBHcAdJAcnDBQU/U0sRO3YZZw=

0 commit comments

Comments
 (0)