Skip to content

Commit c418ee3

Browse files
authored
📌 Pin GitHub actions (#1303)
1 parent bc7be64 commit c418ee3

File tree

9 files changed

+21
-22
lines changed

9 files changed

+21
-22
lines changed

.github/workflows/code-qualitiy.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -37,7 +37,7 @@ jobs:
3737
uses: ./.github/actions/ghasum
3838

3939
- name: Set up JDK 17
40-
uses: actions/[email protected]
40+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
4141
with:
4242
java-version: '17'
4343
distribution: 'temurin'
@@ -89,7 +89,7 @@ jobs:
8989
uses: ./.github/actions/ghasum
9090

9191
- name: Set up JDK 17
92-
uses: actions/[email protected]
92+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
9393
with:
9494
java-version: '17'
9595
distribution: 'temurin'

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -66,14 +66,14 @@ jobs:
6666
uses: ./.github/actions/ghasum
6767

6868
- name: Set up JDK 17
69-
uses: actions/[email protected]
69+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
7070
with:
7171
java-version: '17'
7272
distribution: 'temurin'
7373

7474
# Initializes the CodeQL tools for scanning.
7575
- name: Initialize CodeQL
76-
uses: github/codeql-action/[email protected]
76+
uses: github/codeql-action/init@96f518a34f7a870018057716cc4d7a5c014bd61c # v3.29.10
7777
with:
7878
languages: ${{ matrix.language }}
7979
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -87,6 +87,6 @@ jobs:
8787
run: mvn -B clean package
8888

8989
- name: Perform CodeQL Analysis
90-
uses: github/codeql-action/[email protected]
90+
uses: github/codeql-action/analyze@96f518a34f7a870018057716cc4d7a5c014bd61c # v3.29.10
9191
with:
9292
category: "/language:${{matrix.language}}"

.github/workflows/dependency-review.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,4 +34,4 @@ jobs:
3434
uses: ./.github/actions/ghasum
3535

3636
- name: Dependency review
37-
uses: actions/[email protected]
37+
uses: actions/dependency-review-action@bc41886e18ea39df68b1b1245f4184881938e050 # v4.7.2

.github/workflows/doc.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -50,6 +50,6 @@ jobs:
5050
5151
- name: Commit changes
5252
if: steps.check_changes.outputs.changes == 'true'
53-
uses: stefanzweifel/[email protected]
53+
uses: stefanzweifel/git-auto-commit-action@778341af668090896ca464160c2def5d1d1a3eb0 # v6.0.1
5454
with:
5555
commit_message: "📝 Update Documentation with current version"

.github/workflows/gha.sum

Lines changed: 6 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -1,16 +1,14 @@
11
version 1
22

3-
actions/cache@v4.2.4 Wn6UGuh8/0fkcOLI8uEQmhssKaMEfnm77brXOpwKe7A=
3+
actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 Wn6UGuh8/0fkcOLI8uEQmhssKaMEfnm77brXOpwKe7A=
44
actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 aYx2ZNrV/U9daVa5XJLnuR3depD7lQqzkyRhH4E9bOU=
5-
actions/dependency-review-action@v4.7.2 Gd1O6ZG0JtkpyKVsxOwIuNtshdlcYheIADUYdNOIOjo=
6-
actions/setup-go@v5.5.0 vSiNC7HetrtPF3QhZDzPHWyJ1e8pFltzruLjcw65Sok=
5+
actions/dependency-review-action@bc41886e18ea39df68b1b1245f4184881938e050 Gd1O6ZG0JtkpyKVsxOwIuNtshdlcYheIADUYdNOIOjo=
6+
actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 vSiNC7HetrtPF3QhZDzPHWyJ1e8pFltzruLjcw65Sok=
77
actions/setup-java@387ac29b308b003ca37ba93a6cab5eb57c8f5f93 XE1eqHfEOlHsHx+3cUQA1OGC3jxGBnmx7eTIdEzwSoI=
8-
actions/setup-java@v4.7.1 cKZQn6p38RgADB4MCMpbFp94sScgm/u3B7rEDB9QS5I=
8+
actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 cKZQn6p38RgADB4MCMpbFp94sScgm/u3B7rEDB9QS5I=
99
actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 kZHHfo2NsxevBRTKrZnUpDu0Cxgtj5Vooe4x4rylvg8=
10-
actions/[email protected] kZHHfo2NsxevBRTKrZnUpDu0Cxgtj5Vooe4x4rylvg8=
1110
github/codeql-action@96f518a34f7a870018057716cc4d7a5c014bd61c h0CGAC50uRuMQV8hj6pLuc5zMsaXvXYE/35vEhbnEbs=
12-
github/[email protected] h0CGAC50uRuMQV8hj6pLuc5zMsaXvXYE/35vEhbnEbs=
13-
jreleaser/[email protected] Ixc/05XDYYHGUvtC6Jt9gB/mpHPIwBX7PR8At1yEWSs=
11+
jreleaser/release-action@f69e545b05f149483cecb2fb81866247992694b8 Ixc/05XDYYHGUvtC6Jt9gB/mpHPIwBX7PR8At1yEWSs=
1412
ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde NlVzVIaycy3fhYp7tgiwvpWvzSsPa48uTVejF6tHEog=
15-
stefanzweifel/git-auto-commit-action@v6.0.1 5+Y5J+dG+VvtR13IIYuBHcAdJAcnDBQU/U0sRO3YZZw=
13+
stefanzweifel/git-auto-commit-action@778341af668090896ca464160c2def5d1d1a3eb0 5+Y5J+dG+VvtR13IIYuBHcAdJAcnDBQU/U0sRO3YZZw=
1614
step-security/harden-runner@ec9f2d5744a09debf3a187a3f4f675c53b671911 rG/FhhPP4VlsNB/2lKudn7rieQAYYNLIRb34q19qmFU=

.github/workflows/ghasum.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
mode: update
3636

3737
- name: Commit gha.sum
38-
uses: stefanzweifel/[email protected]
38+
uses: stefanzweifel/git-auto-commit-action@778341af668090896ca464160c2def5d1d1a3eb0 # v6.0.1
3939
with:
4040
commit_message: "chore: update ghasum checksums"
4141
file_pattern: .github/workflows/gha.sum

.github/workflows/jreleaser.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242
uses: ./.github/actions/ghasum
4343

4444
- name: Set up JDK 17
45-
uses: actions/[email protected]
45+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
4646
with:
4747
java-version: '17'
4848
distribution: 'temurin'
@@ -54,7 +54,7 @@ jobs:
5454
git config --global user.email "<>"
5555
5656
- name: install go
57-
uses: actions/[email protected]
57+
uses: actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5.5.0
5858

5959
- name: install semversion
6060
run: go install github.com/ffurrer2/semver/cmd/semver@latest
@@ -114,7 +114,7 @@ jobs:
114114
run: mvn help:evaluate -Dexpression=project.version -q -DforceStdout | sed 's/-SNAPSHOT//'
115115

116116
- name: Run JReleaser
117-
uses: jreleaser/[email protected]
117+
uses: jreleaser/release-action@f69e545b05f149483cecb2fb81866247992694b8 # 2.4.2
118118
with:
119119
setup-java: false
120120
version: 1.18.0
@@ -191,7 +191,7 @@ jobs:
191191
# Log failure:
192192
- name: JReleaser release output
193193
if: always()
194-
uses: actions/[email protected]
194+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
195195
with:
196196
name: jreleaser-release
197197
path: |

.github/workflows/smoke-tests.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -41,15 +41,15 @@ jobs:
4141
- name: Verify action checksums
4242
uses: ./.github/actions/ghasum
4343

44-
- uses: actions/[email protected]
44+
- uses: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 # v4.2.4
4545
with:
4646
path: /root/.jbang
4747
key: $-jbang-$
4848
restore-keys: |
4949
$-jbang-
5050
5151
- name: Set up JDK 17
52-
uses: actions/[email protected]
52+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
5353
with:
5454
java-version: '17'
5555
distribution: 'temurin'

renovate.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,7 @@
11
{
22
"$schema": "https://docs.renovatebot.com/renovate-schema.json",
33
"extends": [
4+
"helpers:pinGitHubActionDigests",
45
"config:recommended"
56
],
67
"gitIgnoredAuthors": [

0 commit comments

Comments
 (0)