Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
4 changes: 2 additions & 2 deletions .github/workflows/Lockfile.yml
Original file line number Diff line number Diff line change
Expand Up @@ -31,10 +31,10 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: run maven-lockfile
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.JRELEASER_GITHUB_TOKEN }}
include-maven-plugins: true
6 changes: 3 additions & 3 deletions .github/workflows/LockfilePR.yml
Original file line number Diff line number Diff line change
Expand Up @@ -29,18 +29,18 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: run maven-lockfile
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.JRELEASER_GITHUB_TOKEN }}
include-maven-plugins: true

- name: run maven-lockfile (fork/external)
if: ${{ github.event.pull_request.head.repo.full_name != github.repository }}
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
include-maven-plugins: true
Expand Down
4 changes: 2 additions & 2 deletions .github/workflows/code-qualitiy.yml
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Set up JDK 17
uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5.0.0
Expand Down Expand Up @@ -86,7 +86,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Set up JDK 17
uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5.0.0
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/codeql.yml
Original file line number Diff line number Diff line change
Expand Up @@ -63,7 +63,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Set up JDK 17
uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5.0.0
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/dependency-review.yml
Original file line number Diff line number Diff line change
Expand Up @@ -31,7 +31,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Dependency review
uses: actions/dependency-review-action@40c09b7dc99638e5ddb0bfd91c1673effc064d8a # v4.8.1
2 changes: 1 addition & 1 deletion .github/workflows/doc.yml
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ jobs:
token: ${{ secrets.GITHUB_TOKEN }}

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Generate action.yml
run: mvn generate-resources resources:copy-resources -q
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/ensure-release-notrunning.yml
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Check for running release action
if: ${{ !startsWith(github.head_ref, 'release/') && !startsWith(github.head_ref, 'beta-release/') }}
Expand Down
3 changes: 1 addition & 2 deletions .github/workflows/gha.sum
Original file line number Diff line number Diff line change
Expand Up @@ -7,11 +7,10 @@ actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 0qLZUqMcil7hZ8idJYYxI/
actions/setup-java@387ac29b308b003ca37ba93a6cab5eb57c8f5f93 XE1eqHfEOlHsHx+3cUQA1OGC3jxGBnmx7eTIdEzwSoI=
actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 Cn0rDfuNlsG0naRPXRAUwU3fAQ9P+sxzfPvU5EcNOQ8=
actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 ZTERhL1FNPaoitPyTgsnA9lbOffV5BJ3FsNYFciQmGU=
chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 SOTV1SObAPR5+9TPRSxHKp02x8E2xcLShXGDT+/a4Sc=
chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac ClCU/HHFzymvZoicI8yqwKzF9y+J8JZ90jh3zug2dJM=
github/codeql-action@4e94bd11f71e507f7f87df81788dff88d1dacbfb 0kPivh6lMtOcCoSnlU9zjrGksJBXXQRZhbr9G+jZKww=
google/osv-scanner-action@e92b5d07338d4f0ba0981dffed17c48976ca4730 65YdECo8eNRxRcyvKGn+sBH7rWVINaUc0x5wPyV9Q3w=
jreleaser/release-action@ad73772277e63d9f2bbf4f24a7bb1300388334d7 uCAaYYuyjM4iq8qflqOt5SzivqVnl3ZXt7vI9BWpHAo=
ossf/scorecard-action@4eaacf0543bb3f2c246792bd56e8cdeffafb205a oHo5wLG0ePY4IIiiNfo0MU1uYrDKDkeV7MpBTJ39dQg=
stefanzweifel/git-auto-commit-action@28e16e81777b558cc906c8750092100bbb34c5e3 g4PCgPHeeaVpSPTRcoBKth4QnrZGGQXwBEoEAsAXivs=
stefanzweifel/git-auto-commit-action@778341af668090896ca464160c2def5d1d1a3eb0 5+Y5J+dG+VvtR13IIYuBHcAdJAcnDBQU/U0sRO3YZZw=
step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a fJwkMDFdylV4NgARDISD6NU03D0clX66qStzE3+HeJQ=
2 changes: 1 addition & 1 deletion .github/workflows/ghasum.yml
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ jobs:
repository: ${{ github.event.pull_request.head.repo.full_name }}

- name: Update gha.sum
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
mode: update

Expand Down
4 changes: 2 additions & 2 deletions .github/workflows/jreleaser-beta.yml
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ jobs:
token: ${{ secrets.JRELEASER_GITHUB_TOKEN }}

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Set up JDK 17
uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5.0.0
Expand Down Expand Up @@ -69,7 +69,7 @@ jobs:
shell: bash

- name: run maven-lockfile (validate lockfile)
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
include-maven-plugins: true
Expand Down
4 changes: 2 additions & 2 deletions .github/workflows/jreleaser.yml
Original file line number Diff line number Diff line change
Expand Up @@ -42,7 +42,7 @@ jobs:
token: ${{ secrets.JRELEASER_GITHUB_TOKEN }}

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Set up JDK 17
uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5.0.0
Expand Down Expand Up @@ -82,7 +82,7 @@ jobs:
run: echo "NEXT_VERSION=$(semver next ${{ github.event.inputs.version }} $CURRENT_VERSION)" >> $GITHUB_ENV

- name: run maven-lockfile (validate lockfile)
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
include-maven-plugins: true
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/osv-scanner-pr.yml
Original file line number Diff line number Diff line change
Expand Up @@ -40,7 +40,7 @@ jobs:
fetch-depth: 0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: "Checkout target branch"
run: |
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/osv-scanner-scheduled.yml
Original file line number Diff line number Diff line change
Expand Up @@ -38,7 +38,7 @@ jobs:
persist-credentials: false

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: Run scanner
uses: google/osv-scanner-action/osv-scanner-action@e92b5d07338d4f0ba0981dffed17c48976ca4730 # v2.2.3
Expand Down
4 changes: 2 additions & 2 deletions .github/workflows/regenerate-lockfile.yml
Original file line number Diff line number Diff line change
Expand Up @@ -29,9 +29,9 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- name: run maven-lockfile
uses: chains-project/maven-lockfile@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1
with:
github-token: ${{ secrets.GITHUB_TOKEN }}
2 changes: 1 addition & 1 deletion .github/workflows/smoke-tests.yml
Original file line number Diff line number Diff line change
Expand Up @@ -39,7 +39,7 @@ jobs:
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0

- name: Verify action checksums
uses: chains-project/maven-lockfile/.github/actions/ghasum@4f87d2df69f7567b2de1edff73def60a79372755 # 5.8.0
uses: chains-project/maven-lockfile/.github/actions/ghasum@05aeab3f62ea2a58fe670f64317d2f24546cc4ac # 5.8.1

- uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
with:
Expand Down
2 changes: 1 addition & 1 deletion lockfile.json
Original file line number Diff line number Diff line change
Expand Up @@ -135,7 +135,7 @@
"allowPomValidationFailure": false,
"includeEnvironment": true,
"reduced": false,
"mavenLockfileVersion": "5.8.0",
"mavenLockfileVersion": "5.8.1",
"checksumMode": "local",
"checksumAlgorithm": "SHA-256"
}
Expand Down
2 changes: 1 addition & 1 deletion maven_plugin/lockfile.json
Original file line number Diff line number Diff line change
Expand Up @@ -2665,7 +2665,7 @@
"allowPomValidationFailure": false,
"includeEnvironment": true,
"reduced": false,
"mavenLockfileVersion": "5.8.0",
"mavenLockfileVersion": "5.8.1",
"checksumMode": "local",
"checksumAlgorithm": "SHA-256"
}
Expand Down
Loading