File tree Expand file tree Collapse file tree 5 files changed +9
-9
lines changed
Expand file tree Collapse file tree 5 files changed +9
-9
lines changed Original file line number Diff line number Diff line change 4545
4646 steps :
4747 - name : Harden Runner
48- uses : step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # tag=v2.12.0
48+ uses : step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863 # tag=v2.12.1
4949 with :
5050 # TODO: change to 'egress-policy: block' after couple of runs
5151 egress-policy : audit
5555
5656 # Initializes the CodeQL tools for scanning.
5757 - name : Initialize CodeQL
58- uses : github/codeql-action/init@ff0a06e83cb2de871e5a09832bc6a81e7276941f # tag=codeql-bundle-v3.28.18
58+ uses : github/codeql-action/init@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # tag=codeql-bundle-v3.29.0
5959 with :
6060 languages : ${{ matrix.language }}
6161
6565 # manually (see below).
6666 # manually (see below).
6767 - name : Autobuild
68- uses : github/codeql-action/autobuild@ff0a06e83cb2de871e5a09832bc6a81e7276941f # tag=codeql-bundle-v3.28.18
68+ uses : github/codeql-action/autobuild@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # tag=codeql-bundle-v3.29.0
6969
7070 # ℹ️ Command-line programs to run using the OS shell. 📚
7171 # https://git.io/JvXDl
8383 # make release
8484
8585 - name : Perform CodeQL Analysis
86- uses : github/codeql-action/analyze@ff0a06e83cb2de871e5a09832bc6a81e7276941f # tag=codeql-bundle-v3.28.18
86+ uses : github/codeql-action/analyze@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # tag=codeql-bundle-v3.29.0
Original file line number Diff line number Diff line change 1212 runs-on : ubuntu-latest
1313 steps :
1414 - name : Harden Runner
15- uses : step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # tag=v2.12.0
15+ uses : step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863 # tag=v2.12.1
1616 with : # TODO: change to 'egress-policy: block' after couple of runs
1717 egress-policy : audit
1818 - name : ' Checkout Repository'
Original file line number Diff line number Diff line change 3333 persist-credentials : false
3434
3535 - name : " Run analysis"
36- uses : ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 # tag=v2.4.1
36+ uses : ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde # tag=v2.4.2
3737 with :
3838 results_file : results.sarif
3939 results_format : sarif
6060
6161 # Upload the results to GitHub's code scanning dashboard.
6262 - name : " Upload to code-scanning"
63- uses : github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # tag=codeql-bundle-v3.28.18
63+ uses : github/codeql-action/upload-sarif@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # tag=codeql-bundle-v3.29.0
6464 with :
6565 sarif_file : results.sarif
Original file line number Diff line number Diff line change 1414 runs-on : ubuntu-latest
1515 steps :
1616 - name : Harden Runner
17- uses : step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # tag=v2.12.0
17+ uses : step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863 # tag=v2.12.1
1818 with :
1919 egress-policy : audit # TODO: change to 'egress-policy: block' after couple of runs
2020
Original file line number Diff line number Diff line change 2020 runs-on : ubuntu-latest
2121 steps :
2222 - name : Harden Runner
23- uses : step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # tag=v2.12.0
23+ uses : step-security/harden-runner@002fdce3c6a235733a90a27c80493a3241e56863 # tag=v2.12.1
2424 with :
2525 egress-policy : audit # TODO: change to 'egress-policy: block' after couple of runs
2626 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # tag=v4.2.2
You can’t perform that action at this time.
0 commit comments