Skip to content

Commit 9eaa4d9

Browse files
committed
pin github actions to a sha
1 parent e87f5a1 commit 9eaa4d9

File tree

4 files changed

+19
-19
lines changed

4 files changed

+19
-19
lines changed

.github/workflows/acceptance.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ jobs:
1717
has_change: ${{ steps.diff.outputs.has_change}}
1818

1919
steps:
20-
- uses: actions/checkout@v2
20+
- uses: actions/checkout@7884fcad6b5d53d10323aee724dc68d8b9096a2e # pin@v2
2121

2222
- id: fetch-base
2323
if: github.event_name == 'pull_request'
@@ -45,7 +45,7 @@ jobs:
4545
4646
# If the diff file is not empty, it has changes.
4747
[ -s diff.txt ] && echo "::set-output name=has_change::true" || echo "::set-output name=has_change::false"
48-
48+
4949
- name: set has_change to true for push to main/master
5050
if: github.event_name == 'push'
5151
run: echo "::set-output name=has_change::true"
@@ -67,11 +67,11 @@ jobs:
6767
6868
- name: Check out code
6969
if: ${{ needs.changes.outputs.has_change == 'true' }}
70-
uses: actions/checkout@v2
70+
uses: actions/checkout@7884fcad6b5d53d10323aee724dc68d8b9096a2e # pin@v2
7171

7272
# Use Docker layer caching for 'docker build' and 'docker-compose build' commands.
7373
# https://github.com/satackey/action-docker-layer-caching/releases/tag/v0.0.11
74-
- uses: satackey/action-docker-layer-caching@46d2c640b1d8ef50d185452ad6fb324e6bd1d052
74+
- uses: satackey/action-docker-layer-caching@46d2c640b1d8ef50d185452ad6fb324e6bd1d052 # pin@46d2c640b1d8ef50d185452ad6fb324e6bd1d052
7575
if: ${{ needs.changes.outputs.has_change == 'true' }}
7676
continue-on-error: true
7777

.github/workflows/codeql-analysis.yml

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -24,17 +24,17 @@ jobs:
2424
language: [ 'ruby' ]
2525

2626
steps:
27-
- name: Checkout repository
28-
uses: actions/checkout@v2
27+
- name: Checkout repository
28+
uses: actions/checkout@7884fcad6b5d53d10323aee724dc68d8b9096a2e # pin@v2
2929

30-
# Initializes the CodeQL tools for scanning.
31-
- name: Initialize CodeQL
32-
uses: github/codeql-action/init@v2
33-
with:
34-
languages: ${{ matrix.language }}
30+
# Initializes the CodeQL tools for scanning.
31+
- name: Initialize CodeQL
32+
uses: github/codeql-action/init@27ea8f8fe5977c00f5b37e076ab846c5bd783b96 # pin@v2
33+
with:
34+
languages: ${{ matrix.language }}
3535

36-
- name: Autobuild
37-
uses: github/codeql-action/autobuild@v2
36+
- name: Autobuild
37+
uses: github/codeql-action/autobuild@27ea8f8fe5977c00f5b37e076ab846c5bd783b96 # pin@v2
3838

39-
- name: Perform CodeQL Analysis
40-
uses: github/codeql-action/analyze@v2
39+
- name: Perform CodeQL Analysis
40+
uses: github/codeql-action/analyze@27ea8f8fe5977c00f5b37e076ab846c5bd783b96 # pin@v2

.github/workflows/lint.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,9 +15,9 @@ jobs:
1515

1616
steps:
1717
- name: Check out code
18-
uses: actions/checkout@v2
18+
uses: actions/checkout@7884fcad6b5d53d10323aee724dc68d8b9096a2e # pin@v2
1919

20-
- uses: ruby/[email protected]
20+
- uses: ruby/setup-ruby@8029ebd6e5bd8f4e0d6f7623ea76a01ec5b1010d # pin@v1.110.0
2121
with:
2222
ruby-version: 2.7.5
2323
bundler-cache: true

.github/workflows/test.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,9 +15,9 @@ jobs:
1515

1616
steps:
1717
- name: Check out code
18-
uses: actions/checkout@v2
18+
uses: actions/checkout@7884fcad6b5d53d10323aee724dc68d8b9096a2e # pin@v2
1919

20-
- uses: ruby/[email protected]
20+
- uses: ruby/setup-ruby@8029ebd6e5bd8f4e0d6f7623ea76a01ec5b1010d # pin@v1.110.0
2121
with:
2222
ruby-version: 2.7.5
2323
bundler-cache: true

0 commit comments

Comments
 (0)