diff --git a/.github/actions/setup_node/action.yml b/.github/actions/setup_node/action.yml index ba9e0b2939..2b472f2635 100644 --- a/.github/actions/setup_node/action.yml +++ b/.github/actions/setup_node/action.yml @@ -18,7 +18,7 @@ runs: version: 10 run_install: ${{ inputs.run-install }} - - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4 + - uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6 with: node-version: 22.20.0 cache: 'pnpm' diff --git a/.github/workflows/check-backend.yml b/.github/workflows/check-backend.yml index a3a2d4e51b..e2ced57928 100644 --- a/.github/workflows/check-backend.yml +++ b/.github/workflows/check-backend.yml @@ -8,7 +8,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 with: fetch-depth: 0 @@ -26,7 +26,7 @@ jobs: cd ../hivemq-edge - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5 with: distribution: 'adopt' java-version: '21' @@ -59,7 +59,7 @@ jobs: debug-mode: true - name: Upload coverage report - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5 with: name: coverage-java path: build/reports/jacoco/jacocoMergedReport/html diff --git a/.github/workflows/check-frontend.yml b/.github/workflows/check-frontend.yml index 8098905afc..a1d30ce059 100644 --- a/.github/workflows/check-frontend.yml +++ b/.github/workflows/check-frontend.yml @@ -19,7 +19,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -37,7 +37,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -48,7 +48,7 @@ jobs: run: pnpm test:coverage - name: 💾 Upload Vitest Code Coverage - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5 with: name: lcov-vitest path: hivemq-edge-frontend/coverage-vitest/lcov.info @@ -60,7 +60,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -71,7 +71,7 @@ jobs: run: pnpm run build --base=/ - name: Upload artifact - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5 with: name: application path: ./hivemq-edge-frontend/dist @@ -83,10 +83,10 @@ jobs: needs: [ build_production ] steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: Download artifact - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4 + uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6 with: name: application path: ./hivemq-edge-frontend/dist @@ -107,7 +107,7 @@ jobs: LOCAL_NONCE: ${{ steps.percy.outputs.nonce }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - id: percy run: | echo "nonce=$(date +'%s')" >> "$GITHUB_OUTPUT" @@ -133,7 +133,7 @@ jobs: name: Cypress - ${{ matrix.cypress.target }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -142,7 +142,7 @@ jobs: run-install: true - name: Download artifact - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4 + uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6 with: name: application path: ./hivemq-edge-frontend/dist @@ -163,7 +163,7 @@ jobs: # after the test, store videos - name: 💾 Upload Cypress - ${{ matrix.cypress.target }} videos if: failure() - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5 with: name: cypress-${{ matrix.cypress.target }}-videos path: hivemq-edge-frontend/cypress/videos @@ -171,7 +171,7 @@ jobs: retention-days: 1 - name: 💾 Upload Cypress Code Coverage - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 + uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5 with: name: lcov-cypress-${{ matrix.cypress.target }} path: hivemq-edge-frontend/coverage-cypress/lcov.info @@ -186,11 +186,11 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 with: fetch-depth: 0 # Shallow clones should be disabled for a better relevancy of analysis - name: Download all LCOV Artifacts - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4 + uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6 with: path: hivemq-edge-frontend/coverage-combined pattern: lcov-* @@ -201,7 +201,7 @@ jobs: ls -R ./coverage-combined ls -R **/**/*.info - name: SonarQube Scan - uses: SonarSource/sonarqube-scan-action@2500896589ef8f7247069a56136f8dc177c27ccf # v5 + uses: SonarSource/sonarqube-scan-action@fd88b7d7ccbaefd23d8f36f73b59db7a3d246602 # v6 with: projectBaseDir: hivemq-edge-frontend args: > @@ -219,7 +219,7 @@ jobs: PERCY_TOKEN: ${{ secrets.PERCY_TOKEN }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node diff --git a/.github/workflows/check-openapi.yml b/.github/workflows/check-openapi.yml index fa068207da..1da0f37dbf 100644 --- a/.github/workflows/check-openapi.yml +++ b/.github/workflows/check-openapi.yml @@ -14,7 +14,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node diff --git a/.github/workflows/check.yml b/.github/workflows/check.yml index d699690616..b3fe4bc60f 100644 --- a/.github/workflows/check.yml +++ b/.github/workflows/check.yml @@ -23,7 +23,7 @@ jobs: openapi-changed: ${{ steps.openapi.outputs.changed }} steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 with: fetch-depth: 0 diff --git a/.github/workflows/etherip-package.yml b/.github/workflows/etherip-package.yml index 9092bc7823..6e9e293cf3 100644 --- a/.github/workflows/etherip-package.yml +++ b/.github/workflows/etherip-package.yml @@ -14,11 +14,11 @@ jobs: packages: write steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5 with: repository: 'ornl-epics/etherip' - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5 with: distribution: 'adopt' java-version: '21' diff --git a/.github/workflows/snyk-pr.yml b/.github/workflows/snyk-pr.yml index 6aae1a29ff..80813b3398 100644 --- a/.github/workflows/snyk-pr.yml +++ b/.github/workflows/snyk-pr.yml @@ -18,7 +18,7 @@ jobs: steps: - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5 with: distribution: 'temurin' java-version: | @@ -40,7 +40,7 @@ jobs: github-token: ${{ secrets.JENKINS_GITHUB_TOKEN }} - name: Setup Node.js - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0 + uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0 with: node-version: '20.13.1' diff --git a/.github/workflows/snyk-push.yml b/.github/workflows/snyk-push.yml index 0b1926af4b..f85cd7554b 100644 --- a/.github/workflows/snyk-push.yml +++ b/.github/workflows/snyk-push.yml @@ -23,7 +23,7 @@ jobs: echo "selected_github_ref=${workflow_call_github_ref:-${{ github.ref_name }}}" >> "$GITHUB_OUTPUT" - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5 with: distribution: 'temurin' java-version: | @@ -49,7 +49,7 @@ jobs: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - name: Setup Node.js - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0 + uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0 with: node-version: '20.13.1' diff --git a/.github/workflows/snyk-release.yml b/.github/workflows/snyk-release.yml index e25421df10..78c4176bb6 100644 --- a/.github/workflows/snyk-release.yml +++ b/.github/workflows/snyk-release.yml @@ -11,7 +11,7 @@ jobs: steps: - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@dded0888837ed1f317902acf8a20df0ad188d165 # v5 with: distribution: 'temurin' java-version: | @@ -33,7 +33,7 @@ jobs: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - name: Setup Node.js - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0 + uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0 with: node-version: '20.13.1'