Skip to content

chore(deps): bump the actions group with 2 updates #368

chore(deps): bump the actions group with 2 updates

chore(deps): bump the actions group with 2 updates #368

Triggered via pull request March 19, 2026 07:26
Status Failure
Total duration 8s
Artifacts

security.yml

on: pull_request
OpenSSF Scorecard
3s
OpenSSF Scorecard
Dependency Review
3s
Dependency Review
Matrix: CodeQL Analysis
Fit to window
Zoom out
Zoom in

Annotations

5 errors
Dependency Review
The action actions/dependency-review-action@v4 is not allowed in hyperpolymath/palimpsest-license because all actions must be pinned to a full-length commit SHA.
CodeQL Analysis (rust)
The action github/codeql-action/autobuild@v4 is not allowed in hyperpolymath/palimpsest-license because all actions must be pinned to a full-length commit SHA.
CodeQL Analysis (python)
The action github/codeql-action/autobuild@v4 is not allowed in hyperpolymath/palimpsest-license because all actions must be pinned to a full-length commit SHA.
OpenSSF Scorecard
The action github/codeql-action/upload-sarif@v4 is not allowed in hyperpolymath/palimpsest-license because all actions must be pinned to a full-length commit SHA.
CodeQL Analysis (javascript)
The action github/codeql-action/autobuild@v4 is not allowed in hyperpolymath/palimpsest-license because all actions must be pinned to a full-length commit SHA.