Skip to content

🌱 Pin GitHub Actions workflows to commits#3354

Merged
kcp-ci-bot merged 3 commits intokcp-dev:mainfrom
embik:pin-github-workflows
Mar 27, 2025
Merged

🌱 Pin GitHub Actions workflows to commits#3354
kcp-ci-bot merged 3 commits intokcp-dev:mainfrom
embik:pin-github-workflows

Conversation

@embik
Copy link
Member

@embik embik commented Mar 26, 2025

Summary

It's a best practice to pin workflows used in GitHub Actions to specific commits. We should do that.

In addition, I feel like our dependabot configuration doesn't work (is it maybe not enabled?), so I'm copying the one we are using in kubernetes-sigs/multicluster-runtime.

Related issue(s)

Fixes #

Release Notes

NONE

@kcp-ci-bot kcp-ci-bot added release-note-none Denotes a PR that doesn't merit a release note. dco-signoff: yes Indicates the PR's author has signed the DCO. size/M Denotes a PR that changes 30-99 lines, ignoring generated files. labels Mar 26, 2025
embik added 2 commits March 26, 2025 13:47
On-behalf-of: SAP <marvin.beckers@sap.com>
Signed-off-by: Marvin Beckers <marvin@kubermatic.com>
On-behalf-of: SAP <marvin.beckers@sap.com>
Signed-off-by: Marvin Beckers <marvin@kubermatic.com>
@embik embik force-pushed the pin-github-workflows branch from 2ea9590 to 7204a48 Compare March 26, 2025 12:47
@embik embik requested review from mjudeikis and xrstf March 26, 2025 17:11
On-behalf-of: SAP <marvin.beckers@sap.com>
Signed-off-by: Marvin Beckers <marvin@kubermatic.com>
@embik embik force-pushed the pin-github-workflows branch from c51e3d2 to 58c534a Compare March 27, 2025 08:11
@embik embik requested a review from xrstf March 27, 2025 08:11
Copy link
Contributor

@xrstf xrstf left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/approve

@kcp-ci-bot kcp-ci-bot added the lgtm Indicates that a PR is ready to be merged. label Mar 27, 2025
@kcp-ci-bot
Copy link
Contributor

LGTM label has been added.

DetailsGit tree hash: 7323134ca451ebfd73a261b8f8288d032ae7f5be

@kcp-ci-bot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: xrstf

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@kcp-ci-bot kcp-ci-bot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Mar 27, 2025
@kcp-ci-bot kcp-ci-bot merged commit e4f61b1 into kcp-dev:main Mar 27, 2025
13 checks passed
@embik embik deleted the pin-github-workflows branch March 27, 2025 09:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approved Indicates a PR has been approved by an approver from all required OWNERS files. dco-signoff: yes Indicates the PR's author has signed the DCO. lgtm Indicates that a PR is ready to be merged. release-note-none Denotes a PR that doesn't merit a release note. size/M Denotes a PR that changes 30-99 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants