File tree Expand file tree Collapse file tree 8 files changed +15
-15
lines changed Expand file tree Collapse file tree 8 files changed +15
-15
lines changed Original file line number Diff line number Diff line change 4141
4242    steps :
4343      - name : Harden Runner 
44-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
44+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
4545        with :
4646          egress-policy : audit 
4747
5050
5151      #  Initializes the CodeQL tools for scanning.
5252      - name : Initialize CodeQL 
53-         uses : github/codeql-action/init@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169   #  v3.28.0 
53+         uses : github/codeql-action/init@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c   #  v3.28.1 
5454        with :
5555          languages : ${{ matrix.language }} 
5656          #  If you wish to specify custom queries, you can do so here or in a config file.
6060      #  Autobuild attempts to build any compiled languages  (C/C++, C#, or Java).
6161      #  If this step fails, then you should remove it and run the build manually (see below)
6262      - name : Autobuild 
63-         uses : github/codeql-action/autobuild@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169   #  v3.28.0 
63+         uses : github/codeql-action/autobuild@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c   #  v3.28.1 
6464
6565      #  ℹ️ Command-line programs to run using the OS shell.
6666      #  📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
7373      #    ./location_of_script_within_repo/buildscript.sh
7474
7575      - name : Perform CodeQL Analysis 
76-         uses : github/codeql-action/analyze@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169   #  v3.28.0 
76+         uses : github/codeql-action/analyze@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c   #  v3.28.1 
7777        with :
7878          category : " /language:${{matrix.language}}" 
Original file line number Diff line number Diff line change 1414    runs-on : ubuntu-latest 
1515    steps :
1616    - name : Harden Runner 
17-       uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
17+       uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
1818      with :
1919        egress-policy : audit 
2020
Original file line number Diff line number Diff line change 2020    runs-on : ubuntu-latest 
2121    steps :
2222    - name : Harden Runner 
23-       uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
23+       uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
2424      with :
2525        egress-policy : audit 
2626    - name : Set up Go 1.x 
Original file line number Diff line number Diff line change 1717    runs-on : ubuntu-latest 
1818    steps :
1919      - name : Harden Runner 
20-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
20+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
2121        with :
2222          egress-policy : audit 
2323
Original file line number Diff line number Diff line change 1616    runs-on : ubuntu-latest 
1717    steps :
1818    - name : Harden Runner 
19-       uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
19+       uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
2020      with :
2121        egress-policy : audit 
2222
Original file line number Diff line number Diff line change 2020      release_tag : ${{ steps.release-version.outputs.release_version }} 
2121    steps :
2222      - name : Harden Runner 
23-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
23+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
2424        with :
2525          egress-policy : audit 
2626      - name : Checkout code 
9292    needs : push_release_tag 
9393    steps :
9494      - name : Harden Runner 
95-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
95+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
9696        with :
9797          egress-policy : audit 
9898      - name : Set env 
@@ -118,7 +118,7 @@ jobs:
118118          curl -L "https://raw.githubusercontent.com/${{ github.repository }}/main/CHANGELOG/${{ env.RELEASE_TAG }}.md" \ 
119119          -o "${{ env.RELEASE_TAG }}.md" 
120120name : Release 
121-         uses : softprops/action-gh-release@7b4da11513bf3f43f9999e90eabced41ab8bb048   #  tag=v2.2.0 
121+         uses : softprops/action-gh-release@c95fe1489396fe8a9eb87c0abf8aa5b2ef267fda   #  tag=v2.2.1 
122122        with :
123123          draft : true 
124124          files : out/* 
Original file line number Diff line number Diff line change 1313    runs-on : ubuntu-latest 
1414    steps :
1515      - name : Harden Runner 
16-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
16+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
1717        with :
1818          egress-policy : audit 
1919
Original file line number Diff line number Diff line change 3131
3232    steps :
3333      - name : Harden Runner 
34-         uses : step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f   #  v2.10.2 
34+         uses : step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350   #  v2.10.3 
3535        with :
3636          egress-policy : audit 
3737
@@ -63,14 +63,14 @@ jobs:
6363      #  Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
6464      #  format to the repository Actions tab.
6565      - name : " Upload artifact" 
66-         uses : actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b   #  v4.5 .0
66+         uses : actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08   #  v4.6 .0
6767        with :
6868          name : SARIF file 
6969          path : results.sarif 
7070          retention-days : 5 
7171
7272      #  Upload the results to GitHub's code scanning dashboard.
7373      - name : " Upload to code-scanning" 
74-         uses : github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169   #  v3.28.0 
74+         uses : github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c   #  v3.28.1 
7575        with :
7676          sarif_file : results.sarif 
 
 
   
 
     
   
   
          
    
    
     
    
      
     
     
    You can’t perform that action at this time.
  
 
    
  
    
      
        
     
       
      
     
   
 
    
    
  
 
  
 
     
    
0 commit comments