Skip to content
This repository was archived by the owner on May 10, 2025. It is now read-only.

Commit ca86032

Browse files
authored
Pin workflow dependencies (#140)
1 parent 73dd234 commit ca86032

File tree

3 files changed

+11
-54
lines changed

3 files changed

+11
-54
lines changed

.github/workflows/analyze.yaml

Lines changed: 8 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,9 @@ on:
1616
branches: [ main, 'release/*' ]
1717
schedule:
1818
- cron: '23 20 * * 0' # At 08:23 PM, on Sunday each week
19-
workflow_dispatch:
19+
workflow_dispatch: {}
20+
21+
permissions: {}
2022

2123
jobs:
2224
oss:
@@ -27,10 +29,10 @@ jobs:
2729
steps:
2830

2931
- name: Checkout
30-
uses: actions/checkout@v3
32+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3133

3234
- name: Run PSRule analysis
33-
uses: Microsoft/ps-rule@v2.9.0
35+
uses: Microsoft/ps-rule@46451b8f5258c41beb5ae69ed7190ccbba84112c # v2.9.0
3436
with:
3537
modules: PSRule.Rules.MSFT.OSS
3638

@@ -44,14 +46,14 @@ jobs:
4446
steps:
4547

4648
- name: Checkout
47-
uses: actions/checkout@v3
49+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
4850

4951
- name: Run DevSkim scanner
50-
uses: microsoft/DevSkim-Action@v1
52+
uses: microsoft/DevSkim-Action@a6b6966a33b497cd3ae2ebc406edf8f4cc2feec6 # v1.0.15
5153
with:
5254
directory-to-scan: src/
5355

5456
- name: Upload results to security tab
55-
uses: github/codeql-action/upload-sarif@v2
57+
uses: github/codeql-action/upload-sarif@5f8171a638ada777af81d42b55959a643bb29017 # v3.28.12
5658
with:
5759
sarif_file: devskim-results.sarif

.github/workflows/dependencies.yaml

Lines changed: 0 additions & 47 deletions
This file was deleted.

.github/workflows/stale.yaml

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,6 +12,8 @@ on:
1212
schedule:
1313
- cron: '30 1 * * *' # At 1:30 AM, daily
1414

15+
permissions: {}
16+
1517
jobs:
1618
stale:
1719
runs-on: ubuntu-latest
@@ -20,7 +22,7 @@ jobs:
2022
pull-requests: write
2123
steps:
2224

23-
- uses: actions/stale@v8
25+
- uses: actions/stale@5bef64f19d7facfb25b37b414482c7164d639639 # v9.1.0
2426
with:
2527
stale-issue-message: >
2628
This issue has been automatically marked as stale because it has not had

0 commit comments

Comments
 (0)