Skip to content

Commit 3ea02d7

Browse files
committed
ci: pin github actions to full-length commit shas
1 parent ae95867 commit 3ea02d7

File tree

5 files changed

+16
-16
lines changed

5 files changed

+16
-16
lines changed

.github/workflows/autofix.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -10,9 +10,9 @@ jobs:
1010
autofix:
1111
runs-on: ubuntu-latest
1212
steps:
13-
- uses: actions/checkout@v6
13+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1414
- run: corepack enable
15-
- uses: actions/setup-node@v6
15+
- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
1616
with:
1717
node-version: lts/-1
1818
cache: "pnpm"
@@ -29,5 +29,5 @@ jobs:
2929
- name: 🧪 Update snapshots
3030
run: pnpm test -u
3131

32-
- uses: autofix-ci/action@7a166d7532b277f34e16238930461bf77f9d7ed8
32+
- uses: autofix-ci/action@7a166d7532b277f34e16238930461bf77f9d7ed8 # 7a166d7532b277f34e16238930461bf77f9d7ed8
3333

.github/workflows/ci.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -13,9 +13,9 @@ jobs:
1313
runs-on: ubuntu-latest
1414

1515
steps:
16-
- uses: actions/checkout@v6
16+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1717
- run: corepack enable
18-
- uses: actions/setup-node@v6
18+
- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
1919
with:
2020
node-version: lts/*
2121
cache: "pnpm"
@@ -36,9 +36,9 @@ jobs:
3636
runs-on: ${{ matrix.os }}
3737

3838
steps:
39-
- uses: actions/checkout@v6
39+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
4040
- run: corepack enable
41-
- uses: actions/setup-node@v6
41+
- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
4242
with:
4343
node-version: lts/-1
4444
cache: "pnpm"
@@ -56,7 +56,7 @@ jobs:
5656
run: echo "PLAYWRIGHT_BROWSERS_PATH=$HOME\.cache\playwright-bin" >> $env:GITHUB_ENV
5757

5858
- name: Cache Playwright's binary
59-
uses: actions/cache@v5
59+
uses: actions/cache@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 # v5
6060
with:
6161
# Playwright removes unused browsers automatically
6262
# So does not need to add playwright version to key
@@ -81,4 +81,4 @@ jobs:
8181

8282
- name: 🟩 Coverage
8383
if: matrix.os == 'ubuntu-latest'
84-
uses: codecov/codecov-action@v5
84+
uses: codecov/codecov-action@671740ac38dd9b0130fbe1cec585b89eea48d3de # v5

.github/workflows/codeql.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -24,18 +24,18 @@ jobs:
2424

2525
steps:
2626
- name: Checkout
27-
uses: actions/checkout@v6
27+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2828

2929
- name: Initialize CodeQL
30-
uses: github/codeql-action/init@v4
30+
uses: github/codeql-action/init@45cbd0c69e560cd9e7cd7f8c32362050c9b7ded2 # v4
3131
with:
3232
languages: ${{ matrix.language }}
3333
queries: +security-and-quality
3434

3535
- name: Autobuild
36-
uses: github/codeql-action/autobuild@v4
36+
uses: github/codeql-action/autobuild@45cbd0c69e560cd9e7cd7f8c32362050c9b7ded2 # v4
3737

3838
- name: Perform CodeQL Analysis
39-
uses: github/codeql-action/analyze@v4
39+
uses: github/codeql-action/analyze@45cbd0c69e560cd9e7cd7f8c32362050c9b7ded2 # v4
4040
with:
4141
category: "/language:${{ matrix.language }}"

.github/workflows/provenance.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ jobs:
1313
check-provenance:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v6
16+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1717
with:
1818
fetch-depth: 0
1919
- name: Check provenance downgrades

.github/workflows/release.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -12,12 +12,12 @@ jobs:
1212
release:
1313
runs-on: ubuntu-latest
1414
steps:
15-
- uses: actions/checkout@v6
15+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1616
with:
1717
fetch-depth: 0
1818

1919
- name: Set node
20-
uses: actions/setup-node@v6
20+
uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
2121
with:
2222
node-version: lts/*
2323

0 commit comments

Comments
 (0)