Skip to content

Commit 6aee001

Browse files
Update GitHub Actions (#500)
Signed-off-by: oep-renovate[bot] <212772560+oep-renovate[bot]@users.noreply.github.com> Co-authored-by: oep-renovate[bot] <212772560+oep-renovate[bot]@users.noreply.github.com> Co-authored-by: Alexander Barabanov <[email protected]>
1 parent 9d32d7c commit 6aee001

File tree

10 files changed

+36
-36
lines changed

10 files changed

+36
-36
lines changed

.github/workflows/bdd-stylecheck.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -21,23 +21,23 @@ jobs:
2121
runs-on: ubuntu-latest
2222
steps:
2323
- name: Checkout repository
24-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
24+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2525
with:
2626
persist-credentials: false
2727

2828
- name: Install uv
29-
uses: astral-sh/setup-uv@a02a550bdd3185dba2ebb6aa98d77047ce54ad21 # v6.2.1
29+
uses: astral-sh/setup-uv@445689ea25e0de0a23313031f5fe577c74ae45a1 # v6.3.0
3030
with:
3131
version: "0.7.13"
3232

3333
- name: Setup Java
34-
uses: actions/setup-java@v4
34+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4
3535
with:
3636
distribution: 'temurin'
3737
java-version: '21'
3838

3939
- name: Setup Node
40-
uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
40+
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
4141
with:
4242
node-version: "18.17.0"
4343

.github/workflows/codeql.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -61,13 +61,13 @@ jobs:
6161

6262
# Initializes the CodeQL tools for scanning.
6363
- name: Initialize CodeQL
64-
uses: github/codeql-action/init@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17
64+
uses: github/codeql-action/init@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
6565
with:
6666
languages: ${{ matrix.language }}
6767
build-mode: ${{ matrix.build-mode }}
6868
queries: security-extended
6969

7070
- name: Perform CodeQL Analysis
71-
uses: github/codeql-action/analyze@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17
71+
uses: github/codeql-action/analyze@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
7272
with:
7373
category: "/language:${{matrix.language}}"

.github/workflows/component.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@ jobs:
5656
GO_BUILDER_IMAGE: builder-images/go-builder:v0.1
5757
steps:
5858
- name: Checkout code
59-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
59+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
6060
with:
6161
persist-credentials: false
6262
ref: ${{ inputs.ref || '' }}
@@ -66,7 +66,7 @@ jobs:
6666
with:
6767
type: 'initial'
6868
- name: Configure AWS Credentials
69-
uses: aws-actions/configure-aws-credentials@e3dd6a429d7300a6a4c196c26e071d42e0343502 # v4.0.2
69+
uses: aws-actions/configure-aws-credentials@b47578312673ae6fa5b5096b330d9fbac3d116df # v4.2.1
7070
with:
7171
role-to-assume: ${{ secrets.AWS_ROLE }}
7272
role-session-name: Github

.github/workflows/libs_test.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
timeout-minutes: 30
3636
steps:
3737
- name: Checkout code
38-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
38+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3939
with:
4040
persist-credentials: false
4141
ref: ${{ inputs.ref || '' }}
@@ -46,12 +46,12 @@ jobs:
4646
sudo -E apt install -y ffmpeg
4747
4848
- name: Install uv
49-
uses: astral-sh/setup-uv@a02a550bdd3185dba2ebb6aa98d77047ce54ad21 # v6.2.1
49+
uses: astral-sh/setup-uv@445689ea25e0de0a23313031f5fe577c74ae45a1 # v6.3.0
5050
with:
5151
version: "0.7.13"
5252

5353
- name: Setup GO
54-
uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5.4.0
54+
uses: actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5.5.0
5555
with:
5656
go-version: '1.23'
5757

.github/workflows/main.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -92,7 +92,7 @@ jobs:
9292
echo "checkout_ref=$checkout_ref"
9393
9494
- name: Checkout code
95-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
95+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
9696
with:
9797
fetch-depth: 0
9898
persist-credentials: false

.github/workflows/package-distribution.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -39,13 +39,13 @@ jobs:
3939
REGISTRY: ${{ secrets.REGISTRY }}
4040
steps:
4141
- name: Checkout code
42-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
42+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
4343
with:
4444
persist-credentials: false
4545
ref: ${{ inputs.ref || '' }}
4646

4747
- name: Configure AWS Credentials
48-
uses: aws-actions/configure-aws-credentials@e3dd6a429d7300a6a4c196c26e071d42e0343502 # v4.0.2
48+
uses: aws-actions/configure-aws-credentials@b47578312673ae6fa5b5096b330d9fbac3d116df # v4.2.1
4949
with:
5050
role-to-assume: ${{ secrets.AWS_ROLE }}
5151
role-session-name: Github

.github/workflows/scorecards.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -27,14 +27,14 @@ jobs:
2727
persist-credentials: false
2828

2929
- name: Run analysis
30-
uses: ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 # v2.4.1
30+
uses: ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde # v2.4.2
3131
with:
3232
results_file: results.sarif
3333
results_format: sarif
3434
publish_results: true
3535

3636
# Upload the results to GitHub's code scanning dashboard
3737
- name: Upload to code-scanning
38-
uses: github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
38+
uses: github/codeql-action/upload-sarif@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
3939
with:
4040
sarif_file: results.sarif

.github/workflows/security-scan.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ jobs:
2424
with:
2525
persist-credentials: false
2626
- name: Run Zizmor scan
27-
uses: open-edge-platform/anomalib/.github/actions/security/zizmor@6e3a6594a1d8867c045bb032e6c10f8673ff025a
27+
uses: open-edge-platform/anomalib/.github/actions/security/zizmor@fadfedd5150eb8cd39dfb659ae9bd0eb1c06720d
2828
with:
2929
scan-scope: "all"
3030
severity-level: "LOW"
@@ -42,7 +42,7 @@ jobs:
4242
with:
4343
persist-credentials: false
4444
- name: Run Bandit scan
45-
uses: open-edge-platform/anomalib/.github/actions/security/bandit@6e3a6594a1d8867c045bb032e6c10f8673ff025a
45+
uses: open-edge-platform/anomalib/.github/actions/security/bandit@fadfedd5150eb8cd39dfb659ae9bd0eb1c06720d
4646
with:
4747
scan-scope: "all"
4848
severity-level: "LOW"
@@ -62,14 +62,14 @@ jobs:
6262
with:
6363
persist-credentials: false
6464
- name: Run Trivy vulnerability scanner in config mode
65-
uses: aquasecurity/trivy-action@6c175e9c4083a92bbca2f9724c8a5e33bc2d97a5 # 0.30.0
65+
uses: aquasecurity/trivy-action@76071ef0d7ec797419534a183b498b4d6366cf37 # 0.31.0
6666
with:
6767
scan-type: "config"
6868
scan-ref: "."
6969
format: sarif
7070
trivy-config: ".github/trivy_config.yml"
7171
output: "trivy-results.sarif"
7272
- name: Upload to code-scanning
73-
uses: github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
73+
uses: github/codeql-action/upload-sarif@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
7474
with:
7575
sarif_file: "trivy-results.sarif"

.github/workflows/web-ui.yml

Lines changed: 15 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -33,12 +33,12 @@ jobs:
3333
contents: read # to checkout code
3434
steps:
3535
- name: Checkout code
36-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
36+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3737
with:
3838
persist-credentials: false
3939
ref: ${{ inputs.ref || '' }}
4040

41-
- uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
41+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
4242
id: setup-node
4343
with:
4444
node-version-file: web_ui/.nvmrc
@@ -55,7 +55,7 @@ jobs:
5555
working-directory: "web_ui"
5656
run: tar -czf build.tar.gz build
5757

58-
- uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
58+
- uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
5959
with:
6060
name: webui-build
6161
path: "web_ui/build.tar.gz"
@@ -67,12 +67,12 @@ jobs:
6767
contents: read # to checkout code
6868
steps:
6969
- name: Checkout code
70-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
70+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
7171
with:
7272
persist-credentials: false
7373
ref: ${{ inputs.ref || '' }}
7474

75-
- uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
75+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
7676
id: setup-node
7777
with:
7878
node-version-file: web_ui/.nvmrc
@@ -109,12 +109,12 @@ jobs:
109109
shardTotal: [5]
110110
steps:
111111
- name: Checkout code
112-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
112+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
113113
with:
114114
persist-credentials: false
115115
ref: ${{ inputs.ref || '' }}
116116

117-
- uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
117+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
118118
id: setup-node
119119
with:
120120
node-version-file: web_ui/.nvmrc
@@ -143,12 +143,12 @@ jobs:
143143
shardTotal: [5]
144144
steps:
145145
- name: Checkout code
146-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
146+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
147147
with:
148148
persist-credentials: false
149149
ref: ${{ inputs.ref || '' }}
150150

151-
- uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
151+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
152152
id: setup-node
153153
with:
154154
node-version-file: web_ui/.nvmrc
@@ -157,7 +157,7 @@ jobs:
157157
working-directory: "web_ui"
158158
run: npm ci
159159

160-
- uses: actions/download-artifact@c850b930e6ba138125429b7e5c93fc707a7f8427 # v4.1.4
160+
- uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
161161
with:
162162
name: webui-build
163163
path: "web_ui"
@@ -171,7 +171,7 @@ jobs:
171171
run: npm run test:component -- --project "chromium" --project "chromium mini viewport" --shard=${{ matrix.shard }}/${{ matrix.shardTotal }}
172172

173173
- name: Upload blob report to GitHub Actions Artifacts
174-
uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
174+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
175175
if: always()
176176
with:
177177
name: playwright-blob-reports-${{ matrix.shard }}
@@ -187,12 +187,12 @@ jobs:
187187
runs-on: ubuntu-latest
188188
steps:
189189
- name: Checkout code
190-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.2
190+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
191191
with:
192192
persist-credentials: false
193193
ref: ${{ inputs.ref || '' }}
194194

195-
- uses: actions/setup-node@60edb5dd545a775178f52524783378180af0d1f8 # v4.0.2
195+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
196196
id: setup-node
197197
with:
198198
node-version-file: web_ui/.nvmrc
@@ -202,7 +202,7 @@ jobs:
202202
run: npm ci
203203

204204
- name: Download playwright blob reports from GitHub Actions Artifacts
205-
uses: actions/download-artifact@c850b930e6ba138125429b7e5c93fc707a7f8427 # v4.1.4
205+
uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
206206
with:
207207
pattern: playwright-blob-reports-*
208208
path: web_ui/playwright-blob-reports
@@ -213,7 +213,7 @@ jobs:
213213
run: npx playwright merge-reports --reporter html ./playwright-blob-reports
214214

215215
- name: Upload HTML report
216-
uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
216+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
217217
with:
218218
name: playwright-html-report-attempt-${{ github.run_attempt }}
219219
path: web_ui/playwright-report

.github/workflows/workflows-scan.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
with:
2020
persist-credentials: false
2121
- name: Run Zizmor scan
22-
uses: open-edge-platform/anomalib/.github/actions/security/zizmor@6e3a6594a1d8867c045bb032e6c10f8673ff025a
22+
uses: open-edge-platform/anomalib/.github/actions/security/zizmor@fadfedd5150eb8cd39dfb659ae9bd0eb1c06720d
2323
with:
2424
scan-scope: "changed"
2525
severity-level: "HIGH"

0 commit comments

Comments
 (0)