Skip to content

Commit 4c9d496

Browse files
chore(deps): pin dependencies
1 parent 95269a0 commit 4c9d496

File tree

12 files changed

+26
-26
lines changed

12 files changed

+26
-26
lines changed

.github/workflows/build.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -15,9 +15,9 @@ jobs:
1515
gradle-wrapper-validation:
1616
runs-on: ubuntu-latest
1717
steps:
18-
- uses: actions/checkout@v4
18+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1919

20-
- uses: gradle/[email protected]
20+
- uses: gradle/wrapper-validation-action@f9c9c575b8b21b6485636a91ffecd10e558c62f6 # v3.5.0
2121

2222
build:
2323
runs-on: ${{ matrix.os }}
@@ -28,16 +28,16 @@ jobs:
2828
- ubuntu-latest
2929
- windows-latest
3030
steps:
31-
- uses: actions/checkout@v4
31+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
3232

3333
- name: Set up JDK for running Gradle
34-
uses: actions/setup-java@v4
34+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4
3535
with:
3636
distribution: temurin
3737
java-version: 17
3838

3939
- name: Set up gradle
40-
uses: gradle/actions/setup-gradle@v4
40+
uses: gradle/actions/setup-gradle@06832c7b30a0129d7fb559bcc6e43d26f6374244 # v4
4141
with:
4242
cache-read-only: ${{ github.event_name == 'pull_request' }}
4343

.github/workflows/codeql-daily.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -11,30 +11,30 @@ jobs:
1111
runs-on: ubuntu-latest
1212

1313
steps:
14-
- uses: actions/checkout@v4
14+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1515

1616
- name: Set up Java 17
17-
uses: actions/setup-java@v4
17+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4
1818
with:
1919
distribution: temurin
2020
java-version: 17
2121

2222
- name: Initialize CodeQL
23-
uses: github/codeql-action/init@v3
23+
uses: github/codeql-action/init@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3
2424
with:
2525
languages: java
2626
# using "latest" helps to keep up with the latest Kotlin support
2727
# see https://github.com/github/codeql-action/issues/1555#issuecomment-1452228433
2828
tools: latest
2929

3030
- name: Set up gradle
31-
uses: gradle/actions/setup-gradle@v4
31+
uses: gradle/actions/setup-gradle@06832c7b30a0129d7fb559bcc6e43d26f6374244 # v4
3232
- name: Assemble
3333
# skipping build cache is needed so that all modules will be analyzed
3434
run: ./gradlew assemble --no-build-cache
3535

3636
- name: Perform CodeQL analysis
37-
uses: github/codeql-action/analyze@v3
37+
uses: github/codeql-action/analyze@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3
3838

3939
workflow-notification:
4040
needs:

.github/workflows/issue-management-feedback-label.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ jobs:
1111
github.event.comment.user.login == github.event.issue.user.login
1212
runs-on: ubuntu-latest
1313
steps:
14-
- uses: actions/checkout@v4
14+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1515

1616
- name: Remove label
1717
env:

.github/workflows/issue-management-stale-action.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ jobs:
99
stale:
1010
runs-on: ubuntu-latest
1111
steps:
12-
- uses: actions/stale@v9
12+
- uses: actions/stale@5bef64f19d7facfb25b37b414482c7164d639639 # v9
1313
with:
1414
repo-token: ${{ secrets.GITHUB_TOKEN }}
1515
days-before-stale: 7

.github/workflows/oats-tests.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -14,29 +14,29 @@ jobs:
1414
runs-on: ubuntu-24.04
1515
steps:
1616
- name: Check out
17-
uses: actions/checkout@v4
17+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1818

1919
- name: Set up JDK for running Gradle
20-
uses: actions/setup-java@v4
20+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4
2121
with:
2222
distribution: temurin
2323
java-version: 17
2424

2525
- name: Set up gradle
26-
uses: gradle/actions/setup-gradle@v4
26+
uses: gradle/actions/setup-gradle@06832c7b30a0129d7fb559bcc6e43d26f6374244 # v4
2727
with:
2828
cache-read-only: ${{ github.event_name == 'pull_request' }}
2929

3030
- name: Set up Go
31-
uses: actions/setup-go@v5
31+
uses: actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5
3232
with:
3333
go-version: '1.24'
3434

3535
- name: Run acceptance tests
3636
run: .github/scripts/run-oats-tests.sh
3737

3838
- name: upload log file
39-
uses: actions/upload-artifact@v4
39+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4
4040
if: failure()
4141
with:
4242
name: OATs logs

.github/workflows/reusable-markdown-link-check.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ jobs:
77
markdown-link-check:
88
runs-on: ubuntu-latest
99
steps:
10-
- uses: actions/checkout@v4
10+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1111

1212
- name: Install markdown-link-check
1313
# TODO(jack-berg): use latest when config file reading bug is fixed: https://github.com/tcort/markdown-link-check/issues/246

.github/workflows/reusable-workflow-notification.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ jobs:
1313
workflow-notification:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v4
16+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1717

1818
- name: Open issue or add comment if issue already open
1919
env:

javaagent/docker-compose.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ services:
1919
depends_on:
2020
- collector
2121
collector:
22-
image: otel/opentelemetry-collector-contrib:0.123.0
22+
image: otel/opentelemetry-collector-contrib:0.123.0@sha256:e39311df1f3d941923c00da79ac7ba6269124a870ee87e3c3ad24d60f8aee4d2
2323
volumes:
2424
- ./collector-config.yaml:/collector-config.yaml
2525
command: ["--config=/collector-config.yaml"]

log-appender/docker-compose.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
version: '3'
22
services:
33
collector:
4-
image: otel/opentelemetry-collector-contrib:0.123.0
4+
image: otel/opentelemetry-collector-contrib:0.123.0@sha256:e39311df1f3d941923c00da79ac7ba6269124a870ee87e3c3ad24d60f8aee4d2
55
volumes:
66
- ./otel-config.yaml:/otel-config.yaml
77
command: ["--config=/otel-config.yaml"]

otlp/docker/docker-compose.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ services:
33

44
# Jaeger
55
jaeger-all-in-one:
6-
image: jaegertracing/all-in-one:latest
6+
image: jaegertracing/all-in-one:latest@sha256:82505210a99b18f587c94f40120c2e13ef3a6ac3095eebdb9e9cba9bf5839efd
77
ports:
88
- "16686:16686"
99
- "14268"
@@ -13,7 +13,7 @@ services:
1313

1414
# Zipkin
1515
zipkin-all-in-one:
16-
image: openzipkin/zipkin:latest
16+
image: openzipkin/zipkin:latest@sha256:bb570eb45c2994eaf32da783cc098b3d51d1095b73ec92919863d73d0a9eaafb
1717
ports:
1818
- "9411:9411"
1919

@@ -36,7 +36,7 @@ services:
3636

3737
prometheus:
3838
container_name: prometheus
39-
image: prom/prometheus:latest
39+
image: prom/prometheus:latest@sha256:e2b8aa62b64855956e3ec1e18b4f9387fb6203174a4471936f4662f437f04405
4040
volumes:
4141
- ./prometheus.yaml:/etc/prometheus/prometheus.yml
4242
ports:

0 commit comments

Comments
 (0)