Skip to content

Commit eb59752

Browse files
chore(deps): pin dependencies
1 parent e8dae46 commit eb59752

File tree

4 files changed

+69
-69
lines changed

4 files changed

+69
-69
lines changed

.github/workflows/ci.yml

Lines changed: 47 additions & 47 deletions
Original file line numberDiff line numberDiff line change
@@ -31,16 +31,16 @@ jobs:
3131

3232
steps:
3333
- name: Checkout
34-
uses: actions/checkout@v6
34+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
3535

3636
- name: Setup node
37-
uses: actions/setup-node@v6
37+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
3838
with:
3939
node-version-file: 'package.json'
4040
cache: 'npm'
4141

4242
- name: Restore node_modules
43-
uses: actions/cache@v5
43+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
4444
id: api-node-modules
4545
with:
4646
path: node_modules
@@ -58,16 +58,16 @@ jobs:
5858

5959
steps:
6060
- name: Checkout
61-
uses: actions/checkout@v6
61+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
6262

6363
- name: Setup node
64-
uses: actions/setup-node@v6
64+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
6565
with:
6666
node-version-file: 'package.json'
6767
cache: 'npm'
6868

6969
- name: Restore node_modules
70-
uses: actions/cache@v5
70+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
7171
id: api-node-modules
7272
with:
7373
path: node_modules
@@ -85,16 +85,16 @@ jobs:
8585

8686
steps:
8787
- name: Checkout
88-
uses: actions/checkout@v6
88+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
8989

9090
- name: Setup node
91-
uses: actions/setup-node@v6
91+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
9292
with:
9393
node-version-file: 'package.json'
9494
cache: 'npm'
9595

9696
- name: Restore node_modules
97-
uses: actions/cache@v5
97+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
9898
id: api-node-modules
9999
with:
100100
path: node_modules
@@ -113,16 +113,16 @@ jobs:
113113

114114
steps:
115115
- name: Checkout
116-
uses: actions/checkout@v6
116+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
117117

118118
- name: Setup node
119-
uses: actions/setup-node@v6
119+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
120120
with:
121121
node-version-file: 'package.json'
122122
cache: 'npm'
123123

124124
- name: Restore node_modules
125-
uses: actions/cache@v5
125+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
126126
id: api-node-modules
127127
with:
128128
path: node_modules
@@ -141,16 +141,16 @@ jobs:
141141

142142
steps:
143143
- name: Checkout
144-
uses: actions/checkout@v6
144+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
145145

146146
- name: Setup node
147-
uses: actions/setup-node@v6
147+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
148148
with:
149149
node-version-file: 'package.json'
150150
cache: 'npm'
151151

152152
- name: Restore node_modules
153-
uses: actions/cache@v5
153+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
154154
id: api-node-modules
155155
with:
156156
path: node_modules
@@ -161,7 +161,7 @@ jobs:
161161
run: npm ci --prefer-offline --no-audit
162162

163163
- name: Cache build
164-
uses: actions/cache@v5
164+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
165165
with:
166166
path: dist
167167
key: ${{ runner.os }}-api-build-${{ github.sha }}
@@ -175,16 +175,16 @@ jobs:
175175

176176
steps:
177177
- name: Checkout
178-
uses: actions/checkout@v6
178+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
179179

180180
- name: Setup node
181-
uses: actions/setup-node@v6
181+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
182182
with:
183183
node-version-file: 'package.json'
184184
cache: 'npm'
185185

186186
- name: Restore node_modules
187-
uses: actions/cache@v5
187+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
188188
id: api-node-modules
189189
with:
190190
path: node_modules
@@ -195,7 +195,7 @@ jobs:
195195
run: npm ci --prefer-offline --no-audit
196196

197197
- name: Cache build
198-
uses: actions/cache@v5
198+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
199199
with:
200200
path: dist
201201
key: ${{ runner.os }}-api-build-${{ github.sha }}
@@ -211,12 +211,12 @@ jobs:
211211
PG_DATABASE: opencollective_test
212212
services:
213213
redis:
214-
image: redis
214+
image: redis@sha256:970b561d234882c50495c69ffae28f94b6ad8d526f91f9b4ccdd8031466e11a2
215215
ports:
216216
- 6379:6379
217217
options: --entrypoint redis-server
218218
postgres:
219-
image: postgres:16.13
219+
image: postgres:16.13@sha256:80dee66a0ba95a54d143008143e5d7ef628c0e8d5e0666b39d13c8bac3377953
220220
env:
221221
POSTGRES_USER: postgres
222222
POSTGRES_DB: postgres
@@ -225,7 +225,7 @@ jobs:
225225
- 5432:5432
226226
options: --health-cmd pg_isready --health-interval 10s --health-timeout 5s --health-retries 5
227227
minio:
228-
image: minio/minio:edge-cicd
228+
image: minio/minio:edge-cicd@sha256:29e8e51691d11e779468f275002779b221fd3902518d103e35c8a8bb2ef0f3ea
229229
ports:
230230
- 9000:9000
231231
options: --name=minio --health-cmd "curl http://localhost:9000/minio/health/live"
@@ -235,16 +235,16 @@ jobs:
235235

236236
steps:
237237
- name: Checkout
238-
uses: actions/checkout@v6
238+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
239239

240240
- name: Setup node
241-
uses: actions/setup-node@v6
241+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
242242
with:
243243
node-version-file: 'package.json'
244244
cache: 'npm'
245245

246246
- name: Restore node_modules
247-
uses: actions/cache@v5
247+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
248248
id: api-node-modules
249249
with:
250250
path: node_modules
@@ -259,14 +259,14 @@ jobs:
259259
- run: npm run test:coverage -- --ignore "test/server/graphql/**"
260260

261261
- name: Report coverage
262-
uses: codecov/codecov-action@v5
262+
uses: codecov/codecov-action@75cd11691c0faa626561e295848008c8a7dddffe # v5
263263
with:
264264
token: ${{ secrets.CODECOV_TOKEN }}
265265
flags: Unit
266266

267267
- name: Upload test results to Codecov
268268
if: ${{ !cancelled() }}
269-
uses: codecov/test-results-action@v1
269+
uses: codecov/test-results-action@0fa95f0e1eeaafde2c782583b36b28ad0d8c77d3 # v1
270270
with:
271271
token: ${{ secrets.CODECOV_TOKEN }}
272272
flags: Unit
@@ -280,12 +280,12 @@ jobs:
280280

281281
services:
282282
redis:
283-
image: redis
283+
image: redis@sha256:970b561d234882c50495c69ffae28f94b6ad8d526f91f9b4ccdd8031466e11a2
284284
ports:
285285
- 6379:6379
286286
options: --entrypoint redis-server
287287
postgres:
288-
image: postgres:16.13
288+
image: postgres:16.13@sha256:80dee66a0ba95a54d143008143e5d7ef628c0e8d5e0666b39d13c8bac3377953
289289
env:
290290
POSTGRES_USER: postgres
291291
POSTGRES_DB: postgres
@@ -294,7 +294,7 @@ jobs:
294294
- 5432:5432
295295
options: --health-cmd pg_isready --health-interval 10s --health-timeout 5s --health-retries 5
296296
opensearch:
297-
image: opensearchproject/opensearch:3
297+
image: opensearchproject/opensearch:3@sha256:508d340a2fdf8b9707d4f03435fd41b15f617d8b1495120665186f9912853e32
298298
ports:
299299
- 9200:9200
300300
env:
@@ -307,7 +307,7 @@ jobs:
307307
--health-timeout=15s
308308
--health-retries=30
309309
minio:
310-
image: minio/minio:edge-cicd
310+
image: minio/minio:edge-cicd@sha256:29e8e51691d11e779468f275002779b221fd3902518d103e35c8a8bb2ef0f3ea
311311
ports:
312312
- 9000:9000
313313
options: --name=minio --health-cmd "curl http://localhost:9000/minio/health/live"
@@ -316,16 +316,16 @@ jobs:
316316
MINIO_ROOT_PASSWORD: password
317317
steps:
318318
- name: Checkout
319-
uses: actions/checkout@v6
319+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
320320

321321
- name: Setup node
322-
uses: actions/setup-node@v6
322+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
323323
with:
324324
node-version-file: 'package.json'
325325
cache: 'npm'
326326

327327
- name: Restore node_modules
328-
uses: actions/cache@v5
328+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
329329
id: api-node-modules
330330
with:
331331
path: node_modules
@@ -341,14 +341,14 @@ jobs:
341341

342342
- name: Report coverage
343343
if: ${{ !cancelled() }}
344-
uses: codecov/codecov-action@v5
344+
uses: codecov/codecov-action@75cd11691c0faa626561e295848008c8a7dddffe # v5
345345
with:
346346
token: ${{ secrets.CODECOV_TOKEN }}
347347
flags: GraphQL
348348

349349
- name: Upload test results to Codecov
350350
if: ${{ !cancelled() }}
351-
uses: codecov/test-results-action@v1
351+
uses: codecov/test-results-action@0fa95f0e1eeaafde2c782583b36b28ad0d8c77d3 # v1
352352
with:
353353
token: ${{ secrets.CODECOV_TOKEN }}
354354

@@ -358,12 +358,12 @@ jobs:
358358

359359
services:
360360
redis:
361-
image: redis
361+
image: redis@sha256:970b561d234882c50495c69ffae28f94b6ad8d526f91f9b4ccdd8031466e11a2
362362
ports:
363363
- 6379:6379
364364
options: --entrypoint redis-server
365365
postgres:
366-
image: postgres:16.13
366+
image: postgres:16.13@sha256:80dee66a0ba95a54d143008143e5d7ef628c0e8d5e0666b39d13c8bac3377953
367367
env:
368368
POSTGRES_USER: postgres
369369
POSTGRES_DB: postgres
@@ -374,16 +374,16 @@ jobs:
374374

375375
steps:
376376
- name: Checkout
377-
uses: actions/checkout@v6
377+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
378378

379379
- name: Setup node
380-
uses: actions/setup-node@v6
380+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6
381381
with:
382382
node-version-file: 'package.json'
383383
cache: 'npm'
384384

385385
- name: Restore node_modules
386-
uses: actions/cache@v5
386+
uses: actions/cache@668228422ae6a00e4ad889ee87cd7109ec5666a7 # v5
387387
id: api-node-modules
388388
with:
389389
path: node_modules
@@ -400,12 +400,12 @@ jobs:
400400
runs-on: ubuntu-latest
401401
services:
402402
redis:
403-
image: redis
403+
image: redis@sha256:970b561d234882c50495c69ffae28f94b6ad8d526f91f9b4ccdd8031466e11a2
404404
ports:
405405
- 6379:6379
406406
options: --entrypoint redis-server
407407
postgres:
408-
image: postgres:16.13
408+
image: postgres:16.13@sha256:80dee66a0ba95a54d143008143e5d7ef628c0e8d5e0666b39d13c8bac3377953
409409
env:
410410
POSTGRES_USER: postgres
411411
POSTGRES_DB: postgres
@@ -415,18 +415,18 @@ jobs:
415415
options: --health-cmd pg_isready --health-interval 10s --health-timeout 5s --health-retries 5
416416
steps:
417417
- name: Checkout
418-
uses: actions/checkout@v6
418+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
419419

420420
- name: GraphQL Inspector (V1)
421-
uses: kamilkisiela/graphql-inspector@v3.4.0
421+
uses: kamilkisiela/graphql-inspector@b29c3143fda6d5fe51d2720da13f158598a688c7 # v3.4.0
422422
with:
423423
name: 'GraphQL Inspector - Schema v1'
424424
github-token: ${{ secrets.GITHUB_TOKEN }}
425425
schema: 'main:server/graphql/schemaV1.graphql'
426426
fail-on-breaking: false
427427

428428
- name: GraphQL Inspector (V2)
429-
uses: kamilkisiela/graphql-inspector@v3.4.0
429+
uses: kamilkisiela/graphql-inspector@b29c3143fda6d5fe51d2720da13f158598a688c7 # v3.4.0
430430
with:
431431
name: 'GraphQL Inspector - Schema v2'
432432
github-token: ${{ secrets.GITHUB_TOKEN }}

.github/workflows/codeql-analysis.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ jobs:
1313

1414
steps:
1515
- name: Checkout repository
16-
uses: actions/checkout@v6
16+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1717
with:
1818
# We must fetch at least the immediate parents so that if this is
1919
# a pull request then we can checkout the head.
@@ -26,9 +26,9 @@ jobs:
2626

2727
# Initializes the CodeQL tools for scanning.
2828
- name: Initialize CodeQL
29-
uses: github/codeql-action/init@v4
29+
uses: github/codeql-action/init@c10b8064de6f491fea524254123dbe5e09572f13 # v4
3030
with:
3131
languages: javascript
3232

3333
- name: Perform CodeQL Analysis
34-
uses: github/codeql-action/analyze@v4
34+
uses: github/codeql-action/analyze@c10b8064de6f491fea524254123dbe5e09572f13 # v4

0 commit comments

Comments
 (0)