File tree Expand file tree Collapse file tree 6 files changed +7
-7
lines changed
Expand file tree Collapse file tree 6 files changed +7
-7
lines changed Original file line number Diff line number Diff line change 5252 with :
5353 go-version-file : ' go.mod'
5454 - name : Run Gosec Security Scanner
55- uses : securego/gosec@15d5c61e866bc2e2e8389376a31f1e5e09bde7d8 # v2.22.9
55+ uses : securego/gosec@6be2b51fd78feca86af91f5186b7964d76cb1256 # v2.22.10
5656 with :
5757 args : ' -no-fail -fmt sarif -out gosec.sarif ./...'
5858 - name : Upload SARIF file
Original file line number Diff line number Diff line change 3636 output : ' trivy-results.sarif'
3737 severity : ' CRITICAL,HIGH'
3838 - name : Install Cosign
39- uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
39+ uses : sigstore/cosign-installer@7e8b541eb2e61bf99390e1afd4be13a184e9ebc5 # v3.10.1
4040 - name : Publish Capsule
4141 id : publish-capsule
4242 uses : peak-scale/github-actions/make-ko-publish@a441cca016861c546ab7e065277e40ce41a3eb84 # v0.2.0
Original file line number Diff line number Diff line change 4545 chart-digest : ${{ steps.helm_publish.outputs.digest }}
4646 steps :
4747 - uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
48- - uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
48+ - uses : sigstore/cosign-installer@7e8b541eb2e61bf99390e1afd4be13a184e9ebc5 # v3.10.1
4949 - name : " Extract Version"
5050 id : extract_version
5151 run : |
Original file line number Diff line number Diff line change 2828 - uses : creekorful/goreportcard-action@1f35ced8cdac2cba28c9a2f2288a16aacfd507f9 # v1.0
2929 - uses : anchore/sbom-action/download-syft@039eeb235f5bcc2a8c097a5bb6c8f106e35c8c24
3030 - name : Install Cosign
31- uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
31+ uses : sigstore/cosign-installer@7e8b541eb2e61bf99390e1afd4be13a184e9ebc5 # v3.10.1
3232 - name : Run GoReleaser
3333 uses : goreleaser/goreleaser-action@e435ccd777264be153ace6237001ef4d979d3a7a # v6.4.0
3434 with :
Original file line number Diff line number Diff line change 2424 with :
2525 persist-credentials : false
2626 - name : Run analysis
27- uses : ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde # v2.4.2
27+ uses : ossf/scorecard-action@4eaacf0543bb3f2c246792bd56e8cdeffafb205a # v2.4.3
2828 with :
2929 results_file : results.sarif
3030 results_format : sarif
3737 path : results.sarif
3838 retention-days : 5
3939 - name : Upload to code-scanning
40- uses : github/codeql-action/upload-sarif@3599b3baa15b485a2e49ef411a7a4bb2452e7f93 # v3.30.5
40+ uses : github/codeql-action/upload-sarif@d198d2fabf39a7f36b5ce57ce70d4942944f006e # v3.31.0
4141 with :
4242 sarif_file : results.sarif
Original file line number Diff line number Diff line change 1919 chart :
2020 spec :
2121 chart : capsule
22- version : " 0.10.9 "
22+ version : " 0.11.1 "
2323 sourceRef :
2424 kind : HelmRepository
2525 name : projectcapsule
You can’t perform that action at this time.
0 commit comments