Skip to content

Commit 0a1ee45

Browse files
committed
chore: pin actions to sha
1 parent 076a31f commit 0a1ee45

File tree

8 files changed

+32
-32
lines changed

8 files changed

+32
-32
lines changed

.github/workflows/cli.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ jobs:
1717
runs-on: ubuntu-latest
1818

1919
steps:
20-
- uses: actions/checkout@v6.0.2
20+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2121
- name: Build
2222
run: cargo build --release --verbose
2323
working-directory: ./cli

.github/workflows/pgTAP.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,8 @@ jobs:
1010
build:
1111
runs-on: ubuntu-latest
1212
steps:
13-
- uses: actions/checkout@v6.0.2
14-
- uses: supabase/setup-cli@v1
13+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
14+
- uses: supabase/setup-cli@b60b5899c73b63a2d2d651b1e90db8d4c9392f51 # v1.6.0
1515
with:
1616
version: 2.75.0
1717
- name: Supabase Start

.github/workflows/pre-commit_hooks.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -11,10 +11,10 @@ jobs:
1111

1212
steps:
1313
- name: checkout
14-
uses: actions/checkout@v6.0.2
14+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
1515

1616
- name: set up python 3.10
17-
uses: actions/setup-python@v6
17+
uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6.2.0
1818
with:
1919
python-version: "3.10"
2020

.github/workflows/prettier.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,9 +13,9 @@ jobs:
1313
runs-on: ubuntu-latest
1414
steps:
1515
- name: Check out repo
16-
uses: actions/checkout@v6.0.2
16+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
1717
- name: Run Prettier
18-
uses: creyD/prettier_action@v4.6
18+
uses: creyD/prettier_action@8c18391fdc98ed0d884c6345f03975edac71b8f0 # v4.6
1919
with:
2020
# Prettier CLI arguments
2121
prettier_options: '--config ./website/.prettierrc --ignore-path ./website/.prettierignore --check ./website'

.github/workflows/release-cli.yaml

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -14,9 +14,9 @@ jobs:
1414
runs-on: ubuntu-latest
1515
steps:
1616
- name: Checkout code
17-
uses: actions/checkout@v6.0.2
17+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
1818
- name: Read CLI version
19-
uses: SebRollen/toml-action@v1.2.0
19+
uses: SebRollen/toml-action@b1b3628f55fc3a28208d4203ada8b737e9687876 # v1.2.0
2020
id: read_cli_version
2121
with:
2222
file: './cli/Cargo.toml'
@@ -29,7 +29,7 @@ jobs:
2929
exit 1
3030
- name: Create Release
3131
id: create_release
32-
uses: actions/create-release@v1
32+
uses: actions/create-release@0cb9c9b65d5d1901c1f53e5e66eaf4afd303e70e # v1.1.4
3333
env:
3434
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
3535
with:
@@ -60,12 +60,12 @@ jobs:
6060
sudo apt-get install -y --no-install-recommends curl build-essential libssl-dev pkg-config
6161
6262
- name: Install Rust Toolchain
63-
uses: actions-rs/toolchain@v1
63+
uses: actions-rs/toolchain@16499b5e05bf2e26879000db0c1d13f7e13fa3af # v1.0.7
6464
with:
6565
profile: minimal
6666
toolchain: stable
6767

68-
- uses: actions/checkout@v6.0.2
68+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
6969
- name: Build and Package
7070
run: |
7171
cd cli
@@ -97,7 +97,7 @@ jobs:
9797
sudo dpkg-deb --build "${package_dir}"
9898
9999
- name: Upload gzip Package
100-
uses: actions/upload-release-asset@v1
100+
uses: actions/upload-release-asset@e8f9f06c4b078e705bd2ea027f0926603fc9b4d5 # v1.0.2
101101
env:
102102
UPLOAD_URL: ${{ needs.create-release.outputs.upload_url }}
103103
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
@@ -108,7 +108,7 @@ jobs:
108108
asset_content_type: application/gzip
109109

110110
- name: Upload Debian Package
111-
uses: actions/upload-release-asset@v1
111+
uses: actions/upload-release-asset@e8f9f06c4b078e705bd2ea027f0926603fc9b4d5 # v1.0.2
112112
env:
113113
UPLOAD_URL: ${{ needs.create-release.outputs.upload_url }}
114114
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
@@ -126,20 +126,20 @@ jobs:
126126
timeout-minutes: 45
127127
steps:
128128
- name: Install Rust Toolchain
129-
uses: actions-rs/toolchain@v1
129+
uses: actions-rs/toolchain@16499b5e05bf2e26879000db0c1d13f7e13fa3af # v1.0.7
130130
with:
131131
profile: minimal
132132
toolchain: stable
133133

134-
- uses: actions/checkout@v6.0.2
134+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
135135
- name: Build and Package
136136
run: |
137137
cd cli
138138
cargo build --release
139139
cd ./target/release && tar -czvf dbdev.tar.gz ./dbdev
140140
141141
- name: Upload Release Asset
142-
uses: actions/upload-release-asset@v1
142+
uses: actions/upload-release-asset@e8f9f06c4b078e705bd2ea027f0926603fc9b4d5 # v1.0.2
143143
env:
144144
UPLOAD_URL: ${{ needs.create-release.outputs.upload_url }}
145145
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
@@ -157,20 +157,20 @@ jobs:
157157
timeout-minutes: 45
158158
steps:
159159
- name: Install Rust Toolchain
160-
uses: actions-rs/toolchain@v1
160+
uses: actions-rs/toolchain@16499b5e05bf2e26879000db0c1d13f7e13fa3af # v1.0.7
161161
with:
162162
profile: minimal
163163
toolchain: stable
164164

165-
- uses: actions/checkout@v6.0.2
165+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
166166
- name: Build and Package
167167
run: |
168168
cd cli
169169
cargo build --release
170170
cd ./target/release && Compress-Archive -Path ./dbdev.exe -Destination dbdev.zip
171171
172172
- name: Upload Release Asset
173-
uses: actions/upload-release-asset@v1
173+
uses: actions/upload-release-asset@e8f9f06c4b078e705bd2ea027f0926603fc9b4d5 # v1.0.2
174174
env:
175175
UPLOAD_URL: ${{ needs.create-release.outputs.upload_url }}
176176
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}

.github/workflows/release-homebrew-tap.yaml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ jobs:
1717
release:
1818
runs-on: ubuntu-latest
1919
steps:
20-
- uses: actions/checkout@v6.0.2
20+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2121
with:
2222
repository: supabase/homebrew-tap
2323
ref: "main"
@@ -31,21 +31,21 @@ jobs:
3131
# strip the leading v (if present)
3232
echo "version=${tag#v}" >> "$GITHUB_OUTPUT"
3333
- name: Download Linux AMD64 package
34-
uses: robinraju/release-downloader@v1.12
34+
uses: robinraju/release-downloader@daf26c55d821e836577a15f77d86ddc078948b05 # v1
3535
with:
3636
repository: "supabase/dbdev"
3737
tag: ${{ inputs.tag }}
3838
fileName: "dbdev-${{ inputs.tag }}-linux-amd64.tar.gz"
3939

4040
- name: Download Linux ARM64 package
41-
uses: robinraju/release-downloader@v1.12
41+
uses: robinraju/release-downloader@daf26c55d821e836577a15f77d86ddc078948b05 # v1
4242
with:
4343
repository: "supabase/dbdev"
4444
tag: ${{ inputs.tag }}
4545
fileName: "dbdev-${{ inputs.tag }}-linux-arm64.tar.gz"
4646

4747
- name: Download macOS ARM64 package
48-
uses: robinraju/release-downloader@v1.12
48+
uses: robinraju/release-downloader@daf26c55d821e836577a15f77d86ddc078948b05 # v1
4949
with:
5050
repository: "supabase/dbdev"
5151
tag: ${{ inputs.tag }}
@@ -113,7 +113,7 @@ jobs:
113113
echo "It was auto-generated by the dbdev release workflow." >> PR_BODY.md
114114
115115
- name: Create Pull Request
116-
uses: peter-evans/create-pull-request@v8.1.0
116+
uses: peter-evans/create-pull-request@c0f553fe549906ede9cf27b5156039d195d2ece0 # v8.1.0
117117
with:
118118
token: ${{ secrets.homebrew_tap_rw }}
119119
commit-message: "Release dbdev version v${{ steps.vars.outputs.version }}"

.github/workflows/release-scoop-bucket.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ jobs:
1717
release:
1818
runs-on: ubuntu-latest
1919
steps:
20-
- uses: actions/checkout@v6.0.2
20+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2121
with:
2222
repository: supabase/scoop-bucket
2323
ref: "main"
@@ -33,7 +33,7 @@ jobs:
3333
echo "version=${tag#v}" >> "$GITHUB_OUTPUT"
3434
3535
- name: Download Windows AMD64 package
36-
uses: robinraju/release-downloader@v1.12
36+
uses: robinraju/release-downloader@daf26c55d821e836577a15f77d86ddc078948b05 # v1
3737
with:
3838
repository: "supabase/dbdev"
3939
tag: ${{ inputs.tag }}
@@ -69,7 +69,7 @@ jobs:
6969
echo "It was auto-generated by the dbdev release workflow." >> PR_BODY.md
7070
7171
- name: Create Pull Request
72-
uses: peter-evans/create-pull-request@v8.1.0
72+
uses: peter-evans/create-pull-request@c0f553fe549906ede9cf27b5156039d195d2ece0 # v8.1.0
7373
with:
7474
token: ${{ secrets.scoop_bucket_rw }}
7575
commit-message: "Release dbdev version v${{ steps.vars.outputs.version }}"

.github/workflows/website-tests.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -22,15 +22,15 @@ jobs:
2222

2323
steps:
2424
- name: Checkout
25-
uses: actions/checkout@v6.0.2
25+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2626

2727
- name: Setup pnpm
28-
uses: pnpm/action-setup@v5
28+
uses: pnpm/action-setup@fc06bc1257f339d1d5d8b3a19a8cae5388b55320 # v5.0.0
2929
with:
3030
version: latest
3131

3232
- name: Setup Node.js
33-
uses: actions/setup-node@v6
33+
uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3.0
3434
with:
3535
node-version: "24"
3636
cache: "pnpm"
@@ -43,7 +43,7 @@ jobs:
4343
run: pnpm run test:coverage
4444

4545
- name: Upload coverage to Coveralls
46-
uses: coverallsapp/github-action@v2
46+
uses: coverallsapp/github-action@5cbfd81b66ca5d10c19b062c04de0199c215fb6e # v2.3.7
4747
with:
4848
file: website/coverage/lcov.info
4949
flag-name: frontend

0 commit comments

Comments
 (0)