diff --git a/.github/workflows/bump-ff-version.yml b/.github/workflows/bump-ff-version.yml index 6cf3b3de..d4acb712 100644 --- a/.github/workflows/bump-ff-version.yml +++ b/.github/workflows/bump-ff-version.yml @@ -12,7 +12,7 @@ on: jobs: bump-ff-version: - uses: wearefrank/ci-cd-templates/.github/workflows/ff-version-auto-bumper.yml@692c637ef4f5519d986d69e443997ab80fed8deb # 2.0.2 + uses: wearefrank/ci-cd-templates/.github/workflows/ff-version-auto-bumper.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 # 2.2.4 secrets: token: ${{ secrets.WEAREFRANK_BOT_PAT }} dockerhub-username: ${{ secrets.DOCKERHUB_USERNAME }} diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index f560082e..6516e935 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -15,7 +15,7 @@ jobs: version-next: ${{ steps.reference.outputs.next-reference }} version-next-strict: ${{ steps.reference.outputs.next-reference }} steps: - - uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2 + - uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b # v2.15.0 with: disable-sudo: true egress-policy: block @@ -23,14 +23,14 @@ jobs: github.com:443 - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 #4.2.2 + uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd #6.0.2 - name: Next Reference id: reference - uses: wearefrank/ci-cd-templates/next-reference@692c637ef4f5519d986d69e443997ab80fed8deb #2.0.2 + uses: wearefrank/ci-cd-templates/next-reference@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 ci: - uses: wearefrank/ci-cd-templates/.github/workflows/ci-generic.yml@692c637ef4f5519d986d69e443997ab80fed8deb #2.0.2 + uses: wearefrank/ci-cd-templates/.github/workflows/ci-generic.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 needs: - version-next secrets: @@ -51,7 +51,7 @@ jobs: image-id: ${{ needs.ci.outputs.image-id }} soapui-testrunner: - uses: wearefrank/ci-cd-templates/.github/workflows/soapui-testrunner.yml@50a6bc0338691d1bb0112fb532d99ccee6e4ce30 #2.1.3 + uses: wearefrank/ci-cd-templates/.github/workflows/soapui-testrunner.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 needs: - ci - run-larva-scenarios diff --git a/.github/workflows/post-run-cleanup.yml b/.github/workflows/post-run-cleanup.yml index 8d4fc20f..ad50f49d 100644 --- a/.github/workflows/post-run-cleanup.yml +++ b/.github/workflows/post-run-cleanup.yml @@ -25,7 +25,7 @@ jobs: steps: - name: Delete Artifacts # https://github.com/wearefrank/ci-cd-templates/blob/main/delete-workflow-artifacts/README.md - uses: wearefrank/ci-cd-templates/delete-workflow-artifacts@837393940996acef9b2620b3815a1dcf2a1d09e0 # v2.1.0 + uses: wearefrank/ci-cd-templates/delete-workflow-artifacts@3b754d066048b7b9fceb423c2ca9d204cc0a3878 # v2.2.4 with: token: ${{ github.token }} artifact-names: 'pre-build-*, build-*' diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 85ff8bdc..e8a455a6 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -14,7 +14,7 @@ jobs: version-next-tag: ${{ steps.next-version.outputs.release-tag }} version-next-type: ${{ steps.next-version.outputs.release-type }} steps: - - uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2 + - uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b # v2.15.0 with: disable-sudo: true egress-policy: audit @@ -22,10 +22,10 @@ jobs: github.com:443 - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 #4.2.2 + uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd #6.0.2 - name: "Setup Node" - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 #4.4.0 + uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 #6.2.0 with: node-version: 24 @@ -40,7 +40,7 @@ jobs: GH_TOKEN: ${{ secrets.WEAREFRANK_BOT_PAT }} ci: - uses: wearefrank/ci-cd-templates/.github/workflows/ci-generic.yml@692c637ef4f5519d986d69e443997ab80fed8deb #2.0.2 + uses: wearefrank/ci-cd-templates/.github/workflows/ci-generic.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 needs: analyze-commits secrets: token: ${{ secrets.GITHUB_TOKEN }} @@ -61,7 +61,7 @@ jobs: image-id: ${{ needs.ci.outputs.image-id }} soapui-testrunner: - uses: wearefrank/ci-cd-templates/.github/workflows/soapui-testrunner.yml@692c637ef4f5519d986d69e443997ab80fed8deb #2.0.2 + uses: wearefrank/ci-cd-templates/.github/workflows/soapui-testrunner.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 needs: - ci - run-larva-scenarios @@ -87,29 +87,29 @@ jobs: - ci - soapui-testrunner steps: - - uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2 + - uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b # v2.15.0 with: egress-policy: audit - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 #4.2.2 + uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd #6.0.2 with: token: ${{ secrets.WEAREFRANK_BOT_PAT }} - name: Download Pre-build Artifacts - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 #4.3.0 + uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3 #8.0.0 with: pattern: pre-build-* merge-multiple: true - name: Download Build Artifacts - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 #4.3.0 + uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3 #8.0.0 with: pattern: build-* merge-multiple: true - name: Setup Node - uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 #4.4.0 + uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 #6.2.0 with: node-version: 24 @@ -123,7 +123,7 @@ jobs: GH_TOKEN: ${{ secrets.WEAREFRANK_BOT_PAT }} docker-release: - uses: wearefrank/ci-cd-templates/.github/workflows/docker-release-generic.yml@791982d73eea13b903eb3bac672915e1337d14a0 #2.0.8 + uses: wearefrank/ci-cd-templates/.github/workflows/docker-release-generic.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 needs: - analyze-commits - release @@ -154,4 +154,4 @@ jobs: - release # Set to true to enable Docusaurus publishing to GitHub Pages if: true - uses: wearefrank/ci-cd-templates/.github/workflows/docusaurus-release.yml@692c637ef4f5519d986d69e443997ab80fed8deb #2.0.2 + uses: wearefrank/ci-cd-templates/.github/workflows/docusaurus-release.yml@3b754d066048b7b9fceb423c2ca9d204cc0a3878 #2.2.4 diff --git a/.github/workflows/run-larva-scenarios.yml b/.github/workflows/run-larva-scenarios.yml index 4249abe9..81fc8d51 100644 --- a/.github/workflows/run-larva-scenarios.yml +++ b/.github/workflows/run-larva-scenarios.yml @@ -23,10 +23,10 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 #4.2.2 + uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd #6.0.2 - name: Download Docker tar - uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 #4.3.0 + uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3 #8.0.0 with: name: build-docker-image @@ -90,7 +90,7 @@ jobs: args: -s results.html --from html -o results.md --to gfm --standalone - name: Upload Larva Test Results as an Artifact - uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 #4.6.2 + uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f #7.0.0 if: ${{ always() }} with: name: larva-test-results diff --git a/.github/workflows/update-helm-chart.yml b/.github/workflows/update-helm-chart.yml index 35e68809..9ec45aa7 100644 --- a/.github/workflows/update-helm-chart.yml +++ b/.github/workflows/update-helm-chart.yml @@ -16,7 +16,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Dispatch an action and get the run ID - uses: Codex-/return-dispatch@v2.1.0 + uses: Codex-/return-dispatch@v3.0.1 id: return_dispatch with: token: ${{ secrets.token }}