Skip to content

Commit 239499e

Browse files
authored
[CI] Pin codeql actions to hash (#2974)
1 parent 04864c8 commit 239499e

2 files changed

Lines changed: 2 additions & 3 deletions

File tree

.github/linters/zizmor.yml

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,6 @@ rules:
1919
unpinned-uses:
2020
config:
2121
policies:
22-
github/*: any
2322
r-lib/actions/check-r-package: any
2423
r-lib/actions/setup-r: any
2524
r-lib/actions/setup-r-dependencies: any

.github/workflows/codeql.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -45,12 +45,12 @@ jobs:
4545
persist-credentials: false
4646

4747
- name: Initialize CodeQL
48-
uses: github/codeql-action/init@v4
48+
uses: github/codeql-action/init@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4.35.5
4949
with:
5050
languages: ${{ matrix.language }}
5151
build-mode: none
5252

5353
- name: Perform CodeQL Analysis
54-
uses: github/codeql-action/analyze@v4
54+
uses: github/codeql-action/analyze@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4.35.5
5555
with:
5656
category: 'Security'

0 commit comments

Comments
 (0)