File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 2424 name : Action lint
2525 runs-on : ubuntu-latest
2626 steps :
27- - uses : step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16 .0
27+ - uses : step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17 .0
2828 with :
2929 egress-policy : block
3030 allowed-endpoints : >
4848 echo "files=${yamls[*]}" >> "${GITHUB_OUTPUT}"
4949
5050 - name : Action lint
51- uses : step-security/action-actionlint@d364e70a116a460ed220d67b1ca2f2579c48a40a # v1.69.1
51+ uses : step-security/action-actionlint@c3aa382d371c6b05513ae5907d4f77713e21813c # v1.72.0
5252 env :
5353 SHELLCHECK_OPTS : " --exclude=SC2129"
5454 with :
Original file line number Diff line number Diff line change 2020 contents : read
2121
2222 steps :
23- - uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
23+ - uses : step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
2424 with :
2525 egress-policy : audit
2626
Original file line number Diff line number Diff line change 1818 id-token : write # To gitsign and federate
1919
2020 steps :
21- - uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
21+ - uses : step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
2222 with :
2323 egress-policy : audit
2424
@@ -55,12 +55,12 @@ jobs:
5555 echo "create_pr_update=true" >> $GITHUB_OUTPUT
5656
5757 # Configure signed commits
58- - uses : chainguard-dev/actions/setup-gitsign@f45211d3e8f9d2676c6b8cdd6a765435e06c819d # v1.6.13
58+ - uses : chainguard-dev/actions/setup-gitsign@de68b87302e6266db5fb5220246f8aa46fe94b67 # v1.6.14
5959 if : ${{ steps.check-diff.outputs.create_pr_update == 'true' }}
6060
6161 # Based on usage in https://github.com/chainguard-dev/digestabot/blob/main/action.yml
6262 - name : Create Pull Request
63- uses : peter-evans/create-pull-request@c0f553fe549906ede9cf27b5156039d195d2ece0 # v8.1.0
63+ uses : peter-evans/create-pull-request@5f6978faf089d4d20b00c7766989d076bb2fc7f1 # v8.1.1
6464 if : ${{ steps.check-diff.outputs.create_pr_update == 'true' }}
6565 id : pull_request
6666 with :
Original file line number Diff line number Diff line change 2626 contents : read # Clone the repository
2727 security-events : write # Upload SARIF results to Code Scanning
2828 steps :
29- - uses : step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16 .0
29+ - uses : step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17 .0
3030 with :
3131 egress-policy : block
3232 allowed-endpoints : >
You can’t perform that action at this time.
0 commit comments