Skip to content

Commit 2ec5337

Browse files
committed
Pin GitHub Actions to specific SHAs
1 parent 8fb5df2 commit 2ec5337

9 files changed

Lines changed: 11 additions & 11 deletions

File tree

.github/workflows/auto_review_pr.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919

2020
steps:
2121
- name: Checkout repository
22-
uses: actions/checkout@v6.0.2
22+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2323

2424
- uses: ruby/setup-ruby@90be1154f987f4dc0fe0dd0feedac9e473aa4ba8 # v1.286.0
2525
with:

.github/workflows/check_misc.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222
with:
2323
token: ${{ (github.repository == 'ruby/ruby' && !startsWith(github.event_name, 'pull')) && secrets.MATZBOT_AUTO_UPDATE_TOKEN || secrets.GITHUB_TOKEN }}
2424

25-
- uses: ruby/setup-ruby@v1
25+
- uses: ruby/setup-ruby@09a7688d3b55cf0e976497ff046b70949eeaccfd # v1.288.0
2626
with:
2727
ruby-version: head
2828

@@ -127,7 +127,7 @@ jobs:
127127
}}
128128
129129
- name: Upload docs
130-
uses: actions/upload-artifact@v7.0.0
130+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
131131
with:
132132
path: html
133133
name: ${{ steps.docs.outputs.htmlout }}

.github/workflows/labeler.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,4 +9,4 @@ jobs:
99
pull-requests: write
1010
runs-on: ubuntu-latest
1111
steps:
12-
- uses: actions/labeler@v6
12+
- uses: actions/labeler@634933edcd8ababfe52f92936142cc22ac488b1b # v6.0.1

.github/workflows/macos.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -173,7 +173,7 @@ jobs:
173173

174174
- name: Resolve job ID
175175
id: job_id
176-
uses: actions/github-script@main
176+
uses: actions/github-script@450193c5abd4cdb17ba9f3ffcfe8f635c4bb6c2a # main
177177
env:
178178
matrix: ${{ toJson(matrix) }}
179179
with:

.github/workflows/modgc.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -104,7 +104,7 @@ jobs:
104104
$SETARCH ../src/configure -C --disable-install-doc --with-modular-gc=${{ env.MODULAR_GC_DIR }}
105105
${arch:+--target=$arch-$OSTYPE --host=$arch-$OSTYPE}
106106
107-
- uses: actions-rust-lang/setup-rust-toolchain@v1
107+
- uses: actions-rust-lang/setup-rust-toolchain@1780873c7b576612439a134613cc4cc74ce5538c # v1.15.2
108108
- name: Set MMTk environment variables
109109
run: |
110110
echo 'EXCLUDES=../src/test/.excludes-mmtk' >> $GITHUB_ENV

.github/workflows/publish.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,9 +15,9 @@ jobs:
1515
release:
1616
runs-on: ubuntu-latest
1717
steps:
18-
- uses: actions/checkout@v6.0.2
18+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
1919

20-
- uses: ruby/setup-ruby@v1
20+
- uses: ruby/setup-ruby@09a7688d3b55cf0e976497ff046b70949eeaccfd # v1.288.0
2121
with:
2222
ruby-version: 3.3.4
2323

.github/workflows/scorecards.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -73,6 +73,6 @@ jobs:
7373
# Upload the results to GitHub's code scanning dashboard (optional).
7474
# Commenting out will disable upload of results to your repo's Code Scanning dashboard
7575
- name: "Upload to code-scanning"
76-
uses: github/codeql-action/upload-sarif@v4
76+
uses: github/codeql-action/upload-sarif@89a39a4e59826350b863aa6b6252a07ad50cf83e # v4.32.4
7777
with:
7878
sarif_file: results.sarif

.github/workflows/zjit-macos.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -91,7 +91,7 @@ jobs:
9191
rustup install ${{ matrix.rust_version }} --profile minimal
9292
rustup default ${{ matrix.rust_version }}
9393
94-
- uses: taiki-e/install-action@v2
94+
- uses: taiki-e/install-action@a3324fb0eb94b8230ec968c3389c1b7929fc2f3b # v2.68.13
9595
with:
9696
tool: nextest@0.9
9797
if: ${{ matrix.test_task == 'zjit-check' }}

.github/workflows/zjit-ubuntu.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -116,7 +116,7 @@ jobs:
116116
ruby-version: '3.1'
117117
bundler: none
118118

119-
- uses: taiki-e/install-action@v2
119+
- uses: taiki-e/install-action@a3324fb0eb94b8230ec968c3389c1b7929fc2f3b # v2.68.13
120120
with:
121121
tool: nextest@0.9
122122
if: ${{ matrix.test_task == 'zjit-check' }}

0 commit comments

Comments
 (0)