Skip to content

Commit 01aebd6

Browse files
ci: Pin actions
Signed-off-by: Andy Scherzinger <info@andy-scherzinger.de>
1 parent b68ae7e commit 01aebd6

18 files changed

Lines changed: 56 additions & 56 deletions

.github/workflows/command-compile.yml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -18,20 +18,20 @@ jobs:
1818

1919
steps:
2020
- name: Check actor permission
21-
uses: skjnldsv/check-actor-permission@v2
21+
uses: skjnldsv/check-actor-permission@e591dbfe838300c007028e1219ca82cc26e8d7c5 # v2.1
2222
with:
2323
require: write
2424

2525
- name: Add reaction on start
26-
uses: peter-evans/create-or-update-comment@v1
26+
uses: peter-evans/create-or-update-comment@a35cf36e5301d70b76f316e867e7788a55a31dae # v1.4.5
2727
with:
2828
token: ${{ secrets.COMMAND_BOT_PAT }}
2929
repository: ${{ github.event.repository.full_name }}
3030
comment-id: ${{ github.event.comment.id }}
3131
reaction-type: "+1"
3232

3333
- name: Parse command
34-
uses: skjnldsv/parse-command-comment@master
34+
uses: skjnldsv/parse-command-comment@7cef1df370a99dfd5bf896d50121390c96785db8 # v2.0
3535
id: command
3636

3737
# Init path depending on which command is run
@@ -45,7 +45,7 @@ jobs:
4545
fi
4646
4747
- name: Init branch
48-
uses: xt0rted/pull-request-comment-branch@v1
48+
uses: xt0rted/pull-request-comment-branch@653a7d5ca8bd91d3c5cb83286063314d0b063b8e # v1.4.0
4949
id: comment-branch
5050

5151
process:
@@ -54,7 +54,7 @@ jobs:
5454

5555
steps:
5656
- name: Checkout ${{ needs.init.outputs.head_ref }}
57-
uses: actions/checkout@v2
57+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
5858
with:
5959
token: ${{ secrets.COMMAND_BOT_PAT }}
6060
fetch-depth: 0
@@ -66,14 +66,14 @@ jobs:
6666
git config --local user.name "nextcloud-command"
6767
6868
- name: Read package.json node and npm engines version
69-
uses: skjnldsv/read-package-engines-version-actions@v1
69+
uses: skjnldsv/read-package-engines-version-actions@1bdcee71fa343c46b18dc6aceffb4cd1e35209c6 # v1.2
7070
id: package-engines-versions
7171
with:
7272
fallbackNode: '^12'
7373
fallbackNpm: '^6'
7474

7575
- name: Set up node ${{ steps.package-engines-versions.outputs.nodeVersion }}
76-
uses: actions/setup-node@v2
76+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
7777
with:
7878
node-version: ${{ steps.package-engines-versions.outputs.nodeVersion }}
7979
cache: npm
@@ -108,7 +108,7 @@ jobs:
108108
git push --force origin ${{ needs.init.outputs.head_ref }}
109109
110110
- name: Add reaction on failure
111-
uses: peter-evans/create-or-update-comment@v1
111+
uses: peter-evans/create-or-update-comment@a35cf36e5301d70b76f316e867e7788a55a31dae # v1.4.5
112112
if: failure()
113113
with:
114114
token: ${{ secrets.COMMAND_BOT_PAT }}

.github/workflows/command-rebase.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -18,26 +18,26 @@ jobs:
1818

1919
steps:
2020
- name: Add reaction on start
21-
uses: peter-evans/create-or-update-comment@v1
21+
uses: peter-evans/create-or-update-comment@a35cf36e5301d70b76f316e867e7788a55a31dae # v1.4.5
2222
with:
2323
token: ${{ secrets.COMMAND_BOT_PAT }}
2424
repository: ${{ github.event.repository.full_name }}
2525
comment-id: ${{ github.event.comment.id }}
2626
reaction-type: "+1"
2727

2828
- name: Checkout the latest code
29-
uses: actions/checkout@v3
29+
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # v3.6.0
3030
with:
3131
fetch-depth: 0
3232
token: ${{ secrets.COMMAND_BOT_PAT }}
3333

3434
- name: Automatic Rebase
35-
uses: cirrus-actions/rebase@1.5
35+
uses: cirrus-actions/rebase@c473b716e3fcde0c6bf67416e2c2882830ad40f6 # 1.5
3636
env:
3737
GITHUB_TOKEN: ${{ secrets.COMMAND_BOT_PAT }}
3838

3939
- name: Add reaction on failure
40-
uses: peter-evans/create-or-update-comment@v1
40+
uses: peter-evans/create-or-update-comment@a35cf36e5301d70b76f316e867e7788a55a31dae # v1.4.5
4141
if: failure()
4242
with:
4343
token: ${{ secrets.COMMAND_BOT_PAT }}

.github/workflows/dependabot-approve-merge.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -18,12 +18,12 @@ jobs:
1818

1919
steps:
2020
# Github actions bot approve
21-
- uses: hmarr/auto-approve-action@v2
21+
- uses: hmarr/auto-approve-action@b40d6c9ed2fa10c9a2749eca7eb004418a705501 # v2
2222
with:
2323
github-token: ${{ secrets.GITHUB_TOKEN }}
2424

2525
# Nextcloud bot approve and merge request
26-
- uses: ahmadnassri/action-dependabot-auto-merge@v2
26+
- uses: ahmadnassri/action-dependabot-auto-merge@45fc124d949b19b6b8bf6645b6c9d55f4f9ac61a # v2.6.6
2727
with:
2828
target: minor
2929
github-token: ${{ secrets.DEPENDABOT_AUTOMERGE_TOKEN }}

.github/workflows/fixup.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,6 +15,6 @@ jobs:
1515

1616
steps:
1717
- name: Run check
18-
uses: xt0rted/block-autosquash-commits-action@v2
18+
uses: xt0rted/block-autosquash-commits-action@79880c36b4811fe549cfffe20233df88876024e7 # v2.2.0
1919
with:
2020
repo-token: ${{ secrets.GITHUB_TOKEN }}

.github/workflows/ftp.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,7 @@ jobs:
3030

3131
steps:
3232
- name: Checkout server
33-
uses: actions/checkout@v2
33+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
3434
with:
3535
submodules: true
3636

@@ -42,7 +42,7 @@ jobs:
4242
if [[ "${{ matrix.ftpd }}" == 'vsftpd' ]]; then docker run --name ftp -d --net host -e FTP_USER=test -e FTP_PASS=test -e PASV_ADDRESS=127.0.0.1 -v /tmp/ftp:/home/vsftpd/test fauria/vsftpd; fi
4343
if [[ "${{ matrix.ftpd }}" == 'pure-ftpd' ]]; then docker run --name ftp -d --net host -e "PUBLICHOST=localhost" -e FTP_USER_NAME=test -e FTP_USER_PASS=test -e FTP_USER_HOME=/home/test -v /tmp/ftp2:/home/test -v /tmp/ftp2:/etc/pure-ftpd/passwd stilliard/pure-ftpd; fi
4444
- name: Set up php ${{ matrix.php-versions }}
45-
uses: shivammathur/setup-php@v2
45+
uses: shivammathur/setup-php@44454db4f0199b8b9685a5d763dc37cbf79108e1 # v2.36.0
4646
with:
4747
php-version: ${{ matrix.php-versions }}
4848
tools: phpunit:9

.github/workflows/lint-eslint.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -20,17 +20,17 @@ jobs:
2020

2121
steps:
2222
- name: Checkout
23-
uses: actions/checkout@v2
23+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
2424

2525
- name: Read package.json node and npm engines version
26-
uses: skjnldsv/read-package-engines-version-actions@v1.1
26+
uses: skjnldsv/read-package-engines-version-actions@1e2f46e78e31476bc71ebd909105e6e033d5a6f4 # v1.1
2727
id: versions
2828
with:
2929
fallbackNode: '^12'
3030
fallbackNpm: '^6'
3131

3232
- name: Set up node ${{ steps.versions.outputs.nodeVersion }}
33-
uses: actions/setup-node@v2
33+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
3434
with:
3535
node-version: ${{ steps.versions.outputs.nodeVersion }}
3636

.github/workflows/lint.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -10,9 +10,9 @@ jobs:
1010
name: php${{ matrix.php-versions }} lint
1111
steps:
1212
- name: Checkout
13-
uses: actions/checkout@master
13+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
1414
- name: Set up php${{ matrix.php-versions }}
15-
uses: shivammathur/setup-php@master
15+
uses: shivammathur/setup-php@44454db4f0199b8b9685a5d763dc37cbf79108e1 # v2.36.0
1616
with:
1717
php-version: ${{ matrix.php-versions }}
1818
extensions: ctype,curl,dom,fileinfo,gd,intl,json,mbstring,openssl,pdo_sqlite,posix,sqlite,xml,zip
@@ -25,9 +25,9 @@ jobs:
2525
runs-on: ubuntu-latest
2626
steps:
2727
- name: Checkout
28-
uses: actions/checkout@master
28+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2929
- name: Set up php
30-
uses: shivammathur/setup-php@master
30+
uses: shivammathur/setup-php@44454db4f0199b8b9685a5d763dc37cbf79108e1 # v2.36.0
3131
with:
3232
php-version: 7.4
3333
extensions: ctype,curl,dom,fileinfo,gd,intl,json,mbstring,openssl,pdo_sqlite,posix,sqlite,xml,zip

.github/workflows/node-tests.yml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -19,10 +19,10 @@ jobs:
1919

2020
steps:
2121
- name: Checkout
22-
uses: actions/checkout@v2
22+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
2323

2424
- name: Read package.json node and npm engines version
25-
uses: skjnldsv/read-package-engines-version-actions@v1.1
25+
uses: skjnldsv/read-package-engines-version-actions@1e2f46e78e31476bc71ebd909105e6e033d5a6f4 # v1.1
2626
id: versions
2727
with:
2828
fallbackNode: '^12'
@@ -34,10 +34,10 @@ jobs:
3434

3535
steps:
3636
- name: Checkout
37-
uses: actions/checkout@v2
37+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
3838

3939
- name: Set up node ${{ needs.versions.outputs.nodeVersion }}
40-
uses: actions/setup-node@v2
40+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
4141
with:
4242
node-version: ${{ needs.versions.outputs.nodeVersion }}
4343

@@ -59,10 +59,10 @@ jobs:
5959

6060
steps:
6161
- name: Checkout
62-
uses: actions/checkout@v2
62+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
6363

6464
- name: Set up node ${{ needs.versions.outputs.nodeVersion }}
65-
uses: actions/setup-node@v2
65+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
6666
with:
6767
node-version: ${{ needs.versions.outputs.nodeVersion }}
6868

@@ -81,10 +81,10 @@ jobs:
8181

8282
steps:
8383
- name: Checkout
84-
uses: actions/checkout@v2
84+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
8585

8686
- name: Set up node ${{ needs.versions.outputs.nodeVersion }}
87-
uses: actions/setup-node@v2
87+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
8888
with:
8989
node-version: ${{ needs.versions.outputs.nodeVersion }}
9090

.github/workflows/node.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -19,17 +19,17 @@ jobs:
1919
name: node
2020
steps:
2121
- name: Checkout
22-
uses: actions/checkout@v2
22+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
2323

2424
- name: Read package.json node and npm engines version
25-
uses: skjnldsv/read-package-engines-version-actions@v1.1
25+
uses: skjnldsv/read-package-engines-version-actions@1e2f46e78e31476bc71ebd909105e6e033d5a6f4 # v1.1
2626
id: versions
2727
with:
2828
fallbackNode: '^12'
2929
fallbackNpm: '^6'
3030

3131
- name: Set up node ${{ steps.versions.outputs.nodeVersion }}
32-
uses: actions/setup-node@v2
32+
uses: actions/setup-node@7c12f8017d5436eb855f1ed4399f037a36fbd9e8 # v2.5.2
3333
with:
3434
node-version: ${{ steps.versions.outputs.nodeVersion }}
3535

.github/workflows/oci.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,7 @@ jobs:
4444
4545
steps:
4646
- name: Checkout server
47-
uses: actions/checkout@v2
47+
uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0
4848

4949
- name: Checkout submodules
5050
shell: bash
@@ -54,7 +54,7 @@ jobs:
5454
git -c "http.extraheader=$auth_header" -c protocol.version=2 submodule update --init --force --recursive --depth=1
5555
5656
- name: Set up php ${{ matrix.php-versions }}
57-
uses: shivammathur/setup-php@v2
57+
uses: shivammathur/setup-php@44454db4f0199b8b9685a5d763dc37cbf79108e1 # v2.36.0
5858
with:
5959
php-version: ${{ matrix.php-versions }}
6060
extensions: ctype,curl,dom,fileinfo,gd,imagick,intl,json,mbstring,oci8,openssl,pcntl,pdo_sqlite,posix,sqlite,xml,zip

0 commit comments

Comments
 (0)