File tree Expand file tree Collapse file tree 10 files changed +24
-24
lines changed
Expand file tree Collapse file tree 10 files changed +24
-24
lines changed Original file line number Diff line number Diff line change 3636 runs-on: ${{ matrix.os }}
3737 steps:
3838 - name: Harden Runner
39- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
39+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
4040 with:
4141 egress-policy: audit
4242
4646 with:
4747 python-version: ${{ env.PYTHON_VERSION }}
4848 - name: Use Node.js ${{ matrix.node-version }}
49- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
49+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
5050 with:
5151 node-version: ${{ matrix.node-version }}
5252 architecture: ${{ matrix.architecture }}
Original file line number Diff line number Diff line change 3434 runs-on: ${{ matrix.os }}
3535 steps:
3636 - name: Harden Runner
37- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
37+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
3838 with:
3939 egress-policy: audit
4040
4444 with:
4545 python-version: ${{ env.PYTHON_VERSION }}
4646 - name: Use Node.js ${{ matrix.node-version }}
47- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
47+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
4848 with:
4949 node-version: ${{ matrix.node-version }}
5050 - name: Check Node.js installation
Original file line number Diff line number Diff line change 4141
4242 steps:
4343 - name: Harden Runner
44- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
44+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
4545 with:
4646 egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
4747
5050
5151 # Initializes the CodeQL tools for scanning.
5252 - name: Initialize CodeQL
53- uses: github/codeql-action/init@19b2f06db2b6f5108140aeb04014ef02b648f789 # v4.31.11
53+ uses: github/codeql-action/init@0d579ffd059c29b07949a3cce3983f0780820c98 # v4.32.6
5454 with:
5555 languages: ${{ matrix.language }}
5656 # If you wish to specify custom queries, you can do so here or in a config file.
7070
7171 - name: Use Node.js v18.x
7272 if: matrix.language == 'cpp'
73- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
73+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
7474 with:
7575 node-version: 18.x
7676
8080 npx node-gyp rebuild -C test
8181
8282 - name: Perform CodeQL Analysis
83- uses: github/codeql-action/analyze@19b2f06db2b6f5108140aeb04014ef02b648f789 # v4.31.11
83+ uses: github/codeql-action/analyze@0d579ffd059c29b07949a3cce3983f0780820c98 # v4.32.6
8484 with:
8585 category: "/language:${{matrix.language}}"
Original file line number Diff line number Diff line change 3535 runs-on: ubuntu-latest
3636 steps:
3737 - name: Harden Runner
38- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
38+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
3939 with:
4040 egress-policy: audit
4141
4747 with:
4848 python-version: ${{ env.PYTHON_VERSION }}
4949 - name: Use Node.js ${{ env.NODE_VERSION }}
50- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
50+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
5151 with:
5252 node-version: ${{ env.NODE_VERSION }}
5353 - name: Environment Information
Original file line number Diff line number Diff line change @@ -17,11 +17,11 @@ jobs:
1717 runs-on: ubuntu-latest
1818 steps:
1919 - name: Harden Runner
20- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
20+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
2121 with:
2222 egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
2323
2424 - name: 'Checkout Repository'
2525 uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2626 - name: 'Dependency Review'
27- uses: actions/dependency-review-action@3c4e3dcb1aa7874d2c16be7d79418e9b7efd6261 # v4.8.2
27+ uses: actions/dependency-review-action@2031cfc080254a8a887f58cffee85186f0e49e48 # v4.9.0
Original file line number Diff line number Diff line change 1616 runs-on: ${{ matrix.os }}
1717 steps:
1818 - name: Harden Runner
19- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
19+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
2020 with:
2121 egress-policy: audit
2222
2525 fetch-depth: 0
2626 - run: git branch -a
2727 - name: Use Node.js ${{ matrix.node-version }}
28- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
28+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
2929 with:
3030 node-version: ${{ matrix.node-version }}
3131 - run: npm install
Original file line number Diff line number Diff line change 3030 runs-on: ${{ matrix.os }}
3131 steps:
3232 - name: Harden Runner
33- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
33+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
3434 with:
3535 egress-policy: audit
3636
4040 with:
4141 python-version: ${{ env.PYTHON_VERSION }}
4242 - name: Use Node.js ${{ matrix.node-version }}
43- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
43+ uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
4444 with:
4545 node-version: ${{ matrix.node-version }}
4646 - name: Check Node.js installation
Original file line number Diff line number Diff line change 2020 pull-requests: write
2121 steps:
2222 - name: Harden Runner
23- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
23+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
2424 with:
2525 egress-policy: audit
2626
@@ -39,12 +39,12 @@ jobs:
3939 id-token: write
4040 steps:
4141 - name: Harden Runner
42- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
42+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
4343 with:
4444 egress-policy: audit
4545
4646 - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
47- - uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6.2 .0
47+ - uses: actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
4848 with:
4949 node-version: 24 # npm >= 11.5.1
5050 registry-url: 'https://registry.npmjs.org'
Original file line number Diff line number Diff line change 3131
3232 steps:
3333 - name: Harden Runner
34- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
34+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
3535 with:
3636 egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
3737
@@ -63,14 +63,14 @@ jobs:
6363 # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
6464 # format to the repository Actions tab.
6565 - name: "Upload artifact"
66- uses: actions/upload-artifact@b7c566a772e6b6bfb58ed0dc250532a479d7789f # v6 .0.0
66+ uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7 .0.0
6767 with:
6868 name: SARIF file
6969 path: results.sarif
7070 retention-days: 5
7171
7272 # Upload the results to GitHub's code scanning dashboard.
7373 - name: "Upload to code-scanning"
74- uses: github/codeql-action/upload-sarif@19b2f06db2b6f5108140aeb04014ef02b648f789 # v4.31.11
74+ uses: github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 # v4.32.6
7575 with:
7676 sarif_file: results.sarif
Original file line number Diff line number Diff line change @@ -14,11 +14,11 @@ jobs:
1414 runs-on: ubuntu-latest
1515 steps:
1616 - name: Harden Runner
17- uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
17+ uses: step-security/harden-runner@58077d3c7e43986b6b15fba718e8ea69e387dfcc # v2.15.1
1818 with:
1919 egress-policy: audit
2020
21- - uses: actions/stale@997185467fa4f803885201cee163a9f38240193d # v10.1.1
21+ - uses: actions/stale@b5d41d4e1d5dceea10e7104786b73624c18a190f # v10.2.0
2222 with:
2323 repo-token: ${{ secrets.GITHUB_TOKEN }}
2424 stale-issue-message: 'This issue is stale because it has been open many days with no activity. It will be closed soon unless the stale label is removed or a comment is made.'
You can’t perform that action at this time.
0 commit comments