File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 1919 steps :
2020 - name : Get changed files
2121 id : changed-files
22- uses : tj-actions/changed-files@22103cc46bda19c2b464ffe86db46df6922fd323 # v47.0.5
22+ uses : tj-actions/changed-files@9426d40962ed5378910ee2e21d5f8c6fcbf2dd96 # v47.0.6
2323 with :
2424 files_yaml_from_source_file : " ${{ inputs.path_filter }}"
2525
Original file line number Diff line number Diff line change 2020 runs-on : ubuntu-latest
2121 steps :
2222 - name : Harden the runner (audit all outbound calls)
23- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
23+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
2424 with :
2525 egress-policy : audit
2626
3030 persist-credentials : false
3131
3232 - name : Install uv
33- uses : astral-sh/setup-uv@cec208311dfd045dd5311c1add060b2062131d57 # v8.0 .0
33+ uses : astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1 .0
3434 with :
3535 version : " 0.7.13"
3636
4141 java-version : " 21"
4242
4343 - name : Setup Node
44- uses : actions/setup-node@53b83947a5a98c8d113130e565377fae1a50d02f # v6.3 .0
44+ uses : actions/setup-node@48b55a011bda9f5d6aeb4c2d9c7362e8dae4041e # v6.4 .0
4545 with :
4646 node-version : " 18.17.0"
4747
Original file line number Diff line number Diff line change 4343
4444 - name : Get all paths that should trigger the workflow
4545 id : changed-files-yaml
46- uses : tj-actions/changed-files@22103cc46bda19c2b464ffe86db46df6922fd323 # v47.0.5
46+ uses : tj-actions/changed-files@9426d40962ed5378910ee2e21d5f8c6fcbf2dd96 # v47.0.6
4747 with :
4848 files_yaml : |
4949 go:
Original file line number Diff line number Diff line change 3737
3838 steps :
3939 - name : Harden the runner (audit all outbound calls)
40- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
40+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
4141 with :
4242 egress-policy : audit
4343
@@ -66,13 +66,13 @@ jobs:
6666
6767 # Initializes the CodeQL tools for scanning.
6868 - name : Initialize CodeQL
69- uses : github/codeql-action/init@c10b8064de6f491fea524254123dbe5e09572f13 # v4.35.1
69+ uses : github/codeql-action/init@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v4.35.2
7070 with :
7171 languages : ${{ matrix.language }}
7272 build-mode : ${{ matrix.build-mode }}
7373 queries : security-extended
7474
7575 - name : Perform CodeQL Analysis
76- uses : github/codeql-action/analyze@c10b8064de6f491fea524254123dbe5e09572f13 # v4.35.1
76+ uses : github/codeql-action/analyze@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v4.35.2
7777 with :
7878 category : " /language:${{matrix.language}}"
Original file line number Diff line number Diff line change @@ -104,7 +104,7 @@ jobs:
104104 ] | unique[]' > pkg_list_$NAME.txt
105105
106106 - name : Upload packages list
107- uses : actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
107+ uses : actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
108108 with :
109109 name : pkg_list_${{ env.name }}
110110 path : pkg_list_*
@@ -143,7 +143,7 @@ jobs:
143143 runs-on : ubuntu-latest
144144 needs : get-unique-names
145145 container :
146- image : debian:bookworm-slim@sha256:f06537653ac770703bc45b4b113475bd402f451e85223f0f2837acbf89ab020a
146+ image : debian:bookworm-slim@sha256:f9c6a2fd2ddbc23e336b6257a5245e31f996953ef06cd13a59fa0a1df2d5c252
147147 steps :
148148 - name : Add apt sources for deb-src
149149 shell : bash
@@ -180,7 +180,7 @@ jobs:
180180 tar -czf "$ARCHIVE_NAME" -C "$OUTPUT_DIR" .
181181
182182 - name : Upload source code archive
183- uses : actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
183+ uses : actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
184184 with :
185185 name : source-code-archive
186186 path : source_code.tar.gz
Original file line number Diff line number Diff line change 8484 GO_BUILDER_IMAGE : go-builder:v1.1.0
8585 steps :
8686 - name : Harden the runner (audit all outbound calls)
87- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
87+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
8888 with :
8989 egress-policy : audit
9090
Original file line number Diff line number Diff line change 1818 runs-on : ubuntu-latest
1919 steps :
2020 - name : Harden the runner (audit all outbound calls)
21- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
21+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
2222 with :
2323 egress-policy : audit
2424 - uses : actions/labeler@634933edcd8ababfe52f92936142cc22ac488b1b # v6.0.1
Original file line number Diff line number Diff line change 4949 timeout-minutes : 30
5050 steps :
5151 - name : Harden the runner (audit all outbound calls)
52- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
52+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
5353 with :
5454 egress-policy : audit
5555
6565 sudo -E apt install -y ffmpeg
6666
6767 - name : Install uv
68- uses : astral-sh/setup-uv@cec208311dfd045dd5311c1add060b2062131d57 # v8.0 .0
68+ uses : astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1 .0
6969 with :
7070 version : " 0.7.13"
7171
Original file line number Diff line number Diff line change 7878
7979 steps :
8080 - name : Harden the runner (audit all outbound calls)
81- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
81+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
8282 with :
8383 egress-policy : audit
8484
@@ -267,7 +267,7 @@ jobs:
267267 BUILD_VERSION : ${{ needs.get-vars.outputs.build_version }}
268268 steps :
269269 - name : Harden the runner (audit all outbound calls)
270- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
270+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
271271 with :
272272 egress-policy : audit
273273 - name : Check
Original file line number Diff line number Diff line change @@ -16,12 +16,12 @@ jobs:
1616 runs-on : ubuntu-latest
1717 steps :
1818 - name : Harden the runner (audit all outbound calls)
19- uses : step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
19+ uses : step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
2020 with :
2121 egress-policy : audit
2222
2323 - name : Notify Teams via Webhook
24- uses : actions/github-script@ed597411d8f924073f98dfc5c65a23a2325f34cd # v8
24+ uses : actions/github-script@3a2844b7e9c422d3c10d287c895573f7108da1b3 # v9
2525 env :
2626 TEAMS_WEBHOOK_URL : ${{ secrets.TEAMS_WEBHOOK_URL }}
2727 with :
You can’t perform that action at this time.
0 commit comments