Skip to content

Commit 64c3ec8

Browse files
chore(deps): pin dependencies (#6)
Coming soon: The Renovate bot (GitHub App) will be renamed to Mend. PRs from Renovate will soon appear from 'Mend'. Learn more [here](https://redirect.github.com/renovatebot/renovate/discussions/37842). This PR contains the following updates: | Package | Type | Update | Change | OpenSSF | |---|---|---|---|---| | [1password/load-secrets-action](https://redirect.github.com/1password/load-secrets-action) | action | pinDigest | -> `13f58ee` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/1password/load-secrets-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/1password/load-secrets-action) | | [actions/checkout](https://redirect.github.com/actions/checkout) | action | pinDigest | -> `08c6903` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/actions/checkout/badge)](https://securityscorecards.dev/viewer/?uri=github.com/actions/checkout) | | [actions/setup-python](https://redirect.github.com/actions/setup-python) | action | pinDigest | -> `a26af69` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/actions/setup-python/badge)](https://securityscorecards.dev/viewer/?uri=github.com/actions/setup-python) | | [azure/setup-helm](https://redirect.github.com/azure/setup-helm) | action | pinDigest | -> `1a275c3` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/azure/setup-helm/badge)](https://securityscorecards.dev/viewer/?uri=github.com/azure/setup-helm) | | [docker/build-push-action](https://redirect.github.com/docker/build-push-action) | action | pinDigest | -> `2634353` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/docker/build-push-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/docker/build-push-action) | | [docker/login-action](https://redirect.github.com/docker/login-action) | action | pinDigest | -> `184bdaa` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/docker/login-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/docker/login-action) | | [docker/metadata-action](https://redirect.github.com/docker/metadata-action) | action | pinDigest | -> `c1e5197` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/docker/metadata-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/docker/metadata-action) | | [github/codeql-action](https://redirect.github.com/github/codeql-action) | action | pinDigest | -> `192325c` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/github/codeql-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/github/codeql-action) | | [helm/chart-testing-action](https://redirect.github.com/helm/chart-testing-action) | action | pinDigest | -> `0d28d31` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/helm/chart-testing-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/helm/chart-testing-action) | | [helm/kind-action](https://redirect.github.com/helm/kind-action) | action | pinDigest | -> `a1b0e39` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/helm/kind-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/helm/kind-action) | | [lefthook](https://redirect.github.com/evilmartians/lefthook) | dependencies | pin | [`^1.13.0` -> `1.13.0`](https://renovatebot.com/diffs/npm/lefthook/1.13.0/1.13.0) | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/evilmartians/lefthook/badge)](https://securityscorecards.dev/viewer/?uri=github.com/evilmartians/lefthook) | | [namespacelabs/nscloud-checkout-action](https://redirect.github.com/namespacelabs/nscloud-checkout-action) | action | pinDigest | -> `953fed3` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/namespacelabs/nscloud-checkout-action/badge)](https://securityscorecards.dev/viewer/?uri=github.com/namespacelabs/nscloud-checkout-action) | | [python](https://redirect.github.com/actions/python-versions) | uses-with | pin | `3.x` -> `3.13.7` | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/actions/python-versions/badge)](https://securityscorecards.dev/viewer/?uri=github.com/actions/python-versions) | | [yaml](https://eemeli.org/yaml/) ([source](https://redirect.github.com/eemeli/yaml)) | dependencies | pin | [`^2.8.1` -> `2.8.1`](https://renovatebot.com/diffs/npm/yaml/2.8.1/2.8.1) | [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/eemeli/yaml/badge)](https://securityscorecards.dev/viewer/?uri=github.com/eemeli/yaml) | --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://redirect.github.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR was generated by [Mend Renovate](https://mend.io/renovate/). View the [repository job log](https://developer.mend.io/github/settlemint/network-bootstrapper). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS45Ny4xMCIsInVwZGF0ZWRJblZlciI6IjQxLjk3LjEwIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiXX0=--> Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 parent 4e568be commit 64c3ec8

4 files changed

Lines changed: 25 additions & 25 deletions

File tree

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -57,7 +57,7 @@ jobs:
5757
# your codebase is analyzed, see https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages
5858
steps:
5959
- name: Checkout repository
60-
uses: actions/checkout@v5
60+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5
6161

6262
# Add any setup steps before running the `github/codeql-action/init` action.
6363
# This includes steps like installing compilers or runtimes (`actions/setup-node`
@@ -67,7 +67,7 @@ jobs:
6767

6868
# Initializes the CodeQL tools for scanning.
6969
- name: Initialize CodeQL
70-
uses: github/codeql-action/init@v3
70+
uses: github/codeql-action/init@192325c86100d080feab897ff886c34abd4c83a3 # v3
7171
with:
7272
languages: ${{ matrix.language }}
7373
build-mode: ${{ matrix.build-mode }}
@@ -95,6 +95,6 @@ jobs:
9595
exit 1
9696
9797
- name: Perform CodeQL Analysis
98-
uses: github/codeql-action/analyze@v3
98+
uses: github/codeql-action/analyze@192325c86100d080feab897ff886c34abd4c83a3 # v3
9999
with:
100100
category: "/language:${{matrix.language}}"

.github/workflows/qa.yml

Lines changed: 18 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -41,18 +41,18 @@ jobs:
4141
packages: write
4242
steps:
4343
- name: Checkout repository
44-
uses: namespacelabs/nscloud-checkout-action@v7
44+
uses: namespacelabs/nscloud-checkout-action@953fed31a6113cc2347ca69c9d823743c65bc84b # v7
4545
with:
4646
fetch-depth: ${{ github.event_name == 'push' && 2 || 0 }}
4747

4848
- name: Setup 1Password
49-
uses: 1password/load-secrets-action/configure@v3
49+
uses: 1password/load-secrets-action/configure@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
5050
with:
5151
service-account-token: ${{ secrets.OP_SERVICE_ACCOUNT_TOKEN }}
5252

5353
- name: Load all secrets
5454
id: secrets
55-
uses: 1password/load-secrets-action@v3
55+
uses: 1password/load-secrets-action@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
5656
with:
5757
export-env: true
5858
env:
@@ -99,7 +99,7 @@ jobs:
9999
if: |
100100
github.event_name == 'push' ||
101101
(github.event_name == 'pull_request' && github.event.pull_request.draft == false)
102-
uses: docker/login-action@v3
102+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # v3
103103
with:
104104
registry: ghcr.io
105105
username: ${{ github.repository_owner }}
@@ -130,7 +130,7 @@ jobs:
130130
- name: Docker meta
131131
if: github.event_name == 'pull_request' || github.event_name == 'push'
132132
id: meta
133-
uses: docker/metadata-action@v5
133+
uses: docker/metadata-action@c1e51972afc2121e065aed6d45c65596fe445f3f # v5
134134
with:
135135
images: |
136136
ghcr.io/settlemint/network-bootstrapper
@@ -146,7 +146,7 @@ jobs:
146146
147147
- name: Build and push
148148
if: github.event_name == 'pull_request' || github.event_name == 'push'
149-
uses: docker/build-push-action@v6
149+
uses: docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6
150150
with:
151151
context: .
152152
push: true
@@ -158,18 +158,18 @@ jobs:
158158

159159
- name: Set up Python
160160
if: github.event_name == 'pull_request' || github.event_name == 'push'
161-
uses: actions/setup-python@v5
161+
uses: actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5
162162
with:
163-
python-version: "3.x"
163+
python-version: "3.13.7"
164164
check-latest: true
165165

166166
- name: Set up Helm
167167
if: github.event_name == 'pull_request' || github.event_name == 'push'
168-
uses: azure/setup-helm@v4
168+
uses: azure/setup-helm@1a275c3b69536ee54be43f2070a358922e12c8d4 # v4
169169

170170
- name: Set up chart-testing
171171
if: github.event_name == 'pull_request' || github.event_name == 'push'
172-
uses: helm/chart-testing-action@v2.7.0
172+
uses: helm/chart-testing-action@0d28d3144d3a25ea2cc349d6e59901c4ff469b3b # v2.7.0
173173

174174
- name: Determine chart changes
175175
if: github.event_name == 'pull_request' || github.event_name == 'push'
@@ -194,7 +194,7 @@ jobs:
194194

195195
- name: Create kind cluster
196196
if: (github.event_name == 'pull_request' || github.event_name == 'push') && steps.ct-changed.outputs.changed == 'true'
197-
uses: helm/kind-action@v1.12.0
197+
uses: helm/kind-action@a1b0e391336a6ee6713a0583f8c6240d70863de3 # v1.12.0
198198

199199
- name: Run chart-testing (install)
200200
if: (github.event_name == 'pull_request' || github.event_name == 'push') && steps.ct-changed.outputs.changed == 'true'
@@ -253,7 +253,7 @@ jobs:
253253
if: |
254254
github.event_name == 'push' ||
255255
(github.event_name == 'pull_request' && github.event.pull_request.draft == false)
256-
uses: docker/login-action@v3
256+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # v3
257257
with:
258258
registry: harbor.settlemint.com
259259
username: ${{ env.HARBOR_USER }}
@@ -348,17 +348,17 @@ jobs:
348348
SLACK_CHANNEL_ID: ""
349349
steps:
350350
- name: Checkout repository
351-
uses: namespacelabs/nscloud-checkout-action@v7
351+
uses: namespacelabs/nscloud-checkout-action@953fed31a6113cc2347ca69c9d823743c65bc84b # v7
352352
with:
353353
fetch-depth: ${{ github.event_name == 'push' && 2 || 0 }}
354354

355355
- name: Setup 1Password
356-
uses: 1password/load-secrets-action/configure@v3
356+
uses: 1password/load-secrets-action/configure@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
357357
with:
358358
service-account-token: ${{ secrets.OP_SERVICE_ACCOUNT_TOKEN }}
359359

360360
- name: Load Slack secrets
361-
uses: 1password/load-secrets-action@v3
361+
uses: 1password/load-secrets-action@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
362362
with:
363363
export-env: true
364364
env:
@@ -402,17 +402,17 @@ jobs:
402402
SLACK_CHANNEL_ID: ""
403403
steps:
404404
- name: Checkout repository
405-
uses: namespacelabs/nscloud-checkout-action@v7
405+
uses: namespacelabs/nscloud-checkout-action@953fed31a6113cc2347ca69c9d823743c65bc84b # v7
406406
with:
407407
fetch-depth: ${{ github.event_name == 'push' && 2 || 0 }}
408408

409409
- name: Setup 1Password
410-
uses: 1password/load-secrets-action/configure@v3
410+
uses: 1password/load-secrets-action/configure@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
411411
with:
412412
service-account-token: ${{ secrets.OP_SERVICE_ACCOUNT_TOKEN }}
413413

414414
- name: Load Slack secrets
415-
uses: 1password/load-secrets-action@v3
415+
uses: 1password/load-secrets-action@13f58eec611f8e5db52ec16247f58c508398f3e6 # v3
416416
with:
417417
export-env: true
418418
env:

bun.lock

Lines changed: 2 additions & 2 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -42,10 +42,10 @@
4242
"@inquirer/prompts": "7.8.6",
4343
"@kubernetes/client-node": "1.3.0",
4444
"commander": "14.0.1",
45-
"lefthook": "^1.13.0",
45+
"lefthook": "1.13.0",
4646
"ox": "0.9.6",
4747
"viem": "2.37.6",
48-
"yaml": "^2.8.1",
48+
"yaml": "2.8.1",
4949
"zod": "4.1.9"
5050
}
5151
}

0 commit comments

Comments
 (0)