Skip to content

Commit e7089f1

Browse files
authored
chore: renovate update (#109)
1 parent a9706b7 commit e7089f1

6 files changed

Lines changed: 20 additions & 20 deletions

File tree

.github/workflows/dependency-review.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ jobs:
99
runs-on: ubuntu-latest
1010
steps:
1111
- name: Harden Runner
12-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
12+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
1313
with:
1414
egress-policy: audit
1515

.github/workflows/release-npm.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
packages: write
1616
steps:
1717
- name: Harden Runner
18-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
18+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
1919
with:
2020
egress-policy: audit
2121

.github/workflows/super-devsecops.yml

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
actions: read # only required for a private repository by github/codeql-action/upload-sarif to get the Action run status
2020
steps:
2121
- name: Harden Runner
22-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
22+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
2323
with:
2424
egress-policy: audit
2525
- name: Checkout code
@@ -39,7 +39,7 @@ jobs:
3939
- name: Checkout the code
4040
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
4141
- name: Scan the source code and upload dependency results
42-
uses: anchore/sbom-action@c7f031d9249a826a082ea14c79d3b686a51d485a
42+
uses: anchore/sbom-action@f3355df2ccd621f5873fe3c7c653ebdc5ef1bcb2
4343
with:
4444
path: .
4545
dependency-snapshot: true
@@ -53,7 +53,7 @@ jobs:
5353
node-version: [16.x, 18.x, 20.x]
5454
steps:
5555
- name: Harden Runner
56-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
56+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
5757
with:
5858
egress-policy: audit
5959
- name: Checkout Repository to Runner Context
@@ -75,7 +75,7 @@ jobs:
7575
node-version: [16.x, 18.x, 20.x]
7676
steps:
7777
- name: Harden Runner
78-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
78+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
7979
with:
8080
egress-policy: audit
8181

@@ -105,7 +105,7 @@ jobs:
105105
language: ["javascript-typescript"]
106106
steps:
107107
- name: Harden Runner
108-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
108+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
109109
with:
110110
egress-policy: audit
111111
- name: Checkout repository
@@ -129,11 +129,11 @@ jobs:
129129
needs: test
130130
steps:
131131
- name: Harden Runner
132-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
132+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
133133
with:
134134
egress-policy: audit
135135
- name: Analyze with SonarCloud
136-
uses: SonarSource/sonarcloud-github-action@5ee47de3c96f0c1c51b09d2ff1fec0cfeefcf67c
136+
uses: SonarSource/sonarcloud-github-action@44eed6088a971ec48af9300c3701483b8815f622
137137
env:
138138
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
139139
SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
@@ -150,7 +150,7 @@ jobs:
150150
needs: test
151151
steps:
152152
- name: Harden Runner
153-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
153+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
154154
with:
155155
egress-policy: audit
156156
- name: "Checkout code"
@@ -183,13 +183,13 @@ jobs:
183183
needs: sast_codeql
184184
steps:
185185
- name: Harden Runner
186-
uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1
186+
uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0
187187
with:
188188
egress-policy: audit
189189
- name: Checkout repository
190190
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
191191
- name: Log in to the Container registry
192-
uses: docker/login-action@3d58c274f17dffee475a5520cbe67f0a882c4dbb
192+
uses: docker/login-action@83a00bc1ab5ded6580f31df1c49e6aaa932d840d
193193
with:
194194
registry: ghcr.io
195195
username: ${{ github.actor }}
@@ -199,7 +199,7 @@ jobs:
199199
docker build -t ghcr.io/stormsinbrewing/savvy-devsecops .
200200
docker push ghcr.io/stormsinbrewing/savvy-devsecops
201201
- name: Image SBOM Scan with Syft
202-
uses: anchore/sbom-action@c7f031d9249a826a082ea14c79d3b686a51d485a
202+
uses: anchore/sbom-action@f3355df2ccd621f5873fe3c7c653ebdc5ef1bcb2
203203
with:
204204
image: "ghcr.io/stormsinbrewing/savvy-devsecops"
205205
dependency-snapshot: true

Dockerfile

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
FROM node:21-alpine@sha256:39bf945d56c29e7b3fa51632a7a07080475e5d5e5fc981543cdb735bc3bc01eb AS builder
1+
FROM node:21-alpine@sha256:d3271e4bd89eec4d97087060fd4db0c238d9d22fcfad090a73fa9b5128699888 AS builder
22
ENV NODE_ENV production
33
WORKDIR /app
44
COPY package.json .
@@ -7,7 +7,7 @@ RUN yarn install --production
77
COPY . .
88
RUN yarn build
99

10-
FROM nginx:1.25.3-alpine@sha256:3923f8de8d2214b9490e68fd6ae63ea604deddd166df2755b788bef04848b9bc as production
10+
FROM nginx:1.25.3-alpine@sha256:f2802c2a9d09c7aa3ace27445dfc5656ff24355da28e7b958074a0111e3fc076 as production
1111
ENV NODE_ENV production
1212
COPY --from=builder /app/build /usr/share/nginx/html
1313
COPY nginx.conf /etc/nginx/conf.d/default.conf

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -49,6 +49,6 @@
4949
"eslint-plugin-n": "^16.6.2",
5050
"eslint-plugin-promise": "^6.0.0",
5151
"eslint-plugin-react": "^7.33.2",
52-
"prettier": "3.1.1"
52+
"prettier": "3.2.5"
5353
}
5454
}

yarn.lock

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -7639,10 +7639,10 @@ prelude-ls@~1.1.2:
76397639
resolved "https://registry.yarnpkg.com/prelude-ls/-/prelude-ls-1.1.2.tgz#21932a549f5e52ffd9a827f570e04be62a97da54"
76407640
integrity sha512-ESF23V4SKG6lVSGZgYNpbsiaAkdab6ZgOxe52p7+Kid3W3u3bxR4Vfd/o21dmN7jSt0IwgZ4v5MUd26FEtXE9w==
76417641

7642-
prettier@3.1.1:
7643-
version "3.1.1"
7644-
resolved "https://registry.yarnpkg.com/prettier/-/prettier-3.1.1.tgz#6ba9f23165d690b6cbdaa88cb0807278f7019848"
7645-
integrity sha512-22UbSzg8luF4UuZtzgiUOfcGM8s4tjBv6dJRT7j275NXsy2jb4aJa4NNveul5x4eqlF1wuhuR2RElK71RvmVaw==
7642+
prettier@3.2.5:
7643+
version "3.2.5"
7644+
resolved "https://registry.yarnpkg.com/prettier/-/prettier-3.2.5.tgz#e52bc3090586e824964a8813b09aba6233b28368"
7645+
integrity sha512-3/GWa9aOC0YeD7LUfvOG2NiDyhOWRvt1k+rcKhOuYnMY24iiCphgneUfJDyFXd6rZCAnuLBv6UeAULtrhT/F4A==
76467646

76477647
pretty-bytes@^5.3.0, pretty-bytes@^5.4.1:
76487648
version "5.6.0"

0 commit comments

Comments
 (0)