Skip to content

Commit 404ddd1

Browse files
Pin GitHub Actions (#1131)
* Update build-perf.yml * Update codeql-analysis.yml * Update combine-dependabot-prs.yml * Update deploy-live.yml * Update deploy-preview.yml * Update validate.yaml
1 parent e1aed04 commit 404ddd1

File tree

6 files changed

+22
-22
lines changed

6 files changed

+22
-22
lines changed

.github/workflows/build-perf.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -13,8 +13,8 @@ jobs:
1313
timeout-minutes: 30
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v4
17-
- uses: actions/setup-node@v4
16+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
17+
- uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
1818
with:
1919
node-version: "18"
2020
cache: yarn

.github/workflows/codeql-analysis.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # v3
2424

2525
- name: Initialize CodeQL
26-
uses: github/codeql-action/init@v3
26+
uses: github/codeql-action/init@28deaeda66b76a05916b6923827895f2b14ab387 # v3
2727
with:
2828
languages: ${{ matrix.language }}
2929

.github/workflows/combine-dependabot-prs.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525
if: github.repository_owner == 'PaloAltoNetworks'
2626
runs-on: ubuntu-latest
2727
steps:
28-
- uses: actions/github-script@v7
28+
- uses: actions/github-script@60a0d83039c74a4aee543508d2ffcb1c3799cdea # v7
2929
id: fetch-branch-names
3030
name: Fetch dependabot branches
3131
with:
@@ -117,7 +117,7 @@ jobs:
117117
118118
- name: Get token
119119
id: get_token
120-
uses: machine-learning-apps/actions-app-token@master
120+
uses: machine-learning-apps/actions-app-token@2d92b2a2bb7030dca3dd14975ae44799debed2e8 # master
121121
with:
122122
APP_PEM: ${{ secrets.APP_PEM }}
123123
APP_ID: ${{ secrets.APP_ID }}

.github/workflows/deploy-live.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,10 @@ jobs:
1212

1313
steps:
1414
- name: Checkout repository
15-
uses: actions/checkout@v4
15+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1616

1717
- name: Setup node
18-
uses: actions/setup-node@v4
18+
uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
1919
with:
2020
node-version: "20"
2121
cache: "yarn"

.github/workflows/deploy-preview.yml

+6-6
Original file line numberDiff line numberDiff line change
@@ -36,12 +36,12 @@ jobs:
3636

3737
steps:
3838
- name: Checkout repository
39-
uses: actions/checkout@v4
39+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
4040
with:
4141
ref: ${{ github.event.pull_request.head.sha }}
4242

4343
- name: Initialize CodeQL
44-
uses: github/codeql-action/init@v3
44+
uses: github/codeql-action/init@1b549b9259bda1cb5ddde3b41741a82a2d15a841 # v3
4545
with:
4646
languages: ${{ matrix.language }}
4747

@@ -65,12 +65,12 @@ jobs:
6565

6666
steps:
6767
- name: Checkout repository
68-
uses: actions/checkout@v3
68+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
6969
with:
7070
ref: ${{ github.event.pull_request.head.sha }}
7171

7272
- name: Initialize CodeQL
73-
uses: github/codeql-action/init@v3
73+
uses: github/codeql-action/init@1b549b9259bda1cb5ddde3b41741a82a2d15a841 # v3
7474
with:
7575
languages: ${{ matrix.language }}
7676

@@ -89,12 +89,12 @@ jobs:
8989

9090
steps:
9191
- name: Checkout repository
92-
uses: actions/checkout@v4
92+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
9393
with:
9494
ref: ${{ github.event.pull_request.head.sha }}
9595

9696
- name: Setup node
97-
uses: actions/setup-node@v4
97+
uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
9898
with:
9999
node-version: "20"
100100
cache: "yarn"

.github/workflows/validate.yaml

+9-9
Original file line numberDiff line numberDiff line change
@@ -14,11 +14,11 @@ jobs:
1414
name: Prepare Cache
1515
runs-on: ubuntu-latest
1616
steps:
17-
- uses: actions/checkout@v4
18-
- uses: actions/setup-node@v4
17+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
18+
- uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
1919
with:
2020
node-version: "18"
21-
- uses: actions/cache@v3
21+
- uses: actions/cache@2f8e54208210a422b2efd51efaa6bd6d7ca8920f # v3
2222
with:
2323
path: |
2424
node_modules
@@ -55,11 +55,11 @@ jobs:
5555
needs: prepare-yarn-cache
5656
runs-on: ubuntu-latest
5757
steps:
58-
- uses: actions/checkout@v4
59-
- uses: actions/setup-node@v4
58+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
59+
- uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
6060
with:
6161
node-version: "18"
62-
- uses: actions/cache@v4
62+
- uses: actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4
6363
with:
6464
path: |
6565
node_modules
@@ -75,11 +75,11 @@ jobs:
7575
needs: prepare-yarn-cache
7676
runs-on: ubuntu-latest
7777
steps:
78-
- uses: actions/checkout@v4
79-
- uses: actions/setup-node@v4
78+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
79+
- uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
8080
with:
8181
node-version: "18"
82-
- uses: actions/cache@v4
82+
- uses: actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4
8383
with:
8484
path: |
8585
node_modules

0 commit comments

Comments
 (0)