Skip to content

Commit bdda7ab

Browse files
authored
⬆️CI : Pin github actions to full commit SHA (#865)
1 parent f73cccc commit bdda7ab

3 files changed

Lines changed: 14 additions & 14 deletions

File tree

.github/workflows/ci.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -20,12 +20,12 @@ jobs:
2020
timeout-minutes: 1
2121

2222
steps:
23-
- uses: actions/checkout@v6.0.2
23+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2424

2525
- name: typos
26-
uses: crate-ci/typos@v1.46.0
26+
uses: crate-ci/typos@6ac2ebd1b93eade61faf7e12688ad87a073fea59 # v1.46.0
2727

28-
- uses: astral-sh/setup-uv@v8.1.0
28+
- uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
2929

3030
- name: dprint
3131
run: uv run dprint check
@@ -52,9 +52,9 @@ jobs:
5252
matrix:
5353
py: ["3.11", "3.12", "3.13", "3.14"]
5454
steps:
55-
- uses: actions/checkout@v6.0.2
55+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
5656

57-
- uses: astral-sh/setup-uv@v8.1.0
57+
- uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
5858
with:
5959
python-version: ${{ matrix.py }}
6060

@@ -69,9 +69,9 @@ jobs:
6969
matrix:
7070
py: ["3.11", "3.12", "3.13", "3.14"]
7171
steps:
72-
- uses: actions/checkout@v6.0.2
72+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
7373

74-
- uses: astral-sh/setup-uv@v8.1.0
74+
- uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
7575
with:
7676
python-version: ${{ matrix.py }}
7777

@@ -89,9 +89,9 @@ jobs:
8989
os: [ubuntu-latest, macos-latest, windows-latest]
9090
py: ["3.11", "3.12", "3.13", "3.14"]
9191
steps:
92-
- uses: actions/checkout@v6.0.2
92+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
9393

94-
- uses: astral-sh/setup-uv@v8.1.0
94+
- uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
9595
with:
9696
python-version: ${{ matrix.py }}
9797

.github/workflows/docs.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -23,14 +23,14 @@ jobs:
2323
deploy:
2424
runs-on: ubuntu-latest
2525
steps:
26-
- uses: actions/checkout@v6.0.2
26+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2727

2828
- name: Configure Git Credentials
2929
run: |
3030
git config user.name github-actions[bot]
3131
git config user.email 41898282+github-actions[bot]@users.noreply.github.com
3232
33-
- uses: astral-sh/setup-uv@v8.1.0
33+
- uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
3434

3535
- name: mkdocs gh-deploy
3636
run: uv run --only-group=docs mkdocs gh-deploy --force

.github/workflows/publish-pypi.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,12 +17,12 @@ jobs:
1717
permissions:
1818
id-token: write
1919
steps:
20-
- uses: actions/checkout@v6.0.2
20+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2121
- name: setup uv
22-
uses: astral-sh/setup-uv@v8.1.0
22+
uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b # v8.1.0
2323
with:
2424
python-version: "3.14"
2525
- name: uv build
2626
run: uv build
2727
- name: publish to PyPI
28-
uses: pypa/gh-action-pypi-publish@v1.14.0
28+
uses: pypa/gh-action-pypi-publish@cef221092ed1bacb1cc03d23a2d87d1d172e277b # v1.14.0

0 commit comments

Comments
 (0)