From 9f1b6dbd4942842c7b9fa857273d84b57a9d9830 Mon Sep 17 00:00:00 2001 From: David Cornu Date: Wed, 19 Mar 2025 14:40:59 -0400 Subject: [PATCH] Pin third-party GitHub actions --- .github/workflows/health_check.yml | 6 +++--- .github/workflows/publish.yml | 6 +++--- .github/workflows/test.yml | 4 ++-- 3 files changed, 8 insertions(+), 8 deletions(-) diff --git a/.github/workflows/health_check.yml b/.github/workflows/health_check.yml index dcafb27..591e2a9 100644 --- a/.github/workflows/health_check.yml +++ b/.github/workflows/health_check.yml @@ -9,10 +9,10 @@ jobs: runs-on: ubuntu-latest steps: - name: Check out code - uses: actions/checkout@v2 + uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0 - name: Setup Ruby - uses: ruby/setup-ruby@v1 + uses: ruby/setup-ruby@1a615958ad9d422dd932dc1d5823942ee002799f # v1.227.0 with: ruby-version: 3.0.2 bundler-cache: true @@ -24,7 +24,7 @@ jobs: - name: Notify slack if: failure() - uses: kpritam/slack-job-status-action@v1 + uses: kpritam/slack-job-status-action@54eea0dd141dd572d7fbbe96416e9c5d8ba57976 # v0.1.2 with: job-status: ${{ job.status }} slack-bot-token: ${{ secrets.SLACK_BOT_TOKEN }} diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml index 32de1a9..1898b33 100644 --- a/.github/workflows/publish.yml +++ b/.github/workflows/publish.yml @@ -12,7 +12,7 @@ jobs: steps: - name: Check out code - uses: actions/checkout@v2 + uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0 - uses: chrnorm/deployment-action@releases/v1 name: Create GitHub deployment @@ -23,7 +23,7 @@ jobs: environment: production - name: Setup Ruby - uses: ruby/setup-ruby@v1 + uses: ruby/setup-ruby@1a615958ad9d422dd932dc1d5823942ee002799f # v1.227.0 with: ruby-version: 2.7.1 @@ -59,4 +59,4 @@ jobs: token: "${{ github.token }}" target_url: ${{ env.TARGET_URL }} state: "failure" - deployment_id: ${{ steps.deployment.outputs.deployment_id }} \ No newline at end of file + deployment_id: ${{ steps.deployment.outputs.deployment_id }} diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index 1c50bda..a9b0228 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -17,10 +17,10 @@ jobs: steps: - name: Check out code - uses: actions/checkout@v2 + uses: actions/checkout@ee0669bd1cc54295c223e0bb666b733df41de1c5 # v2.7.0 - name: Setup Ruby ${{ matrix.ruby-version }} - uses: ruby/setup-ruby@v1 + uses: ruby/setup-ruby@1a615958ad9d422dd932dc1d5823942ee002799f # v1.227.0 with: ruby-version: ${{ matrix.ruby-version }} bundler-cache: true