Skip to content

Commit ebcbe8e

Browse files
committed
chore: pin GitHub Actions to specific SHA commits for security.yml
1 parent fb1539b commit ebcbe8e

File tree

1 file changed

+6
-6
lines changed

1 file changed

+6
-6
lines changed

.github/workflows/security.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -17,10 +17,10 @@ jobs:
1717

1818
steps:
1919
- name: Checkout code
20-
uses: actions/checkout@v3
20+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
2121

2222
- name: Setup Node.js
23-
uses: actions/setup-node@v3
23+
uses: actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e # v4
2424
with:
2525
node-version: 20
2626
cache: npm
@@ -32,21 +32,21 @@ jobs:
3232
run: npm audit --audit-level=high
3333

3434
- name: CodeQL Initialize
35-
uses: github/codeql-action/init@v3
35+
uses: github/codeql-action/init@d7eaefbfa6606a4adc96bdf7b9ba23d7fa931e69 # v3
3636
with:
3737
languages: javascript
3838

3939
- name: CodeQL Analysis
40-
uses: github/codeql-action/analyze@v3
40+
uses: github/codeql-action/analyze@d7eaefbfa6606a4adc96bdf7b9ba23d7fa931e69 # v3
4141

4242
dependency-review:
4343
runs-on: ubuntu-latest
4444
if: github.event_name == 'pull_request'
4545
steps:
4646
- name: Checkout code
47-
uses: actions/checkout@v3
47+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
4848

4949
- name: Dependency Review
50-
uses: actions/dependency-review-action@v3
50+
uses: actions/dependency-review-action@3b139cfc5fae8b618d3eae3675e383bb1769c019 # v4.5.0
5151
with:
5252
fail-on-severity: high

0 commit comments

Comments
 (0)