diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index ce373f8..a6caf3d 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -29,10 +29,10 @@ jobs: - name: "Checkout" uses: "actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8" - name: "Initialize CodeQL" - uses: "github/codeql-action/init@df559355d593797519d70b90fc8edd5db049e7a2" + uses: "github/codeql-action/init@f443b600d91635bebf5b0d9ebc620189c0d6fba5" with: languages: "${{ matrix.language }}" - name: "Autobuild" - uses: "github/codeql-action/autobuild@df559355d593797519d70b90fc8edd5db049e7a2" + uses: "github/codeql-action/autobuild@f443b600d91635bebf5b0d9ebc620189c0d6fba5" - name: "Perform CodeQL Analysis" - uses: "github/codeql-action/analyze@df559355d593797519d70b90fc8edd5db049e7a2" + uses: "github/codeql-action/analyze@f443b600d91635bebf5b0d9ebc620189c0d6fba5" diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index ac3b2a4..c0f81d4 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -27,7 +27,7 @@ jobs: - name: "Checkout" uses: "actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8" - name: "Use Node.js lts/*" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "lts/*" cache: "npm" @@ -52,7 +52,7 @@ jobs: retention-days: 1 - name: "Upload docs artifact" if: "runner.os == 'Linux' && startsWith(github.ref, 'refs/tags/v')" - uses: "actions/upload-pages-artifact@56afc609e74202658d3ffba0e8f6dda462b719fa" + uses: "actions/upload-pages-artifact@7b1f4a764d45c48632c6b24a0339c27f5614fb0b" with: path: "./docs/" retention-days: 1 @@ -80,7 +80,7 @@ jobs: name: "dist" path: "./dist/" - name: "Use Node.js ${{ matrix.node_version }}" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "${{ matrix.node_version }}" cache: "npm" @@ -174,7 +174,7 @@ jobs: name: "dist" path: "./dist/" - name: "Use Node.js lts/*" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "lts/*" cache: "npm" @@ -210,7 +210,7 @@ jobs: with: quickjs-version: "${{ matrix.quickjs_version }}" - name: "Use Node.js lts/*" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "lts/*" cache: "npm" @@ -239,7 +239,7 @@ jobs: name: "dist" path: "./dist/" - name: "Use Node.js lts/*" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "lts/*" registry-url: "https://registry.npmjs.org" @@ -272,7 +272,7 @@ jobs: name: "dist" path: "./dist/" - name: "Use Node.js lts/*" - uses: "actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020" + uses: "actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444" with: node-version: "lts/*" - name: "Publish" @@ -288,7 +288,7 @@ jobs: contents: "write" steps: - name: "Publish" - uses: "hectorm/ghaction-release@066200d04c3549852afa243d631ea3dc93390f68" + uses: "hectorm/ghaction-release@d0426a7a369ce2c1ed615e1a583788b22745ccfe" publish-github-pages: name: "Publish GitHub Pages" diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 56ba73f..ff2e34e 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -22,13 +22,13 @@ jobs: - name: "Checkout" uses: "actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8" - name: "Perform security analysis" - uses: "ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde" + uses: "ossf/scorecard-action@4eaacf0543bb3f2c246792bd56e8cdeffafb205a" with: results_file: "./results.sarif" results_format: "sarif" repo_token: "${{ secrets.GITHUB_TOKEN }}" publish_results: false - name: "Upload SARIF file" - uses: "github/codeql-action/upload-sarif@df559355d593797519d70b90fc8edd5db049e7a2" + uses: "github/codeql-action/upload-sarif@f443b600d91635bebf5b0d9ebc620189c0d6fba5" with: sarif_file: "./results.sarif"