Skip to content

Commit bd81c63

Browse files
authored
ci(ci): pin actions to commit-hash (#139)
closes https://github.com/fastify/secure-json-parse/security/code-scanning/1 Signed-off-by: Frazer Smith <frazer.dev@icloud.com>
1 parent 3def094 commit bd81c63

File tree

1 file changed

+11
-11
lines changed

1 file changed

+11
-11
lines changed

.github/workflows/ci.yml

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -26,12 +26,12 @@ jobs:
2626
contents: read
2727
steps:
2828
- name: Check out repo
29-
uses: actions/checkout@v4
29+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3030
with:
3131
persist-credentials: false
3232

3333
- name: Dependency review
34-
uses: actions/dependency-review-action@v4
34+
uses: actions/dependency-review-action@ce3cf9537a52e8119d91fd484ab5b8a807627bf8 # v4.6.0
3535

3636
lint:
3737
name: Lint Code
@@ -40,12 +40,12 @@ jobs:
4040
contents: read
4141
steps:
4242
- name: Check out repo
43-
uses: actions/checkout@v4
43+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
4444
with:
4545
persist-credentials: false
4646

4747
- name: Setup Node
48-
uses: actions/setup-node@v4
48+
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
4949
with:
5050
check-latest: true
5151
node-version: lts/*
@@ -63,12 +63,12 @@ jobs:
6363
contents: read
6464
steps:
6565
- name: Check out repo
66-
uses: actions/checkout@v4
66+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
6767
with:
6868
persist-credentials: false
6969

7070
- name: Setup Node
71-
uses: actions/setup-node@v4
71+
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
7272
with:
7373
check-latest: true
7474
node-version: lts/*
@@ -92,12 +92,12 @@ jobs:
9292
node-version: [20, 22]
9393
steps:
9494
- name: Check out repo
95-
uses: actions/checkout@v4
95+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
9696
with:
9797
persist-credentials: false
9898

9999
- name: Setup Node ${{ matrix.node-version }}
100-
uses: actions/setup-node@v4
100+
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
101101
with:
102102
check-latest: true
103103
node-version: ${{ matrix.node-version }}
@@ -115,12 +115,12 @@ jobs:
115115
contents: read
116116
steps:
117117
- name: Check out repo
118-
uses: actions/checkout@v4
118+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
119119
with:
120120
persist-credentials: false
121121

122122
- name: Setup Node
123-
uses: actions/setup-node@v4
123+
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
124124
with:
125125
check-latest: true
126126
node-version: lts/*
@@ -142,7 +142,7 @@ jobs:
142142
contents: write
143143
runs-on: ubuntu-latest
144144
steps:
145-
- uses: fastify/github-action-merge-dependabot@v3
145+
- uses: fastify/github-action-merge-dependabot@e820d631adb1d8ab16c3b93e5afe713450884a4a # v3.11.1
146146
with:
147147
github-token: ${{ secrets.GITHUB_TOKEN }}
148148
target: major

0 commit comments

Comments
 (0)