5757 disable_rules : ' local-action,runner-label'
5858
5959 - name : Upload SARIF file to GitHub
60- uses : github/codeql-action/upload-sarif@3c3833e0f8c1c83d449a7478aa59c036a9165498 # v3.29.11
60+ uses : github/codeql-action/upload-sarif@64d10c13136e1c5bce3e5fbde8d4906eeaafc885 # v3.30.6
6161 with :
6262 sarif_file : " ${{steps.octoscan.outputs.sarif_output}}"
6363 category : octoscan
@@ -83,15 +83,15 @@ jobs:
8383 persist-credentials : false
8484
8585 - name : Install the latest version of uv
86- uses : astral-sh/setup-uv@4959332f0f014c5280e7eac8b70c90cb574c9f9b # v6.6 .0
86+ uses : astral-sh/setup-uv@d0cc045d04ccac9d8b7881df0226f9e82c39688e # v6.8 .0
8787
8888 - name : Run zizmor
89- run : uvx zizmor@1.12.0 --persona=regular --format=sarif --strict-collection . > results.sarif
89+ run : uvx zizmor@1.14.2 --persona=regular --format=sarif --strict-collection . > results.sarif
9090 env :
9191 GH_TOKEN : ${{ secrets.GITHUB_TOKEN }}
9292
9393 - name : Upload SARIF file
94- uses : github/codeql-action/upload-sarif@3c3833e0f8c1c83d449a7478aa59c036a9165498 # v3.29.11
94+ uses : github/codeql-action/upload-sarif@64d10c13136e1c5bce3e5fbde8d4906eeaafc885 # v3.30.6
9595 with :
9696 sarif_file : results.sarif
9797 category : zizmor
@@ -119,7 +119,7 @@ jobs:
119119 uses : boostsecurityio/poutine-action@84c0a0d32e8d57ae12651222be1eb15351429228 # v0.15.2
120120
121121 - name : Upload poutine SARIF file
122- uses : github/codeql-action/upload-sarif@3c3833e0f8c1c83d449a7478aa59c036a9165498 # v3.29.11
122+ uses : github/codeql-action/upload-sarif@64d10c13136e1c5bce3e5fbde8d4906eeaafc885 # v3.30.6
123123 with :
124124 sarif_file : results.sarif
125125 category : poutine
0 commit comments