|
48 | 48 | id-token: write |
49 | 49 | attestations: write |
50 | 50 | steps: |
51 | | - - uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6 |
| 51 | + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 |
52 | 52 | - name: Set up QEMU |
53 | 53 | if: ${{ github.event_name != 'pull_request' }} |
54 | 54 | uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0 |
@@ -152,7 +152,7 @@ jobs: |
152 | 152 | CI: "true" |
153 | 153 | DIVE_VER: 0.13.1 # renovate: depName=wagoodman/dive |
154 | 154 | steps: |
155 | | - - uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6 |
| 155 | + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 |
156 | 156 | - name: Download Docker image artifacts |
157 | 157 | uses: actions/download-artifact@37930b1c2abaa49bbe596cd826c3c89aef350131 # v7 |
158 | 158 | with: |
@@ -180,7 +180,7 @@ jobs: |
180 | 180 | - default |
181 | 181 | - relayhost |
182 | 182 | steps: |
183 | | - - uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6 |
| 183 | + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 |
184 | 184 | - name: Download Docker image artifacts |
185 | 185 | uses: actions/download-artifact@37930b1c2abaa49bbe596cd826c3c89aef350131 # v7 |
186 | 186 | with: |
@@ -253,7 +253,7 @@ jobs: |
253 | 253 | - relayhost |
254 | 254 | - proxy |
255 | 255 | steps: |
256 | | - - uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6 |
| 256 | + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 |
257 | 257 | - name: Setup Kind |
258 | 258 | uses: helm/kind-action@a1b0e391336a6ee6713a0583f8c6240d70863de3 # v1 |
259 | 259 | with: |
@@ -339,7 +339,7 @@ jobs: |
339 | 339 | - image: mailserver-ssl |
340 | 340 | - image: mailserver-unbound |
341 | 341 | steps: |
342 | | - - uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6 |
| 342 | + - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 |
343 | 343 | - name: Download Docker image artifacts |
344 | 344 | if: ${{ github.event_name == 'pull_request' }} |
345 | 345 | uses: actions/download-artifact@37930b1c2abaa49bbe596cd826c3c89aef350131 # v7 |
@@ -372,7 +372,7 @@ jobs: |
372 | 372 | severity: "CRITICAL,HIGH" |
373 | 373 | - name: Upload Trivy scan results to GitHub Security tab |
374 | 374 | if: always() |
375 | | - uses: github/codeql-action/upload-sarif@6bc82e05fd0ea64601dd4b465378bbcf57de0314 # v4 |
| 375 | + uses: github/codeql-action/upload-sarif@45cbd0c69e560cd9e7cd7f8c32362050c9b7ded2 # v4 |
376 | 376 | with: |
377 | 377 | sarif_file: "trivy-results.sarif" |
378 | 378 | category: "${{ matrix.image }}" |
0 commit comments