From 6e9cb3da22abcae8e396935be5ca6f7effe03a33 Mon Sep 17 00:00:00 2001 From: Renovate Bot Date: Tue, 8 Feb 2022 08:55:17 +0000 Subject: [PATCH] build: update scorecard action dependencies to 230611d --- .github/workflows/scorecard.yml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 8fbf4ac3df..dbe41a6f1b 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -22,12 +22,12 @@ jobs: steps: - name: 'Checkout code' - uses: actions/checkout@ec3a7ce113134d7a93b817d10a8272cb61118579 # v2.4.0 + uses: actions/checkout@230611dbd0eb52da1e1f4f7bc8bb0c3a339fc8b7 with: persist-credentials: false - name: 'Run analysis' - uses: ossf/scorecard-action@c8416b0b2bf627c349ca92fc8e3de51a64b005cf # v1.0.2 + uses: ossf/scorecard-action@315c15e2156166631fd4cb10d6490514eb3fd74a with: results_file: results.sarif results_format: sarif @@ -36,7 +36,7 @@ jobs: # Upload the results as artifacts. - name: 'Upload artifact' - uses: actions/upload-artifact@82c141cc518b40d92cc801eee768e7aafc9c2fa2 # v2.3.1 + uses: actions/upload-artifact@2244c8200304ec9588bf9399eac622d9fadc28c4 with: name: SARIF file path: results.sarif @@ -44,6 +44,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: 'Upload to code-scanning' - uses: github/codeql-action/upload-sarif@5f532563584d71fdef14ee64d17bafb34f751ce5 # v1.0.26 + uses: github/codeql-action/upload-sarif@edd03fbd2c9728a78e2e10ff69c4af455b0de4fd with: sarif_file: results.sarif