build: update scorecard action dependencies to 230611d

This commit is contained in:
Renovate Bot 2022-02-08 08:55:17 +00:00 committed by Filipe Silva
parent 80b2cc7e85
commit 6e9cb3da22

View File

@ -22,12 +22,12 @@ jobs:
steps: steps:
- name: 'Checkout code' - name: 'Checkout code'
uses: actions/checkout@ec3a7ce113134d7a93b817d10a8272cb61118579 # v2.4.0 uses: actions/checkout@230611dbd0eb52da1e1f4f7bc8bb0c3a339fc8b7
with: with:
persist-credentials: false persist-credentials: false
- name: 'Run analysis' - name: 'Run analysis'
uses: ossf/scorecard-action@c8416b0b2bf627c349ca92fc8e3de51a64b005cf # v1.0.2 uses: ossf/scorecard-action@315c15e2156166631fd4cb10d6490514eb3fd74a
with: with:
results_file: results.sarif results_file: results.sarif
results_format: sarif results_format: sarif
@ -36,7 +36,7 @@ jobs:
# Upload the results as artifacts. # Upload the results as artifacts.
- name: 'Upload artifact' - name: 'Upload artifact'
uses: actions/upload-artifact@82c141cc518b40d92cc801eee768e7aafc9c2fa2 # v2.3.1 uses: actions/upload-artifact@2244c8200304ec9588bf9399eac622d9fadc28c4
with: with:
name: SARIF file name: SARIF file
path: results.sarif path: results.sarif
@ -44,6 +44,6 @@ jobs:
# Upload the results to GitHub's code scanning dashboard. # Upload the results to GitHub's code scanning dashboard.
- name: 'Upload to code-scanning' - name: 'Upload to code-scanning'
uses: github/codeql-action/upload-sarif@5f532563584d71fdef14ee64d17bafb34f751ce5 # v1.0.26 uses: github/codeql-action/upload-sarif@edd03fbd2c9728a78e2e10ff69c4af455b0de4fd
with: with:
sarif_file: results.sarif sarif_file: results.sarif