Skip to content

Commit d8f1ed9

Browse files
authored
Pin github actions by hash (#12140)
1 parent 080ad94 commit d8f1ed9

6 files changed

+19
-19
lines changed

.github/workflows/pr-smoke-test-servlet-images.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -31,13 +31,13 @@ jobs:
3131
run: git config --system core.longpaths true
3232
if: matrix.os == 'windows-latest'
3333

34-
- uses: actions/checkout@v4
34+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
3535

3636
- name: Free disk space
3737
run: .github/scripts/gha-free-disk-space.sh
3838

3939
- name: Set up JDK for running Gradle
40-
uses: actions/setup-java@v4
40+
uses: actions/setup-java@6a0805fcefea3d4657a47ac4c165951e33482018 # v4.2.2
4141
with:
4242
distribution: temurin
4343
java-version-file: .java-version

.github/workflows/prepare-patch-release.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ jobs:
66
prepare-patch-release:
77
runs-on: ubuntu-latest
88
steps:
9-
- uses: actions/checkout@v4
9+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
1010

1111
- run: |
1212
if [[ ! $GITHUB_REF_NAME =~ ^release/v[0-9]+\.[0-9]+\.x$ ]]; then

.github/workflows/prepare-release-branch.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ jobs:
66
prereqs:
77
runs-on: ubuntu-latest
88
steps:
9-
- uses: actions/checkout@v4
9+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
1010

1111
- name: Verify prerequisites
1212
run: |
@@ -25,7 +25,7 @@ jobs:
2525
needs:
2626
- prereqs
2727
steps:
28-
- uses: actions/checkout@v4
28+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
2929

3030
- name: Create release branch
3131
run: |
@@ -78,7 +78,7 @@ jobs:
7878
needs:
7979
- prereqs
8080
steps:
81-
- uses: actions/checkout@v4
81+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
8282

8383
- name: Set environment variables
8484
run: |

.github/workflows/publish-petclinic-benchmark-image.yml

+4-4
Original file line numberDiff line numberDiff line change
@@ -14,12 +14,12 @@ jobs:
1414
packages: write
1515
contents: read
1616
steps:
17-
- uses: actions/checkout@v4
17+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
1818

19-
- uses: docker/setup-buildx-action@v3
19+
- uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3.6.1
2020

2121
- name: Login to GitHub container registry
22-
uses: docker/login-action@v3
22+
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
2323
with:
2424
registry: ghcr.io
2525
username: ${{ github.repository_owner }}
@@ -29,7 +29,7 @@ jobs:
2929
run: echo "TS=$(date +'%Y%m%d%H%M%S')" >> $GITHUB_ENV
3030

3131
- name: Push to GitHub packages
32-
uses: docker/build-push-action@v6
32+
uses: docker/build-push-action@5cd11c3a4ced054e52742c5fd54dca954e0edd85 # v6.7.0
3333
with:
3434
push: true
3535
file: benchmark-overhead/Dockerfile-petclinic-base

.github/workflows/publish-smoke-test-early-jdk8-images.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -13,19 +13,19 @@ jobs:
1313
publish:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v4
16+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
1717

1818
- name: Free disk space
1919
run: .github/scripts/gha-free-disk-space.sh
2020

2121
- name: Set up JDK for running Gradle
22-
uses: actions/setup-java@v4
22+
uses: actions/setup-java@6a0805fcefea3d4657a47ac4c165951e33482018 # v4.2.2
2323
with:
2424
distribution: temurin
2525
java-version-file: .java-version
2626

2727
- name: Login to GitHub package registry
28-
uses: docker/login-action@v3
28+
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
2929
with:
3030
registry: ghcr.io
3131
username: ${{ github.repository_owner }}

.github/workflows/publish-smoke-test-fake-backend-images.yml

+6-6
Original file line numberDiff line numberDiff line change
@@ -13,19 +13,19 @@ jobs:
1313
publishLinux:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v4
16+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
1717

1818
- name: Free disk space
1919
run: .github/scripts/gha-free-disk-space.sh
2020

2121
- name: Set up JDK for running Gradle
22-
uses: actions/setup-java@v4
22+
uses: actions/setup-java@6a0805fcefea3d4657a47ac4c165951e33482018 # v4.2.2
2323
with:
2424
distribution: temurin
2525
java-version-file: .java-version
2626

2727
- name: Login to GitHub package registry
28-
uses: docker/login-action@v3
28+
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
2929
with:
3030
registry: ghcr.io
3131
username: ${{ github.repository_owner }}
@@ -49,16 +49,16 @@ jobs:
4949
- name: Support long paths
5050
run: git config --system core.longpaths true
5151

52-
- uses: actions/checkout@v4
52+
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
5353

5454
- name: Set up JDK for running Gradle
55-
uses: actions/setup-java@v4
55+
uses: actions/setup-java@6a0805fcefea3d4657a47ac4c165951e33482018 # v4.2.2
5656
with:
5757
distribution: temurin
5858
java-version-file: .java-version
5959

6060
- name: Login to GitHub package registry
61-
uses: azure/docker-login@v2
61+
uses: azure/docker-login@15c4aadf093404726ab2ff205b2cdd33fa6d054c # v2
6262
with:
6363
login-server: ghcr.io
6464
username: ${{ github.repository_owner }}

0 commit comments

Comments
 (0)