File tree Expand file tree Collapse file tree 5 files changed +8
-8
lines changed Expand file tree Collapse file tree 5 files changed +8
-8
lines changed Original file line number Diff line number Diff line change @@ -306,7 +306,7 @@ jobs:
306306 - id : auth
307307 name : Authenticate to Google Cloud
308308 if : inputs.gcp-workload-identity-provider != ''
309- uses : google-github-actions/auth@ba79af03959ebeac9769e648f473a284504d9193 # v2.1.10
309+ uses : google-github-actions/auth@b7593ed2efd1c1617e1b0254da33b86225adb2a5 # v2.1.12
310310 with :
311311 token_format : " access_token"
312312 workload_identity_provider : ${{ inputs.gcp-workload-identity-provider }}
Original file line number Diff line number Diff line change 5959
6060 # Initializes the CodeQL tools for scanning.
6161 - name : Initialize CodeQL
62- uses : github/codeql-action/init@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
62+ uses : github/codeql-action/init@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
6363 with :
6464 languages : ${{ matrix.language }}
6565 # If you wish to specify custom queries, you can do so here or in a config file.
7272 # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
7373 # If this step fails, then you should remove it and run the build manually (see below)
7474 - name : Autobuild
75- uses : github/codeql-action/autobuild@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
75+ uses : github/codeql-action/autobuild@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
7676
7777 # Command-line programs to run using the OS shell.
7878 # 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
8585 # ./location_of_script_within_repo/buildscript.sh
8686
8787 - name : Perform CodeQL Analysis
88- uses : github/codeql-action/analyze@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
88+ uses : github/codeql-action/analyze@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
8989
9090 # NOTE: Checks that the matrix job above completes successfully.
9191 # This is necessary because the matrix strategy generates new jobs with
Original file line number Diff line number Diff line change @@ -158,14 +158,14 @@ jobs:
158158 - id : auth
159159 name : Authenticate to Google Cloud
160160 if : inputs.gcp-workload-identity-provider != ''
161- uses : google-github-actions/auth@ba79af03959ebeac9769e648f473a284504d9193 # v2.1.10
161+ uses : google-github-actions/auth@b7593ed2efd1c1617e1b0254da33b86225adb2a5 # v2.1.12
162162 with :
163163 token_format : " access_token"
164164 workload_identity_provider : ${{ inputs.gcp-workload-identity-provider }}
165165 service_account : ${{ inputs.gcp-service-account }}
166166
167167 - id : cosign-install
168- uses : sigstore/cosign-installer@398d4b0eeef1380460a10c8013a76f728fb906ac # v3.9.1
168+ uses : sigstore/cosign-installer@d58896d6a1865668819e1d91763c7751a165e159 # v3.9.2
169169 with :
170170 cosign-release : v2.2.3
171171 continue-on-error : true
Original file line number Diff line number Diff line change 7171
7272 # Upload the results to GitHub's code scanning dashboard.
7373 - name : " Upload to code-scanning"
74- uses : github/codeql-action/upload-sarif@ce28f5bb42b7a9f2c824e633a3f6ee835bab6858 # v3.29.0
74+ uses : github/codeql-action/upload-sarif@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
7575 with :
7676 sarif_file : results.sarif
Original file line number Diff line number Diff line change 5656runs :
5757 using : " composite"
5858 steps :
59- - uses : actions/checkout@09d2acae674a48949e3602304ab46fd20ae0c42f # v 3.5.2
59+ - uses : actions/checkout@8edcb1bdb4e267140fa742c62e395cd74f332709 # v 3.5.2
6060 - name : Set up JDK
6161 uses : actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
6262 with :
You can’t perform that action at this time.
0 commit comments