Skip to content

Commit eb7f6fa

Browse files
committed
ci: pin github actions to full-length commit shas
1 parent e79492f commit eb7f6fa

3 files changed

Lines changed: 6 additions & 6 deletions

File tree

.github/workflows/ci.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -20,9 +20,9 @@ jobs:
2020

2121
steps:
2222

23-
- uses: actions/checkout@v6
23+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2424
- run: corepack enable
25-
- uses: actions/setup-node@v6
25+
- uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
2626
with:
2727
node-version: 24
2828
cache: "pnpm"
@@ -41,6 +41,6 @@ jobs:
4141

4242
- name: Coverage
4343
if: ${{ matrix.os == 'ubuntu-latest' }}
44-
uses: codecov/codecov-action@v5
44+
uses: codecov/codecov-action@671740ac38dd9b0130fbe1cec585b89eea48d3de # v5
4545
env:
4646
CODECOV_TOKEN: ${{ secrets.CODECOV_TOKEN }}

.github/workflows/provenance.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ jobs:
1313
check-provenance:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: actions/checkout@v6
16+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1717
with:
1818
fetch-depth: 0
1919
- name: Check provenance downgrades

.github/workflows/release.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -12,12 +12,12 @@ jobs:
1212
release:
1313
runs-on: ubuntu-latest
1414
steps:
15-
- uses: actions/checkout@v6
15+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1616
with:
1717
fetch-depth: 0
1818

1919
- name: Set node
20-
uses: actions/setup-node@v6
20+
uses: actions/setup-node@6044e13b5dc448c55e2357c09f80417699197238 # v6
2121
with:
2222
node-version: 24
2323

0 commit comments

Comments
 (0)