File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -47,14 +47,14 @@ jobs:
4747 publish_results : true
4848
4949 - name : " Upload artifact"
50- uses : actions/upload-artifact@b7c566a772e6b6bfb58ed0dc250532a479d7789f # 6 .0.0
50+ uses : actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # 7 .0.0
5151 with :
5252 name : Scorecard results
5353 path : scorecard_results.sarif
5454 retention-days : 5
5555
5656 # Upload the results to GitHub's code scanning dashboard.
5757 - name : " Upload to code-scanning"
58- uses : github/codeql-action/upload-sarif@b20883b0cd1f46c72ae0ba6d1090936928f9fa30 # v4.32.0
58+ uses : github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 # v4.32.6
5959 with :
6060 sarif_file : scorecard_results.sarif
Original file line number Diff line number Diff line change 2828 uses : actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2929
3030 - name : Run Trivy
31- uses : aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478 # v0.34.2
31+ uses : aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # v0.35.0
3232 with :
3333 scan-type : ' config'
3434 hide-progress : false
4545 cat trivy-results.sarif
4646
4747 - name : Upload results
48- uses : github/codeql-action/upload-sarif@b20883b0cd1f46c72ae0ba6d1090936928f9fa30 # v4.32.0
48+ uses : github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 # v4.32.6
4949 with :
5050 sarif_file : ' trivy-results.sarif'
Original file line number Diff line number Diff line change 2626 sparse-checkout : |
2727 .github/workflows/*.yml
2828 - name : Run zizmor
29- uses : zizmorcore/zizmor-action@135698455da5c3b3e55f73f4419e481ab68cdd95 # v0.4.1
29+ uses : zizmorcore/zizmor-action@71321a20a9ded102f6e9ce5718a2fcec2c4f70d8 # v0.5.2
You can’t perform that action at this time.
0 commit comments