Skip to content

Commit 696f2e9

Browse files
committed
ci: pin GitHub Actions to full commit SHAs
```markdown | Action | Status | |--------|--------| | actions/checkout (validate.yml) | pinned | | actions/checkout (ci.yml) | already pinned | | actions/checkout (main.yml) | already pinned | | docker/bake-action/subaction/list-targets | pinned | | docker/bake-action | pinned | | docker/setup-buildx-action | pinned | | docker/setup-qemu-action | pinned | | docker/login-action | pinned | ``` Assisted-By: docker-agent
1 parent 0c22732 commit 696f2e9

File tree

3 files changed

+9
-9
lines changed

3 files changed

+9
-9
lines changed

.github/workflows/ci.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -18,11 +18,11 @@ jobs:
1818
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
1919

2020
- name: Set up QEMU
21-
uses: docker/setup-qemu-action@v3
21+
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
2222

2323
- name: Set up Docker Buildx
2424
id: buildx
25-
uses: docker/setup-buildx-action@v3
25+
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
2626

2727
- name: Lint
2828
run: make lint-${{ matrix.platform }}

.github/workflows/main.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,11 +17,11 @@ jobs:
1717
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
1818

1919
- name: Set up QEMU
20-
uses: docker/setup-qemu-action@v3
20+
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
2121

2222
- name: Set up Docker Buildx
2323
id: buildx
24-
uses: docker/setup-buildx-action@v3
24+
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
2525

2626
- name: Lint
2727
run: make lint
@@ -33,7 +33,7 @@ jobs:
3333
run: make docker-mcp-cross
3434

3535
- name: Hub login
36-
uses: docker/login-action@v3
36+
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
3737
with:
3838
username: ${{ vars.DOCKERPUBLICBOT_USERNAME }}
3939
password: ${{ secrets.DOCKERPUBLICBOT_WRITE_PAT }}

.github/workflows/validate.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -24,11 +24,11 @@ jobs:
2424
steps:
2525
-
2626
name: Checkout
27-
uses: actions/checkout@v6
27+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2828
-
2929
name: List targets
3030
id: generate
31-
uses: docker/bake-action/subaction/list-targets@v6
31+
uses: docker/bake-action/subaction/list-targets@5be5f02ff8819ecd3092ea6b2e6261c31774f2b4 # v6.10.0
3232
with:
3333
target: validate-docs
3434

@@ -43,11 +43,11 @@ jobs:
4343
steps:
4444
-
4545
name: Set up Docker Buildx
46-
uses: docker/setup-buildx-action@v3
46+
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
4747
with:
4848
buildkitd-flags: --debug
4949
-
5050
name: Validate
51-
uses: docker/bake-action@v6
51+
uses: docker/bake-action@5be5f02ff8819ecd3092ea6b2e6261c31774f2b4 # v6.10.0
5252
with:
5353
targets: ${{ matrix.target }}

0 commit comments

Comments
 (0)