Skip to content

Commit 19249b5

Browse files
authored
chore: update trufflehog and pin actions (#157)
1 parent 43d1b98 commit 19249b5

File tree

2 files changed

+5
-5
lines changed

2 files changed

+5
-5
lines changed

Diff for: .github/workflows/enforce-license-compliance.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -17,6 +17,6 @@ jobs:
1717
runs-on: ubuntu-latest
1818
steps:
1919
- name: 'Enforce License Compliance'
20-
uses: getsentry/action-enforce-license-compliance@main
20+
uses: getsentry/action-enforce-license-compliance@4fae092d42cc91cdfa447eb5b0987cbecfdb07c6 # main
2121
with:
2222
fossa_api_key: ${{ secrets.FOSSA_API_KEY }}

Diff for: .github/workflows/secret-scan.yml

+4-4
Original file line numberDiff line numberDiff line change
@@ -15,10 +15,10 @@ jobs:
1515

1616
steps:
1717
- name: Checkout Code
18-
uses: actions/checkout@v4
18+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
1919

2020
- name: Install Cosign
21-
uses: sigstore/[email protected]
21+
uses: sigstore/cosign-installer@59acb6260d9c0ba8f4a2f9d9b48431a222b68e20 # v3.5.0
2222

2323
- name: Pin Trufflehog to a know good release
2424
id: trufflehog_release
@@ -29,8 +29,8 @@ jobs:
2929
# echo "latest_tag_name=$LATEST_TAG_NAME" >> "$GITHUB_OUTPUT"
3030
# echo "latest_release=$LATEST_RELEASE" >> "$GITHUB_OUTPUT"
3131
run: |
32-
echo "latest_tag_name=v3.88.11" >> "$GITHUB_OUTPUT"
33-
echo "latest_release=3.88.11" >> "$GITHUB_OUTPUT"
32+
echo "latest_tag_name=v3.88.20" >> "$GITHUB_OUTPUT"
33+
echo "latest_release=3.88.20" >> "$GITHUB_OUTPUT"
3434
3535
- name: Download and verify TruffleHog release
3636
run: |

0 commit comments

Comments
 (0)