Skip to content

Commit aeac397

Browse files
authored
Merge branch 'main' into dependabot/npm_and_yarn/glob-13.0.0
2 parents 89be5c6 + 7443535 commit aeac397

6 files changed

Lines changed: 1527 additions & 14 deletions

File tree

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -35,10 +35,10 @@ jobs:
3535

3636
steps:
3737
- name: Checkout repository
38-
uses: actions/checkout@v4
38+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4
3939

4040
- name: Initialize CodeQL
41-
uses: github/codeql-action/init@v4
41+
uses: github/codeql-action/init@f68537f3d8a6955880f700730943f8a754454193 # v4
4242
with:
4343
languages: ${{ matrix.language }}
4444
build-mode: ${{ matrix.build-mode }}
@@ -47,6 +47,6 @@ jobs:
4747
queries: +security-extended,security-and-quality
4848

4949
- name: Perform CodeQL Analysis
50-
uses: github/codeql-action/analyze@v4
50+
uses: github/codeql-action/analyze@f68537f3d8a6955880f700730943f8a754454193 # v4
5151
with:
5252
category: "/language:${{ matrix.language }}"

.github/workflows/container-scan.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -50,7 +50,7 @@ jobs:
5050
severity: 'CRITICAL,HIGH'
5151

5252
- name: Upload Trivy scan results to GitHub Security tab
53-
uses: github/codeql-action/upload-sarif@v3
53+
uses: github/codeql-action/upload-sarif@a4fda0891d53e117609b7ddb3570638c2c6d7c89 # v3
5454
if: always()
5555
with:
5656
sarif_file: 'trivy-agent-results.sarif'
@@ -85,7 +85,7 @@ jobs:
8585
severity: 'CRITICAL,HIGH'
8686

8787
- name: Upload Trivy scan results to GitHub Security tab
88-
uses: github/codeql-action/upload-sarif@v3
88+
uses: github/codeql-action/upload-sarif@a4fda0891d53e117609b7ddb3570638c2c6d7c89 # v3
8989
if: always()
9090
with:
9191
sarif_file: 'trivy-squid-results.sarif'

0 commit comments

Comments
 (0)