Skip to content

Commit 2dc1eb7

Browse files
committed
build: pin all actions used
This pins all actions that are used inside this repository to help ensure their immutability
1 parent 91f6d5f commit 2dc1eb7

File tree

11 files changed

+27
-27
lines changed

11 files changed

+27
-27
lines changed

.github/workflows/assign-pr.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ jobs:
1010
runs-on: ubuntu-22.04
1111
steps:
1212
- name: Checkout Repo
13-
uses: actions/checkout@v4
13+
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
1414
- name: Assign PR to creator
1515
env:
1616
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}

.github/workflows/changeset-checker.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
runs-on: ubuntu-22.04
1616
steps:
1717
- name: Checkout Repo
18-
uses: actions/checkout@v4
18+
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
1919
with:
2020
sparse-checkout: ./.changeset
2121

.github/workflows/check-licenses.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020
permissions:
2121
contents: read
2222
pull-requests: write
23-
uses: saleor/saleor-internal-actions/.github/workflows/run-license-check.yaml@v1
23+
uses: saleor/saleor-internal-actions/.github/workflows/run-license-check.yaml@49a069ae9731cfccf3a1033fe1da4e3da84f4f2a # v1.11.0
2424
with:
2525
# List of ecosystems to scan.
2626
ecosystems: >-

.github/workflows/check-spelling.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ jobs:
77
spellcheck:
88
runs-on: ubuntu-22.04
99
steps:
10-
- uses: actions/checkout@v4
10+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
1111
- uses: streetsidesoftware/cspell-action@8485bb4b688c68384c2f6db7ad931f5e3e63f21c # v6.10.1
1212
with:
1313
config: cspell.config.js

.github/workflows/e2e.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,7 @@ jobs:
3030
ACCESS_TOKEN: ${{ secrets.saleor-token }}
3131
SALEOR_VERSION: ${{ matrix.saleor }}
3232
steps:
33-
- uses: actions/checkout@v4
33+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
3434
- name: Setup Saleor CLI
3535
run: |
3636
jq --null-input \
@@ -59,12 +59,12 @@ jobs:
5959
env:
6060
SALEOR_VERSION: ${{ matrix.saleor }}
6161
steps:
62-
- uses: actions/checkout@v4
62+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
6363
- name: Setup PNPM
6464
uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
6565
with:
6666
run_install: false
67-
- uses: actions/setup-node@v4
67+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
6868
with:
6969
node-version-file: ".nvmrc"
7070
cache: "pnpm"
@@ -107,12 +107,12 @@ jobs:
107107
env:
108108
SALEOR_VERSION: ${{ matrix.saleor }}
109109
steps:
110-
- uses: actions/checkout@v4
110+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
111111
- name: Setup PNPM
112112
uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
113113
with:
114114
run_install: false
115-
- uses: actions/setup-node@v4
115+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
116116
with:
117117
node-version-file: ".nvmrc"
118118
cache: "pnpm"
@@ -133,7 +133,7 @@ jobs:
133133
- name: Run Stripe e2e tests
134134
run: pnpm --filter=saleor-app-payment-stripe test:e2e
135135
- name: Upload HTML report to GitHub Actions Artifacts
136-
uses: actions/upload-artifact@v4
136+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
137137
if: always()
138138
with:
139139
name: "playwright-report-${{ env.SALEOR_VERSION }}"

.github/workflows/graphql-schema-updater.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,20 +17,20 @@ jobs:
1717
steps:
1818
- name: Get Token
1919
id: get-token
20-
uses: saleor/saleor-internal-actions/request-vault-token@v1.4.0
20+
uses: saleor/saleor-internal-actions/request-vault-token@6a0fa7c073b3857a11d414f25a149065fe5a0fcf # v1.4.0
2121
with:
2222
vault-url: ${{ secrets.VAULT_URL }}
2323
vault-jwt: ${{ secrets.VAULT_JWT }}
2424

2525
- name: Checkout Repo
26-
uses: actions/checkout@v4
26+
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
2727
with:
2828
token: ${{ steps.get-token.outputs.token }}
2929

3030
- uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
3131
with:
3232
run_install: false
33-
- uses: actions/setup-node@v4
33+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
3434
with:
3535
node-version-file: ".nvmrc"
3636
cache: "pnpm"

.github/workflows/labeler.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,6 @@ jobs:
1010
pull-requests: write
1111
runs-on: ubuntu-latest
1212
steps:
13-
- uses: actions/labeler@v5
13+
- uses: actions/labeler@8558fd74291d67161a8a78ce36a881fa63b766a9 # v5.0.0
1414
with:
1515
sync-labels: true

.github/workflows/main.yml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -20,12 +20,12 @@ jobs:
2020
TURBO_TEAM: ${{ vars.TURBO_TEAM }}
2121
TURBO_CACHE: "remote:rw"
2222
steps:
23-
- uses: actions/checkout@v4
23+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
2424
- name: Setup PNPM
2525
uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
2626
with:
2727
run_install: false
28-
- uses: actions/setup-node@v4
28+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
2929
with:
3030
node-version-file: ".nvmrc"
3131
cache: "pnpm"
@@ -50,12 +50,12 @@ jobs:
5050
TURBO_TEAM: ${{ vars.TURBO_TEAM }}
5151
TURBO_CACHE: "remote:rw"
5252
steps:
53-
- uses: actions/checkout@v4
53+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
5454
- name: Setup PNPM
5555
uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
5656
with:
5757
run_install: false
58-
- uses: actions/setup-node@v4
58+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
5959
with:
6060
node-version-file: ".nvmrc"
6161
cache: "pnpm"
@@ -64,7 +64,7 @@ jobs:
6464
- name: Run tests
6565
run: pnpm test:ci
6666
- name: Upload coverage artifacts
67-
uses: actions/upload-artifact@v4
67+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
6868
with:
6969
name: coverage-files
7070
path: |
@@ -109,9 +109,9 @@ jobs:
109109
- name: dynamo-config-repository
110110
path: packages/dynamo-config-repository
111111
steps:
112-
- uses: actions/checkout@v4
112+
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
113113
- name: Download coverage artifacts
114-
uses: actions/download-artifact@v4
114+
uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
115115
with:
116116
name: coverage-files
117117
- name: Upload coverage for ${{ matrix.name }}

.github/workflows/prepare-release.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -18,12 +18,12 @@ jobs:
1818
steps:
1919
- name: Get Token
2020
id: get-token
21-
uses: saleor/saleor-internal-actions/request-vault-token@v1.4.0
21+
uses: saleor/saleor-internal-actions/request-vault-token@6a0fa7c073b3857a11d414f25a149065fe5a0fcf # v1.4.0
2222
with:
2323
vault-url: ${{ secrets.VAULT_URL }}
2424
vault-jwt: ${{ secrets.VAULT_JWT }}
2525
- name: Checkout Repo
26-
uses: actions/checkout@v4
26+
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1
2727
with:
2828
token: ${{ steps.get-token.outputs.token }}
2929
# Tags are fetched for Changeset to distinguish from new ones while running `changeset tag`
@@ -32,7 +32,7 @@ jobs:
3232
- uses: pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2 # v4.0.0
3333
with:
3434
run_install: false
35-
- uses: actions/setup-node@v4
35+
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
3636
with:
3737
node-version-file: ".nvmrc"
3838
cache: "pnpm"

.github/workflows/run-dashboard-smoke-tests.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -37,7 +37,7 @@ permissions:
3737

3838
jobs:
3939
smoke-tests:
40-
uses: saleor/saleor-dashboard/.github/workflows/app-smoke-tests.yml@main
40+
uses: saleor/saleor-dashboard/.github/workflows/app-smoke-tests.yml@d89bfa2cc4a26844e4a206347ff07bd52e0a4982
4141
with:
4242
VERSION: ${{ inputs.VERSION }}
4343
APP_IDENTIFIERS: ${{ inputs.APP_IDENTIFIERS }}

0 commit comments

Comments
 (0)