Skip to content

Commit 343cafc

Browse files
authored
chore: pin actions (#2102)
Signed-off-by: Rui Chen <[email protected]>
1 parent 49b2851 commit 343cafc

9 files changed

+25
-25
lines changed

.github/workflows/build.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -22,11 +22,11 @@ jobs:
2222
- windows-latest
2323
steps:
2424
- name: Checkout
25-
uses: actions/checkout@v4
25+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
2626
with:
2727
submodules: true
2828
- name: Set up Go
29-
uses: actions/setup-go@v5
29+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
3030
with:
3131
go-version-file: 'go.mod'
3232
- name: Run test

.github/workflows/docker.yml

+5-5
Original file line numberDiff line numberDiff line change
@@ -13,24 +13,24 @@ jobs:
1313
runs-on: ubuntu-latest
1414
steps:
1515
- name: Checkout
16-
uses: actions/checkout@v4
16+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
1717
with:
1818
submodules: true
1919
- name: Set up Docker Buildx
20-
uses: docker/setup-buildx-action@v3
20+
uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3
2121
- name: Docker meta
2222
id: meta
23-
uses: docker/metadata-action@v5
23+
uses: docker/metadata-action@8e5442c4ef9f78752691e2d8f8d19755c6f78e81 # v5
2424
with:
2525
images: ghcr.io/${{ github.repository }}
2626
- name: Login to GitHub Container Registry
27-
uses: docker/login-action@v3
27+
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3
2828
with:
2929
registry: ghcr.io
3030
username: ${{ github.repository_owner }}
3131
password: ${{ secrets.GITHUB_TOKEN }}
3232
- name: Build and push
33-
uses: docker/build-push-action@v6
33+
uses: docker/build-push-action@5cd11c3a4ced054e52742c5fd54dca954e0edd85 # v6
3434
with:
3535
platforms: 'linux/amd64,linux/arm64/v8'
3636
push: ${{ github.event_name != 'pull_request' }}

.github/workflows/e2e.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -22,11 +22,11 @@ jobs:
2222
- windows-latest
2323
steps:
2424
- name: Checkout
25-
uses: actions/checkout@v4
25+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
2626
with:
2727
submodules: true
2828
- name: Set up Go
29-
uses: actions/setup-go@v5
29+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
3030
with:
3131
go-version-file: 'go.mod'
3232
- name: Run e2e

.github/workflows/generate.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -7,11 +7,11 @@ jobs:
77
runs-on: ubuntu-latest
88
steps:
99
- name: Checkout
10-
uses: actions/checkout@v4
10+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
1111
with:
1212
submodules: true
1313
- name: Set up Go
14-
uses: actions/setup-go@v5
14+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
1515
with:
1616
go-version-file: 'go.mod'
1717
- run: go generate ./...

.github/workflows/goreleaser.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -13,15 +13,15 @@ jobs:
1313
runs-on: ubuntu-latest
1414
steps:
1515
- name: Checkout
16-
uses: actions/checkout@v4
16+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
1717
with:
1818
submodules: true
1919
- name: Set up Go
20-
uses: actions/setup-go@v5
20+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
2121
with:
2222
go-version-file: 'go.mod'
2323
- name: goreleaser check
24-
uses: goreleaser/goreleaser-action@v6
24+
uses: goreleaser/goreleaser-action@286f3b13b1b49da4ac219696163fb8c1c93e1200 # v6
2525
with:
2626
version: v1.12.3
2727
args: check

.github/workflows/homebrew.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ jobs:
99
name: Bump Homebrew formula
1010
runs-on: ubuntu-latest
1111
steps:
12-
- uses: mislav/bump-homebrew-formula-action@v3
12+
- uses: mislav/bump-homebrew-formula-action@b3327118b2153c82da63fd9cbf58942146ee99f0 # v3
1313
with:
1414
# A PR will be sent to github.com/Homebrew/homebrew-core to update this formula:
1515
formula-name: tflint

.github/workflows/install_script.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020
shell: bash
2121
steps:
2222
- name: Checkout
23-
uses: actions/checkout@v4
23+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
2424
with:
2525
submodules: true
2626
- name: Install latest version
@@ -68,7 +68,7 @@ jobs:
6868
options: --user 0
6969
steps:
7070
- name: Checkout
71-
uses: actions/checkout@v4
71+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
7272
- name: Install dependencies
7373
run: |
7474
apk add bash curl curl-dev unzip

.github/workflows/lint.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -15,14 +15,14 @@ jobs:
1515
checks: write
1616
steps:
1717
- name: Checkout
18-
uses: actions/checkout@v4
18+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
1919
with:
2020
submodules: true
2121
- name: Set up Go
22-
uses: actions/setup-go@v5
22+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
2323
with:
2424
go-version-file: 'go.mod'
2525
- name: Run linters
26-
uses: golangci/[email protected]
26+
uses: golangci/golangci-lint-action@aaa42aa0628b4ae2578232a66b541047968fac86 # v6.1.0
2727
with:
2828
version: v1.60.1

.github/workflows/release.yml

+5-5
Original file line numberDiff line numberDiff line change
@@ -17,22 +17,22 @@ jobs:
1717
runs-on: ubuntu-latest
1818
steps:
1919
- name: Checkout
20-
uses: actions/checkout@v4
20+
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4
2121
with:
2222
submodules: true
2323
- name: Set up Go
24-
uses: actions/setup-go@v5
24+
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5
2525
with:
2626
go-version-file: 'go.mod'
2727
- name: Install Cosign
28-
uses: sigstore/[email protected]
28+
uses: sigstore/cosign-installer@4959ce089c160fddf62f7b42464195ba1a56d382 # v3.6.0
2929
- name: Run GoReleaser
30-
uses: goreleaser/goreleaser-action@v6
30+
uses: goreleaser/goreleaser-action@286f3b13b1b49da4ac219696163fb8c1c93e1200 # v6
3131
with:
3232
version: v1.12.3
3333
args: release --rm-dist --release-notes tools/release/release-note.md
3434
env:
3535
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
36-
- uses: actions/attest-build-provenance@v1
36+
- uses: actions/attest-build-provenance@d6e56129ac57db21eabf33778e4aa20e800eb5cb # v1
3737
with:
3838
subject-path: 'dist/checksums.txt'

0 commit comments

Comments
 (0)