Skip to content

Commit f6c596f

Browse files
authored
[CI] Add workflow permissions and bump actions (#86)
### πŸ“ Description - Update the Github workflows with permissions - Bump actions - Pin third-party actions to specific commit --- ### 🚨 Breaking Changes? - [ ] Yes (explain below) - [x] No <!-- If yes, describe what needs to be changed downstream: --> --- ### πŸ”οΈ Additional Notes <!-- Anything else reviewers should know (follow-up tasks, known issues, affected areas etc.). --> <!-- ### πŸ“Έ Screenshots / Logs -->
1 parent a81e869 commit f6c596f

File tree

2 files changed

+15
-9
lines changed

2 files changed

+15
-9
lines changed

β€Ž.github/workflows/ci.yamlβ€Ž

Lines changed: 9 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -16,14 +16,17 @@ name: CI
1616

1717
on: [push, pull_request]
1818

19+
permissions:
20+
contents: read
21+
1922
jobs:
2023
lint:
2124
name: Lint
2225
runs-on: ubuntu-latest
2326
steps:
24-
- uses: actions/checkout@v3
27+
- uses: actions/checkout@v6
2528

26-
- uses: actions/setup-go@v5
29+
- uses: actions/setup-go@v6
2730
with:
2831
cache: true
2932
go-version-file: "go.mod"
@@ -35,9 +38,9 @@ jobs:
3538
name: Test
3639
runs-on: ubuntu-latest
3740
steps:
38-
- uses: actions/checkout@v3
41+
- uses: actions/checkout@v6
3942

40-
- uses: actions/setup-go@v5
43+
- uses: actions/setup-go@v6
4144
with:
4245
cache: true
4346
go-version-file: "go.mod"
@@ -49,9 +52,9 @@ jobs:
4952
name: Build docker images
5053
runs-on: ubuntu-latest
5154
steps:
52-
- uses: actions/checkout@v3
55+
- uses: actions/checkout@v6
5356

54-
- uses: actions/setup-go@v5
57+
- uses: actions/setup-go@v6
5558
with:
5659
cache: true
5760
go-version-file: "go.mod"

β€Ž.github/workflows/release.yamlβ€Ž

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,9 @@ on:
2424
branches:
2525
- development
2626

27+
permissions:
28+
contents: read
29+
2730
env:
2831
AUTOSCALER_DOCKER_REPO: quay.io/v3io/autoscaler
2932
DLX_DOCKER_REPO: quay.io/v3io/dlx
@@ -50,14 +53,14 @@ jobs:
5053
run: |
5154
echo "SCALER_LABEL=${{ steps.release_info.outputs.REF_TAG }}" >> $GITHUB_ENV
5255
53-
- uses: actions/checkout@v3
56+
- uses: actions/checkout@v6
5457

55-
- uses: actions/setup-go@v5
58+
- uses: actions/setup-go@v6
5659
with:
5760
cache: true
5861
go-version-file: "go.mod"
5962

60-
- uses: azure/docker-login@v1
63+
- uses: azure/docker-login@15c4aadf093404726ab2ff205b2cdd33fa6d054c # v2
6164
with:
6265
login-server: quay.io
6366
username: ${{ secrets.QUAYIO_DOCKER_USERNAME }}

0 commit comments

Comments
Β (0)