Skip to content

Commit 9d45ca8

Browse files
chore(deps): update all non-major dependencies
1 parent d22f989 commit 9d45ca8

File tree

3 files changed

+30
-30
lines changed

3 files changed

+30
-30
lines changed

.github/workflows/standard-build.yaml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -118,12 +118,12 @@ jobs:
118118
image-slug: ${{ steps.slugify-image.outputs.slug }}
119119
steps:
120120
- name: Harden Runner
121-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
121+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
122122
with:
123123
egress-policy: audit # change to 'egress-policy: block' after couple of runs
124124

125125
- name: Checkout
126-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
126+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
127127
with:
128128
persist-credentials: false
129129

@@ -147,7 +147,7 @@ jobs:
147147
cache-binary: false
148148

149149
- name: Set up QEMU
150-
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3.6.0
150+
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
151151

152152
- name: Login to GitHub Container Registry
153153
uses: docker/login-action@5e57cd118135c172c3672efd75eb46360885c0ef # v3.6.0
@@ -169,7 +169,7 @@ jobs:
169169
- name: Container meta for the test image
170170
id: tests_image_meta
171171
if: ${{ inputs.enable-build-test-layer == true }}
172-
uses: docker/metadata-action@c1e51972afc2121e065aed6d45c65596fe445f3f # v5.8.0
172+
uses: docker/metadata-action@c299e40c65443455700f0fdfc63efafe5b349051 # v5.10.0
173173
with:
174174
images: |
175175
${{ inputs.image }}-test
@@ -349,7 +349,7 @@ jobs:
349349
packages: write
350350
steps:
351351
- name: Harden Runner
352-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
352+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
353353
with:
354354
egress-policy: audit # change to 'egress-policy: block' after couple of runs
355355

@@ -382,7 +382,7 @@ jobs:
382382
packages: write
383383
steps:
384384
- name: Harden Runner
385-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
385+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
386386
with:
387387
egress-policy: audit # change to 'egress-policy: block' after couple of runs
388388

@@ -421,7 +421,7 @@ jobs:
421421
contents: write
422422
steps:
423423
- name: Harden Runner
424-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
424+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
425425
with:
426426
egress-policy: audit # change to 'egress-policy: block' after couple of runs
427427

@@ -436,7 +436,7 @@ jobs:
436436
cosign download attestation --output-file="$IMAGE_SLUG.intoto.jsonl" "$IMAGE"
437437
438438
- name: upload assets to release
439-
uses: softprops/action-gh-release@6da8fa9354ddfdc4aeace5fc48d7f679b5214090 # v2.4.1
439+
uses: softprops/action-gh-release@5be0e66d93ac7ed76da52eca8bb058f665c3a5fe # v2.4.2
440440
with:
441441
files: |
442442
*.intoto.jsonl
@@ -451,7 +451,7 @@ jobs:
451451
contents: write
452452
steps:
453453
- name: Harden Runner
454-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
454+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
455455
with:
456456
egress-policy: audit # change to 'egress-policy: block' after couple of runs
457457

@@ -465,7 +465,7 @@ jobs:
465465
run: ls -R .
466466

467467
- name: upload assets to release
468-
uses: softprops/action-gh-release@6da8fa9354ddfdc4aeace5fc48d7f679b5214090 # v2.4.1
468+
uses: softprops/action-gh-release@5be0e66d93ac7ed76da52eca8bb058f665c3a5fe # v2.4.2
469469
if: ${{ startsWith(github.ref, 'refs/tags/') }}
470470
with:
471471
fail_on_unmatched_files: true

.github/workflows/standard-lint.yaml

Lines changed: 16 additions & 16 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ defaults:
99

1010
env:
1111
# renovate: datasource=pypi depName=zizmor
12-
ZIZMOR_VERSION: 1.15.2
12+
ZIZMOR_VERSION: 1.17.0
1313

1414
on:
1515
workflow_call:
@@ -69,12 +69,12 @@ jobs:
6969
pull-requests: write
7070
steps:
7171
- name: Harden Runner
72-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
72+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
7373
with:
7474
egress-policy: audit # change to 'egress-policy: block' after couple of runs
7575

7676
- name: Checkout Code
77-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
77+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
7878
with:
7979
persist-credentials: false
8080

@@ -103,7 +103,7 @@ jobs:
103103
104104
- name: Upload MegaLinter scan results to GitHub Security tab
105105
if: ${{ always() }}
106-
uses: github/codeql-action/upload-sarif@16140ae1a102900babc80a33c44059580f687047 # v4.30.9
106+
uses: github/codeql-action/upload-sarif@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5
107107
with:
108108
sarif_file: "megalinter-reports/megalinter-report.sarif"
109109

@@ -117,11 +117,11 @@ jobs:
117117
contents: read
118118
steps:
119119
- name: Checkout Code
120-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
120+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
121121
with:
122122
persist-credentials: false
123123
- name: Dependency Review
124-
uses: actions/dependency-review-action@40c09b7dc99638e5ddb0bfd91c1673effc064d8a # v4.8.1
124+
uses: actions/dependency-review-action@3c4e3dcb1aa7874d2c16be7d79418e9b7efd6261 # v4.8.2
125125

126126
gradle-wrapper-validation:
127127
name: validate gradle wrapper
@@ -131,7 +131,7 @@ jobs:
131131
contents: read
132132
steps:
133133
- name: Checkout Code
134-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
134+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
135135
with:
136136
persist-credentials: false
137137
- name: Validate Gradle Wrapper
@@ -145,7 +145,7 @@ jobs:
145145
contents: read
146146
steps:
147147
- name: Checkout Code
148-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
148+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
149149
with:
150150
fetch-depth: 1
151151
persist-credentials: false
@@ -176,7 +176,7 @@ jobs:
176176
language: ${{ fromJSON(inputs.codeql-languages) }}
177177
steps:
178178
- name: Checkout Code
179-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
179+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
180180
with:
181181
persist-credentials: false
182182

@@ -190,13 +190,13 @@ jobs:
190190

191191
- name: Set up .NET
192192
if: ${{ matrix.language == 'csharp' }}
193-
uses: actions/setup-dotnet@d4c94342e560b34958eacfc5d055d21461ed1c5d # v5.0.0
193+
uses: actions/setup-dotnet@2016bd2012dba4e32de620c46fe006a3ac9f0602 # v5.0.1
194194
with:
195195
dotnet-version: ${{ inputs.dotnet-version }}
196196

197197
# Initializes the CodeQL tools for scanning.
198198
- name: Initialize CodeQL
199-
uses: github/codeql-action/init@16140ae1a102900babc80a33c44059580f687047 # v4.30.9
199+
uses: github/codeql-action/init@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5
200200
with:
201201
languages: ${{ matrix.language }}
202202
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -209,7 +209,7 @@ jobs:
209209
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
210210
# If this step fails, then you should remove it and run the build manually (see below)
211211
- name: Autobuild
212-
uses: github/codeql-action/autobuild@16140ae1a102900babc80a33c44059580f687047 # v4.30.9
212+
uses: github/codeql-action/autobuild@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5
213213

214214
# ℹ️ Command-line programs to run using the OS shell.
215215
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
@@ -222,7 +222,7 @@ jobs:
222222
# ./location_of_script_within_repo/buildscript.sh
223223

224224
- name: Perform CodeQL Analysis
225-
uses: github/codeql-action/analyze@16140ae1a102900babc80a33c44059580f687047 # v4.30.9
225+
uses: github/codeql-action/analyze@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5
226226
with:
227227
category: "/language:${{matrix.language}}"
228228

@@ -236,12 +236,12 @@ jobs:
236236
actions: read
237237
steps:
238238
- name: Checkout Code
239-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
239+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
240240
with:
241241
persist-credentials: false
242242

243243
- name: Install the latest version of uv
244-
uses: astral-sh/setup-uv@2ddd2b9cb38ad8efd50337e8ab201519a34c9f24 # v7.1.1
244+
uses: astral-sh/setup-uv@1e862dfacbd1d6d858c55d9b792c756523627244 # v7.1.4
245245
with:
246246
enable-cache: false
247247

@@ -262,7 +262,7 @@ jobs:
262262
ZIZMOR_CONFIG: /tmp/zizmor-standard-lint-defaults.yaml
263263

264264
- name: Upload SARIF file
265-
uses: github/codeql-action/upload-sarif@16140ae1a102900babc80a33c44059580f687047 # v4.30.9
265+
uses: github/codeql-action/upload-sarif@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5
266266
with:
267267
sarif_file: results.sarif
268268
category: zizmor

.github/workflows/standard-release.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -39,11 +39,11 @@ jobs:
3939
issues: write
4040
steps:
4141
- name: Harden Runner
42-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
42+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
4343
with:
4444
egress-policy: audit # change to 'egress-policy: block' after couple of runs
4545

46-
- uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
46+
- uses: actions/create-github-app-token@7e473efe3cb98aa54f8d4bac15400b15fad77d94 # v2.2.0
4747
id: app-token
4848
if: ${{ inputs.use-app-token }}
4949
with:
@@ -52,7 +52,7 @@ jobs:
5252
owner: ${{ github.repository_owner }}
5353

5454
- name: Checkout
55-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
55+
uses: actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
5656
with:
5757
# via <https://stackoverflow.com/questions/74744498/github-pushing-to-protected-branches-with-fine-grained-token/76550826#76550826>
5858
persist-credentials: false
@@ -63,7 +63,7 @@ jobs:
6363
node-version: 22
6464

6565
- name: Semantic Release
66-
uses: cycjimmy/semantic-release-action@9cc899c47e6841430bbaedb43de1560a568dfd16 # v5.0.0
66+
uses: cycjimmy/semantic-release-action@ba330626c4750c19d8299de843f05c7aa5574f62 # v5.0.2
6767
with:
6868
extra_plugins: |
6969
conventional-changelog-conventionalcommits@8.0.0

0 commit comments

Comments
 (0)