File tree Expand file tree Collapse file tree 3 files changed +8
-8
lines changed Expand file tree Collapse file tree 3 files changed +8
-8
lines changed Original file line number Diff line number Diff line change @@ -19,11 +19,11 @@ jobs:
19
19
contents : write
20
20
21
21
steps :
22
- - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
22
+ - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
23
23
with :
24
24
persist-credentials : false
25
25
26
- - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5
26
+ - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5.6.0
27
27
with :
28
28
python-version : " 3.x"
29
29
34
34
run : python -m build
35
35
36
36
- name : publish
37
- uses : pypa/gh-action-pypi-publish@76f52bc884231f62b9a034ebfe128415bbaabdfc # release/v1
37
+ uses : pypa/gh-action-pypi-publish@76f52bc884231f62b9a034ebfe128415bbaabdfc # v1.12.4
38
38
Original file line number Diff line number Diff line change @@ -20,11 +20,11 @@ jobs:
20
20
os : ["macos-latest", "windows-latest", "ubuntu-latest"]
21
21
22
22
steps :
23
- - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
23
+ - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
24
24
with :
25
25
persist-credentials : false
26
26
27
- - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5
27
+ - uses : actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5.6.0
28
28
with :
29
29
python-version : " ${{ matrix.python-version }}"
30
30
allow-prereleases : true
Original file line number Diff line number Diff line change @@ -17,20 +17,20 @@ jobs:
17
17
actions : read
18
18
steps :
19
19
- name : Checkout repository
20
- uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
20
+ uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
21
21
with :
22
22
persist-credentials : false
23
23
24
24
- name : Install the latest version of uv
25
- uses : astral-sh/setup-uv@6b9c6063abd6010835644d4c2e1bef4cf5cd0fca # v4
25
+ uses : astral-sh/setup-uv@6b9c6063abd6010835644d4c2e1bef4cf5cd0fca # v6.0.1
26
26
27
27
- name : Run zizmor 🌈
28
28
run : uvx zizmor --format sarif . > results.sarif
29
29
env :
30
30
GH_TOKEN : ${{ secrets.GITHUB_TOKEN }}
31
31
32
32
- name : Upload SARIF file
33
- uses : github/codeql-action/upload-sarif@28deaeda66b76a05916b6923827895f2b14ab387 # v3
33
+ uses : github/codeql-action/upload-sarif@28deaeda66b76a05916b6923827895f2b14ab387 # v3.28.16
34
34
with :
35
35
sarif_file : results.sarif
36
36
category : zizmor
You can’t perform that action at this time.
0 commit comments