Skip to content

Commit 6c980a6

Browse files
[deps]: Update gh minor
1 parent 6c572e1 commit 6c980a6

File tree

5 files changed

+16
-16
lines changed

5 files changed

+16
-16
lines changed

.github/workflows/build.yml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616

1717
steps:
1818
- name: Check out repo
19-
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
19+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0
2020

2121
- name: Set up .NET
2222
uses: actions/setup-dotnet@d4c94342e560b34958eacfc5d055d21461ed1c5d # v5.0.0
@@ -33,7 +33,7 @@ jobs:
3333
ls -atlh ../../../
3434
3535
- name: Upload project artifact
36-
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
36+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
3737
with:
3838
name: KeyConnector.zip
3939
path: src/KeyConnector/KeyConnector.zip
@@ -51,7 +51,7 @@ jobs:
5151
_PROJECT_NAME: key-connector
5252
steps:
5353
- name: Check out repo
54-
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
54+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0
5555

5656
- name: Log in to Azure
5757
uses: bitwarden/gh-actions/azure-login@main
@@ -90,7 +90,7 @@ jobs:
9090
9191
- name: Build Docker image
9292
id: build-docker
93-
uses: docker/build-push-action@4f58ea79222b3b9dc2c8bbdd6debcef730109a75 # v6.9.0
93+
uses: docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18.0
9494
with:
9595
context: src/KeyConnector
9696
file: src/KeyConnector/Dockerfile
@@ -100,7 +100,7 @@ jobs:
100100

101101
- name: Install Cosign
102102
if: github.event_name != 'pull_request' && github.ref == 'refs/heads/main'
103-
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0
103+
uses: sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
104104

105105
- name: Sign image with Cosign
106106
if: github.event_name != 'pull_request' && github.ref == 'refs/heads/main'
@@ -117,7 +117,7 @@ jobs:
117117
118118
- name: Scan Docker image
119119
id: container-scan
120-
uses: anchore/scan-action@2c901ab7378897c01b8efaa2d0c9bf519cc64b9e # v6.2.0
120+
uses: anchore/scan-action@1638637db639e0ade3258b51db49a9a137574c3e # v6.5.1
121121
with:
122122
image: ${{ steps.image-name.outputs.name }}
123123
fail-build: false
@@ -127,7 +127,7 @@ jobs:
127127
uses: bitwarden/gh-actions/azure-logout@main
128128

129129
- name: Upload Grype results to GitHub
130-
uses: github/codeql-action/upload-sarif@f779452ac5af1c261dce0346a8f964149f49322b # v3.26.13
130+
uses: github/codeql-action/upload-sarif@192325c86100d080feab897ff886c34abd4c83a3 # v3.30.3
131131
with:
132132
sarif_file: ${{ steps.container-scan.outputs.sarif }}
133133
sha: ${{ contains(github.event_name, 'pull_request') && github.event.pull_request.head.sha || github.sha }}

.github/workflows/publish.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -52,7 +52,7 @@ jobs:
5252
packages: write
5353
steps:
5454
- name: Install Cosign
55-
uses: sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
55+
uses: sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
5656

5757
- name: Log in to Azure
5858
uses: bitwarden/gh-actions/azure-login@main
@@ -65,7 +65,7 @@ jobs:
6565
run: az acr login -n ${_AZ_REGISTRY%.azurecr.io}
6666

6767
- name: Login to GitHub Container Registry
68-
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0
68+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # v3.5.0
6969
with:
7070
registry: ghcr.io
7171
username: ${{ github.actor }}

.github/workflows/release.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
fi
3636
3737
- name: Check out repo
38-
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
38+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0
3939

4040
- name: Check release version
4141
id: version
@@ -60,7 +60,7 @@ jobs:
6060
contents: write
6161
steps:
6262
- name: Create release
63-
uses: ncipollo/release-action@2c591bcc8ecdcd2db72b97d6147f871fcd833ba5 # v1.14.0
63+
uses: ncipollo/release-action@b7eabc95ff50cbeeedec83973935c8f306dfcd0b # v1.20.0
6464
with:
6565
commit: ${{ github.sha }}
6666
tag: "v${{ needs.setup.outputs.release_version }}"

.github/workflows/test.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020

2121
steps:
2222
- name: Check out repo
23-
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
23+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0
2424

2525
- name: Set up .NET
2626
uses: actions/setup-dotnet@d4c94342e560b34958eacfc5d055d21461ed1c5d # v5.0.0
@@ -38,4 +38,4 @@ jobs:
3838
fail-on-error: true
3939

4040
- name: Upload to codecov.io
41-
uses: codecov/codecov-action@1e68e06f1dbfde0e4cefc87efeba9e4643565303 # v5.1.2
41+
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1

.github/workflows/version-bump.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ jobs:
3939
fi
4040
4141
- name: Check out repo
42-
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
42+
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0
4343

4444
- name: Log in to Azure
4545
uses: bitwarden/gh-actions/azure-login@main
@@ -67,7 +67,7 @@ jobs:
6767
uses: bitwarden/gh-actions/azure-logout@main
6868

6969
- name: Import GPG key
70-
uses: crazy-max/ghaction-import-gpg@01dd5d3ca463c7f10f7f4f7b4f177225ac661ee4 # v6.1.0
70+
uses: crazy-max/ghaction-import-gpg@e89d40939c28e39f97cf32126055eeae86ba74ec # v6.3.0
7171
with:
7272
gpg_private_key: ${{ steps.retrieve-secrets.outputs.github-gpg-private-key }}
7373
passphrase: ${{ steps.retrieve-secrets.outputs.github-gpg-private-key-passphrase }}
@@ -171,7 +171,7 @@ jobs:
171171
run: git push -u origin $PR_BRANCH
172172

173173
- name: Generate GH App token
174-
uses: actions/create-github-app-token@df432ceedc7162793a195dd1713ff69aefc7379e # v2.0.6
174+
uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
175175
id: app-token
176176
with:
177177
app-id: ${{ steps.get-kv-secrets.outputs.BW-GHAPP-ID }}

0 commit comments

Comments
 (0)