diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 65dce2f3..0e539977 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -28,14 +28,14 @@ jobs: uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 - name: Initialize CodeQL - uses: github/codeql-action/init@b5ebac6f4c00c8ccddb7cdcd45fdb248329f808a # v3.32.2 + uses: github/codeql-action/init@f5c2471be782132e47a6e6f9c725e56730d6e9a3 # v3.32.3 with: languages: ${{ matrix.language }} - name: Autobuild - uses: github/codeql-action/autobuild@b5ebac6f4c00c8ccddb7cdcd45fdb248329f808a # v3.32.2 + uses: github/codeql-action/autobuild@f5c2471be782132e47a6e6f9c725e56730d6e9a3 # v3.32.3 - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@b5ebac6f4c00c8ccddb7cdcd45fdb248329f808a # v3.32.2 + uses: github/codeql-action/analyze@f5c2471be782132e47a6e6f9c725e56730d6e9a3 # v3.32.3 with: category: "/language:${{ matrix.language }}" \ No newline at end of file diff --git a/.github/workflows/docker-vulnerability-scan.yml b/.github/workflows/docker-vulnerability-scan.yml index c9dedb2d..c9022ed4 100644 --- a/.github/workflows/docker-vulnerability-scan.yml +++ b/.github/workflows/docker-vulnerability-scan.yml @@ -28,7 +28,7 @@ jobs: - name: Login to Staging Amazon ECR id: login-ecr-staging - uses: aws-actions/amazon-ecr-login@bb3fdaaaf1aae5e6758d24b073b79052f3cda0a2 + uses: aws-actions/amazon-ecr-login@fe725d47d3009d901b44f3df285a6dc9d438e63a - name: Docker vulnerability scan uses: cds-snc/security-tools/.github/actions/docker-scan@5a93d1deec72d4cb2737cb8418364fedba1c695c # v3.2.1 diff --git a/.github/workflows/prod-docker-build-push.yml b/.github/workflows/prod-docker-build-push.yml index b8d7b111..c873ffeb 100644 --- a/.github/workflows/prod-docker-build-push.yml +++ b/.github/workflows/prod-docker-build-push.yml @@ -34,7 +34,7 @@ jobs: - name: Login to Amazon ECR id: login-ecr - uses: aws-actions/amazon-ecr-login@bb3fdaaaf1aae5e6758d24b073b79052f3cda0a2 + uses: aws-actions/amazon-ecr-login@fe725d47d3009d901b44f3df285a6dc9d438e63a - name: Tag images env: diff --git a/.github/workflows/staging-docker-build-push.yml b/.github/workflows/staging-docker-build-push.yml index 0d5bd863..020fc049 100644 --- a/.github/workflows/staging-docker-build-push.yml +++ b/.github/workflows/staging-docker-build-push.yml @@ -37,7 +37,7 @@ jobs: - name: Login to Staging Amazon ECR id: login-ecr-staging - uses: aws-actions/amazon-ecr-login@bb3fdaaaf1aae5e6758d24b073b79052f3cda0a2 + uses: aws-actions/amazon-ecr-login@fe725d47d3009d901b44f3df285a6dc9d438e63a - name: Tag Images for Staging env: