File tree Expand file tree Collapse file tree 2 files changed +4
-4
lines changed Expand file tree Collapse file tree 2 files changed +4
-4
lines changed Original file line number Diff line number Diff line change 6868 key : ${{ runner.os }}-go-${{ hashFiles('**/go.sum') }}
6969 restore-keys : |
7070 ${{ runner.os }}-go-
71- - uses : sigstore/cosign-installer@c56c2d3e59e4281cc41dea2217323ba5694b171e # v3.8.0
71+ - uses : sigstore/cosign-installer@d7d6bc7722e3daa8354c50bcb52f4837da5e9b6a # v3.8.1
7272 - uses : anchore/sbom-action/download-syft@f325610c9f50a54015d37c8d16cb3b0e2c8f4de0 # v0.18.0
7373 - name : Run GoReleaser
7474 uses : goreleaser/goreleaser-action@90a3faa9d0182683851fbfa97ca1a2cb983bfca3 # v6.2.1
Original file line number Diff line number Diff line change 2929 persist-credentials : false
3030
3131 - name : " Run analysis"
32- uses : ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
32+ uses : ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 # v2.4.1
3333 with :
3434 results_file : results.sarif
3535 results_format : sarif
@@ -45,14 +45,14 @@ jobs:
4545 # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
4646 # format to the repository Actions tab.
4747 - name : " Upload artifact"
48- uses : actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
48+ uses : actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
4949 with :
5050 name : SARIF file
5151 path : results.sarif
5252 retention-days : 5
5353
5454 # Upload the results to GitHub's code scanning dashboard.
5555 - name : " Upload to code-scanning"
56- uses : github/codeql-action/upload-sarif@9e8d0789d4a0fa9ceb6b1738f7e269594bdd67f0 # v3.28.9
56+ uses : github/codeql-action/upload-sarif@b56ba49b26e50535fa1e7f7db0f4f7b4bf65d80d # v3.28.10
5757 with :
5858 sarif_file : results.sarif
You can’t perform that action at this time.
0 commit comments