Skip to content

Commit 771e6b7

Browse files
authored
chore: pin GitHub Actions to full-length commit SHAs (#1116)
1 parent be57112 commit 771e6b7

11 files changed

+24
-24
lines changed

.github/workflows/benchmark-build-speed.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -13,10 +13,10 @@ jobs:
1313

1414
steps:
1515
- name: Checkout Repo
16-
uses: actions/checkout@v6
16+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
1717

1818
- name: Checkout Duckduckgo
19-
uses: actions/checkout@v6
19+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2020
with:
2121
repository: duckduckgo/Android
2222
path: scripts/benchmark/Android
@@ -33,7 +33,7 @@ jobs:
3333
./benchmark-build-speed.sh
3434
3535
- name: Upload results
36-
uses: actions/upload-artifact@v7
36+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7
3737
with:
3838
name: ${{ github.sha }}
3939
path: ${{ github.workspace }}/scripts/benchmark/results/

.github/workflows/build.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,13 +17,13 @@ jobs:
1717
runs-on: ubuntu-latest
1818
steps:
1919
- name: Checkout current commit (${{ github.sha }})
20-
uses: actions/checkout@v6
20+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2121

2222
- name: Setup Gradle
2323
uses: gradle/actions/setup-gradle@0723195856401067f7a2779048b490ace7a47d7c # pin@v4
2424

2525
- name: Set up Java
26-
uses: actions/setup-java@v5
26+
uses: actions/setup-java@be666c2fcd27ec809703dec50e508c2fdc7f6654 # v5
2727
with:
2828
distribution: 'temurin'
2929
java-version: '17'
@@ -32,7 +32,7 @@ jobs:
3232
run: ./gradlew :plugin-build:assemble :sentry-kotlin-compiler-plugin:assemble
3333

3434
- name: Archive artifacts
35-
uses: actions/upload-artifact@v7
35+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7
3636
with:
3737
name: ${{ github.sha }}
3838
path: |

.github/workflows/changelog-preview.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,5 +15,5 @@ permissions:
1515

1616
jobs:
1717
changelog-preview:
18-
uses: getsentry/craft/.github/workflows/changelog-preview.yml@v2
18+
uses: getsentry/craft/.github/workflows/changelog-preview.yml@f4889d04564e47311038ecb6b910fef6b6cf1363 # v2
1919
secrets: inherit

.github/workflows/changes-in-high-risk-code.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616
high_risk_code: ${{ steps.changes.outputs.high_risk_code }}
1717
high_risk_code_files: ${{ steps.changes.outputs.high_risk_code_files }}
1818
steps:
19-
- uses: actions/checkout@v6
19+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2020
- name: Get changed files
2121
id: changes
2222
uses: dorny/paths-filter@fbd0ab8f3e69293af611ebaee6363fc25e6d187d # v4.0.1
@@ -34,7 +34,7 @@ jobs:
3434
runs-on: ubuntu-latest
3535
steps:
3636
- name: Comment on PR to notify of changes in high risk files
37-
uses: actions/github-script@v8
37+
uses: actions/github-script@ed597411d8f924073f98dfc5c65a23a2325f34cd # v8
3838
env:
3939
high_risk_code: ${{ needs.files-changed.outputs.high_risk_code_files }}
4040
with:

.github/workflows/danger.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,4 +8,4 @@ jobs:
88
danger:
99
runs-on: ubuntu-latest
1010
steps:
11-
- uses: getsentry/github-workflows/danger@v3
11+
- uses: getsentry/github-workflows/danger@26f565c05d0dd49f703d238706b775883037d76b # v3

.github/workflows/integration-tests-sentry-cli.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -16,16 +16,16 @@ jobs:
1616
env:
1717
SENTRY_URL: http://127.0.0.1:8000
1818
steps:
19-
- uses: actions/checkout@v6
20-
- uses: actions/setup-python@v6
19+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
20+
- uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6
2121
with:
2222
python-version: '3.10.5'
2323

2424
- name: Setup Gradle
2525
uses: gradle/actions/setup-gradle@0723195856401067f7a2779048b490ace7a47d7c # pin@v4
2626

2727
- name: Set up Java
28-
uses: actions/setup-java@v5
28+
uses: actions/setup-java@be666c2fcd27ec809703dec50e508c2fdc7f6654 # v5
2929
with:
3030
distribution: 'temurin'
3131
java-version: '17'

.github/workflows/pre-merge.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,10 +22,10 @@ jobs:
2222

2323
steps:
2424
- name: Checkout Repo
25-
uses: actions/checkout@v6
25+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2626

2727
- name: Setup Java Version
28-
uses: actions/setup-java@v5
28+
uses: actions/setup-java@be666c2fcd27ec809703dec50e508c2fdc7f6654 # v5
2929
with:
3030
distribution: 'temurin'
3131
java-version: '17'
@@ -38,7 +38,7 @@ jobs:
3838
run: ./gradlew preMerge --continue
3939

4040
- name: Upload Test Results
41-
uses: actions/upload-artifact@v7
41+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7
4242
with:
4343
name: test-results-${{ matrix.os }}
4444
path: plugin-build/build/reports/tests/

.github/workflows/release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@ jobs:
2626
with:
2727
app-id: ${{ vars.SENTRY_RELEASE_BOT_CLIENT_ID }}
2828
private-key: ${{ secrets.SENTRY_RELEASE_BOT_PRIVATE_KEY }}
29-
- uses: actions/checkout@v6
29+
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
3030
with:
3131
token: ${{ steps.token.outputs.token }}
3232
fetch-depth: 0

.github/workflows/test-matrix-agp-gradle.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020
matrix: ${{ steps.generate.outputs.matrix }}
2121
steps:
2222
- name: Checkout Repo
23-
uses: actions/checkout@v6
23+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2424
- name: Generate Compat Matrix
2525
id: generate
2626
run: |
@@ -57,10 +57,10 @@ jobs:
5757

5858
steps:
5959
- name: Checkout Repo
60-
uses: actions/checkout@v6
60+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
6161

6262
- name: Setup Java Version
63-
uses: actions/setup-java@v5
63+
uses: actions/setup-java@be666c2fcd27ec809703dec50e508c2fdc7f6654 # v5
6464
with:
6565
distribution: 'temurin'
6666
java-version: ${{ matrix.java }}
@@ -92,7 +92,7 @@ jobs:
9292
rm -r output
9393
9494
- name: Upload Test Results
95-
uses: actions/upload-artifact@v7
95+
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7
9696
with:
9797
name: test-results-AGP${{ matrix.agp }}-Gradle${{ matrix.gradle }}
9898
path: plugin-build/build/reports/tests/

.github/workflows/test-publish.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020

2121
steps:
2222
- name: Checkout Repo
23-
uses: actions/checkout@v6
23+
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
2424

2525
- name: Setup Gradle
2626
uses: gradle/actions/setup-gradle@0723195856401067f7a2779048b490ace7a47d7c # pin@v4

0 commit comments

Comments
 (0)