From 6d40a77ca645212ad7a58eabc7905ca6358f7dc5 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Mon, 20 Jan 2025 05:44:15 +0000 Subject: [PATCH] chore(deps): update github-actions --- .github/workflows/ci.yaml | 6 +++--- .github/workflows/daily-trivy-scan.yaml | 2 +- .github/workflows/scorecard.yaml | 4 ++-- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/.github/workflows/ci.yaml b/.github/workflows/ci.yaml index 917ff84..e3a9240 100644 --- a/.github/workflows/ci.yaml +++ b/.github/workflows/ci.yaml @@ -13,7 +13,7 @@ permissions: jobs: build: - uses: chgl/.github/.github/workflows/standard-build.yaml@a70808072e4df6003d21ea0255938271aa6b535d # v1.10.5 + uses: chgl/.github/.github/workflows/standard-build.yaml@ae4d75161a7ccd594230e3f2b8b9a0d135b670b6 # v1.10.6 permissions: contents: write id-token: write @@ -31,7 +31,7 @@ jobs: github-token: ${{ secrets.GITHUB_TOKEN }} lint: - uses: chgl/.github/.github/workflows/standard-lint.yaml@a70808072e4df6003d21ea0255938271aa6b535d # v1.10.5 + uses: chgl/.github/.github/workflows/standard-lint.yaml@ae4d75161a7ccd594230e3f2b8b9a0d135b670b6 # v1.10.6 permissions: contents: read pull-requests: write @@ -98,7 +98,7 @@ jobs: dotnet test src/FhirServerExporter.Tests.E2E/ release: - uses: chgl/.github/.github/workflows/standard-release.yaml@a70808072e4df6003d21ea0255938271aa6b535d # v1.10.5 + uses: chgl/.github/.github/workflows/standard-release.yaml@ae4d75161a7ccd594230e3f2b8b9a0d135b670b6 # v1.10.6 needs: - build - test diff --git a/.github/workflows/daily-trivy-scan.yaml b/.github/workflows/daily-trivy-scan.yaml index 6d1be02..fd13096 100644 --- a/.github/workflows/daily-trivy-scan.yaml +++ b/.github/workflows/daily-trivy-scan.yaml @@ -23,7 +23,7 @@ jobs: severity: "CRITICAL,HIGH" - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0 + uses: github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1 if: always() with: sarif_file: "trivy-results.sarif" diff --git a/.github/workflows/scorecard.yaml b/.github/workflows/scorecard.yaml index 51d1711..5dad934 100644 --- a/.github/workflows/scorecard.yaml +++ b/.github/workflows/scorecard.yaml @@ -60,7 +60,7 @@ jobs: # Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF # format to the repository Actions tab. - name: "Upload artifact" - uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b # v4.5.0 + uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0 with: name: SARIF file path: results.sarif @@ -68,6 +68,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0 + uses: github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1 with: sarif_file: results.sarif