Skip to content

Commit 96d59bc

Browse files
Update github-actions
Signed-off-by: Renovate Bot <[email protected]>
1 parent 2d46c92 commit 96d59bc

10 files changed

+43
-43
lines changed

.github/workflows/codeql.yml

+4-4
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242

4343
steps:
4444
- name: "Harden Runner"
45-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
45+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
4646
with:
4747
egress-policy: "audit"
4848

@@ -51,7 +51,7 @@ jobs:
5151

5252
# Initializes the CodeQL tools for scanning.
5353
- name: "Initialize CodeQL"
54-
uses: "github/codeql-action/init@df409f7d9260372bd5f19e5b04e83cb3c43714ae" # v3.27.9
54+
uses: "github/codeql-action/init@1b549b9259bda1cb5ddde3b41741a82a2d15a841" # v3.28.13
5555
with:
5656
languages: "${{ matrix.language }}"
5757
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -61,7 +61,7 @@ jobs:
6161
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
6262
# If this step fails, then you should remove it and run the build manually (see below)
6363
- name: "Autobuild"
64-
uses: "github/codeql-action/autobuild@df409f7d9260372bd5f19e5b04e83cb3c43714ae" # v3.27.9
64+
uses: "github/codeql-action/autobuild@1b549b9259bda1cb5ddde3b41741a82a2d15a841" # v3.28.13
6565

6666
# ℹ️ Command-line programs to run using the OS shell.
6767
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
@@ -74,6 +74,6 @@ jobs:
7474
# ./location_of_script_within_repo/buildscript.sh
7575

7676
- name: "Perform CodeQL Analysis"
77-
uses: "github/codeql-action/analyze@df409f7d9260372bd5f19e5b04e83cb3c43714ae" # v3.27.9
77+
uses: "github/codeql-action/analyze@1b549b9259bda1cb5ddde3b41741a82a2d15a841" # v3.28.13
7878
with:
7979
category: "/language:${{matrix.language}}"

.github/workflows/comment-issue.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616
issues: "write"
1717
steps:
1818
- name: "Harden Runner"
19-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
19+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
2020
with:
2121
egress-policy: "audit"
2222

.github/workflows/dependency-review.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121
runs-on: "ubuntu-latest"
2222
steps:
2323
- name: "Harden Runner"
24-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
24+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
2525
with:
2626
egress-policy: "audit"
2727

@@ -33,4 +33,4 @@ jobs:
3333
EMAIL: "github-actions[bot]@users.noreply.github.com"
3434

3535
- name: "Dependency Review"
36-
uses: "actions/dependency-review-action@3b139cfc5fae8b618d3eae3675e383bb1769c019" # v4.5.0
36+
uses: "actions/dependency-review-action@ce3cf9537a52e8119d91fd484ab5b8a807627bf8" # v4.6.0

.github/workflows/lint.yml

+20-20
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
package_json_lintable: "${{ steps.changes.outputs.package_json_lintable }}"
3636
steps:
3737
- name: "Harden Runner"
38-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
38+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
3939
with:
4040
egress-policy: "audit"
4141

@@ -60,7 +60,7 @@ jobs:
6060
runs-on: "ubuntu-latest"
6161
steps:
6262
- name: "Harden Runner"
63-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
63+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
6464
with:
6565
egress-policy: "audit"
6666

@@ -77,7 +77,7 @@ jobs:
7777

7878
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
7979
id: "setSHAs"
80-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
80+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
8181

8282
- name: "Setup resources and environment"
8383
id: "setup"
@@ -88,7 +88,7 @@ jobs:
8888
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
8989
- name: "Get changed files"
9090
id: "files"
91-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
91+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
9292
with:
9393
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
9494
base_sha: "${{ steps.setSHAs.outputs.base }}"
@@ -111,7 +111,7 @@ jobs:
111111
runs-on: "ubuntu-latest"
112112
steps:
113113
- name: "Harden Runner"
114-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
114+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
115115
with:
116116
egress-policy: "audit"
117117

@@ -128,7 +128,7 @@ jobs:
128128

129129
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
130130
id: "setSHAs"
131-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
131+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
132132

133133
- name: "Setup resources and environment"
134134
id: "setup"
@@ -140,7 +140,7 @@ jobs:
140140
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
141141
- name: "Get changed files"
142142
id: "files"
143-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
143+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
144144
with:
145145
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
146146
base_sha: "${{ steps.setSHAs.outputs.base }}"
@@ -163,7 +163,7 @@ jobs:
163163
runs-on: "ubuntu-latest"
164164
steps:
165165
- name: "Harden Runner"
166-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
166+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
167167
with:
168168
egress-policy: "audit"
169169

@@ -180,7 +180,7 @@ jobs:
180180

181181
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
182182
id: "setSHAs"
183-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
183+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
184184

185185
- name: "Setup resources and environment"
186186
id: "setup"
@@ -191,7 +191,7 @@ jobs:
191191
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
192192
- name: "Get changed files"
193193
id: "files"
194-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
194+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
195195
with:
196196
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
197197
base_sha: "${{ steps.setSHAs.outputs.base }}"
@@ -214,7 +214,7 @@ jobs:
214214
runs-on: "ubuntu-latest"
215215
steps:
216216
- name: "Harden Runner"
217-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
217+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
218218
with:
219219
egress-policy: "audit"
220220

@@ -231,7 +231,7 @@ jobs:
231231

232232
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
233233
id: "setSHAs"
234-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
234+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
235235

236236
- name: "Setup resources and environment"
237237
id: "setup"
@@ -242,7 +242,7 @@ jobs:
242242
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
243243
- name: "Get changed files"
244244
id: "files"
245-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
245+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
246246
with:
247247
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
248248
base_sha: "${{ steps.setSHAs.outputs.base }}"
@@ -265,7 +265,7 @@ jobs:
265265
runs-on: "ubuntu-latest"
266266
steps:
267267
- name: "Harden Runner"
268-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
268+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
269269
with:
270270
egress-policy: "audit"
271271

@@ -289,7 +289,7 @@ jobs:
289289
runs-on: "ubuntu-latest"
290290
steps:
291291
- name: "Harden Runner"
292-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
292+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
293293
with:
294294
egress-policy: "audit"
295295

@@ -314,7 +314,7 @@ jobs:
314314
runs-on: "ubuntu-latest"
315315
steps:
316316
- name: "Harden Runner"
317-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
317+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
318318
with:
319319
egress-policy: "audit"
320320

@@ -325,14 +325,14 @@ jobs:
325325
GIT_AUTHOR_NAME: "GitHub Actions Shell"
326326
EMAIL: "github-actions[bot]@users.noreply.github.com"
327327

328-
- uses: "pnpm/action-setup@fe02b34f77f8bc703788d5817da081398fad5dd2" # v4.0.0
328+
- uses: "pnpm/action-setup@a7487c7e89a18df4991f7f222e4898a00d66ddda" # v4.1.0
329329
with:
330330
run_install: false
331331

332332
- name: "Use Node.js 18.x"
333-
uses: "actions/setup-node@39370e3970a6d050c480ffad4ff0ed4d3fdee5af" # v4.1.0
333+
uses: "actions/setup-node@cdca7365b2dadb8aad0a33bc7601856ffabcc48e" # v4.3.0
334334
with:
335-
node-version: "18.x"
335+
node-version: "18.20.8"
336336
cache: "pnpm"
337337

338338
- name: "Verify the integrity of provenance attestations and registry signatures for installed dependencies"
@@ -364,7 +364,7 @@ jobs:
364364
# If any jobs we depend on fail, we will fail since this is a required check
365365
# NOTE: A timeout is considered a failure
366366
- name: "Harden Runner"
367-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
367+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
368368
with:
369369
egress-policy: "audit"
370370

.github/workflows/lock-file-maintenance.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121

2222
steps:
2323
- name: "Harden Runner"
24-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
24+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
2525
with:
2626
egress-policy: "audit"
2727

@@ -48,7 +48,7 @@ jobs:
4848

4949
- name: "Commit lock file"
5050
if: "success()"
51-
uses: "stefanzweifel/git-auto-commit-action@8621497c8c39c72f3e2a999a26b4ca1b5058a842" # v5.0.1
51+
uses: "stefanzweifel/git-auto-commit-action@e348103e9026cc0eee72ae06630dbe30c8bf7a79" # v5.1.0
5252
with:
5353
file_pattern: "pnpm-lock.yaml"
5454
commit_message: "chore: updated lock file [ci skip]"

.github/workflows/preview-release.yaml

+3-3
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@ jobs:
2626

2727
steps:
2828
- name: "Harden Runner"
29-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
29+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
3030
with:
3131
egress-policy: "audit"
3232

@@ -43,7 +43,7 @@ jobs:
4343

4444
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
4545
id: "setSHAs"
46-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
46+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
4747

4848
- name: "Setup resources and environment"
4949
id: "setup"
@@ -55,7 +55,7 @@ jobs:
5555
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
5656
- name: "Get changed files"
5757
id: "files"
58-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
58+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
5959
with:
6060
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
6161
base_sha: "${{ steps.setSHAs.outputs.base }}"

.github/workflows/require-allow-edits.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616

1717
steps:
1818
- name: "Harden Runner"
19-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
19+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
2020
with:
2121
egress-policy: "audit"
2222

.github/workflows/scorecards.yml

+4-4
Original file line numberDiff line numberDiff line change
@@ -33,7 +33,7 @@ jobs:
3333

3434
steps:
3535
- name: "Harden Runner"
36-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
36+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
3737
with:
3838
egress-policy: "audit"
3939

@@ -43,7 +43,7 @@ jobs:
4343
persist-credentials: false
4444

4545
- name: "Run analysis"
46-
uses: "ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46" # v2.4.0
46+
uses: "ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186" # v2.4.1
4747
with:
4848
results_file: "results.sarif"
4949
results_format: "sarif"
@@ -65,14 +65,14 @@ jobs:
6565
# Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
6666
# format to the repository Actions tab.
6767
- name: "Upload artifact"
68-
uses: "actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08" # v4.6.0
68+
uses: "actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02" # v4.6.2
6969
with:
7070
name: "SARIF file"
7171
path: "results.sarif"
7272
retention-days: 5
7373

7474
# Upload the results to GitHub's code scanning dashboard.
7575
- name: "Upload to code-scanning"
76-
uses: "github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae" # v3.27.9
76+
uses: "github/codeql-action/upload-sarif@1b549b9259bda1cb5ddde3b41741a82a2d15a841" # v3.28.13
7777
with:
7878
sarif_file: "results.sarif"

.github/workflows/semantic-release.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ jobs:
2929

3030
steps:
3131
- name: "Harden Runner"
32-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
32+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
3333
with:
3434
egress-policy: "audit"
3535

.github/workflows/test.yml

+5-5
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ jobs:
3232
codecov: "${{ steps.changes.outputs.codecov }}"
3333
steps:
3434
- name: "Harden Runner"
35-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
35+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
3636
with:
3737
egress-policy: "audit"
3838

@@ -72,7 +72,7 @@ jobs:
7272
NODE: "${{ matrix.node_version }}"
7373
steps:
7474
- name: "Harden Runner"
75-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
75+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
7676
with:
7777
egress-policy: "audit"
7878

@@ -89,7 +89,7 @@ jobs:
8989

9090
- name: "Derive appropriate SHAs for base and head for `nx affected` commands"
9191
id: "setSHAs"
92-
uses: "nrwl/nx-set-shas@e2e6dc8bce4b0387a05eb687735c39c41580b792" # v4
92+
uses: "nrwl/nx-set-shas@dbe0650947e5f2c81f59190a38512cf49126fe6b" # v4
9393

9494
- name: "Setup resources and environment"
9595
id: "setup"
@@ -115,7 +115,7 @@ jobs:
115115
# Temporary solution until Nx solve this https://github.com/nrwl/nx/issues/22259
116116
- name: "Get changed files"
117117
id: "files"
118-
uses: "tj-actions/changed-files@bab30c2299617f6615ec02a68b9a40d10bd21366" # v45.0.5
118+
uses: "tj-actions/changed-files@a284dc1814e3fd07f2e34267fc8f81227ed29fb8" # v45.0.9
119119
with:
120120
files_ignore_from_source_file: ".github/ignore-files-for-nx-affected.yml"
121121
base_sha: "${{ steps.setSHAs.outputs.base }}"
@@ -165,7 +165,7 @@ jobs:
165165
# If any jobs we depend on fail, we will fail since this is a required check
166166
# NOTE: A timeout is considered a failure
167167
- name: "Harden Runner"
168-
uses: "step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f" # v2.10.2
168+
uses: "step-security/harden-runner@c6295a65d1254861815972266d5933fd6e532bdf" # v2.11.1
169169
with:
170170
egress-policy: "audit"
171171

0 commit comments

Comments
 (0)