Skip to content

Commit 9cc4477

Browse files
authored
chore(deps): pin dependencies (#702)
Co-authored-by: descope[bot] <107609351+descope[bot]@users.noreply.github.com>
1 parent 007037e commit 9cc4477

File tree

2 files changed

+16
-16
lines changed

2 files changed

+16
-16
lines changed

.github/workflows/ci.yml

+14-14
Original file line numberDiff line numberDiff line change
@@ -18,8 +18,8 @@ jobs:
1818
runs-on: ubuntu-latest
1919
steps:
2020
- name: Checkout code
21-
uses: actions/checkout@v4
22-
- uses: actions/setup-node@v4
21+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
22+
- uses: actions/setup-node@1d0ff469b7ec7b3cb9d8673fde0c81c44821de2a # v4
2323
with:
2424
cache: 'yarn'
2525
node-version-file: .nvmrc
@@ -36,8 +36,8 @@ jobs:
3636
runs-on: ubuntu-latest
3737
steps:
3838
- name: Checkout code
39-
uses: actions/checkout@v4
40-
- uses: actions/setup-node@v4
39+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
40+
- uses: actions/setup-node@1d0ff469b7ec7b3cb9d8673fde0c81c44821de2a # v4
4141
with:
4242
cache: 'yarn'
4343
node-version-file: .nvmrc
@@ -60,8 +60,8 @@ jobs:
6060
checks: write
6161
steps:
6262
- name: Checkout code
63-
uses: actions/checkout@v4
64-
- uses: actions/setup-node@v4
63+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
64+
- uses: actions/setup-node@1d0ff469b7ec7b3cb9d8673fde0c81c44821de2a # v4
6565
with:
6666
cache: 'yarn'
6767
node-version-file: .nvmrc
@@ -73,7 +73,7 @@ jobs:
7373
- name: Testing
7474
run: yarn run test
7575
- name: Coverage check
76-
uses: devmasx/[email protected]
76+
uses: devmasx/coverage-check-action@4a754f8957c6824e0a0d44bf9168fdbdf47e7e2f # v1.2.0
7777
with:
7878
type: lcov
7979
min_coverage: 77
@@ -85,8 +85,8 @@ jobs:
8585
runs-on: ubuntu-latest
8686
steps:
8787
- name: Checkout code
88-
uses: actions/checkout@v4
89-
- uses: actions/setup-node@v4
88+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
89+
- uses: actions/setup-node@1d0ff469b7ec7b3cb9d8673fde0c81c44821de2a # v4
9090
with:
9191
cache: 'yarn'
9292
node-version-file: .nvmrc
@@ -116,12 +116,12 @@ jobs:
116116
IMAGE_NAME: auth-hosting
117117
steps:
118118
- name: Checkout code
119-
uses: actions/checkout@v4
119+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
120120
- name: Create docker ignore
121121
run: |
122122
cp .gitignore .dockerignore
123123
- name: Login to GHCR
124-
uses: docker/login-action@v3
124+
uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3
125125
with:
126126
registry: ghcr.io
127127
username: ${{ github.repository_owner }}
@@ -134,7 +134,7 @@ jobs:
134134
role-session-name: ${{ env.IMAGE_NAME }}-${{ github.run_number }}@${{ github.run_attempt }}
135135
- name: Login to Amazon ECR
136136
id: login-ecr
137-
uses: aws-actions/amazon-ecr-login@v2
137+
uses: aws-actions/amazon-ecr-login@062b18b96a7aff071d4dc91bc00c4c1a7945b076 # v2
138138
- name: Extract metadata for the Docker image
139139
id: meta
140140
uses: descope/.github/.github/actions/docker/metadata@main
@@ -143,9 +143,9 @@ jobs:
143143
ghcr.io/descope/${{ env.IMAGE_NAME }}
144144
${{ steps.login-ecr.outputs.registry }}/descope/${{ env.IMAGE_NAME }}
145145
- name: Set up Docker Buildx
146-
uses: docker/setup-buildx-action@v3
146+
uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3
147147
- name: Build and push
148-
uses: docker/build-push-action@v5
148+
uses: docker/build-push-action@ca052bb54ab0790a636c9b5f226502c73d547a25 # v5
149149
with:
150150
platforms: linux/amd64
151151
context: .

Dockerfile

+2-2
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# syntax=docker/dockerfile:1
1+
# syntax=docker/dockerfile:1@sha256:93bfd3b68c109427185cd78b4779fc82b484b0b7618e36d0f104d4d801e66d25
22
ARG NODE_VERSION=18
33

44
FROM node:${NODE_VERSION}-alpine as builder
@@ -14,7 +14,7 @@ ARG REACT_APP_CONTENT_BASE_URL=""
1414
ARG REACT_APP_USE_ORIGIN_BASE_URL="true"
1515
RUN yarn build
1616

17-
FROM nginx:alpine
17+
FROM nginx:alpine@sha256:814a8e88df978ade80e584cc5b333144b9372a8e3c98872d07137dbf3b44d0e4
1818

1919
RUN apk add openssl && \
2020
openssl req -x509 -nodes -days 365 -subj "/C=CA/ST=QC/O=Company, Inc./CN=mydomain.com" -addext "subjectAltName=DNS:mydomain.com" -newkey rsa:2048 -keyout /etc/ssl/private/nginx-selfsigned.key -out /etc/ssl/certs/nginx-selfsigned.crt;

0 commit comments

Comments
 (0)