Skip to content

Commit cb77211

Browse files
authored
Merge pull request #35 from step-security-bot/stepsecurity_remediation_1732594823
[StepSecurity] ci: Harden GitHub Actions
2 parents 0059759 + 9ad2d55 commit cb77211

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

.github/workflows/build.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222
- armhf
2323
steps:
2424
- name: Check out Git repository
25-
uses: actions/checkout@v3
25+
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # v3.6.0
2626

2727
- name: Store Ruby version
2828
run: |
@@ -31,17 +31,17 @@ jobs:
3131
- name: Generate template file
3232
run: ruby generate.rb ${{ env.RUBY_VERSION }}
3333

34-
- uses: docker/setup-qemu-action@v1
34+
- uses: docker/setup-qemu-action@27d0a4f181a40b142cce983c5393082c365d1480 # v1.2.0
3535

36-
- uses: diddlesnaps/snapcraft-multiarch-action@v1
36+
- uses: diddlesnaps/snapcraft-multiarch-action@cfd7a246fad6bea65bb92f69a1c8d07898c231e5 # v1.9.0
3737
id: snapcraft
3838
with:
3939
architecture: ${{ matrix.platform }}
4040

4141
- name: Store ABI version
4242
run: echo "ABI_VERSION=$(echo ${{ env.RUBY_VERSION }} | cut -d '.' -f 1-2)" >> $GITHUB_ENV
4343

44-
- uses: snapcore/action-publish@v1
44+
- uses: snapcore/action-publish@214b86e5ca036ead1668c79afb81e550e6c54d40 # v1.2.0
4545
env:
4646
SNAPCRAFT_STORE_CREDENTIALS: ${{ secrets.SNAPCRAFT_TOKEN }}
4747
with:

0 commit comments

Comments
 (0)