diff --git a/.github/workflows/module.build.yml b/.github/workflows/module.build.yml index 90d61bf..f7d0845 100644 --- a/.github/workflows/module.build.yml +++ b/.github/workflows/module.build.yml @@ -76,7 +76,7 @@ jobs: disable-sudo: true egress-policy: audit - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: fetch-depth: 0 - name: "Setup: JDK ${{ inputs.java_version || vars.JVM_VERSION }}" diff --git a/.github/workflows/module.codeql.yml b/.github/workflows/module.codeql.yml index caa13ce..9ce488c 100644 --- a/.github/workflows/module.codeql.yml +++ b/.github/workflows/module.codeql.yml @@ -34,7 +34,7 @@ jobs: disable-sudo: true egress-policy: audit - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 - name: "Setup: JDK ${{ inputs.java_version || vars.JVM_VERSION }}" uses: actions/setup-java@99b8673ff64fbf99d8d325f52d9a5bdedb8483e9 # v4.2.1 with: diff --git a/.github/workflows/module.dependency-review.yml b/.github/workflows/module.dependency-review.yml index bb123fb..50e2c07 100644 --- a/.github/workflows/module.dependency-review.yml +++ b/.github/workflows/module.dependency-review.yml @@ -22,6 +22,6 @@ jobs: with: egress-policy: audit - name: "Setup: Checkout Repository" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 - name: "Checks: Dependency Review" uses: actions/dependency-review-action@9129d7d40b8c12c1ed0f60400d00c92d437adcce # v4.1.3 diff --git a/.github/workflows/module.detekt.yml b/.github/workflows/module.detekt.yml index 5736891..ea6d2a0 100644 --- a/.github/workflows/module.detekt.yml +++ b/.github/workflows/module.detekt.yml @@ -39,7 +39,7 @@ jobs: github.com:443 objects.githubusercontent.com:443 - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: fetch-depth: 0 - name: "Setup: JDK ${{ inputs.java_version || vars.JVM_VERSION }}" diff --git a/.github/workflows/module.publish.yml b/.github/workflows/module.publish.yml index b8fd87e..d8310b6 100644 --- a/.github/workflows/module.publish.yml +++ b/.github/workflows/module.publish.yml @@ -57,7 +57,7 @@ jobs: with: egress-policy: audit - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: fetch-depth: 0 - name: "Setup: JDK ${{ inputs.java_version || vars.JVM_VERSION }}" @@ -106,7 +106,7 @@ jobs: scans-in.gradle.com:443 tuf-repo-cdn.sigstore.dev:443 - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: fetch-depth: 0 - name: "Setup: Signing Keys" @@ -159,7 +159,7 @@ jobs: with: egress-policy: audit - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: fetch-depth: 0 - name: "Setup: Signing Keys" diff --git a/.github/workflows/module.scorecards.yml b/.github/workflows/module.scorecards.yml index bf3f493..6a6b1d1 100644 --- a/.github/workflows/module.scorecards.yml +++ b/.github/workflows/module.scorecards.yml @@ -44,7 +44,7 @@ jobs: tuf-repo-cdn.sigstore.dev:443 www.bestpractices.dev:443 - name: "Setup: Checkout" - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 + uses: actions/checkout@0ad4b8fadaa221de15dcec353f45205ec38ea70b # v4.1.4 with: persist-credentials: false - name: "Checks: Scorecard"