From 80e3c66dd68e02b67ece26128a5b098d0fcdd677 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Sat, 25 Jan 2025 00:58:14 +0100 Subject: [PATCH] chore(deps): update github-actions (#1828) Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> --- .github/workflows/ci-build.yml | 12 ++++++------ .github/workflows/codeql-analysis.yml | 6 +++--- .github/workflows/publish-packages.yml | 8 ++++---- .github/workflows/report.yml | 2 +- .github/workflows/tag-and-release.yml | 2 +- 5 files changed, 15 insertions(+), 15 deletions(-) diff --git a/.github/workflows/ci-build.yml b/.github/workflows/ci-build.yml index dee824867..dbecff2fa 100644 --- a/.github/workflows/ci-build.yml +++ b/.github/workflows/ci-build.yml @@ -46,7 +46,7 @@ jobs: - name: Rate limit info run: 'curl -H "Accept: application/vnd.github+json" https://api.github.com/rate_limit' - name: Setup tmate session - uses: mxschmitt/action-tmate@a283f9441d2d96eb62436dc46d7014f5d357ac22 # v3 + uses: mxschmitt/action-tmate@e5c7151931ca95bad1c6f4190c730ecf8c7dde48 # v3 if: ${{ github.event_name == 'workflow_dispatch' && github.event.inputs.debug_enabled }} with: limit-access-to-actor: true @@ -80,7 +80,7 @@ jobs: run: | ./gradlew --no-daemon jacocoTestReport - name: Upload Test Report - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 if: always() # always run even if the previous step fails with: name: junit-test-results @@ -94,7 +94,7 @@ jobs: verbose: true # optional (default = false) - name: build-choco-package if: runner.os == 'Windows' - uses: actions/setup-dotnet@608ee757cfcce72c2e91e99aca128e0cae67de87 # v1 + uses: actions/setup-dotnet@71a4fd9b27383962fc5df13a9c871636b43199b4 # v1 with: dotnet-version: '2.2.204' # SDK Version to use. - name: build-choco @@ -103,20 +103,20 @@ jobs: powershell choco pack build/choco/jbang.nuspec - name: Archive build results - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 if: always() with: name: ${{ runner.os }}-build-${{ github.sha }} path: build - name: Upload jbang.zip - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 if: always() && runner.os != 'Windows' with: name: jbang-${{ github.sha }} path: build/install/jbang - name: Write out Unit Test report annotation for forked repo if: always() - uses: mikepenz/action-junit-report@992d97d6eb2e5f3de985fbf9df6a04386874114d # v5 + uses: mikepenz/action-junit-report@62516aa379bff6370c95fd5894d5a27fb6619d9b # v5 with: report_paths: '**/build/test-results/test/TEST-*.xml' annotate_only: true # forked repo cannot write to checks so just do annotations diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index c11c17ed7..deff99643 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -42,7 +42,7 @@ jobs: # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@eb055d739abdc2e8de2e5f4ba1a8b246daa779aa # v3 + uses: github/codeql-action/init@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3 with: languages: ${{ matrix.language }} # If you wish to specify custom queries, you can do so here or in a config file. @@ -53,7 +53,7 @@ jobs: # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). # If this step fails, then you should remove it and run the build manually (see below) - name: Autobuild - uses: github/codeql-action/autobuild@eb055d739abdc2e8de2e5f4ba1a8b246daa779aa # v3 + uses: github/codeql-action/autobuild@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3 # ℹī¸ Command-line programs to run using the OS shell. # 📚 https://git.io/JvXDl @@ -67,4 +67,4 @@ jobs: # make release - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@eb055d739abdc2e8de2e5f4ba1a8b246daa779aa # v3 + uses: github/codeql-action/analyze@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3 diff --git a/.github/workflows/publish-packages.yml b/.github/workflows/publish-packages.yml index 3c0b301fa..c8c274708 100644 --- a/.github/workflows/publish-packages.yml +++ b/.github/workflows/publish-packages.yml @@ -51,7 +51,7 @@ jobs: setup-java: false - name: JReleaser publish output if: always() - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 with: name: jreleaser-publish path: | @@ -74,14 +74,14 @@ jobs: setup-java: false - name: JReleaser announce output if: always() - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 with: name: jreleaser-announce path: | out/jreleaser/trace.log out/jreleaser/output.properties - name: upload-choco - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 with: name: build-choco path: build/choco @@ -95,7 +95,7 @@ jobs: with: name: build-choco path: build/choco - - uses: actions/setup-dotnet@608ee757cfcce72c2e91e99aca128e0cae67de87 # v1 + - uses: actions/setup-dotnet@71a4fd9b27383962fc5df13a9c871636b43199b4 # v1 with: dotnet-version: '2.2.204' # SDK Version to use. - name: choco-build diff --git a/.github/workflows/report.yml b/.github/workflows/report.yml index 4cc695aff..9505f12e7 100644 --- a/.github/workflows/report.yml +++ b/.github/workflows/report.yml @@ -44,7 +44,7 @@ jobs: workflow: ${{ github.event.workflow.id }} run_id: ${{ github.event.workflow_run.id }} - name: Publish Test Report - uses: mikepenz/action-junit-report@992d97d6eb2e5f3de985fbf9df6a04386874114d # v5 + uses: mikepenz/action-junit-report@62516aa379bff6370c95fd5894d5a27fb6619d9b # v5 with: commit: ${{github.event.workflow_run.head_sha}} report_paths: '**/build/test-results/test/TEST-*.xml' diff --git a/.github/workflows/tag-and-release.yml b/.github/workflows/tag-and-release.yml index 4c5c53b17..ed87b2c08 100644 --- a/.github/workflows/tag-and-release.yml +++ b/.github/workflows/tag-and-release.yml @@ -58,7 +58,7 @@ jobs: setup-java: false - name: JReleaser output if: always() - uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3 + uses: actions/upload-artifact@ff15f0306b3f739f7b6fd43fb5d26cd321bd4de5 # v3 with: name: jreleaser-release path: |