Skip to content

Fix ruby version on deps#6945

Closed
usta wants to merge 1 commit into
masterfrom
usta-ruby
Closed

Fix ruby version on deps#6945
usta wants to merge 1 commit into
masterfrom
usta-ruby

Conversation

@usta
Copy link
Copy Markdown
Member

@usta usta commented Mar 12, 2025

No description provided.

@usta usta self-assigned this Mar 12, 2025
@usta
Copy link
Copy Markdown
Member Author

usta commented Mar 12, 2025

@captn3m0 @marcwrobel is there a reason not to use
uses: ruby/setup-ruby@v1
and use
uses: ruby/setup-ruby@bbda85882f33075a3727c01e3c8d0de0be6146ce # v1 ?

@usta
Copy link
Copy Markdown
Member Author

usta commented Mar 12, 2025

image

Copy link
Copy Markdown
Member

@marcwrobel marcwrobel left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Why is this a fix ? Is there something wrong with 3.3 ?

@marcwrobel
Copy link
Copy Markdown
Member

@captn3m0 @marcwrobel is there a reason not to use uses: ruby/setup-ruby@v1 and use uses: ruby/setup-ruby@bbda85882f33075a3727c01e3c8d0de0be6146ce # v1 ?

https://docs.github.com/en/actions/security-for-github-actions/security-guides/security-hardening-for-github-actions#using-third-party-actions

And with dependabot remaining up-to-date is not an issue.

@usta usta deleted the usta-ruby branch May 2, 2025 07:41
@marcwrobel marcwrobel added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels May 19, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants