Skip to content

Commit 746b7c4

Browse files
Bump the gha-deps group with 15 updates
Bumps the gha-deps group with 15 updates: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.12.2` | `2.13.1` | | [actions/checkout](https://github.com/actions/checkout) | `4.2.2` | `5.0.0` | | [actions/setup-dotnet](https://github.com/actions/setup-dotnet) | `4.3.1` | `5.0.0` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4.6.2` | `5.0.0` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `4.3.0` | `6.0.0` | | [codecov/codecov-action](https://github.com/codecov/codecov-action) | `5.4.3` | `5.5.1` | | [github/codeql-action](https://github.com/github/codeql-action) | `3.29.2` | `4.31.2` | | [aws-actions/configure-aws-credentials](https://github.com/aws-actions/configure-aws-credentials) | `4.2.1` | `5.1.0` | | [docker/login-action](https://github.com/docker/login-action) | `3.4.0` | `3.6.0` | | [sillsdev/FieldWorks](https://github.com/sillsdev/fieldworks) | `9f4a532c23e19b5ad450375276c024109a741705` | `691f8ebda6fb6fa9d353f8389797553ec1f37db9` | | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.7.1` | `4.8.1` | | [actions/setup-node](https://github.com/actions/setup-node) | `4.4.0` | `6.0.0` | | [actions/labeler](https://github.com/actions/labeler) | `5` | `6` | | [actions/setup-python](https://github.com/actions/setup-python) | `5.6.0` | `6.0.0` | | [ossf/scorecard-action](https://github.com/ossf/scorecard-action) | `2.4.2` | `2.4.3` | Updates `step-security/harden-runner` from 2.12.2 to 2.13.1 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@6c439dc...f4a75cf) Updates `actions/checkout` from 4.2.2 to 5.0.0 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@11bd719...08c6903) Updates `actions/setup-dotnet` from 4.3.1 to 5.0.0 - [Release notes](https://github.com/actions/setup-dotnet/releases) - [Commits](actions/setup-dotnet@67a3573...d4c9434) Updates `actions/upload-artifact` from 4.6.2 to 5.0.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@ea165f8...330a01c) Updates `actions/download-artifact` from 4.3.0 to 6.0.0 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@d3f86a1...018cc2c) Updates `codecov/codecov-action` from 5.4.3 to 5.5.1 - [Release notes](https://github.com/codecov/codecov-action/releases) - [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md) - [Commits](codecov/codecov-action@18283e0...5a10915) Updates `github/codeql-action` from 3.29.2 to 4.31.2 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@181d5ee...0499de3) Updates `aws-actions/configure-aws-credentials` from 4.2.1 to 5.1.0 - [Release notes](https://github.com/aws-actions/configure-aws-credentials/releases) - [Changelog](https://github.com/aws-actions/configure-aws-credentials/blob/main/CHANGELOG.md) - [Commits](aws-actions/configure-aws-credentials@b475783...0094301) Updates `docker/login-action` from 3.4.0 to 3.6.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@74a5d14...5e57cd1) Updates `sillsdev/FieldWorks` from 9f4a532c23e19b5ad450375276c024109a741705 to 691f8ebda6fb6fa9d353f8389797553ec1f37db9 - [Release notes](https://github.com/sillsdev/fieldworks/releases) - [Commits](sillsdev/FieldWorks@9f4a532...691f8eb) Updates `actions/dependency-review-action` from 4.7.1 to 4.8.1 - [Release notes](https://github.com/actions/dependency-review-action/releases) - [Commits](actions/dependency-review-action@da24556...40c09b7) Updates `actions/setup-node` from 4.4.0 to 6.0.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@49933ea...2028fbc) Updates `actions/labeler` from 5 to 6 - [Release notes](https://github.com/actions/labeler/releases) - [Commits](actions/labeler@v5...v6) Updates `actions/setup-python` from 5.6.0 to 6.0.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@a26af69...e797f83) Updates `ossf/scorecard-action` from 2.4.2 to 2.4.3 - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@05b42c6...4eaacf0) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.13.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: gha-deps - dependency-name: actions/checkout dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: actions/setup-dotnet dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: actions/upload-artifact dependency-version: 5.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: actions/download-artifact dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: codecov/codecov-action dependency-version: 5.5.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: gha-deps - dependency-name: github/codeql-action dependency-version: 4.31.2 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: aws-actions/configure-aws-credentials dependency-version: 5.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: docker/login-action dependency-version: 3.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: gha-deps - dependency-name: sillsdev/FieldWorks dependency-version: 691f8ebda6fb6fa9d353f8389797553ec1f37db9 dependency-type: direct:production dependency-group: gha-deps - dependency-name: actions/dependency-review-action dependency-version: 4.8.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: gha-deps - dependency-name: actions/setup-node dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: actions/labeler dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: actions/setup-python dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: gha-deps - dependency-name: ossf/scorecard-action dependency-version: 2.4.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: gha-deps ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent e5bccbb commit 746b7c4

14 files changed

+62
-62
lines changed

.github/workflows/backend.yml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
2424
# configuring harden-runner and identifying allowed endpoints.
2525
- name: Harden Runner
26-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
26+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2727
with:
2828
disable-sudo: true
2929
egress-policy: block
@@ -39,9 +39,9 @@ jobs:
3939
md-hdd-t032zjxllntc.z26.blob.storage.azure.net:443
4040
objects.githubusercontent.com:443
4141
- name: Checkout repository
42-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
42+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
4343
- name: Setup dotnet
44-
uses: actions/setup-dotnet@67a3573c9a986a3f9c594539f4ab511d57bb3ce9 # v4.3.1
44+
uses: actions/setup-dotnet@d4c94342e560b34958eacfc5d055d21461ed1c5d # v5.0.0
4545
with:
4646
dotnet-version: ${{ matrix.dotnet }}
4747
- name: Install ffmpeg
@@ -50,7 +50,7 @@ jobs:
5050
run: dotnet test Backend.Tests/Backend.Tests.csproj
5151
shell: bash
5252
- name: Upload coverage artifact
53-
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
53+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
5454
with:
5555
if-no-files-found: error
5656
name: coverage
@@ -70,7 +70,7 @@ jobs:
7070
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
7171
# configuring harden-runner and identifying allowed endpoints.
7272
- name: Harden Runner
73-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
73+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
7474
with:
7575
disable-sudo: true
7676
egress-policy: block
@@ -82,13 +82,13 @@ jobs:
8282
keybase.io:443
8383
storage.googleapis.com:443
8484
- name: Checkout repository
85-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
85+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
8686
- name: Download coverage artifact
87-
uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
87+
uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6.0.0
8888
with:
8989
name: coverage
9090
- name: Upload coverage report
91-
uses: codecov/codecov-action@18283e04ce6e62d37312384ff67231eb8fd56d24 # v5.4.3
91+
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1
9292
with:
9393
token: ${{ secrets.CODECOV_TOKEN }}
9494
fail_ci_if_error: true
@@ -103,7 +103,7 @@ jobs:
103103
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
104104
# configuring harden-runner and identifying allowed endpoints.
105105
- name: Harden Runner
106-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
106+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
107107
with:
108108
disable-sudo: true
109109
disable-file-monitoring: true
@@ -120,7 +120,7 @@ jobs:
120120
# For subfolders, currently a full checkout is required.
121121
# See: https://github.com/marketplace/actions/build-and-push-docker-images#path-context
122122
- name: Checkout repository
123-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
123+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
124124
with:
125125
fetch-depth: 0
126126
- name: Build backend

.github/workflows/codeql.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
3636
# configuring harden-runner and identifying allowed endpoints.
3737
- name: Harden Runner
38-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
38+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
3939
with:
4040
disable-sudo: true
4141
egress-policy: block
@@ -52,11 +52,11 @@ jobs:
5252
uploads.github.com:443
5353
5454
- name: Checkout repository
55-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
55+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
5656

5757
# Initializes the CodeQL tools for scanning.
5858
- name: Initialize CodeQL
59-
uses: github/codeql-action/init@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2
59+
uses: github/codeql-action/init@0499de31b99561a6d14a36a5f662c2a54f91beee # v4.31.2
6060
with:
6161
languages: ${{ matrix.language }}
6262
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -69,7 +69,7 @@ jobs:
6969
# Autobuild attempts to build any compiled languages (C/C++, C#, Go, or Java).
7070
# If this step fails, then you should remove it and run the build manually (see below)
7171
- name: Autobuild
72-
uses: github/codeql-action/autobuild@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2
72+
uses: github/codeql-action/autobuild@0499de31b99561a6d14a36a5f662c2a54f91beee # v4.31.2
7373

7474
# Command-line programs to run using the OS shell.
7575
# See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
@@ -82,6 +82,6 @@ jobs:
8282
# ./location_of_script_within_repo/buildscript.sh
8383

8484
- name: Perform CodeQL Analysis
85-
uses: github/codeql-action/analyze@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2
85+
uses: github/codeql-action/analyze@0499de31b99561a6d14a36a5f662c2a54f91beee # v4.31.2
8686
with:
8787
category: "/language:${{matrix.language}}"

.github/workflows/combine_deploy_image.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ jobs:
1616
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
1717
# configuring harden-runner and identifying allowed endpoints.
1818
- name: Harden Runner
19-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
19+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2020
with:
2121
disable-sudo: true
2222
egress-policy: block
@@ -42,13 +42,13 @@ jobs:
4242
- name: Set up Docker Buildx
4343
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
4444
- name: Configure AWS credentials
45-
uses: aws-actions/configure-aws-credentials@b47578312673ae6fa5b5096b330d9fbac3d116df # v4.2.1
45+
uses: aws-actions/configure-aws-credentials@00943011d9042930efac3dcd3a170e4273319bc8 # v5.1.0
4646
with:
4747
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
4848
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
4949
aws-region: us-east-1
5050
- name: Login to AWS ECR
51-
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
51+
uses: docker/login-action@5e57cd118135c172c3672efd75eb46360885c0ef # v3.6.0
5252
with:
5353
registry: public.ecr.aws
5454
username: ${{ secrets.AWS_ACCESS_KEY_ID }}

.github/workflows/commit_message_check.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,4 +14,4 @@ permissions: # added using https://github.com/step-security/secure-workflows
1414

1515
jobs:
1616
commit-message-lint:
17-
uses: sillsdev/FieldWorks/.github/workflows/CommitMessage.yml@9f4a532c23e19b5ad450375276c024109a741705
17+
uses: sillsdev/FieldWorks/.github/workflows/CommitMessage.yml@691f8ebda6fb6fa9d353f8389797553ec1f37db9

.github/workflows/database.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
2222
# configuring harden-runner and identifying allowed endpoints.
2323
- name: Harden Runner
24-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
24+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2525
with:
2626
disable-sudo: true
2727
egress-policy: block
@@ -33,7 +33,7 @@ jobs:
3333
# For subfolders, currently a full checkout is required.
3434
# See: https://github.com/marketplace/actions/build-and-push-docker-images#path-context
3535
- name: Checkout repository
36-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
36+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
3737
with:
3838
fetch-depth: 0
3939
- name: Build database image

.github/workflows/dependency-review.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -21,11 +21,11 @@ jobs:
2121
runs-on: ubuntu-latest
2222
steps:
2323
- name: Harden Runner
24-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
24+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2525
with:
2626
egress-policy: audit
2727

2828
- name: "Checkout Repository"
29-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
29+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
3030
- name: "Dependency Review"
31-
uses: actions/dependency-review-action@da24556b548a50705dd671f47852072ea4c105d9 # v4.7.1
31+
uses: actions/dependency-review-action@40c09b7dc99638e5ddb0bfd91c1673effc064d8a # v4.8.1

.github/workflows/deploy_qa.yml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ jobs:
2424
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
2525
# configuring harden-runner and identifying allowed endpoints.
2626
- name: Harden Runner
27-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
27+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2828
with:
2929
disable-sudo: true
3030
egress-policy: block
@@ -53,7 +53,7 @@ jobs:
5353
security.ubuntu.com:80
5454
storage.googleapis.com:443
5555
sts.${{ secrets.AWS_DEFAULT_REGION }}.amazonaws.com:443
56-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
56+
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
5757
with:
5858
fetch-depth: 0
5959
- name: Build The Combine
@@ -72,7 +72,7 @@ jobs:
7272
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
7373
# configuring harden-runner and identifying allowed endpoints.
7474
- name: Harden Runner
75-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
75+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
7676
with:
7777
disable-sudo: true
7878
egress-policy: block
@@ -81,9 +81,9 @@ jobs:
8181
api.ecr.${{ secrets.AWS_DEFAULT_REGION }}.amazonaws.com:443
8282
github.com:443
8383
sts.${{ secrets.AWS_DEFAULT_REGION }}.amazonaws.com:443
84-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
84+
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
8585
- name: Configure AWS credentials
86-
uses: aws-actions/configure-aws-credentials@b47578312673ae6fa5b5096b330d9fbac3d116df # v4.2.1
86+
uses: aws-actions/configure-aws-credentials@00943011d9042930efac3dcd3a170e4273319bc8 # v5.1.0
8787
with:
8888
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
8989
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
@@ -108,11 +108,11 @@ jobs:
108108
runs-on: [self-hosted, thecombine]
109109
steps:
110110
- name: Harden Runner
111-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
111+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
112112
with:
113113
egress-policy: audit
114114

115-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
115+
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
116116
- name: Deploy The Combine Update
117117
uses: ./.github/actions/combine-deploy-update
118118
with:

.github/workflows/deploy_release.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
2020
# configuring harden-runner and identifying allowed endpoints.
2121
- name: Harden Runner
22-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
22+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2323
with:
2424
egress-policy: block
2525
allowed-endpoints: >
@@ -46,7 +46,7 @@ jobs:
4646
security.ubuntu.com:80
4747
storage.googleapis.com:443
4848
sts.us-east-1.amazonaws.com:443
49-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
49+
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
5050
- name: Build The Combine
5151
id: build_combine
5252
uses: ./.github/actions/combine-build
@@ -65,11 +65,11 @@ jobs:
6565
runs-on: [self-hosted, thecombine]
6666
steps:
6767
- name: Harden Runner
68-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
68+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
6969
with:
7070
egress-policy: audit
7171

72-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
72+
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
7373
with:
7474
fetch-depth: 0
7575
- name: Deploy The Combine Update to QA

.github/workflows/frontend.yml

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
2424
# configuring harden-runner and identifying allowed endpoints.
2525
- name: Harden Runner
26-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
26+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
2727
with:
2828
disable-sudo: true
2929
egress-policy: block
@@ -33,9 +33,9 @@ jobs:
3333
objects.githubusercontent.com:443
3434
registry.npmjs.org:443
3535
- name: Checkout repository
36-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
36+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
3737
- name: Use Node.js ${{ matrix.node-version }}
38-
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
38+
uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0
3939
with:
4040
node-version: ${{ matrix.node-version }}
4141
- run: npm ci
@@ -52,7 +52,7 @@ jobs:
5252
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
5353
# configuring harden-runner and identifying allowed endpoints.
5454
- name: Harden Runner
55-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
55+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
5656
with:
5757
disable-sudo: true
5858
egress-policy: block
@@ -62,9 +62,9 @@ jobs:
6262
objects.githubusercontent.com:443
6363
registry.npmjs.org:443
6464
- name: Checkout repository
65-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
65+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
6666
- name: Use Node.js ${{ matrix.node-version }}
67-
uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4.4.0
67+
uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0
6868
with:
6969
node-version: ${{ matrix.node-version }}
7070
- run: npm ci
@@ -73,7 +73,7 @@ jobs:
7373
env:
7474
CI: true
7575
- name: Upload coverage artifact
76-
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
76+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
7777
with:
7878
if-no-files-found: error
7979
name: coverage
@@ -87,7 +87,7 @@ jobs:
8787
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
8888
# configuring harden-runner and identifying allowed endpoints.
8989
- name: Harden Runner
90-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
90+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
9191
with:
9292
disable-sudo: true
9393
egress-policy: block
@@ -99,13 +99,13 @@ jobs:
9999
keybase.io:443
100100
storage.googleapis.com:443
101101
- name: Checkout repository
102-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
102+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
103103
- name: Download coverage artifact
104-
uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
104+
uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6.0.0
105105
with:
106106
name: coverage
107107
- name: Upload coverage report
108-
uses: codecov/codecov-action@18283e04ce6e62d37312384ff67231eb8fd56d24 # v5.4.3
108+
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1
109109
with:
110110
token: ${{ secrets.CODECOV_TOKEN }}
111111
fail_ci_if_error: true
@@ -120,7 +120,7 @@ jobs:
120120
# See https://docs.stepsecurity.io/harden-runner/getting-started/ for instructions on
121121
# configuring harden-runner and identifying allowed endpoints.
122122
- name: Harden Runner
123-
uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2
123+
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
124124
with:
125125
disable-sudo: true
126126
egress-policy: block
@@ -133,7 +133,7 @@ jobs:
133133
registry-1.docker.io:443
134134
registry.npmjs.org:443
135135
- name: Checkout repository
136-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
136+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
137137
with:
138138
fetch-depth: 0
139139
- name: Build frontend

.github/workflows/labeler.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,4 +11,4 @@ jobs:
1111
pull-requests: write
1212
runs-on: ubuntu-latest
1313
steps:
14-
- uses: actions/labeler@v5
14+
- uses: actions/labeler@v6

0 commit comments

Comments
 (0)