Skip to content

Commit ed8bc92

Browse files
chore(deps): bump the actions-deps group across 1 directory with 15 updates (#425)
* chore(deps): bump the actions-deps group across 1 directory with 15 updates Bumps the actions-deps group with 15 updates in the / directory: | Package | From | To | | --- | --- | --- | | [step-security/harden-runner](https://github.com/step-security/harden-runner) | `2.13.2` | `2.14.0` | | [actions/checkout](https://github.com/actions/checkout) | `5.0.0` | `6.0.1` | | [tj-actions/changed-files](https://github.com/tj-actions/changed-files) | `70069877f29101175ed2b055d210fe8b1d54d7d7` | `daf9d2d49788d229faa7bd34252ab8ded7f087f3` | | [codecov/codecov-action](https://github.com/codecov/codecov-action) | `5.5.1` | `5.5.2` | | [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) | `3.11.1` | `3.12.0` | | [anchore/scan-action](https://github.com/anchore/scan-action) | `7.1.0` | `7.2.3` | | [github/codeql-action](https://github.com/github/codeql-action) | `4.31.2` | `4.31.10` | | [actions/create-github-app-token](https://github.com/actions/create-github-app-token) | `2.1.4` | `2.2.1` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `5.0.0` | `6.0.0` | | [actions/download-artifact](https://github.com/actions/download-artifact) | `6.0.0` | `7.0.0` | | [softprops/action-gh-release](https://github.com/softprops/action-gh-release) | `2.4.2` | `2.5.0` | | [docker/metadata-action](https://github.com/docker/metadata-action) | `5.9.0` | `5.10.0` | | [peter-evans/dockerhub-description](https://github.com/peter-evans/dockerhub-description) | `f1b86635715271fbb2edb38dd0ed1706e6da198b` | `cc307723041342d9253937d12db1fff65b63db90` | | [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) | `7.0.8` | `8.0.0` | | [anchore/sbom-action](https://github.com/anchore/sbom-action) | `0.20.9` | `0.21.1` | Updates `step-security/harden-runner` from 2.13.2 to 2.14.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@95d9a5d...20cf305) Updates `actions/checkout` from 5.0.0 to 6.0.1 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@08c6903...8e8c483) Updates `tj-actions/changed-files` from 70069877f29101175ed2b055d210fe8b1d54d7d7 to daf9d2d49788d229faa7bd34252ab8ded7f087f3 - [Release notes](https://github.com/tj-actions/changed-files/releases) - [Changelog](https://github.com/tj-actions/changed-files/blob/main/HISTORY.md) - [Commits](tj-actions/changed-files@7006987...daf9d2d) Updates `codecov/codecov-action` from 5.5.1 to 5.5.2 - [Release notes](https://github.com/codecov/codecov-action/releases) - [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md) - [Commits](codecov/codecov-action@5a10915...671740a) Updates `docker/setup-buildx-action` from 3.11.1 to 3.12.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](docker/setup-buildx-action@e468171...8d2750c) Updates `anchore/scan-action` from 7.1.0 to 7.2.3 - [Release notes](https://github.com/anchore/scan-action/releases) - [Changelog](https://github.com/anchore/scan-action/blob/main/RELEASE.md) - [Commits](anchore/scan-action@568b89d...62b74fb) Updates `github/codeql-action` from 4.31.2 to 4.31.10 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@0499de3...cdefb33) Updates `actions/create-github-app-token` from 2.1.4 to 2.2.1 - [Release notes](https://github.com/actions/create-github-app-token/releases) - [Commits](actions/create-github-app-token@6701853...29824e6) Updates `actions/upload-artifact` from 5.0.0 to 6.0.0 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@330a01c...b7c566a) Updates `actions/download-artifact` from 6.0.0 to 7.0.0 - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](actions/download-artifact@018cc2c...37930b1) Updates `softprops/action-gh-release` from 2.4.2 to 2.5.0 - [Release notes](https://github.com/softprops/action-gh-release/releases) - [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md) - [Commits](softprops/action-gh-release@5be0e66...a06a81a) Updates `docker/metadata-action` from 5.9.0 to 5.10.0 - [Release notes](https://github.com/docker/metadata-action/releases) - [Commits](docker/metadata-action@318604b...c299e40) Updates `peter-evans/dockerhub-description` from f1b86635715271fbb2edb38dd0ed1706e6da198b to cc307723041342d9253937d12db1fff65b63db90 - [Release notes](https://github.com/peter-evans/dockerhub-description/releases) - [Commits](peter-evans/dockerhub-description@f1b8663...cc30772) Updates `peter-evans/create-pull-request` from 7.0.8 to 8.0.0 - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@271a8d0...98357b1) Updates `anchore/sbom-action` from 0.20.9 to 0.21.1 - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@8e94d75...0b82b0b) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: actions/checkout dependency-version: 6.0.1 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions-deps - dependency-name: tj-actions/changed-files dependency-version: daf9d2d49788d229faa7bd34252ab8ded7f087f3 dependency-type: direct:production dependency-group: actions-deps - dependency-name: codecov/codecov-action dependency-version: 5.5.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-deps - dependency-name: docker/setup-buildx-action dependency-version: 3.12.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: anchore/scan-action dependency-version: 7.2.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: github/codeql-action dependency-version: 4.31.10 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-deps - dependency-name: actions/create-github-app-token dependency-version: 2.2.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: actions/upload-artifact dependency-version: 6.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions-deps - dependency-name: actions/download-artifact dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions-deps - dependency-name: softprops/action-gh-release dependency-version: 2.5.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: docker/metadata-action dependency-version: 5.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps - dependency-name: peter-evans/dockerhub-description dependency-version: cc307723041342d9253937d12db1fff65b63db90 dependency-type: direct:production dependency-group: actions-deps - dependency-name: peter-evans/create-pull-request dependency-version: 8.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: actions-deps - dependency-name: anchore/sbom-action dependency-version: 0.21.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps ... Signed-off-by: dependabot[bot] <[email protected]> * chore(deps): Remove tj-actions/changed-files version --------- Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Son Dinh <[email protected]>
1 parent 5a0246a commit ed8bc92

File tree

14 files changed

+76
-76
lines changed

14 files changed

+76
-76
lines changed

.github/workflows/ci.yaml

Lines changed: 19 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -28,14 +28,14 @@ jobs:
2828
steps:
2929
# Checkout the repository
3030
- name: Harden the runner (Audit all outbound calls)
31-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
31+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
3232
with:
3333
egress-policy: audit
3434
- name: Checkout Code
35-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
35+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
3636
- name: Get changed files
3737
id: changed-files-yaml
38-
uses: tj-actions/changed-files@70069877f29101175ed2b055d210fe8b1d54d7d7 # v45.0.6
38+
uses: tj-actions/changed-files@daf9d2d49788d229faa7bd34252ab8ded7f087f3
3939
with:
4040
files_yaml: |
4141
code:
@@ -63,7 +63,7 @@ jobs:
6363
runs-on: ubuntu-latest
6464
steps:
6565
- name: Harden the runner (Audit all outbound calls)
66-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
66+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
6767
with:
6868
egress-policy: audit
6969
- name: Failed
@@ -78,11 +78,11 @@ jobs:
7878
steps:
7979
# Checkout the repository
8080
- name: Harden the runner (Audit all outbound calls)
81-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
81+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
8282
with:
8383
egress-policy: audit
8484
- name: Checkout Code
85-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
85+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
8686
- name: Prepare
8787
id: init
8888
uses: ./.github/actions/prepare
@@ -105,11 +105,11 @@ jobs:
105105
steps:
106106
# Checkout the repository
107107
- name: Harden the runner (Audit all outbound calls)
108-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
108+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
109109
with:
110110
egress-policy: audit
111111
- name: Checkout Code
112-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
112+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
113113
- name: Prepare
114114
id: init
115115
uses: ./.github/actions/prepare
@@ -132,11 +132,11 @@ jobs:
132132
steps:
133133
# Checkout the repository
134134
- name: Harden the runner (Audit all outbound calls)
135-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
135+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
136136
with:
137137
egress-policy: audit
138138
- name: Checkout Code
139-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
139+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
140140
- name: Prepare
141141
id: init
142142
uses: ./.github/actions/prepare
@@ -159,11 +159,11 @@ jobs:
159159
steps:
160160
# Checkout the repository
161161
- name: Harden the runner (Audit all outbound calls)
162-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
162+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
163163
with:
164164
egress-policy: audit
165165
- name: Checkout Code
166-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
166+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
167167
- name: Prepare
168168
id: init
169169
uses: ./.github/actions/prepare
@@ -201,7 +201,7 @@ jobs:
201201

202202
# Upload unit coverage
203203
- name: Upload Unit Coverage to Codecov
204-
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1
204+
uses: codecov/codecov-action@671740ac38dd9b0130fbe1cec585b89eea48d3de # v5.5.2
205205
with:
206206
token: ${{ secrets.CODECOV_TOKEN }}
207207
name: unit-coverage
@@ -211,7 +211,7 @@ jobs:
211211

212212
# Upload integration coverage
213213
- name: Upload Integration Coverage to Codecov
214-
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1
214+
uses: codecov/codecov-action@671740ac38dd9b0130fbe1cec585b89eea48d3de # v5.5.2
215215
with:
216216
token: ${{ secrets.CODECOV_TOKEN }}
217217
name: integration-coverage
@@ -221,7 +221,7 @@ jobs:
221221

222222
# Upload properties coverage
223223
- name: Upload Properties Coverage to Codecov
224-
uses: codecov/codecov-action@5a1091511ad55cbe89839c7260b706298ca349f7 # v5.5.1
224+
uses: codecov/codecov-action@671740ac38dd9b0130fbe1cec585b89eea48d3de # v5.5.2
225225
with:
226226
token: ${{ secrets.CODECOV_TOKEN }}
227227
name: properties-coverage
@@ -237,11 +237,11 @@ jobs:
237237
steps:
238238
# Checkout the repository
239239
- name: Harden the runner (Audit all outbound calls)
240-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
240+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
241241
with:
242242
egress-policy: audit
243243
- name: Checkout Code
244-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
244+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
245245
- name: Setup QEMU
246246
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # main
247247
with:
@@ -250,7 +250,7 @@ jobs:
250250
id: init
251251
uses: ./.github/actions/prepare
252252
- name: Set up Docker Buildx
253-
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
253+
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
254254
- name: Build x86 local container
255255
uses: docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18.0
256256
with:
@@ -301,7 +301,7 @@ jobs:
301301
echo ">>>>>>>Architecture match for $platform<<<<<<<<"
302302
done
303303
- name: Scan image
304-
uses: anchore/scan-action@568b89d27fc18c60e56937bff480c91c772cd993 # v7.1.0
304+
uses: anchore/scan-action@62b74fb7bb810d2c45b1865f47a77655621862a5 # v7.2.3
305305
with:
306306
image: openzeppelin-monitor-dev:${{ github.sha }}-amd64
307307
fail-build: true

.github/workflows/cla.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -17,11 +17,11 @@ jobs:
1717
runs-on: ubuntu-latest
1818
steps:
1919
- name: Harden the runner (Audit all outbound calls)
20-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
20+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
2121
with:
2222
egress-policy: audit
2323
- name: Checkout Private Repo for Allowlist
24-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
24+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
2525
with:
2626
repository: OpenZeppelin/cla-sigs
2727
token: ${{ secrets.CLA_SIGS_ACCESS_PAT }}

.github/workflows/codeql.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -33,19 +33,19 @@ jobs:
3333
build-mode: none
3434
steps:
3535
- name: Harden the runner (Audit all outbound calls)
36-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
36+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
3737
with:
3838
egress-policy: audit
3939
- name: Checkout repository
40-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v4.5.4
40+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v4.5.4
4141

4242
# Initializes the CodeQL tools for scanning.
4343
- name: Initialize CodeQL
44-
uses: github/codeql-action/init@0499de31b99561a6d14a36a5f662c2a54f91beee # v4.31.2
44+
uses: github/codeql-action/init@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v4.31.10
4545
with:
4646
languages: ${{ matrix.language }}
4747
build-mode: ${{ matrix.build-mode }}
4848
- name: Perform CodeQL Analysis
49-
uses: github/codeql-action/analyze@0499de31b99561a6d14a36a5f662c2a54f91beee # v4.31.2
49+
uses: github/codeql-action/analyze@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v4.31.10
5050
with:
5151
category: /language:${{matrix.language}}

.github/workflows/pr-title.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ jobs:
99
runs-on: ubuntu-latest
1010
steps:
1111
- name: Harden the runner (Audit all outbound calls)
12-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
12+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
1313
with:
1414
egress-policy: audit
1515
- uses: thehanimo/pr-title-checker@7fbfe05602bdd86f926d3fb3bccb6f3aed43bc70 # v1.4.3

.github/workflows/rc.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -23,10 +23,10 @@ jobs:
2323
runs-on: ubuntu-latest
2424
steps:
2525
- name: Harden the runner (Audit all outbound calls)
26-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
26+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
2727
with:
2828
egress-policy: audit
29-
- uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
29+
- uses: actions/create-github-app-token@29824e69f54612133e76f7eaac726eef6c875baf # v2.2.1
3030
id: gh-app-token
3131
with:
3232
app-id: ${{ vars.GH_APP_ID }}
@@ -52,7 +52,7 @@ jobs:
5252
env:
5353
INPUT_VERSION: ${{ github.event.inputs.version }}
5454
- name: Checkout repository at commit SHA
55-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
55+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
5656
with:
5757
ref: ${{ github.event.inputs.commit_sha }}
5858
fetch-depth: 0

.github/workflows/release-bins.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -39,17 +39,17 @@ jobs:
3939
RUSTUP_TOOLCHAIN: stable-${{ matrix.arch }}
4040
steps:
4141
- name: Harden the runner (Audit all outbound calls)
42-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
42+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
4343
with:
4444
egress-policy: audit
4545
- name: Get github app token
46-
uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
46+
uses: actions/create-github-app-token@29824e69f54612133e76f7eaac726eef6c875baf # v2.2.1
4747
id: gh-app-token
4848
with:
4949
app-id: ${{ vars.GH_APP_ID }}
5050
private-key: ${{ secrets.GH_APP_PRIVATE_KEY }}
5151
- name: Checkout sources
52-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
52+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
5353
with:
5454
ref: ${{ env.TAG }}
5555
token: ${{ steps.gh-app-token.outputs.token }}
@@ -67,7 +67,7 @@ jobs:
6767
openzeppelin-monitor-${{ env.TAG }}-${{ matrix.arch }}.tar.gz \
6868
openzeppelin-monitor
6969
- name: Upload artifact
70-
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
70+
uses: actions/upload-artifact@b7c566a772e6b6bfb58ed0dc250532a479d7789f # v6.0.0
7171
with:
7272
name: openzeppelin-monitor-${{ matrix.arch }}
7373
path: |
@@ -88,22 +88,22 @@ jobs:
8888
TAG: ${{ needs.build.outputs.release_tag }}
8989
steps:
9090
- name: Harden the runner (Audit all outbound calls)
91-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
91+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
9292
with:
9393
egress-policy: audit
9494
- name: Get github app token
95-
uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
95+
uses: actions/create-github-app-token@29824e69f54612133e76f7eaac726eef6c875baf # v2.2.1
9696
id: gh-app-token
9797
with:
9898
app-id: ${{ vars.GH_APP_ID }}
9999
private-key: ${{ secrets.GH_APP_PRIVATE_KEY }}
100100
- name: Checkout sources
101-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
101+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
102102
with:
103103
ref: ${{ env.TAG }}
104104
token: ${{ steps.gh-app-token.outputs.token }}
105105
- name: Download artifacts
106-
uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6.0.0
106+
uses: actions/download-artifact@37930b1c2abaa49bbe596cd826c3c89aef350131 # v7.0.0
107107
with:
108108
pattern: openzeppelin-monitor-*
109109
path: artifacts
@@ -113,7 +113,7 @@ jobs:
113113
subject-path: artifacts/**/openzeppelin-monitor*.tar.gz
114114
github-token: ${{ steps.gh-app-token.outputs.token }}
115115
- name: Update released binaries artifacts
116-
uses: softprops/action-gh-release@5be0e66d93ac7ed76da52eca8bb058f665c3a5fe # main
116+
uses: softprops/action-gh-release@a06a81a03ee405af7f2048a818ed3f03bbf83c7b # main
117117
with:
118118
tag_name: ${{ env.TAG }}
119119
files: artifacts/**/openzeppelin-monitor*.tar.gz

.github/workflows/release-docker.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ jobs:
1818
SLACK_CHANNEL: '#oss-releases'
1919
steps:
2020
- name: Harden the runner (Audit all outbound calls)
21-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
21+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
2222
with:
2323
egress-policy: audit
2424
- name: Slack notification
@@ -30,12 +30,12 @@ jobs:
3030
message: Starting docker build and push to dockerhub for ${{ github.repository }} with tag ${{ inputs.tag }}......
3131
if: always()
3232
- name: Checkout release branch
33-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
33+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
3434
with:
3535
ref: ${{ inputs.tag }}
3636
- name: Docker meta
3737
id: meta
38-
uses: docker/metadata-action@318604b99e75e41977312d83839a89be02ca4893 # v5.9.0
38+
uses: docker/metadata-action@c299e40c65443455700f0fdfc63efafe5b349051 # v5.10.0
3939
with:
4040
# list of Docker images to use as base name for tags
4141
images: ${{ env.DOCKERHUB_IMAGE }}
@@ -63,7 +63,7 @@ jobs:
6363
with:
6464
platforms: linux/amd64,linux/arm64
6565
- name: Set Up Docker Buildx
66-
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
66+
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
6767
- name: Build Docker image
6868
uses: docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18.0
6969
id: build
@@ -79,7 +79,7 @@ jobs:
7979
tags: ${{ steps.meta.outputs.tags }}
8080
labels: ${{ steps.meta.outputs.labels }}
8181
- name: Get github app token
82-
uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
82+
uses: actions/create-github-app-token@29824e69f54612133e76f7eaac726eef6c875baf # v2.2.1
8383
id: gh-app-token
8484
with:
8585
app-id: ${{ vars.GH_APP_ID }}
@@ -93,7 +93,7 @@ jobs:
9393
push-to-registry: false
9494
github-token: ${{ steps.gh-app-token.outputs.token }}
9595
- name: Docker Hub Description
96-
uses: peter-evans/dockerhub-description@f1b86635715271fbb2edb38dd0ed1706e6da198b
96+
uses: peter-evans/dockerhub-description@cc307723041342d9253937d12db1fff65b63db90
9797
with:
9898
username: ${{ vars.DOCKERHUB_USERNAME }}
9999
password: ${{ secrets.DOCKERHUB_PAT }}

.github/workflows/release-docs.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -29,17 +29,17 @@ jobs:
2929
TAG: ${{ inputs.tag || github.event.inputs.tag }}
3030
steps:
3131
- name: Harden the runner (Audit all outbound calls)
32-
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
32+
uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
3333
with:
3434
egress-policy: audit
3535
- name: Get github app token
36-
uses: actions/create-github-app-token@67018539274d69449ef7c02e8e71183d1719ab42 # v2.1.4
36+
uses: actions/create-github-app-token@29824e69f54612133e76f7eaac726eef6c875baf # v2.2.1
3737
id: gh-app-token
3838
with:
3939
app-id: ${{ vars.GH_APP_ID }}
4040
private-key: ${{ secrets.GH_APP_PRIVATE_KEY }}
4141
- name: Checkout tag
42-
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
42+
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1
4343
with:
4444
ref: ${{ env.TAG }}
4545
token: ${{ steps.gh-app-token.outputs.token }}
@@ -81,7 +81,7 @@ jobs:
8181
echo "PR_TITLE=${PR_TITLE:-}" >> $GITHUB_OUTPUT
8282
- name: Create Pull Request for Docs
8383
if: ${{ steps.validate_tag.outputs.PR_TITLE != '' }}
84-
uses: peter-evans/create-pull-request@271a8d0340265f705b14b6d32b9829c1cb33d45e # v7.0.8
84+
uses: peter-evans/create-pull-request@98357b18bf14b5342f975ff684046ec3b2a07725 # v8.0.0
8585
with:
8686
token: ${{ steps.gh-app-token.outputs.token }}
8787
title: ${{ steps.validate_tag.outputs.PR_TITLE }}

0 commit comments

Comments
 (0)