Skip to content

security: update github actions and keep updated#692

Open
KyleAure wants to merge 1 commit intoeclipse-ee4j:masterfrom
KyleAure:github-actions-security-updates
Open

security: update github actions and keep updated#692
KyleAure wants to merge 1 commit intoeclipse-ee4j:masterfrom
KyleAure:github-actions-security-updates

Conversation

@KyleAure
Copy link
Member

@KyleAure KyleAure commented Dec 8, 2025

  • Use SHA versions of Github Action dependencies to avoid supply chain attacks.
  • Add Dependabot to workflow to keep these dependencies up to date.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant