Skip to content

Conversation

tjaniczek
Copy link
Collaborator

@tjaniczek tjaniczek commented Jul 16, 2025

  1. Pinned All Third-Party Actions to Commit SHA
  2. Fixed Unsafe Checkout Reference
  • Replaced actions/checkout@master with pinned SHA in triage.yaml
  1. Updated Deprecated Actions
  • Replaced actions/[email protected] with actions/github-script@v7 (pinned SHA)
  • Modernized syntax from CLI args to JavaScript API calls
  1. Added Actor Validation
  • Added collaborator validation to issue_comment workflow in check-repro.yml
  • Workflow now validates github.actor is a repository collaborator before executing

Copy link

The mobile version of example app from this branch is ready! You can see it here.

@callstack-bot
Copy link

callstack-bot commented Jul 16, 2025

Hey @tjaniczek, thank you for your pull request 🤗. The documentation from this branch can be viewed here.

@tjaniczek tjaniczek changed the title chore: pin github actions to specific commit fix(chore): Pin github actions to specific commit Jul 16, 2025
@tjaniczek tjaniczek merged commit 2344721 into main Jul 16, 2025
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants