Skip to content

Commit 9c39955

Browse files
added SHAs for github-actions (#1195)
Co-authored-by: Arkadii Yakovets <[email protected]>
1 parent 574ad15 commit 9c39955

File tree

7 files changed

+56
-56
lines changed

7 files changed

+56
-56
lines changed

.github/workflows/label-issues.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ jobs:
1414
runs-on: ubuntu-latest
1515
steps:
1616
- name: Apply Labels to Issues
17-
uses: actions/github-script@v7.0.1
17+
uses: actions/github-script@3908079ba1e7bce10117ad701c321d07e89017a9
1818
with:
1919
script: |
2020
const issue = context.payload.issue;

.github/workflows/label-pull-requests.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ jobs:
1010
pull-requests: write
1111
runs-on: ubuntu-latest
1212
steps:
13-
- uses: actions/labeler@v5
13+
- uses: actions/labeler@6463cdb00ee92c05bec55dffc4e1fce250301945
1414
with:
1515
configuration-path: .github/labeler.yml
1616
sync-labels: true

.github/workflows/run-ci-cd.yaml

Lines changed: 31 additions & 31 deletions
Original file line numberDiff line numberDiff line change
@@ -36,29 +36,29 @@ jobs:
3636
runs-on: ubuntu-latest
3737
steps:
3838
- name: Check out repository
39-
uses: actions/checkout@v4
39+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
4040

4141
- name: Install Poetry
4242
run: pipx install poetry
4343

4444
- name: Set up Python
45-
uses: actions/setup-python@v5
45+
uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55
4646
with:
4747
cache: 'poetry'
4848
cache-dependency-path: backend/poetry.lock
4949
python-version: '3.13'
5050

5151
- name: Run pre-commit
52-
uses: pre-commit/action@v3.0.1
52+
uses: pre-commit/action@2c7b3805fd2a0fd8c1884dcaebf91fc102a13ecd
5353

5454
- name: Install pnpm
55-
uses: pnpm/action-setup@v4
55+
uses: pnpm/action-setup@d648c2dd069001a242c621c8306af467f150e99d
5656
with:
5757
version: 10
5858
run_install: false
5959

6060
- name: Set up Node
61-
uses: actions/setup-node@v4
61+
uses: actions/setup-node@40337cb8f758cccdfe3475af609daa63f81c7e23
6262
with:
6363
node-version: 22
6464
cache: 'pnpm'
@@ -86,7 +86,7 @@ jobs:
8686
runs-on: ubuntu-latest
8787
steps:
8888
- name: Check out repository
89-
uses: actions/checkout@v4
89+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
9090

9191
- name: Run cspell
9292
run: |
@@ -99,13 +99,13 @@ jobs:
9999
runs-on: ubuntu-latest
100100
steps:
101101
- name: Check out repository
102-
uses: actions/checkout@v4
102+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
103103

104104
- name: Set up Docker buildx
105-
uses: docker/setup-buildx-action@v3
105+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
106106

107107
- name: Build backend test image
108-
uses: docker/build-push-action@v6
108+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
109109
with:
110110
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-backend:cache
111111
context: backend
@@ -125,13 +125,13 @@ jobs:
125125
runs-on: ubuntu-latest
126126
steps:
127127
- name: Check out repository
128-
uses: actions/checkout@v4
128+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
129129

130130
- name: Set up Docker buildx
131-
uses: docker/setup-buildx-action@v3
131+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
132132

133133
- name: Build frontend unit-testing image
134-
uses: docker/build-push-action@v6
134+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
135135
with:
136136
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-unit:cache
137137
context: frontend
@@ -151,13 +151,13 @@ jobs:
151151
runs-on: ubuntu-latest
152152
steps:
153153
- name: Check out repository
154-
uses: actions/checkout@v4
154+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
155155

156156
- name: Set up Docker buildx
157-
uses: docker/setup-buildx-action@v3
157+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
158158

159159
- name: Build frontend end-to-end testing image
160-
uses: docker/build-push-action@v6
160+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
161161
with:
162162
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-e2e:cache
163163
context: frontend
@@ -183,22 +183,22 @@ jobs:
183183
runs-on: ubuntu-latest
184184
steps:
185185
- name: Check out repository
186-
uses: actions/checkout@v4
186+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
187187

188188
- name: Set up QEMU
189-
uses: docker/setup-qemu-action@v3
189+
uses: docker/setup-qemu-action@fcd3152d8ad392d0e9c14d3f0de40f0a88b8ca0e
190190

191191
- name: Set up Docker buildx
192-
uses: docker/setup-buildx-action@v3
192+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
193193

194194
- name: Login to Docker Hub
195-
uses: docker/login-action@v3
195+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772
196196
with:
197197
username: ${{ env.DOCKERHUB_USERNAME }}
198198
password: ${{ secrets.DOCKERHUB_TOKEN }}
199199

200200
- name: Build backend image
201-
uses: docker/build-push-action@v6
201+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
202202
with:
203203
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-backend:staging-cache
204204
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-backend:staging-cache,mode=max
@@ -218,7 +218,7 @@ jobs:
218218
echo "VITE_SENTRY_DSN=${{ secrets.VITE_SENTRY_DSN }}" >> frontend/.env
219219
220220
- name: Build frontend image
221-
uses: docker/build-push-action@v6
221+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
222222
with:
223223
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-frontend:staging-cache
224224
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-frontend:staging-cache,mode=max
@@ -243,7 +243,7 @@ jobs:
243243
runs-on: ubuntu-latest
244244
steps:
245245
- name: Check out repository
246-
uses: actions/checkout@v4
246+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
247247

248248
- name: Prepare SSH key
249249
run: |
@@ -300,7 +300,7 @@ jobs:
300300
runs-on: ubuntu-latest
301301
steps:
302302
- name: Check out repository
303-
uses: actions/checkout@v4
303+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
304304

305305
- name: Prepare SSH key
306306
run: |
@@ -325,22 +325,22 @@ jobs:
325325
runs-on: ubuntu-latest
326326
steps:
327327
- name: Check out repository
328-
uses: actions/checkout@v4
328+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
329329

330330
- name: Set up QEMU
331-
uses: docker/setup-qemu-action@v3
331+
uses: docker/setup-qemu-action@fcd3152d8ad392d0e9c14d3f0de40f0a88b8ca0e
332332

333333
- name: Set up Docker buildx
334-
uses: docker/setup-buildx-action@v3
334+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
335335

336336
- name: Login to Docker Hub
337-
uses: docker/login-action@v3
337+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772
338338
with:
339339
username: ${{ env.DOCKERHUB_USERNAME }}
340340
password: ${{ secrets.DOCKERHUB_TOKEN }}
341341

342342
- name: Build backend image
343-
uses: docker/build-push-action@v6
343+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
344344
with:
345345
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-backend:production-cache
346346
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-backend:production-cache,mode=max
@@ -361,7 +361,7 @@ jobs:
361361
echo "VITE_SENTRY_DSN=${{ secrets.VITE_SENTRY_DSN }}" >> frontend/.env
362362
363363
- name: Build frontend image
364-
uses: docker/build-push-action@v6
364+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
365365
with:
366366
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-frontend:production-cache
367367
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-frontend:production-cache,mode=max
@@ -386,7 +386,7 @@ jobs:
386386
runs-on: ubuntu-latest
387387
steps:
388388
- name: Check out repository
389-
uses: actions/checkout@v4
389+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
390390

391391
- name: Prepare SSH key
392392
run: |
@@ -443,7 +443,7 @@ jobs:
443443
runs-on: ubuntu-latest
444444
steps:
445445
- name: Check out repository
446-
uses: actions/checkout@v4
446+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
447447

448448
- name: Prepare SSH key
449449
run: |

.github/workflows/run-code-ql.yaml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -26,22 +26,22 @@ jobs:
2626
- python
2727
steps:
2828
- name: Check out repository
29-
uses: actions/checkout@v4
29+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
3030

3131
- name: Initialize CodeQL
32-
uses: github/codeql-action/init@v3
32+
uses: github/codeql-action/init@9f45e7498becbbc08084a122b4be9ab534ac6d88
3333
with:
3434
languages: ${{ matrix.language }}
3535

3636
- name: Install pnpm
37-
uses: pnpm/action-setup@v4
37+
uses: pnpm/action-setup@d648c2dd069001a242c621c8306af467f150e99d
3838
with:
3939
version: 10
4040
run_install: false
4141

4242
- name: Set up Node
4343
if: matrix.language == 'javascript-typescript'
44-
uses: actions/setup-node@v4
44+
uses: actions/setup-node@40337cb8f758cccdfe3475af609daa63f81c7e23
4545
with:
4646
node-version: 22
4747
cache: 'pnpm'
@@ -53,6 +53,6 @@ jobs:
5353
run: pnpm install --frozen-lockfile
5454

5555
- name: Perform CodeQL analysis
56-
uses: github/codeql-action/analyze@v3
56+
uses: github/codeql-action/analyze@9f45e7498becbbc08084a122b4be9ab534ac6d88
5757
with:
5858
category: /language:${{ matrix.language }}

.github/workflows/sync-nest-data.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323
runs-on: ubuntu-latest
2424
steps:
2525
- name: Check out repository
26-
uses: actions/checkout@v4
26+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
2727

2828
- name: Prepare SSH key
2929
run: |

.github/workflows/test-schema.yaml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -31,20 +31,20 @@ jobs:
3131
runs-on: ubuntu-latest
3232
steps:
3333
- name: Check out repository
34-
uses: actions/checkout@v4
34+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
3535

3636
- name: Install Poetry
3737
run: pipx install poetry
3838

3939
- name: Set up Python
40-
uses: actions/setup-python@v5
40+
uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55
4141
with:
4242
cache: poetry
4343
cache-dependency-path: schema/poetry.lock
4444
python-version: '3.13'
4545

4646
- name: Run pre-commit
47-
uses: pre-commit/action@v3.0.1
47+
uses: pre-commit/action@2c7b3805fd2a0fd8c1884dcaebf91fc102a13ecd
4848

4949
- name: Check for uncommitted changes
5050
run: |
@@ -62,15 +62,15 @@ jobs:
6262
- python
6363
steps:
6464
- name: Check out repository
65-
uses: actions/checkout@v4
65+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
6666

6767
- name: Initialize CodeQL
68-
uses: github/codeql-action/init@v3
68+
uses: github/codeql-action/init@9f45e7498becbbc08084a122b4be9ab534ac6d88
6969
with:
7070
languages: ${{ matrix.language }}
7171

7272
- name: Perform CodeQL analysis
73-
uses: github/codeql-action/analyze@v3
73+
uses: github/codeql-action/analyze@9f45e7498becbbc08084a122b4be9ab534ac6d88
7474
with:
7575
category: /language:${{ matrix.language }}
7676

@@ -79,7 +79,7 @@ jobs:
7979
runs-on: ubuntu-latest
8080
steps:
8181
- name: Check out repository
82-
uses: actions/checkout@v4
82+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
8383

8484
- name: Run cspell
8585
run: |
@@ -92,13 +92,13 @@ jobs:
9292
runs-on: ubuntu-latest
9393
steps:
9494
- name: Check out repository
95-
uses: actions/checkout@v4
95+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
9696

9797
- name: Set up Docker buildx
98-
uses: docker/setup-buildx-action@v3
98+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
9999

100100
- name: Build schema test image
101-
uses: docker/build-push-action@v6
101+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
102102
with:
103103
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-schema:cache
104104
context: schema

.github/workflows/update-nest-test-images.yaml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -18,19 +18,19 @@ jobs:
1818
if: ${{ github.repository == 'OWASP/Nest' }}
1919
runs-on: ubuntu-latest
2020
steps:
21-
- uses: actions/checkout@v4
21+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
2222

2323
- name: Set up Docker buildx
24-
uses: docker/setup-buildx-action@v3
24+
uses: docker/setup-buildx-action@941183f0a080fa6be59a9e3d3f4108c19a528204
2525

2626
- name: Login to Docker Hub
27-
uses: docker/login-action@v3
27+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772
2828
with:
2929
username: ${{ env.DOCKERHUB_USERNAME }}
3030
password: ${{ secrets.DOCKERHUB_TOKEN }}
3131

3232
- name: Update backend test image
33-
uses: docker/build-push-action@v6
33+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
3434
with:
3535
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-backend:cache
3636
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-backend:cache,mode=max
@@ -41,7 +41,7 @@ jobs:
4141
tags: ${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-backend:latest
4242

4343
- name: Update frontend unit test image
44-
uses: docker/build-push-action@v6
44+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
4545
with:
4646
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-unit:cache
4747
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-unit:cache,mode=max
@@ -52,7 +52,7 @@ jobs:
5252
tags: ${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-unit:latest
5353

5454
- name: Update frontend end-to-end test image
55-
uses: docker/build-push-action@v6
55+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
5656
with:
5757
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-e2e:cache
5858
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-e2e:cache,mode=max
@@ -63,7 +63,7 @@ jobs:
6363
tags: ${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-frontend-e2e:latest
6464

6565
- name: Update schema test image
66-
uses: docker/build-push-action@v6
66+
uses: docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4
6767
with:
6868
cache-from: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-schema:cache
6969
cache-to: type=registry,ref=${{ env.DOCKERHUB_USERNAME }}/owasp-nest-test-schema:cache,mode=max

0 commit comments

Comments
 (0)