Skip to content

Commit 8df72d0

Browse files
committed
security(workflows): pin versions to commit hashes
1 parent 67ab6c0 commit 8df72d0

File tree

3 files changed

+15
-15
lines changed

3 files changed

+15
-15
lines changed

.github/workflows/build_and_test.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -19,11 +19,11 @@ jobs:
1919
os: windows-latest
2020
steps:
2121
- name: Checkout
22-
uses: actions/checkout@v4
22+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
2323
- name: Setup Rust toolchain for ${{ matrix.os }}
24-
uses: actions-rust-lang/setup-rust-toolchain@v1
24+
uses: actions-rust-lang/setup-rust-toolchain@fb51252c7ba57d633bc668f941da052e410add48
2525
- name: Test for ${{ matrix.os }}
26-
uses: actions-rs/cargo@v1
26+
uses: actions-rs/cargo@844f36862e911db73fe0815f00a4a2602c279505
2727
with:
2828
command: test
2929
args: --release --all-features

.github/workflows/deploy_prerelease.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -11,11 +11,11 @@ jobs:
1111
runs-on: ubuntu-latest
1212
steps:
1313
- name: Checkout
14-
uses: actions/checkout@v4
14+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
1515
- name: Setup Rust toolchain for ubuntu-latest
16-
uses: actions-rust-lang/setup-rust-toolchain@v1
16+
uses: actions-rust-lang/setup-rust-toolchain@fb51252c7ba57d633bc668f941da052e410add48
1717
- name: Package
18-
uses: actions-rs/cargo@v1
18+
uses: actions-rs/cargo@844f36862e911db73fe0815f00a4a2602c279505
1919
with:
2020
command: package
2121
args: --all-features

.github/workflows/deploy_release.yml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -8,9 +8,9 @@ jobs:
88
runs-on: ubuntu-latest
99
steps:
1010
- name: Checkout
11-
uses: actions/checkout@v4
11+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
1212
- name: Setup Rust toolchain for ubuntu-latest
13-
uses: actions-rust-lang/setup-rust-toolchain@v1
13+
uses: actions-rust-lang/setup-rust-toolchain@fb51252c7ba57d633bc668f941da052e410add48
1414
- name: Read source branch version
1515
id: source_version
1616
run: echo "version=$(cargo read-manifest | jq -r .version)" >> $GITHUB_OUTPUT
@@ -36,16 +36,16 @@ jobs:
3636
runs-on: ubuntu-latest
3737
steps:
3838
- name: Checkout
39-
uses: actions/checkout@v4
39+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
4040
- name: Setup Rust toolchain for ubuntu-latest
41-
uses: actions-rust-lang/setup-rust-toolchain@v1
41+
uses: actions-rust-lang/setup-rust-toolchain@fb51252c7ba57d633bc668f941da052e410add48
4242
- name: Login to crates.io
43-
uses: actions-rs/cargo@v1
43+
uses: actions-rs/cargo@844f36862e911db73fe0815f00a4a2602c279505
4444
with:
4545
command: login
4646
args: ${{ secrets.CRATES_IO_TOKEN }}
4747
- name: Publish to crates.io
48-
uses: actions-rs/cargo@v1
48+
uses: actions-rs/cargo@844f36862e911db73fe0815f00a4a2602c279505
4949
with:
5050
command: publish
5151
github:
@@ -57,11 +57,11 @@ jobs:
5757
runs-on: ubuntu-latest
5858
steps:
5959
- name: Checkout
60-
uses: actions/checkout@v4
60+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
6161
- name: Setup Rust toolchain for ubuntu-latest
62-
uses: actions-rust-lang/setup-rust-toolchain@v1
62+
uses: actions-rust-lang/setup-rust-toolchain@fb51252c7ba57d633bc668f941da052e410add48
6363
- name: Package
64-
uses: actions-rs/cargo@v1
64+
uses: actions-rs/cargo@844f36862e911db73fe0815f00a4a2602c279505
6565
with:
6666
command: package
6767
args: --all-features

0 commit comments

Comments
 (0)