File tree Expand file tree Collapse file tree 5 files changed +8
-6
lines changed Expand file tree Collapse file tree 5 files changed +8
-6
lines changed Original file line number Diff line number Diff line change 99 - name : Checkout
1010 uses : actions/checkout@v4
1111 - name : Checkmarx AST CLI Action
12- uses : checkmarx/ast-github-action@main
12+ uses : checkmarx/ast-github-action@831a8d51a8a0535c0399f9c12728d8d3cc22d850 # main (currently 2.0.28)
1313 with :
1414 base_uri : ${{ secrets.BASE_URI }}
1515 cx_tenant : ${{ secrets.TENANT }}
Original file line number Diff line number Diff line change 4141
4242 - name : Delete releases and tags
4343 continue-on-error : true
44- uses : dev-drprasad/delete-older-releases@v0.3.4
44+ uses : dev-drprasad/delete-older-releases@dfbe6be2a006e9475dfcbe5b8d201f1824c2a9fe # v0.3.4
4545 env :
4646 GITHUB_TOKEN : ${{ secrets.PERSONAL_ACCESS_TOKEN }}
4747 with :
Original file line number Diff line number Diff line change 1111 steps :
1212 - name : Dependabot metadata
1313 id : metadata
14- uses : dependabot/fetch-metadata@v2.1.0
14+ uses : dependabot/fetch-metadata@5e5f99653a5b510e8555840e80cbf1514ad4af38 # v2.1.0
1515 with :
1616 github-token : " ${{ secrets.PERSONAL_ACCESS_TOKEN }}"
1717 - name : Enable auto-merge for Dependabot PRs
2020 GITHUB_TOKEN : ${{secrets.PERSONAL_ACCESS_TOKEN }}
2121 run : gh pr merge --auto --merge "$PR_URL"
2222 - name : Auto approve dependabot PRs
23- uses : hmarr/auto-approve-action@v4
23+ uses : hmarr/auto-approve-action@f0939ea97e9205ef24d872e76833fa908a770363 # v4
2424 with :
2525 github-token : ${{ secrets.PERSONAL_ACCESS_TOKEN }}
Original file line number Diff line number Diff line change @@ -92,11 +92,13 @@ jobs:
9292 npm ci
9393 npm run build
9494
95+
9596 # PUSH TAGS IF IT IS A RELEASE
9697 - name : Push tag if release
9798 if : inputs.dev == false
9899 run : git push && git push --tags
99100
101+
100102 # PUBLISH NPM PACKAGE
101103 - name : Publish npm package
102104 run : |
@@ -110,7 +112,7 @@ jobs:
110112
111113 # CREATE RELEASE
112114 - name : Create Release
113- uses : softprops/action-gh-release@v2
115+ uses : softprops/action-gh-release@a6c7483a42ee9d5daced968f6c217562cd680f7f # v2
114116 with :
115117 name : ${{env.TAG_NAME}}
116118 tag_name : ${{env.TAG_NAME}}
Original file line number Diff line number Diff line change 2929 ./.github/scripts/update_cli.sh ${{ steps.checkmarx-ast-cli.outputs.release_tag }}
3030 - name : Create Pull Request
3131 if : steps.checkmarx-ast-cli.outputs.current_tag != steps.checkmarx-ast-cli.outputs.release_tag
32- uses : peter-evans/create-pull-request@v6
32+ uses : peter-evans/create-pull-request@b1ddad2c994a25fbc81a28b3ec0e368bb2021c50 # v6
3333 with :
3434 token : ${{ secrets.PERSONAL_ACCESS_TOKEN }}
3535 commit-message : Update checkmarx-ast-cli to ${{ steps.checkmarx-ast-cli.outputs.release_tag }}
You can’t perform that action at this time.
0 commit comments