Skip to content

Commit a5e6a65

Browse files
committed
Merge branch 'release-1.4' of github.com:Azure/eraser into release-1.4
2 parents a9cfd88 + 4b1a834 commit a5e6a65

File tree

14 files changed

+95
-95
lines changed

14 files changed

+95
-95
lines changed

.github/workflows/build-id.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
runs-on: ubuntu-latest
2020
steps:
2121
- name: Harden Runner
22-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde # v2.9.1
22+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
2323
with:
2424
egress-policy: audit
2525

.github/workflows/codeql.yaml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -24,20 +24,20 @@ jobs:
2424

2525
steps:
2626
- name: Harden Runner
27-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
27+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
2828
with:
2929
egress-policy: audit
3030

3131
- name: Checkout repository
32-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332
32+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3
3333

3434
- name: Initialize CodeQL
35-
uses: github/codeql-action/init@4dd16135b69a43b6c8efb853346f8437d92d3c93
35+
uses: github/codeql-action/init@fdbfb4d2750291e159f0156def62b853c2798ca2
3636
with:
3737
languages: ${{ matrix.language }}
3838

3939
- name: Autobuild
40-
uses: github/codeql-action/autobuild@4dd16135b69a43b6c8efb853346f8437d92d3c93
40+
uses: github/codeql-action/autobuild@fdbfb4d2750291e159f0156def62b853c2798ca2
4141

4242
- name: Perform CodeQL Analysis
43-
uses: github/codeql-action/analyze@4dd16135b69a43b6c8efb853346f8437d92d3c93
43+
uses: github/codeql-action/analyze@fdbfb4d2750291e159f0156def62b853c2798ca2

.github/workflows/dep-review.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,12 +9,12 @@ jobs:
99
runs-on: ubuntu-latest
1010
steps:
1111
- name: Harden Runner
12-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
12+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
1313
with:
1414
egress-policy: audit
1515

1616
- name: 'Checkout Repository'
17-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332
17+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3
1818

1919
- name: 'Dependency Review'
2020
uses: actions/dependency-review-action@0659a74c94536054bfa5aeb92241f70d680cc78e

.github/workflows/deploy_docs.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -27,15 +27,15 @@ jobs:
2727
run:
2828
working-directory: docs
2929
steps:
30-
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
30+
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
3131

3232
- name: Harden Runner
33-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
33+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
3434
with:
3535
egress-policy: audit
3636

3737
- name: Setup Node
38-
uses: actions/setup-node@1e60f620b9541d16bece96c5465dc8ee9832be0b # v4.0.3
38+
uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0
3939
with:
4040
node-version: 20.x
4141

@@ -44,7 +44,7 @@ jobs:
4444
run: echo "dir=$(yarn cache dir)" > $GITHUB_OUTPUT
4545

4646
- name: Cache dependencies
47-
uses: actions/cache@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9 # v4.0.2
47+
uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
4848
with:
4949
path: ${{ steps.yarn-cache.outputs.dir }}
5050
key: ${{ runner.os }}-website-${{ hashFiles('**/yarn.lock') }}

.github/workflows/e2e-build.yaml

Lines changed: 28 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -14,29 +14,29 @@ jobs:
1414
timeout-minutes: 10
1515
steps:
1616
- name: Harden Runner
17-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
17+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
1818
with:
1919
egress-policy: audit
2020
- name: Set up Go
21-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
21+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
2222
with:
2323
go-version: "1.25"
2424
check-latest: true
2525
- name: Setup buildx instance
26-
uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3.6.1
26+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
2727
with:
2828
use: true
29-
- uses: actions/cache@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9 # v4.0.2
29+
- uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
3030
with:
3131
key: ${{ runner.OS }}-go-${{ hashFiles('**/go.sum') }}
3232
restore-keys: |
3333
${{ runner.os }}-go-
3434
path: |
3535
~/go/pkg/mod
3636
~/.cache/go-build
37-
- uses: crazy-max/ghaction-github-runtime@b3a9207c0e1ef41f4cf215303c976869d0c2c1c4 # v3.0.0
37+
- uses: crazy-max/ghaction-github-runtime@3cb05d89e1f492524af3d41a1c98c83bc3025124 # v3.1.0
3838
- name: Check out code into the Go module directory
39-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
39+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
4040
- run: 'echo ${{ inputs.bucket-id }}'
4141
- name: Set env
4242
run: |
@@ -45,7 +45,7 @@ jobs:
4545
- name: Build remover
4646
run: 'make docker-build-remover OUTPUT_TYPE=type=oci,dest=./${REMOVER_REPO}_${REMOVER_TAG}.tar,name=${REMOVER_REPO}:${REMOVER_TAG}'
4747
- name: Upload Build Artifacts
48-
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
48+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
4949
with:
5050
name: ${{ inputs.bucket-id }}-remover
5151
path: remover_test.tar
@@ -57,37 +57,37 @@ jobs:
5757
timeout-minutes: 10
5858
steps:
5959
- name: Harden Runner
60-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
60+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
6161
with:
6262
egress-policy: audit
6363
- name: Set up Go
64-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
64+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
6565
with:
6666
go-version: "1.25"
6767
check-latest: true
6868
- name: Setup buildx instance
69-
uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3.6.1
69+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
7070
with:
7171
use: true
72-
- uses: actions/cache@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9 # v4.0.2
72+
- uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
7373
with:
7474
key: ${{ runner.OS }}-go-${{ hashFiles('**/go.sum') }}
7575
restore-keys: |
7676
${{ runner.os }}-go-
7777
path: |
7878
~/go/pkg/mod
7979
~/.cache/go-build
80-
- uses: crazy-max/ghaction-github-runtime@b3a9207c0e1ef41f4cf215303c976869d0c2c1c4 # v3.0.0
80+
- uses: crazy-max/ghaction-github-runtime@3cb05d89e1f492524af3d41a1c98c83bc3025124 # v3.1.0
8181
- name: Check out code into the Go module directory
82-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
82+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
8383
- name: Set env
8484
run: |
8585
echo TRIVY_SCANNER_REPO=scanner >> $GITHUB_ENV
8686
echo TRIVY_SCANNER_TAG=test >> $GITHUB_ENV
8787
- name: Build trivy-scanner
8888
run: 'make docker-build-trivy-scanner OUTPUT_TYPE=type=oci,dest=./${TRIVY_SCANNER_REPO}_${TRIVY_SCANNER_TAG}.tar,name=${TRIVY_SCANNER_REPO}:${TRIVY_SCANNER_TAG}'
8989
- name: Upload Build Artifacts
90-
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
90+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
9191
with:
9292
name: ${{ inputs.bucket-id }}-scanner
9393
path: scanner_test.tar
@@ -99,37 +99,37 @@ jobs:
9999
timeout-minutes: 10
100100
steps:
101101
- name: Harden Runner
102-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
102+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
103103
with:
104104
egress-policy: audit
105105
- name: Set up Go
106-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
106+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
107107
with:
108108
go-version: "1.25"
109109
check-latest: true
110110
- name: Setup buildx instance
111-
uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3.6.1
111+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
112112
with:
113113
use: true
114-
- uses: actions/cache@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9 # v4.0.2
114+
- uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
115115
with:
116116
key: ${{ runner.OS }}-go-${{ hashFiles('**/go.sum') }}
117117
restore-keys: |
118118
${{ runner.os }}-go-
119119
path: |
120120
~/go/pkg/mod
121121
~/.cache/go-build
122-
- uses: crazy-max/ghaction-github-runtime@b3a9207c0e1ef41f4cf215303c976869d0c2c1c4 # v3.0.0
122+
- uses: crazy-max/ghaction-github-runtime@3cb05d89e1f492524af3d41a1c98c83bc3025124 # v3.1.0
123123
- name: Check out code into the Go module directory
124-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
124+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
125125
- name: Set env
126126
run: |
127127
echo MANAGER_REPO=manager >> $GITHUB_ENV
128128
echo MANAGER_TAG=test >> $GITHUB_ENV
129129
- name: Build manager
130130
run: 'make docker-build-manager OUTPUT_TYPE=type=oci,dest=./${MANAGER_REPO}_${MANAGER_TAG}.tar,name=${MANAGER_REPO}:${MANAGER_TAG}'
131131
- name: Upload Build Artifacts
132-
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
132+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
133133
with:
134134
name: ${{ inputs.bucket-id }}-manager
135135
path: manager_test.tar
@@ -141,37 +141,37 @@ jobs:
141141
timeout-minutes: 10
142142
steps:
143143
- name: Harden Runner
144-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
144+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
145145
with:
146146
egress-policy: audit
147147
- name: Set up Go
148-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
148+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
149149
with:
150150
go-version: "1.25"
151151
check-latest: true
152152
- name: Setup buildx instance
153-
uses: docker/setup-buildx-action@988b5a0280414f521da01fcc63a27aeeb4b104db # v3.6.1
153+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
154154
with:
155155
use: true
156-
- uses: actions/cache@0c45773b623bea8c8e75f6c82b208c3cf94ea4f9 # v4.0.2
156+
- uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0
157157
with:
158158
key: ${{ runner.OS }}-go-${{ hashFiles('**/go.sum') }}
159159
restore-keys: |
160160
${{ runner.os }}-go-
161161
path: |
162162
~/go/pkg/mod
163163
~/.cache/go-build
164-
- uses: crazy-max/ghaction-github-runtime@b3a9207c0e1ef41f4cf215303c976869d0c2c1c4 # v3.0.0
164+
- uses: crazy-max/ghaction-github-runtime@3cb05d89e1f492524af3d41a1c98c83bc3025124 # v3.1.0
165165
- name: Check out code into the Go module directory
166-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
166+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
167167
- name: Set env
168168
run: |
169169
echo COLLECTOR_REPO=collector >> $GITHUB_ENV
170170
echo COLLECTOR_TAG=test >> $GITHUB_ENV
171171
- name: Build collector
172172
run: 'make docker-build-collector OUTPUT_TYPE=type=oci,dest=./${COLLECTOR_REPO}_${COLLECTOR_TAG}.tar,name=${COLLECTOR_REPO}:${COLLECTOR_TAG}'
173173
- name: Upload Build Artifacts
174-
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
174+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
175175
with:
176176
name: ${{ inputs.bucket-id }}-collector
177177
path: collector_test.tar

.github/workflows/e2e-test.yaml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -19,12 +19,12 @@ jobs:
1919
runs-on: ubuntu-latest
2020
steps:
2121
- name: Harden Runner
22-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde # v2.9.1
22+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
2323
with:
2424
egress-policy: audit
2525

2626
- name: Check out code into the Go module directory
27-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
27+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
2828
- id: set-test-matrix
2929
run: |
3030
readarray -d '' test_dirs < <(find ./test/e2e/tests -mindepth 1 -type d -print0)
@@ -47,19 +47,19 @@ jobs:
4747
E2E_TEST: ${{ fromJson(needs.build-e2e-test-list.outputs.e2e-tests) }}
4848
steps:
4949
- name: Harden Runner
50-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde
50+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2
5151
with:
5252
egress-policy: audit
5353
- name: Check out code into the Go module directory
54-
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
54+
uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
5555
- name: Fetch Build Artifacts
56-
uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 # v4.1.8
56+
uses: actions/download-artifact@018cc2cf5baa6db3ef3c5f8a56943fffe632ef53 # v6.0.0
5757
with:
5858
pattern: ${{ inputs.bucket-id }}-*
5959
path: ${{ github.workspace }}/images
6060
merge-multiple: true
6161
- name: Set up Go
62-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
62+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
6363
with:
6464
go-version: "1.25"
6565
check-latest: true
@@ -106,7 +106,7 @@ jobs:
106106
E2E_TEST=${E2E_TEST//\//_}
107107
echo "E2E_TEST=${E2E_TEST}" >> $GITHUB_ENV
108108
- name: Upload artifacts
109-
uses: actions/upload-artifact@50769540e7f4bd5e21e526ee35c689e35e0d6874 # v4.4.0
109+
uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
110110
if: always()
111111
with:
112112
name: test_logs_${{ matrix.KUBERNETES_VERSION }}_${{ env.E2E_TEST }}

.github/workflows/patch-docs.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ jobs:
1313
runs-on: ubuntu-22.04
1414
steps:
1515
- name: Harden Runner
16-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde # v2.9.1
16+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
1717
with:
1818
egress-policy: audit
1919

@@ -29,7 +29,7 @@ jobs:
2929
echo "PATCH_VERSION=${PATCH_VERSION}" >> ${GITHUB_ENV}
3030
echo "TAG=${TAG}" >> ${GITHUB_ENV}
3131
32-
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332
32+
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3
3333
with:
3434
fetch-depth: 0
3535

@@ -41,7 +41,7 @@ jobs:
4141
run: make patch-version-docs NEWVERSION=v${MAJOR_VERSION}.${MINOR_VERSION}.x TAG=v${TAG} OLDVERSION=v${MAJOR_VERSION}.${MINOR_VERSION}.$((PATCH_VERSION-1))
4242

4343
- name: Create release pull request
44-
uses: peter-evans/create-pull-request@4320041ed380b20e97d388d56a7fb4f9b8c20e79 # v7.0.0
44+
uses: peter-evans/create-pull-request@84ae59a2cdc2258d6fa0732dd66352dddae2a412 # v7.0.9
4545
with:
4646
commit-message: "chore: Patch docs for ${{ env.TAG }} release"
4747
title: "chore: Patch docs for ${{ env.TAG }} release"

.github/workflows/release-pr.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -18,12 +18,12 @@ jobs:
1818
runs-on: ubuntu-latest
1919
steps:
2020
- name: Harden Runner
21-
uses: step-security/harden-runner@5c7944e73c4c2a096b17a9cb74d65b6c2bbafbde # v2.9.1
21+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
2222
with:
2323
egress-policy: audit
2424

2525
- name: Set up Go
26-
uses: actions/setup-go@0a12ed9d6a96ab950c8f026ed9f722fe0da7ef32 # v5.0.2
26+
uses: actions/setup-go@4dc6199c7b1a012772edbd06daecab0f50c9053c # v6.1.0
2727
with:
2828
go-version: "1.25"
2929
check-latest: true
@@ -62,7 +62,7 @@ jobs:
6262
echo "TARGET_BRANCH=main" >> ${GITHUB_ENV}
6363
fi
6464
65-
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332
65+
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3
6666
with:
6767
fetch-depth: 0
6868

@@ -80,7 +80,7 @@ jobs:
8080
run: make version-docs NEWVERSION=v${MAJOR_VERSION}.${MINOR_VERSION}.x TAG=v${TAG}
8181

8282
- name: Create release pull request
83-
uses: peter-evans/create-pull-request@4320041ed380b20e97d388d56a7fb4f9b8c20e79 # v7.0.0
83+
uses: peter-evans/create-pull-request@84ae59a2cdc2258d6fa0732dd66352dddae2a412 # v7.0.9
8484
with:
8585
commit-message: "chore: Prepare ${{ env.NEWVERSION }} release"
8686
title: "chore: Prepare ${{ env.NEWVERSION }} release"

0 commit comments

Comments
 (0)