diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index 8b21e49..96c290b 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -31,12 +31,12 @@ jobs: uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 - name: Initialize CodeQL - uses: github/codeql-action/init@c0d1daa7f7e14667747d73a7dbbe8c074bc8bfe2 + uses: github/codeql-action/init@47b3d888fe66b639e431abf22ebca059152f1eea with: languages: ${{ matrix.language }} - name: Autobuild - uses: github/codeql-action/autobuild@c0d1daa7f7e14667747d73a7dbbe8c074bc8bfe2 + uses: github/codeql-action/autobuild@47b3d888fe66b639e431abf22ebca059152f1eea - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@c0d1daa7f7e14667747d73a7dbbe8c074bc8bfe2 + uses: github/codeql-action/analyze@47b3d888fe66b639e431abf22ebca059152f1eea diff --git a/.github/workflows/snyk-schedule.yml b/.github/workflows/snyk-schedule.yml index 07188de..10c2850 100644 --- a/.github/workflows/snyk-schedule.yml +++ b/.github/workflows/snyk-schedule.yml @@ -54,6 +54,6 @@ jobs: run: snyk test --project-name=vermin --package-manager=pip --file=misc/.$reqs-requirements.txt --command=python3 --sarif-file-output=snyk-$reqs.sarif --show-vulnerable-paths=all --print-deps - name: Upload result to GitHub Code Scanning - uses: github/codeql-action/upload-sarif@c0d1daa7f7e14667747d73a7dbbe8c074bc8bfe2 + uses: github/codeql-action/upload-sarif@47b3d888fe66b639e431abf22ebca059152f1eea with: sarif_file: snyk-${{matrix.requirements}}.sarif