Skip to content

Commit f3d3b5f

Browse files
authored
Merge branch 'main' into dependabot/npm_and_yarn/multi-cc382f683c
2 parents 855a87d + a900639 commit f3d3b5f

4 files changed

Lines changed: 13 additions & 13 deletions

File tree

.github/workflows/quality-checks-devcontainer.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -405,7 +405,7 @@ jobs:
405405
make cfn-guard-cdk
406406
407407
- name: Download terraform plans
408-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
408+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
409409
with:
410410
pattern: "*_terraform_plan"
411411
path: terraform_plans/

.github/workflows/quality-checks.yml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -204,7 +204,7 @@ jobs:
204204
cd src
205205
go mod vendor
206206
- name: Check licenses
207-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
207+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
208208
with:
209209
scan-type: "fs"
210210
scan-ref: "."
@@ -247,7 +247,7 @@ jobs:
247247
- name: Run unit tests
248248
run: make test
249249
- name: Generate SBOM
250-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
250+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
251251
with:
252252
scan-type: "fs"
253253
scan-ref: "."
@@ -264,7 +264,7 @@ jobs:
264264

265265
- name: Check python vulnerabilities
266266
if: ${{ always() && steps.check_languages.outputs.uses_poetry == 'true'}}
267-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
267+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
268268
with:
269269
scan-type: "fs"
270270
skip-files: "**/package-lock.json,**/go.mod,**/pom.xml"
@@ -277,7 +277,7 @@ jobs:
277277
trivy-config: trivy.yaml
278278
- name: Check node vulnerabilities
279279
if: ${{ always() && steps.check_languages.outputs.uses_node == 'true' }}
280-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
280+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
281281
with:
282282
scan-type: "fs"
283283
skip-files: "**/poetry.lock,**/go.mod,**/pom.xml"
@@ -290,7 +290,7 @@ jobs:
290290
trivy-config: trivy.yaml
291291
- name: Check go vulnerabilities
292292
if: ${{ always() && steps.check_languages.outputs.uses_go == 'true' }}
293-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
293+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
294294
with:
295295
scan-type: "fs"
296296
skip-files: "**/poetry.lock,**/package-lock.json,**/pom.xml"
@@ -302,7 +302,7 @@ jobs:
302302
exit-code: "1"
303303
- name: Check java vulnerabilities
304304
if: ${{ always() && steps.check_languages.outputs.uses_java == 'true' }}
305-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
305+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
306306
with:
307307
scan-type: "fs"
308308
skip-files: "**/poetry.lock,**/package-lock.json,**/go.mod"
@@ -486,7 +486,7 @@ jobs:
486486
make docker-build
487487
488488
- name: Check docker vulnerabilities
489-
uses: aquasecurity/trivy-action@97e0b3872f55f89b95b2f65b3dbab56962816478
489+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
490490
with:
491491
scan-type: "image"
492492
image-ref: ${{ matrix.docker_image }}
@@ -660,7 +660,7 @@ jobs:
660660
done
661661
662662
- name: Download terraform plans
663-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
663+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
664664
with:
665665
pattern: "*_terraform_plan"
666666
path: terraform_plans/

.github/workflows/tag-release-devcontainer.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -122,7 +122,7 @@ jobs:
122122
123123
- name: Download extra artifact
124124
if: ${{ inputs.extra_artifact_name != '' }}
125-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
125+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
126126
with:
127127
artifact-ids: ${{ inputs.extra_artifact_id }}
128128
github-token: ${{ secrets.GITHUB_TOKEN }}

.github/workflows/tag-release.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -190,7 +190,7 @@ jobs:
190190
next_version_tag: ${{ steps.output_version_tag.outputs.NEXT_VERSION_TAG }}
191191
steps:
192192
- name: Fetch asdf artifact
193-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
193+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
194194
with:
195195
name: asdf_artifact
196196
- name: Install asdf
@@ -234,7 +234,7 @@ jobs:
234234
BRANCH_NAME: ${{ inputs.branch_name }}
235235

236236
- name: Fetch semantic-release config
237-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
237+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
238238
with:
239239
name: config_artifact
240240

@@ -264,7 +264,7 @@ jobs:
264264
265265
- name: Download extra artifact
266266
if: ${{ inputs.extra_artifact_name != '' }}
267-
uses: actions/download-artifact@70fc10c6e5e1ce46ad2ea6f2b72d43f7d47b13c3
267+
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c
268268
with:
269269
artifact-ids: ${{ inputs.extra_artifact_id }}
270270
github-token: ${{ secrets.GITHUB_TOKEN }}

0 commit comments

Comments
 (0)