|  | 
| 41 | 41 | 
 | 
| 42 | 42 |  steps: | 
| 43 | 43 |  - name: Harden Runner | 
| 44 |  | - uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0 | 
|  | 44 | + uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2 | 
| 45 | 45 |  with: | 
| 46 | 46 |  egress-policy: audit | 
| 47 | 47 | 
 | 
|  | 
| 50 | 50 | 
 | 
| 51 | 51 |  # Initializes the CodeQL tools for scanning. | 
| 52 | 52 |  - name: Initialize CodeQL | 
| 53 |  | - uses: github/codeql-action/init@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 | 
|  | 53 | + uses: github/codeql-action/init@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 | 
| 54 | 54 |  with: | 
| 55 | 55 |  languages: ${{ matrix.language }} | 
| 56 | 56 |  # If you wish to specify custom queries, you can do so here or in a config file. | 
|  | 
| 60 | 60 |  # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). | 
| 61 | 61 |  # If this step fails, then you should remove it and run the build manually (see below) | 
| 62 | 62 |  - name: Autobuild | 
| 63 |  | - uses: github/codeql-action/autobuild@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 | 
|  | 63 | + uses: github/codeql-action/autobuild@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 | 
| 64 | 64 | 
 | 
| 65 | 65 |  # i️ Command-line programs to run using the OS shell. | 
| 66 | 66 |  # 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun | 
|  | 
| 73 | 73 |  # ./location_of_script_within_repo/buildscript.sh | 
| 74 | 74 | 
 | 
| 75 | 75 |  - name: Perform CodeQL Analysis | 
| 76 |  | - uses: github/codeql-action/analyze@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 | 
|  | 76 | + uses: github/codeql-action/analyze@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 | 
| 77 | 77 |  with: | 
| 78 | 78 |  category: "/language:${{matrix.language}}" | 
0 commit comments