|
41 | 41 |
|
42 | 42 | steps: |
43 | 43 | - name: Harden Runner |
44 | | - uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0 |
| 44 | + uses: step-security/harden-runner@6c439dc8bdf85cadbbce9ed30d1c7b959517bc49 # v2.12.2 |
45 | 45 | with: |
46 | 46 | egress-policy: audit |
47 | 47 |
|
|
50 | 50 |
|
51 | 51 | # Initializes the CodeQL tools for scanning. |
52 | 52 | - name: Initialize CodeQL |
53 | | - uses: github/codeql-action/init@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 |
| 53 | + uses: github/codeql-action/init@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 |
54 | 54 | with: |
55 | 55 | languages: ${{ matrix.language }} |
56 | 56 | # If you wish to specify custom queries, you can do so here or in a config file. |
|
60 | 60 | # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). |
61 | 61 | # If this step fails, then you should remove it and run the build manually (see below) |
62 | 62 | - name: Autobuild |
63 | | - uses: github/codeql-action/autobuild@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 |
| 63 | + uses: github/codeql-action/autobuild@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 |
64 | 64 |
|
65 | 65 | # i️ Command-line programs to run using the OS shell. |
66 | 66 | # 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun |
|
73 | 73 | # ./location_of_script_within_repo/buildscript.sh |
74 | 74 |
|
75 | 75 | - name: Perform CodeQL Analysis |
76 | | - uses: github/codeql-action/analyze@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 |
| 76 | + uses: github/codeql-action/analyze@181d5eefc20863364f96762470ba6f862bdef56b # v3.29.2 |
77 | 77 | with: |
78 | 78 | category: "/language:${{matrix.language}}" |
0 commit comments