|
41 | 41 |
|
42 | 42 | steps: |
43 | 43 | - name: Harden Runner |
44 | | - uses: step-security/harden-runner@eb238b55efaa70779f274895e782ed17c84f2895 # v2.6.1 |
| 44 | + uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0 |
45 | 45 | with: |
46 | 46 | egress-policy: audit |
47 | 47 |
|
|
50 | 50 |
|
51 | 51 | # Initializes the CodeQL tools for scanning. |
52 | 52 | - name: Initialize CodeQL |
53 | | - uses: github/codeql-action/init@0b21cf2492b6b02c465a3e5d7c473717ad7721ba # v3.23.1 |
| 53 | + uses: github/codeql-action/init@b7bf0a3ed3ecfa44160715d7c442788f65f0f923 # v3.23.2 |
54 | 54 | with: |
55 | 55 | languages: ${{ matrix.language }} |
56 | 56 | # If you wish to specify custom queries, you can do so here or in a config file. |
|
60 | 60 | # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). |
61 | 61 | # If this step fails, then you should remove it and run the build manually (see below) |
62 | 62 | - name: Autobuild |
63 | | - uses: github/codeql-action/autobuild@0b21cf2492b6b02c465a3e5d7c473717ad7721ba # v3.23.1 |
| 63 | + uses: github/codeql-action/autobuild@b7bf0a3ed3ecfa44160715d7c442788f65f0f923 # v3.23.2 |
64 | 64 |
|
65 | 65 | # i️ Command-line programs to run using the OS shell. |
66 | 66 | # 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun |
|
73 | 73 | # ./location_of_script_within_repo/buildscript.sh |
74 | 74 |
|
75 | 75 | - name: Perform CodeQL Analysis |
76 | | - uses: github/codeql-action/analyze@0b21cf2492b6b02c465a3e5d7c473717ad7721ba # v3.23.1 |
| 76 | + uses: github/codeql-action/analyze@b7bf0a3ed3ecfa44160715d7c442788f65f0f923 # v3.23.2 |
77 | 77 | with: |
78 | 78 | category: "/language:${{matrix.language}}" |
0 commit comments