2929 contents : read
3030 steps :
3131 - name : Checkout repository
32- uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
32+ uses : actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
3333 with :
3434 persist-credentials : false
3535
@@ -39,12 +39,12 @@ jobs:
3939 go-version-file : " go.mod"
4040
4141 - name : Initialize CodeQL
42- uses : github/codeql-action/init@755f44910c12a3d7ca0d8c6e42c048b3362f7cec # v3.30.8
42+ uses : github/codeql-action/init@cf1bb45a277cb3c205638b2cd5c984db1c46a412 # v4.31.7
4343 with :
4444 languages : go
4545
4646 - name : Perform CodeQL Analysis
47- uses : github/codeql-action/analyze@755f44910c12a3d7ca0d8c6e42c048b3362f7cec # v3.30.8
47+ uses : github/codeql-action/analyze@cf1bb45a277cb3c205638b2cd5c984db1c46a412 # v4.31.7
4848 with :
4949 category : " /language:go"
5050
5656 contents : read
5757 steps :
5858 - name : Checkout repository
59- uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
59+ uses : actions/checkout@93cb6efe18208431cddfb8368fd83d5badbf9bfd # v5.0.1
6060 with :
6161 persist-credentials : false
6262
@@ -97,13 +97,13 @@ jobs:
9797 severity : " LOW,MEDIUM,HIGH,CRITICAL"
9898
9999 - name : Upload Trivy scan results to GitHub Security tab
100- uses : github/codeql-action/upload-sarif@755f44910c12a3d7ca0d8c6e42c048b3362f7cec # v3.30.8
100+ uses : github/codeql-action/upload-sarif@cf1bb45a277cb3c205638b2cd5c984db1c46a412 # v4.31.7
101101 with :
102102 sarif_file : " trivy-results.sarif"
103103 category : " Trivy"
104104
105105 - name : Upload Trivy scan results as artifact
106- uses : actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
106+ uses : actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
107107 with :
108108 name : trivy-results
109109 path : trivy-results.sarif
0 commit comments