diff --git a/.github/workflows/analysis.yml b/.github/workflows/analysis.yml index 09f828c9..b1876afb 100644 --- a/.github/workflows/analysis.yml +++ b/.github/workflows/analysis.yml @@ -24,7 +24,7 @@ jobs: - uses: actions/checkout@v4 - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@0.16.1 + uses: aquasecurity/trivy-action@0.18.0 with: format: "sarif" output: "trivy-results.sarif" diff --git a/.github/workflows/merge.yml b/.github/workflows/merge.yml index fa987940..fe67d8bd 100644 --- a/.github/workflows/merge.yml +++ b/.github/workflows/merge.yml @@ -44,7 +44,7 @@ jobs: steps: - uses: actions/checkout@v4 - name: Conventional Changelog Update - uses: TriPSs/conventional-changelog-action@v5.1.0 + uses: TriPSs/conventional-changelog-action@v5.2.1 id: changelog with: github-token: ${{ github.token }} diff --git a/.github/workflows/pr-open.yml b/.github/workflows/pr-open.yml index 1152aa77..ffe0aabd 100644 --- a/.github/workflows/pr-open.yml +++ b/.github/workflows/pr-open.yml @@ -19,7 +19,7 @@ jobs: pull-requests: write steps: - name: PR Greeting - uses: bcgov-nr/action-pr-description-add@v1.1.0 + uses: bcgov-nr/action-pr-description-add@v1.1.1 with: github_token: ${{ secrets.GITHUB_TOKEN }} add_markdown: | @@ -44,7 +44,7 @@ jobs: package: [api, frontend, database] steps: - uses: actions/checkout@v4 - - uses: bcgov-nr/action-builder-ghcr@v2.0.1 + - uses: bcgov-nr/action-builder-ghcr@v2.0.2 with: package: ${{ matrix.package }} tag: ${{ github.sha }}