Skip to content

Conversation

@shore
Copy link

@shore shore commented Jun 19, 2025

TLDR

Hash-pin an action in a workflow.

Description

Hash-pin an action in a workflow.

Fixes

SECVULN-22904

Type of change

Workflow update. No behavioral changes.

How Has This Been Tested?

N/A

PCI review checklist

  • If applicable, I’ve documented a plan to revert these changes if they
    require more than reverting the pull request.

  • If applicable, I’ve worked with GRC to document the impact of any changes
    to security controls.

    Examples of changes to controls include access controls, encryption, logging,
    etc.

  • If applicable, I’ve worked with GRC to ensure compliance due to a
    significant change to the cardholder data environment.

    Examples include changes to operating systems, ports, protocols, services,
    cryptography-related components, PII processing code, etc.

If you have any questions, please contact your direct supervisor, GRC
(#team-grc), or the PCI working group (#proj-pci-core). You can also find more
information at
PCI Compliance.

@shore shore requested a review from a team as a code owner June 19, 2025 18:58
@shore shore requested a review from claire-labry June 19, 2025 18:58
@jeanneryan jeanneryan self-requested a review June 28, 2025 00:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants