@@ -28,11 +28,11 @@ jobs:
28
28
- name : Checkout repository
29
29
uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
30
30
- name : Initialize CodeQL
31
- uses : github/codeql-action/init@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
31
+ uses : github/codeql-action/init@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
32
32
with :
33
33
languages : ' go'
34
34
- name : Analyze
35
- uses : github/codeql-action/analyze@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
35
+ uses : github/codeql-action/analyze@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
36
36
37
37
golangci-lint :
38
38
runs-on : ubuntu-latest
44
44
steps :
45
45
- name : Checkout code
46
46
uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
47
- - uses : actions/setup-go@3041bf56c941b39c61721a86cd11f3bb1338122a # v5.2 .0
47
+ - uses : actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3 .0
48
48
with :
49
49
cache : false
50
50
go-version : ' 1.21'
69
69
with :
70
70
args : " -exclude-dir=test -exclude-dir=tools ${{ inputs.output == 'sarif' && '-no-fail -fmt sarif -out gosec-results.sarif' || '-fmt text' }} ./..."
71
71
- name : Upload
72
- uses : github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
72
+ uses : github/codeql-action/upload-sarif@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
73
73
if : inputs.output == 'sarif'
74
74
with :
75
75
sarif_file : ' gosec-results.sarif'
92
92
no-fail : ${{ inputs.output == 'sarif' && 'true' || 'false' }}
93
93
output-file : ${{ inputs.output == 'sarif' && 'hadolint-results.sarif' || '' }}
94
94
- name : Upload
95
- uses : github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
95
+ uses : github/codeql-action/upload-sarif@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
96
96
if : inputs.output == 'sarif'
97
97
with :
98
98
sarif_file : ' hadolint-results.sarif'
@@ -115,7 +115,7 @@ jobs:
115
115
format : ${{ inputs.output == 'sarif' && 'sarif' || 'plain' }}
116
116
output-file : ${{ inputs.output == 'sarif' && 'kubelinter-results.sarif' || 'kube-linter.log' }}
117
117
- name : Upload
118
- uses : github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
118
+ uses : github/codeql-action/upload-sarif@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
119
119
if : inputs.output == 'sarif'
120
120
with :
121
121
sarif_file : ' kubelinter-results.sarif'
@@ -155,7 +155,7 @@ jobs:
155
155
format : ${{ inputs.output }}
156
156
output : ${{ inputs.output == 'sarif' && 'reports/trivy-docker-results.sarif' || '' }}
157
157
- name : Upload
158
- uses : github/codeql-action/upload-sarif@b6a472f63d85b9c78a3ac5e89422239fc15e9b3c # v3.28.1
158
+ uses : github/codeql-action/upload-sarif@ee117c905ab18f32fa0f66c2fe40ecc8013f3e04 # v3.28.4
159
159
if : inputs.output == 'sarif'
160
160
with :
161
161
sarif_file : ' reports'
0 commit comments