Skip to content

Commit 361a1a1

Browse files
vdemeesterclaude
andcommitted
fix(ci): pin GitHub Actions to commit SHAs
Pin unpinned action references to satisfy repository security policy: - ko-build/[email protected] → SHA d006021bd0c28d1ce33a07e7943d48b079944c8d - actions/upload-artifact@v4 → SHA ea165f8d65b6e75b540449e92b4886f43607fa02 - chainguard-dev/actions/kind-diag@main → SHA 6f4f4de7549514e7b659741b30f6476f245600dd This fixes CI startup failures caused by the repository's policy requiring all actions to be pinned to complete commit SHAs. Co-Authored-By: Claude Opus 4.5 <[email protected]>
1 parent fa7d1fe commit 361a1a1

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

.github/workflows/ci.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -101,7 +101,7 @@ jobs:
101101
- uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5.4.0
102102
with:
103103
go-version-file: "go.mod"
104-
- uses: ko-build/[email protected]
104+
- uses: ko-build/setup-ko@d006021bd0c28d1ce33a07e7943d48b079944c8d # v0.9
105105
- name: ko-resolve
106106
run: |
107107
cat <<EOF > .ko.yaml

.github/workflows/e2e-matrix.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -48,7 +48,7 @@ jobs:
4848
- uses: actions/setup-go@0aaccfd150d50ccaeb58ebd88d36e91967a5f35b # v5.4.0
4949
with:
5050
go-version-file: "go.mod"
51-
- uses: ko-build/[email protected]
51+
- uses: ko-build/setup-ko@d006021bd0c28d1ce33a07e7943d48b079944c8d # v0.9
5252

5353
- name: Install Dependencies
5454
working-directory: ./
@@ -74,12 +74,12 @@ jobs:
7474
--e2e-env ./test/e2e-tests-kind-${{ matrix.env-file }}.env
7575
7676
- name: Upload test results
77-
uses: actions/upload-artifact@v4
77+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
7878
with:
7979
name: ${{ matrix.k8s-version }}-${{ matrix.feature-flags }}
8080
path: ${{ env.ARTIFACTS }}
8181

82-
- uses: chainguard-dev/actions/kind-diag@main
82+
- uses: chainguard-dev/actions/kind-diag@6f4f4de7549514e7b659741b30f6476f245600dd # v1.5.3
8383
if: ${{ failure() }}
8484
with:
8585
artifact-name: ${{ matrix.k8s-version }}-${{ matrix.feature-flags }}-logs

0 commit comments

Comments
 (0)