From c695c54438898dda9aee9ffebec36bba4ae8af22 Mon Sep 17 00:00:00 2001 From: Koral Kulacoglu Date: Wed, 1 Oct 2025 15:53:45 -0400 Subject: [PATCH] fix: pin GitHub Actions to SHA hashes Task: DX-1985 --- .github/workflows/ci.yaml | 4 ++-- .github/workflows/helmrelease.yaml | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/workflows/ci.yaml b/.github/workflows/ci.yaml index 82aa28e3..6c891d0a 100644 --- a/.github/workflows/ci.yaml +++ b/.github/workflows/ci.yaml @@ -21,7 +21,7 @@ jobs: with: go-version-file: go.mod - run: make ci-test - - uses: codecov/codecov-action@v3.1.1 + - uses: codecov/codecov-action@d9f34f8cd5cb3b3eb79b3e4b5dae3a16df499a70 # v3.1.1 with: token: ${{ secrets.CODECOV_UPLOAD_TOKEN }} file: ./.test_coverage.txt @@ -150,7 +150,7 @@ jobs: chmod -R 0777 ./bin make build-all - name: Upload binaries - uses: xresloader/upload-to-github-release@v1.3.9 + uses: xresloader/upload-to-github-release@a11a070bfe789a1d5e539e4f511fd31ce685aeb3 # v1.3.9 env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} with: diff --git a/.github/workflows/helmrelease.yaml b/.github/workflows/helmrelease.yaml index 6f14d301..60f919dd 100644 --- a/.github/workflows/helmrelease.yaml +++ b/.github/workflows/helmrelease.yaml @@ -22,12 +22,12 @@ jobs: git config user.email "$GITHUB_ACTOR@users.noreply.github.com" - name: Install Helm - uses: azure/setup-helm@v3.4 + uses: azure/setup-helm@f382f75448129b3be48f8121b9857be18d815a82 # v3.4 with: version: v3.7.1 - name: Run chart-releaser - uses: helm/chart-releaser-action@v1.4.1 + uses: helm/chart-releaser-action@98bccfd32b0f76149d188912ac8e45ddd3f8695f # v1.4.1 with: charts_dir: deploy/kubernetes/helm env: