diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 91cd5fc..8167142 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -17,7 +17,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 - name: Install ShellCheck run: sudo apt-get install -y shellcheck - name: Run ShellCheck @@ -31,7 +31,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 - uses: actions/setup-python@v6 with: python-version: "3.12" @@ -51,7 +51,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 with: fetch-depth: 0 - uses: trufflesecurity/trufflehog@main @@ -66,7 +66,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 - uses: actions/dependency-review-action@v4 with: fail-on-severity: high diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 412df25..f5843ad 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -24,7 +24,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 - uses: github/codeql-action/init@v4 with: languages: ${{ matrix.language }} diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 5f98fae..2d4a254 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -19,7 +19,7 @@ jobs: - uses: step-security/harden-runner@v2 with: egress-policy: audit - - uses: actions/checkout@v4 + - uses: actions/checkout@v6 with: persist-credentials: false - uses: ossf/scorecard-action@v2