diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 6652d5a..b54c0a3 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -107,7 +107,7 @@ jobs: uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6 - name: Initialize CodeQL - uses: github/codeql-action/init@0e9f55954318745b37b7933c693bc093f7336125 # v4 + uses: github/codeql-action/init@c10b8064de6f491fea524254123dbe5e09572f13 # v4 with: languages: rust queries: +security-and-quality @@ -119,7 +119,7 @@ jobs: run: cargo build --all-features - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@0e9f55954318745b37b7933c693bc093f7336125 # v4 + uses: github/codeql-action/analyze@c10b8064de6f491fea524254123dbe5e09572f13 # v4 with: category: "/language:rust" @@ -140,7 +140,7 @@ jobs: - name: Upload SARIF file if: always() && hashFiles('semgrep.sarif') != '' - uses: github/codeql-action/upload-sarif@0e9f55954318745b37b7933c693bc093f7336125 # v4 + uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4 with: sarif_file: semgrep.sarif @@ -230,6 +230,6 @@ jobs: - name: Upload SARIF results if: hashFiles('results.sarif') != '' continue-on-error: true - uses: github/codeql-action/upload-sarif@0e9f55954318745b37b7933c693bc093f7336125 # v4 + uses: github/codeql-action/upload-sarif@c10b8064de6f491fea524254123dbe5e09572f13 # v4 with: sarif_file: results.sarif