Skip to content

Commit 74156ec

Browse files
committed
chore: github actions cleanup
- [x] add stale workflow - [x] switch to umutable actions on ones that allow it (closes 8 security warnings) Signed-off-by: jmeridth <jmeridth@gmail.com>
1 parent adda85a commit 74156ec

File tree

7 files changed

+29
-8
lines changed

7 files changed

+29
-8
lines changed

.github/workflows/docker-ci.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,6 +14,6 @@ jobs:
1414
build:
1515
runs-on: ubuntu-latest
1616
steps:
17-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
17+
- uses: actions/checkout@v4.2.2
1818
- name: Build the Docker image
1919
run: docker build . --file Dockerfile --platform linux/amd64

.github/workflows/major-version-updater.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
contents: write
1616
steps:
1717
- name: Checkout Repo
18-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
18+
uses: actions/checkout@v4.2.2
1919

2020
- name: version
2121
id: version

.github/workflows/python-ci.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -20,9 +20,9 @@ jobs:
2020
matrix:
2121
python-version: [3.11, 3.12]
2222
steps:
23-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
23+
- uses: actions/checkout@v4.2.2
2424
- name: Set up Python ${{ matrix.python-version }}
25-
uses: actions/setup-python@0b93645e9fea7318ecaed2b359559ac225c90a2b
25+
uses: actions/setup-python@v5.3.0
2626
with:
2727
python-version: ${{ matrix.python-version }}
2828
- name: Install dependencies

.github/workflows/release.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -60,7 +60,7 @@ jobs:
6060
registry: ${{ env.REGISTRY }}
6161
username: ${{ github.actor }}
6262
password: ${{ secrets.GITHUB_TOKEN }}
63-
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
63+
- uses: actions/checkout@v4.2.2
6464
- name: Push Docker Image
6565
if: ${{ success() }}
6666
uses: docker/build-push-action@4f58ea79222b3b9dc2c8bbdd6debcef730109a75

.github/workflows/scorecard.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525

2626
steps:
2727
- name: "Checkout code"
28-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
28+
uses: actions/checkout@v4.2.2
2929
with:
3030
persist-credentials: false
3131

@@ -36,7 +36,7 @@ jobs:
3636
results_format: sarif
3737
publish_results: true
3838
- name: "Upload artifact"
39-
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
39+
uses: actions/upload-artifact@v4.4.3
4040
with:
4141
name: SARIF file
4242
path: results.sarif

.github/workflows/stale.yml

+21
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,21 @@
1+
name: "Close stale issues"
2+
on:
3+
schedule:
4+
- cron: "30 1 * * *"
5+
6+
permissions:
7+
issues: write
8+
pull-requests: read
9+
10+
jobs:
11+
stale:
12+
runs-on: ubuntu-latest
13+
steps:
14+
- uses: actions/stale@v9.0.0
15+
with:
16+
stale-issue-message: "This issue is stale because it has been open 21 days with no activity. Remove stale label or comment or this will be closed in 14 days."
17+
close-issue-message: "This issue was closed because it has been stalled for 35 days with no activity."
18+
days-before-stale: 21
19+
days-before-close: 14
20+
days-before-pr-close: -1
21+
exempt-issue-labels: keep

.github/workflows/super-linter.yaml

+1-1
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ jobs:
1818
statuses: write
1919
steps:
2020
- name: Checkout Code
21-
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
21+
uses: actions/checkout@v4.2.2
2222
with:
2323
fetch-depth: 0
2424
- name: Install dependencies

0 commit comments

Comments
 (0)