diff --git a/.github/workflows/after-pullrequest.yml b/.github/workflows/after-pullrequest.yml index 20565f4f..a9577942 100644 --- a/.github/workflows/after-pullrequest.yml +++ b/.github/workflows/after-pullrequest.yml @@ -28,7 +28,7 @@ jobs: # issues: read steps: - name: Download and Extract Artifacts - uses: dawidd6/action-download-artifact@71072fbb1229e1317f1a8de6b04206afb461bd67 # v3.1.2 + uses: dawidd6/action-download-artifact@80620a5d27ce0ae443b965134db88467fc607b43 # v7 with: run_id: ${{ github.event.workflow_run.id }} path: artifacts diff --git a/.github/workflows/api-e2e-mssql-multitenant.yml b/.github/workflows/api-e2e-mssql-multitenant.yml index de3ccc7b..0c6e489e 100644 --- a/.github/workflows/api-e2e-mssql-multitenant.yml +++ b/.github/workflows/api-e2e-mssql-multitenant.yml @@ -129,7 +129,7 @@ jobs: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Download artifacts - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 # Commented code until Token is renewed # - name: Send report to Zephyr diff --git a/.github/workflows/api-e2e-mssql-singletenant.yml b/.github/workflows/api-e2e-mssql-singletenant.yml index 9c10a0f2..3c393d58 100644 --- a/.github/workflows/api-e2e-mssql-singletenant.yml +++ b/.github/workflows/api-e2e-mssql-singletenant.yml @@ -128,7 +128,7 @@ jobs: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Download artifacts - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 # Commented code until Token is renewed # - name: Send report to Zephyr diff --git a/.github/workflows/api-e2e-pgsql-multitenant.yml b/.github/workflows/api-e2e-pgsql-multitenant.yml index 513bd423..9f4143d0 100644 --- a/.github/workflows/api-e2e-pgsql-multitenant.yml +++ b/.github/workflows/api-e2e-pgsql-multitenant.yml @@ -129,7 +129,7 @@ jobs: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Download artifacts - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 # Commented code until Token is renewed # - name: Send report to Zephyr diff --git a/.github/workflows/api-e2e-pgsql-singletenant.yml b/.github/workflows/api-e2e-pgsql-singletenant.yml index fa300f5e..0992528a 100644 --- a/.github/workflows/api-e2e-pgsql-singletenant.yml +++ b/.github/workflows/api-e2e-pgsql-singletenant.yml @@ -126,7 +126,7 @@ jobs: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Download artifacts - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 # Commented code until Token is renewed # - name: Send report to Zephyr diff --git a/.github/workflows/on-prerelease.yml b/.github/workflows/on-prerelease.yml index 03571a1f..48bfe60a 100644 --- a/.github/workflows/on-prerelease.yml +++ b/.github/workflows/on-prerelease.yml @@ -64,7 +64,7 @@ jobs: -APIVersion $apiVersion - name: Setup Nuget.exe - uses: nuget/setup-nuget@a21f25cd3998bf370fde17e3f1b4c12c175172f9 #v2.0.0 + uses: nuget/setup-nuget@323ab0502cd38fdc493335025a96c8fdb0edc71f #v2.0.1 - name: Create NuGet Packages if: success() @@ -104,7 +104,7 @@ jobs: steps: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Get Artifacts - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 with: name: ${{ env.PACKAGE_NAME }}-NuGet @@ -218,7 +218,7 @@ jobs: steps: - uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1 - name: Get Artifact - uses: actions/download-artifact@6b208ae046db98c579e8a3aa621ab581ff575935 #v4.1.1 + uses: actions/download-artifact@fa0a91b85d4f404e444e00e005971372dc801d16 #v4.1.8 with: name: ${{ env.PACKAGE_NAME }}-NuGet @@ -280,22 +280,22 @@ jobs: echo "VERSION=$SEMVERSION" >> $GITHUB_OUTPUT - name: Set up Docker Buildx - uses: docker/setup-buildx-action@f95db51fddba0c2d1ec667646a06c2ce06100226 # v3.0.0 + uses: docker/setup-buildx-action@6524bf65af31da8d45b59e8c27de4bd072b392f5 # v3.8.0 - name: Log in to Docker Hub - uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d # v3.0.0 + uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0 with: username: ${{ env.DOCKER_USERNAME }} password: ${{ env.DOCKER_HUB_TOKEN }} - name: Extract metadata (tags, labels) for admin api image id: metaapi - uses: docker/metadata-action@96383f45573cb7f253c731d3b3ab81c87ef81934 # v5.0.0 + uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1 with: images: ${{ env.IMAGE_NAME }} - name: Build and push admin api image - uses: docker/build-push-action@0565240e2d4ab88bba5387d719585280857ece09 # v5.0.0 + uses: docker/build-push-action@b32b51a8eda65d6793cd0494a773d4f6bcef32dc # v6.11.0 with: context: "{{defaultContext}}:Docker" cache-from: type=registry,ref=${{ env.IMAGE_NAME }}:pre @@ -308,12 +308,12 @@ jobs: - name: Extract metadata (tags, labels) for admin api database image id: metadatabase - uses: docker/metadata-action@96383f45573cb7f253c731d3b3ab81c87ef81934 # v5.0.0 + uses: docker/metadata-action@369eb591f429131d6889c46b94e711f089e6ca96 # v5.6.1 with: images: ${{ env.DATABASE_IMAGE_NAME }} - name: Build and push admin api database image - uses: docker/build-push-action@0565240e2d4ab88bba5387d719585280857ece09 # v5.0.0 + uses: docker/build-push-action@b32b51a8eda65d6793cd0494a773d4f6bcef32dc # v6.11.0 with: context: "{{defaultContext}}:Docker/Settings/DB-Admin/pgsql" cache-from: type=registry,ref=${{ env.DATABASE_IMAGE_NAME }}:pre diff --git a/.github/workflows/on-pullrequest-dockerfile.yml b/.github/workflows/on-pullrequest-dockerfile.yml index 516316c7..78382813 100644 --- a/.github/workflows/on-pullrequest-dockerfile.yml +++ b/.github/workflows/on-pullrequest-dockerfile.yml @@ -71,7 +71,7 @@ jobs: failure-threshold: error - name: Log in to Docker Hub - uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d # v3.0.0 + uses: docker/login-action@9780b0c442fbb1117ed29e0efdff1e18412f7567 # v3.3.0 with: username: ${{ env.DOCKER_USERNAME }} password: ${{ env.DOCKER_HUB_TOKEN }} @@ -96,6 +96,6 @@ jobs: - name: Upload SARIF result id: upload-sarif if: ${{ github.event_name != 'pull_request_target' }} - uses: github/codeql-action/upload-sarif@cf7e9f23492505046de9a37830c3711dd0f25bb3 #codeql-bundle-v2.16.2 + uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 #codeql-bundle-v3.28.0 with: sarif_file: sarif-${{ matrix.dockerfile.name }}.output.json diff --git a/.github/workflows/on-pullrequest.yml b/.github/workflows/on-pullrequest.yml index 60318dcb..31664411 100644 --- a/.github/workflows/on-pullrequest.yml +++ b/.github/workflows/on-pullrequest.yml @@ -64,7 +64,7 @@ jobs: - name: Initialize CodeQL if: success() - uses: github/codeql-action/init@cf7e9f23492505046de9a37830c3711dd0f25bb3 # codeql-bundle-v2.16.2 + uses: github/codeql-action/init@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # codeql-bundle-v3.28.0 with: languages: csharp @@ -76,7 +76,7 @@ jobs: - name: Perform CodeQL Analysis if: success() - uses: github/codeql-action/analyze@cf7e9f23492505046de9a37830c3711dd0f25bb3 # codeql-bundle-v2.16.2 + uses: github/codeql-action/analyze@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # codeql-bundle-v3.28.0 event_file: name: "Event File" diff --git a/.github/workflows/openapi-md.yml b/.github/workflows/openapi-md.yml index cc198874..7304e304 100644 --- a/.github/workflows/openapi-md.yml +++ b/.github/workflows/openapi-md.yml @@ -62,10 +62,10 @@ jobs: git add docs/api-specifications/markdown/* git restore Application/EdFi.Ods.AdminApi/appsettings.json git status --porcelain - + - name: Commit file id: commit - uses: planetscale/ghcommit-action@4131649dbf2fdf1eb34421702972a5af7b0a8731 + uses: planetscale/ghcommit-action@d4176bfacef926cc2db351eab20398dfc2f593b5 #v0.2.0 with: commit_message: "${{ env.CI_COMMIT_MESSAGE }}" repo: ${{ github.repository }} diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 4af58b9a..91b23468 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -63,6 +63,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: Upload to code-scanning - uses: github/codeql-action/upload-sarif@cf7e9f23492505046de9a37830c3711dd0f25bb3 # codeql-bundle-v2.16.2 + uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 #codeql-bundle-v3.28.0 with: sarif_file: scorecard.sarif