From 3d5d8baa3998d76e308fa68cf69366e093786e73 Mon Sep 17 00:00:00 2001 From: "U. Artie Eoff" Date: Wed, 4 Sep 2024 09:56:16 -0400 Subject: [PATCH] gh/workflows: pin action dependencies ...to improve OpenSSF score. https://github.com/ossf/scorecard/blob/main/docs/checks.md#pinned-dependencies Signed-off-by: U. Artie Eoff --- .github/workflows/unit.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/unit.yml b/.github/workflows/unit.yml index c6be1b0c..b1023fa4 100644 --- a/.github/workflows/unit.yml +++ b/.github/workflows/unit.yml @@ -16,11 +16,11 @@ jobs: steps: - name: Checkout - uses: actions/checkout@v4 + uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 with: lfs: 'true' - name: Setup python - uses: actions/setup-python@v5 + uses: actions/setup-python@f677139bbe7f9c59b41e40162b753c062f5d49a3 # v5.2.0 with: python-version: ${{ matrix.python-version }} - name: Install dependencies