Skip to content

Commit 786422d

Browse files
Bump the github-actions group with 3 updates (#513)
Bumps the github-actions group with 3 updates: [step-security/harden-runner](https://github.com/step-security/harden-runner), [erlef/mix-dependency-submission](https://github.com/erlef/mix-dependency-submission) and [actions/upload-artifact](https://github.com/actions/upload-artifact). Updates `step-security/harden-runner` from 2.16.1 to 2.17.0 - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@fe10465...f808768) Updates `erlef/mix-dependency-submission` from 1.3.1 to 1.3.2 - [Release notes](https://github.com/erlef/mix-dependency-submission/releases) - [Commits](erlef/mix-dependency-submission@fa3e8f3...c4a3610) Updates `actions/upload-artifact` from 7.0.0 to 7.0.1 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@bbbca2d...043fb46) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-version: 2.17.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions - dependency-name: erlef/mix-dependency-submission dependency-version: 1.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: 7.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 3ef8ca1 commit 786422d

8 files changed

Lines changed: 31 additions & 31 deletions

File tree

.github/workflows/part_dependency_submission.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -20,10 +20,10 @@ jobs:
2020

2121
steps:
2222
- name: Harden Runner
23-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
23+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
2424
with:
2525
egress-policy: audit
2626

2727
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
2828

29-
- uses: erlef/mix-dependency-submission@fa3e8f349d00a32bf14eec1c7577d6564abe08d2 # v1.3.1
29+
- uses: erlef/mix-dependency-submission@c4a36104ac7614b1b66d0da6e8a1c7d6d07bc52b # v1.3.2

.github/workflows/part_docs.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ jobs:
2727

2828
steps:
2929
- name: Harden Runner
30-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
30+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
3131
with:
3232
egress-policy: audit
3333

@@ -68,7 +68,7 @@ jobs:
6868
env:
6969
ATTESTATION: "${{ steps.attest-docs-provenance.outputs.bundle-path }}"
7070

71-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
71+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
7272
with:
7373
name: docs
7474
path: docs.tar.gz*

.github/workflows/part_license.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ jobs:
2323

2424
steps:
2525
- name: Harden Runner
26-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
26+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
2727
with:
2828
egress-policy: audit
2929

@@ -44,7 +44,7 @@ jobs:
4444

4545
steps:
4646
- name: Harden Runner
47-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
47+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
4848
with:
4949
egress-policy: audit
5050

@@ -68,7 +68,7 @@ jobs:
6868
env:
6969
ATTESTATION: "${{ steps.attest-provenance.outputs.bundle-path }}"
7070

71-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
71+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
7272
with:
7373
name: sbom
7474
path: sbom.spdx*

.github/workflows/part_publish.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@ jobs:
2626

2727
steps:
2828
- name: Harden Runner
29-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
29+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
3030
with:
3131
egress-policy: audit
3232

.github/workflows/part_release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ jobs:
2828

2929
steps:
3030
- name: Harden Runner
31-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
31+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
3232
with:
3333
egress-policy: audit
3434

.github/workflows/part_test.yml

Lines changed: 19 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ jobs:
2929

3030
steps:
3131
- name: Harden Runner
32-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
32+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
3333
with:
3434
egress-policy: audit
3535

@@ -56,7 +56,7 @@ jobs:
5656

5757
steps:
5858
- name: Harden Runner
59-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
59+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
6060
with:
6161
egress-policy: audit
6262

@@ -81,7 +81,7 @@ jobs:
8181

8282
steps:
8383
- name: Harden Runner
84-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
84+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
8585
with:
8686
egress-policy: audit
8787

@@ -129,7 +129,7 @@ jobs:
129129

130130
steps:
131131
- name: Harden Runner
132-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
132+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
133133
with:
134134
egress-policy: audit
135135

@@ -148,7 +148,7 @@ jobs:
148148
eunit-${{ runner.os }}-${{ steps.setupBEAM.outputs.otp-version }}-
149149
- run: rebar3 eunit --cover --cover_export_name "eunit-${{ steps.setupBEAM.outputs.otp-version }}"
150150
continue-on-error: ${{ matrix.name == 'master' }}
151-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
151+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
152152
if: "${{ matrix.name == 'latest' }}"
153153
with:
154154
name: eunit-coverage-${{ matrix.otp }}
@@ -177,7 +177,7 @@ jobs:
177177

178178
steps:
179179
- name: Harden Runner
180-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
180+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
181181
with:
182182
egress-policy: audit
183183

@@ -196,7 +196,7 @@ jobs:
196196
ct-${{ runner.os }}-${{ steps.setupBEAM.outputs.otp-version }}-
197197
- run: rebar3 ct --cover --cover_export_name "ct-${{ steps.setupBEAM.outputs.otp-version }}"
198198
continue-on-error: ${{ matrix.name == 'master' }}
199-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
199+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
200200
if: "${{ matrix.name == 'latest' }}"
201201
with:
202202
name: ct-coverage-${{ matrix.otp }}
@@ -228,7 +228,7 @@ jobs:
228228

229229
steps:
230230
- name: Harden Runner
231-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
231+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
232232
with:
233233
egress-policy: audit
234234

@@ -255,7 +255,7 @@ jobs:
255255
- run: mix deps.get
256256
- run: mix test --cover --export-coverage "mix_test-${{ steps.setupBEAM.outputs.elixir-version }}"
257257
continue-on-error: ${{ matrix.name == 'main' }}
258-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
258+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
259259
if: "${{ matrix.name == 'latest' }}"
260260
with:
261261
name: mix_test-coverage-${{ matrix.elixir }}
@@ -270,7 +270,7 @@ jobs:
270270

271271
steps:
272272
- name: Harden Runner
273-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
273+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
274274
with:
275275
egress-policy: audit
276276

@@ -302,7 +302,7 @@ jobs:
302302
mix_test_coverage-deps-${{ runner.os }}-${{ steps.setupBEAM.outputs.otp-version }}-${{ steps.setupBEAM.outputs.elixir-version }}-
303303
- run: mix deps.get
304304
- run: mix test.coverage
305-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
305+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
306306
with:
307307
name: coverage-report
308308
path: cover
@@ -316,7 +316,7 @@ jobs:
316316

317317
steps:
318318
- name: Harden Runner
319-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
319+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
320320
with:
321321
egress-policy: audit
322322

@@ -352,7 +352,7 @@ jobs:
352352

353353
steps:
354354
- name: Harden Runner
355-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
355+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
356356
with:
357357
egress-policy: audit
358358

@@ -381,7 +381,7 @@ jobs:
381381

382382
steps:
383383
- name: Harden Runner
384-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
384+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
385385
with:
386386
egress-policy: audit
387387

@@ -419,7 +419,7 @@ jobs:
419419

420420
steps:
421421
- name: Harden Runner
422-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
422+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
423423
with:
424424
egress-policy: audit
425425

@@ -451,7 +451,7 @@ jobs:
451451

452452
steps:
453453
- name: Harden Runner
454-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
454+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
455455
with:
456456
egress-policy: audit
457457

@@ -476,7 +476,7 @@ jobs:
476476

477477
steps:
478478
- name: Harden Runner
479-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
479+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
480480
with:
481481
egress-policy: audit
482482

@@ -501,7 +501,7 @@ jobs:
501501

502502
steps:
503503
- name: Harden Runner
504-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
504+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
505505
with:
506506
egress-policy: audit
507507

@@ -529,7 +529,7 @@ jobs:
529529
env:
530530
TMP: ${{ runner.temp }}
531531

532-
- uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
532+
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
533533
with:
534534
name: certification-plug
535535
path: "${{ runner.temp }}/certification_out"

.github/workflows/pr.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -55,7 +55,7 @@ jobs:
5555

5656
steps:
5757
- name: Harden Runner
58-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
58+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
5959
with:
6060
egress-policy: audit
6161

.github/workflows/scorecards.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ jobs:
3939

4040
steps:
4141
- name: Harden Runner
42-
uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
42+
uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
4343
with:
4444
egress-policy: audit
4545

@@ -71,7 +71,7 @@ jobs:
7171
# Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
7272
# format to the repository Actions tab.
7373
- name: "Upload artifact"
74-
uses: actions/upload-artifact@bbbca2ddaa5d8feaa63e36b76fdaad77386f024f # v7.0.0
74+
uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
7575
with:
7676
name: SARIF file
7777
path: results.sarif

0 commit comments

Comments
 (0)