Skip to content

Commit a7ba67b

Browse files
authored
Merge pull request #405 from step-security-bot/stepsecurity_remediation_1740764187
[StepSecurity] ci: Harden GitHub Actions
2 parents af74763 + 1bee0ad commit a7ba67b

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

.github/workflows/contracts-testing.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -17,12 +17,12 @@ jobs:
1717
runs-on: ubuntu-latest
1818
steps:
1919
- name: Harden Runner
20-
uses: step-security/harden-runner@v2.11.0
20+
uses: step-security/harden-runner@4d991eb9b905ef189e4c376166672c3f2f230481 # v2.11.0
2121
with:
2222
egress-policy: audit
2323

2424
- name: Setup Node.js environment
25-
uses: actions/setup-node@v4.2.0
25+
uses: actions/setup-node@1d0ff469b7ec7b3cb9d8673fde0c81c44821de2a # v4.2.0
2626
with:
2727
node-version: 18.x
2828

@@ -32,10 +32,10 @@ jobs:
3232
- name: Set Yarn version to Berry
3333
run: yarn set version 4.2.2
3434

35-
- uses: actions/checkout@v4.2.2
35+
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3636

3737
- name: Cache node modules
38-
uses: actions/cache@v4.2.2
38+
uses: actions/cache@d4323d4df104b026a6aa633fdb11d772146be0bf # v4.2.2
3939
env:
4040
cache-name: cache-node-modules
4141
with:
@@ -66,7 +66,7 @@ jobs:
6666
working-directory: contracts
6767

6868
- name: Upload a build artifact
69-
uses: actions/upload-artifact@v4.6.1
69+
uses: actions/upload-artifact@4cec3d8aa04e39d1a68397de0c4cd6fb9dce8ec1 # v4.6.1
7070
with:
7171
name: code-coverage-report
7272
path: contracts/coverage

0 commit comments

Comments
 (0)