diff --git a/.github/actions/setup_node/action.yml b/.github/actions/setup_node/action.yml index ba9e0b2939..dfe999664c 100644 --- a/.github/actions/setup_node/action.yml +++ b/.github/actions/setup_node/action.yml @@ -11,7 +11,7 @@ inputs: runs: using: "composite" steps: - - uses: pnpm/action-setup@a7487c7e89a18df4991f7f222e4898a00d66ddda # v4 + - uses: pnpm/action-setup@41ff72655975bd51cab0327fa583b6e92b6d3061 # v4 name: Install pnpm id: pnpm-install with: diff --git a/.github/workflows/check-backend.yml b/.github/workflows/check-backend.yml index a3a2d4e51b..3a86ac7fbf 100644 --- a/.github/workflows/check-backend.yml +++ b/.github/workflows/check-backend.yml @@ -8,7 +8,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 with: fetch-depth: 0 @@ -26,7 +26,7 @@ jobs: cd ../hivemq-edge - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@c1e323688fd81a25caa38c78aa6df2d33d3e20d9 # v4 with: distribution: 'adopt' java-version: '21' @@ -38,7 +38,7 @@ jobs: gradle-version: wrapper - name: Publish Test Results - uses: EnricoMi/publish-unit-test-result-action@3a74b2957438d0b6e2e61d67b05318aa25c9e6c6 + uses: EnricoMi/publish-unit-test-result-action@d3ed9acf9b75c81bd3ed28fac2ef38e7631afd0b with: files: | ${{ github.workspace }}/**/build/test-results/**/*.xml diff --git a/.github/workflows/check-frontend.yml b/.github/workflows/check-frontend.yml index a47c5bcbd7..f58e6477e9 100644 --- a/.github/workflows/check-frontend.yml +++ b/.github/workflows/check-frontend.yml @@ -19,7 +19,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -37,7 +37,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -60,7 +60,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -84,7 +84,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -107,7 +107,7 @@ jobs: needs: [ build_production ] steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: Download artifact uses: actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4 @@ -131,7 +131,7 @@ jobs: LOCAL_NONCE: ${{ steps.percy.outputs.nonce }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - id: percy run: | echo "nonce=$(date +'%s')" >> "$GITHUB_OUTPUT" @@ -168,7 +168,7 @@ jobs: name: Cypress - ${{ matrix.cypress.target }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node @@ -222,7 +222,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 with: fetch-depth: 0 # Shallow clones should be disabled for a better relevancy of analysis - name: Download all LCOV Artifacts @@ -237,7 +237,7 @@ jobs: ls -R ./coverage-combined ls -R **/**/*.info - name: SonarQube Scan - uses: SonarSource/sonarqube-scan-action@2500896589ef8f7247069a56136f8dc177c27ccf # v5 + uses: SonarSource/sonarqube-scan-action@2f77a1ec69fb1d595b06f35ab27e97605bdef703 # v5 with: projectBaseDir: hivemq-edge-frontend args: > @@ -256,7 +256,7 @@ jobs: PERCY_TOKEN: ${{ secrets.PERCY_TOKEN }} steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node diff --git a/.github/workflows/check-openapi.yml b/.github/workflows/check-openapi.yml index fa068207da..bd78050bd2 100644 --- a/.github/workflows/check-openapi.yml +++ b/.github/workflows/check-openapi.yml @@ -14,7 +14,7 @@ jobs: runs-on: ubuntu-latest steps: - name: 👓 Checkout repository - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 - name: 🏗️ Setup node environment uses: ./.github/actions/setup_node diff --git a/.github/workflows/check.yml b/.github/workflows/check.yml index 8f06c676b2..933d7efd3c 100644 --- a/.github/workflows/check.yml +++ b/.github/workflows/check.yml @@ -29,7 +29,7 @@ jobs: openapi-changed: ${{ steps.openapi.outputs.changed }} steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 with: fetch-depth: 0 diff --git a/.github/workflows/etherip-package.yml b/.github/workflows/etherip-package.yml index 9092bc7823..9e47f81b40 100644 --- a/.github/workflows/etherip-package.yml +++ b/.github/workflows/etherip-package.yml @@ -14,11 +14,11 @@ jobs: packages: write steps: - name: Checkout - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 + uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 with: repository: 'ornl-epics/etherip' - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@c1e323688fd81a25caa38c78aa6df2d33d3e20d9 # v4 with: distribution: 'adopt' java-version: '21' diff --git a/.github/workflows/snyk-pr.yml b/.github/workflows/snyk-pr.yml index 6aae1a29ff..2a5a4ed293 100644 --- a/.github/workflows/snyk-pr.yml +++ b/.github/workflows/snyk-pr.yml @@ -18,7 +18,7 @@ jobs: steps: - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@c1e323688fd81a25caa38c78aa6df2d33d3e20d9 # v4 with: distribution: 'temurin' java-version: | @@ -31,7 +31,7 @@ jobs: token: ${{ secrets.JENKINS_GITHUB_TOKEN }} - name: Check for new issues - uses: hivemq/hivemq-snyk-composite-action@dbe0008ff5a165ad9caf42e7cb2c52d378bd4667 # v2.3.0 + uses: hivemq/hivemq-snyk-composite-action@6cbb364e09401570f117e97cf51f405e5ce31808 # v2.3.1 with: snyk-args: --org=hivemq-edge --configuration-matching=^runtimeClasspath$ -d hivemq-edge/hivemq-edge artifact-name: snyk-report-hivemq-edge @@ -45,7 +45,7 @@ jobs: node-version: '20.13.1' - name: Check for new issues (hivemq-edge-frontend) - uses: hivemq/hivemq-snyk-composite-action@dbe0008ff5a165ad9caf42e7cb2c52d378bd4667 # v2.3.0 + uses: hivemq/hivemq-snyk-composite-action@6cbb364e09401570f117e97cf51f405e5ce31808 # v2.3.1 with: snyk-args: --org=hivemq-edge --configuration-matching=^runtimeClasspath$ -d hivemq-edge/hivemq-edge-frontend artifact-name: snyk-report-hivemq-edge-frontend diff --git a/.github/workflows/snyk-push.yml b/.github/workflows/snyk-push.yml index 0b1926af4b..af22958a89 100644 --- a/.github/workflows/snyk-push.yml +++ b/.github/workflows/snyk-push.yml @@ -23,7 +23,7 @@ jobs: echo "selected_github_ref=${workflow_call_github_ref:-${{ github.ref_name }}}" >> "$GITHUB_OUTPUT" - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@c1e323688fd81a25caa38c78aa6df2d33d3e20d9 # v4 with: distribution: 'temurin' java-version: | diff --git a/.github/workflows/snyk-release.yml b/.github/workflows/snyk-release.yml index e25421df10..3fa766bde5 100644 --- a/.github/workflows/snyk-release.yml +++ b/.github/workflows/snyk-release.yml @@ -11,7 +11,7 @@ jobs: steps: - name: Setup Java - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4 + uses: actions/setup-java@c1e323688fd81a25caa38c78aa6df2d33d3e20d9 # v4 with: distribution: 'temurin' java-version: |