7777 uses : docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # v3.11.1
7878
7979 - name : Set up Cosign
80- uses : sigstore/cosign-installer@d58896d6a1865668819e1d91763c7751a165e159 # v3.9.2
80+ uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
8181 if : ${{ inputs.publish }}
8282
8383 - name : Set image name
@@ -103,7 +103,7 @@ jobs:
103103 org.opencontainers.image.documentation=https://kube-logging.dev/docs/
104104
105105 - name : Login to GitHub Container Registry
106- uses : docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # v3.5 .0
106+ uses : docker/login-action@5e57cd118135c172c3672efd75eb46360885c0ef # v3.6 .0
107107 with :
108108 registry : ghcr.io
109109 username : ${{ github.actor }}
@@ -196,7 +196,7 @@ jobs:
196196 tar -xf image.tar -C image
197197
198198 - name : Run Trivy vulnerability scanner
199- uses : aquasecurity/trivy-action@dc5a429b52fcf669ce959baa2c2dd26090d2a6c4 # 0.32.0
199+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
200200 env :
201201 TRIVY_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-db:2
202202 TRIVY_JAVA_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-java-db:1
@@ -239,10 +239,10 @@ jobs:
239239 - name : Set up Helm
240240 uses : azure/setup-helm@1a275c3b69536ee54be43f2070a358922e12c8d4 # v4.3.1
241241 with :
242- version : v3.13.3
242+ version : v3.19.0
243243
244244 - name : Set up Cosign
245- uses : sigstore/cosign-installer@d58896d6a1865668819e1d91763c7751a165e159 # v3.9.2
245+ uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
246246 if : inputs.publish && inputs.release
247247
248248 - name : Set chart name
@@ -284,7 +284,7 @@ jobs:
284284 path : ${{ steps.build.outputs.package }}
285285
286286 - name : Login to GitHub Container Registry
287- uses : docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # v3.5 .0
287+ uses : docker/login-action@5e57cd118135c172c3672efd75eb46360885c0ef # v3.6 .0
288288 with :
289289 registry : ghcr.io
290290 username : ${{ github.actor }}
@@ -351,7 +351,7 @@ jobs:
351351 fi
352352
353353 - name : Run Trivy vulnerability scanner
354- uses : aquasecurity/trivy-action@dc5a429b52fcf669ce959baa2c2dd26090d2a6c4 # 0.32.0
354+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
355355 env :
356356 TRIVY_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-db:2
357357 TRIVY_JAVA_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-java-db:1
@@ -400,10 +400,10 @@ jobs:
400400 - name : Set up Helm
401401 uses : azure/setup-helm@1a275c3b69536ee54be43f2070a358922e12c8d4 # v4.3.1
402402 with :
403- version : v3.13.3
403+ version : v3.19.0
404404
405405 - name : Set up Cosign
406- uses : sigstore/cosign-installer@d58896d6a1865668819e1d91763c7751a165e159 # v3.9.2
406+ uses : sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0
407407 if : inputs.publish && inputs.release
408408
409409 - name : Set chart name
@@ -475,7 +475,7 @@ jobs:
475475 --certificate-oidc-issuer "https://token.actions.githubusercontent.com" | jq
476476
477477 - name : Run Trivy vulnerability scanner
478- uses : aquasecurity/trivy-action@dc5a429b52fcf669ce959baa2c2dd26090d2a6c4 # 0.32.0
478+ uses : aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # 0.33.1
479479 env :
480480 TRIVY_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-db:2
481481 TRIVY_JAVA_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-java-db:1
0 commit comments