diff --git a/.github/workflows/call-github2gerrit.yaml b/.github/workflows/call-github2gerrit.yaml index 612afeaae..b895cb08b 100644 --- a/.github/workflows/call-github2gerrit.yaml +++ b/.github/workflows/call-github2gerrit.yaml @@ -67,7 +67,7 @@ jobs: pull-requests: write # comment on and close mirrored PRs issues: write # manage PR/issue metadata during mirroring # yamllint disable-line rule:line-length - uses: lfreleng-actions/github2gerrit-action/.github/workflows/github2gerrit.yaml@df12d7f11e4765687efefd034d10116b1d8d0f4d # v2.4.0 + uses: lfreleng-actions/github2gerrit-action/.github/workflows/github2gerrit.yaml@6cdadc0d954315c37bbe50cf0edac88eb01df041 # v2.4.2 with: USE_PR_AS_COMMIT: true GERRIT_KNOWN_HOSTS: ${{ vars.GERRIT_KNOWN_HOSTS }} diff --git a/.github/workflows/gerrit-clm.yaml b/.github/workflows/gerrit-clm.yaml index d70d97667..af5ab37b4 100644 --- a/.github/workflows/gerrit-clm.yaml +++ b/.github/workflows/gerrit-clm.yaml @@ -111,7 +111,7 @@ jobs: steps: # Harden the runner used by this workflow # yamllint disable-line rule:line-length - - uses: step-security/harden-runner@e14015d583714f6e62063499dc959a02595150a1 # v2.21.1 + - uses: step-security/harden-runner@351661ca32ac09a36dc5ee2d536e3128f2a3c8ed # v2.22.0 with: egress-policy: audit @@ -139,7 +139,7 @@ jobs: steps: # Harden the runner used by this workflow # yamllint disable-line rule:line-length - - uses: step-security/harden-runner@e14015d583714f6e62063499dc959a02595150a1 # v2.21.1 + - uses: step-security/harden-runner@351661ca32ac09a36dc5ee2d536e3128f2a3c8ed # v2.22.0 with: egress-policy: audit @@ -160,7 +160,7 @@ jobs: # yamllint disable-line rule:line-length if: github.event_name == 'workflow_dispatch' && inputs.GERRIT_DISABLED != true # yamllint disable-line rule:line-length - uses: lfreleng-actions/checkout-gerrit-change-action@298f53bbbc1d5f9e54df9feb484d110dc2b33197 # v1.1.0 + uses: lfreleng-actions/checkout-gerrit-change-action@35e98c8043ec411611e464e296bcfb441a5c5093 # v1.1.2 with: gerrit-refspec: ${{ inputs.GERRIT_REFSPEC }} gerrit-project: ${{ inputs.GERRIT_PROJECT }} @@ -374,7 +374,7 @@ jobs: if: steps.check-pom-xml.outputs.exists == 'true' continue-on-error: true # yamllint disable-line rule:line-length - uses: lfreleng-actions/maven-build-action@7781c31c0c5e7d345313807cde36377d0932e5d6 # v0.4.3 + uses: lfreleng-actions/maven-build-action@01a3700e14ee592694d1030c2305d0579e9df571 # v0.5.2 with: java-version: ${{ env.JAVA_VERSION }} distribution: ${{ env.JAVA_DISTRIBUTION }} @@ -411,7 +411,7 @@ jobs: steps: # Harden the runner used by this workflow # yamllint disable-line rule:line-length - - uses: step-security/harden-runner@e14015d583714f6e62063499dc959a02595150a1 # v2.21.1 + - uses: step-security/harden-runner@351661ca32ac09a36dc5ee2d536e3128f2a3c8ed # v2.22.0 with: egress-policy: audit