Skip to content

Commit 869dacd

Browse files
Bump the github-actions group with 3 updates (#13956)
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent ea3b7f9 commit 869dacd

19 files changed

+33
-33
lines changed

.github/workflows/build-and-deploy.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -83,7 +83,7 @@ jobs:
8383
github.event.pull_request.user.login != 'dependabot[bot]'
8484
steps:
8585
- name: Harden Runner
86-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
86+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
8787
with:
8888
disable-file-monitoring: true
8989
egress-policy: block
@@ -129,7 +129,7 @@ jobs:
129129
github.event.pull_request.user.login != 'dependabot[bot]'
130130
steps:
131131
- name: Harden Runner
132-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
132+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
133133
with:
134134
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
135135

.github/workflows/cleanup-pr-assets.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ jobs:
2121
github.event.pull_request.user.login != 'dependabot[bot]'
2222
steps:
2323
- name: Harden Runner
24-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
24+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2525
with:
2626
disable-file-monitoring: true
2727
disable-sudo: true

.github/workflows/codeql-analysis.yml

+2-2
Original file line numberDiff line numberDiff line change
@@ -44,9 +44,9 @@ jobs:
4444
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
4545

4646
- name: Initialize CodeQL
47-
uses: github/codeql-action/init@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169
47+
uses: github/codeql-action/init@d68b2d4edb4189fd2a5366ac14e72027bd4b37dd
4848
with:
4949
languages: javascript
5050

5151
- name: Perform CodeQL Analysis
52-
uses: github/codeql-action/analyze@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169
52+
uses: github/codeql-action/analyze@d68b2d4edb4189fd2a5366ac14e72027bd4b37dd

.github/workflows/lint-css-js-md.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -61,7 +61,7 @@ jobs:
6161
timeout-minutes: 20
6262
steps:
6363
- name: Harden Runner
64-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
64+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
6565
with:
6666
disable-sudo: true
6767
disable-file-monitoring: true

.github/workflows/lint-i18n.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242
timeout-minutes: 10
4343
steps:
4444
- name: Harden Runner
45-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
45+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
4646
with:
4747
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
4848

.github/workflows/lint-php.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ jobs:
4141
timeout-minutes: 5
4242
steps:
4343
- name: Harden Runner
44-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
44+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
4545
with:
4646
disable-file-monitoring: true
4747
egress-policy: block

.github/workflows/lint-plugin-check.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242
timeout-minutes: 10
4343
steps:
4444
- name: Harden Runner
45-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
45+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
4646
with:
4747
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
4848

.github/workflows/npm-release.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -102,7 +102,7 @@ jobs:
102102
needs: [dry-run]
103103
steps:
104104
- name: Harden Runner
105-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
105+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
106106
with:
107107
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
108108

.github/workflows/plugin-release.yml

+8-8
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ jobs:
4141
environment: Production
4242
steps:
4343
- name: Harden Runner
44-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
44+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
4545
with:
4646
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
4747

@@ -104,7 +104,7 @@ jobs:
104104
needs: [checks]
105105
steps:
106106
- name: Harden Runner
107-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
107+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
108108
with:
109109
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
110110

@@ -222,7 +222,7 @@ jobs:
222222
echo "" > assets_version/assets_version.txt
223223
224224
- name: Upload assets version
225-
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b
225+
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08
226226
with:
227227
name: assets-version
228228
path: public/static/assets_version
@@ -245,7 +245,7 @@ jobs:
245245
release_name: ${{ steps.release_branch.outputs.release_name }}
246246
steps:
247247
- name: Harden Runner
248-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
248+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
249249
with:
250250
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
251251

@@ -396,7 +396,7 @@ jobs:
396396
mv build/*.zip build/release-assets/
397397
398398
- name: Upload artifacts
399-
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b
399+
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08
400400
with:
401401
name: release-assets
402402
path: build/release-assets
@@ -408,7 +408,7 @@ jobs:
408408
needs: [build]
409409
steps:
410410
- name: Harden Runner
411-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
411+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
412412
with:
413413
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
414414

@@ -444,7 +444,7 @@ jobs:
444444
if: ${{ ! startsWith(github.ref, 'refs/heads/release/') && ! contains(github.event.inputs.version, 'rc') }}
445445
steps:
446446
- name: Harden Runner
447-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
447+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
448448
with:
449449
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
450450

@@ -500,7 +500,7 @@ jobs:
500500
SVN_PASSWORD: ${{ secrets.SVN_PASSWORD }}
501501
steps:
502502
- name: Harden Runner
503-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
503+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
504504
with:
505505
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
506506

.github/workflows/scorecards.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ jobs:
2525

2626
steps:
2727
- name: Harden Runner
28-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
28+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2929
with:
3030
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
3131

@@ -48,14 +48,14 @@ jobs:
4848

4949
# Upload the results as artifacts (optional).
5050
- name: 'Upload artifact'
51-
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b
51+
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08
5252
with:
5353
name: SARIF file
5454
path: results.sarif
5555
retention-days: 5
5656

5757
# Upload the results to GitHub's code scanning dashboard.
5858
- name: 'Upload to code-scanning'
59-
uses: github/codeql-action/upload-sarif@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169
59+
uses: github/codeql-action/upload-sarif@d68b2d4edb4189fd2a5366ac14e72027bd4b37dd
6060
with:
6161
sarif_file: results.sarif

.github/workflows/tests-e2e.yml

+4-4
Original file line numberDiff line numberDiff line change
@@ -70,7 +70,7 @@ jobs:
7070
timeout-minutes: 30
7171
steps:
7272
- name: Harden Runner
73-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
73+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
7474
with:
7575
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
7676

@@ -116,7 +116,7 @@ jobs:
116116
run: bun run workflow:build-plugin
117117

118118
- name: Upload bundle
119-
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b
119+
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08
120120
with:
121121
name: web-stories
122122
path: build/web-stories
@@ -149,7 +149,7 @@ jobs:
149149

150150
steps:
151151
- name: Harden Runner
152-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
152+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
153153
with:
154154
disable-file-monitoring: true
155155
egress-policy: audit
@@ -234,7 +234,7 @@ jobs:
234234
ARTIFACT_NAME: failures-artifacts-${{ matrix.wp }}-${{ matrix.shard }}
235235

236236
- name: Upload artifacts
237-
uses: actions/upload-artifact@6f51ac03b9356f520e9adb1b1b7802705f340c2b
237+
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08
238238
if: always()
239239
with:
240240
name: ${{ env.ARTIFACT_NAME }}

.github/workflows/tests-karma-dashboard.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -47,7 +47,7 @@ jobs:
4747
timeout-minutes: 30
4848
steps:
4949
- name: Harden Runner
50-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
50+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
5151
with:
5252
disable-file-monitoring: true
5353
egress-policy: block

.github/workflows/tests-karma-editor.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -83,7 +83,7 @@ jobs:
8383
]
8484
steps:
8585
- name: Harden Runner
86-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
86+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
8787
with:
8888
disable-file-monitoring: true
8989
egress-policy: block

.github/workflows/tests-unit-js.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ jobs:
5151
shard: ['1/2', '2/2']
5252
steps:
5353
- name: Harden Runner
54-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
54+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
5555
with:
5656
disable-sudo: true
5757
disable-file-monitoring: true

.github/workflows/tests-unit-php.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -80,7 +80,7 @@ jobs:
8080

8181
steps:
8282
- name: Harden Runner
83-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
83+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
8484
with:
8585
disable-file-monitoring: true
8686
egress-policy: audit

.github/workflows/update-browserslist.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222

2323
steps:
2424
- name: Harden Runner
25-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
25+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2626
with:
2727
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
2828

.github/workflows/update-google-fonts.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222

2323
steps:
2424
- name: Harden Runner
25-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
25+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2626
with:
2727
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
2828

.github/workflows/update-product-schema.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222

2323
steps:
2424
- name: Harden Runner
25-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
25+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2626
with:
2727
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
2828

.github/workflows/update-templates.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ jobs:
2222

2323
steps:
2424
- name: Harden Runner
25-
uses: step-security/harden-runner@0080882f6c36860b6ba35c610c98ce87d4e2f26f
25+
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e
2626
with:
2727
egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs
2828

0 commit comments

Comments
 (0)