From e496c15a6ee605113032176c7b5f45c050391dc7 Mon Sep 17 00:00:00 2001 From: Alec Sammon Date: Thu, 27 Mar 2025 20:38:37 +0000 Subject: [PATCH] Pin github actions to commits --- .github/workflows/lint.yml | 4 ++-- .github/workflows/publish_to_pypi.yml | 6 +++--- .github/workflows/release-on-push.yml | 2 +- .github/workflows/testing.yml | 4 ++-- 4 files changed, 8 insertions(+), 8 deletions(-) diff --git a/.github/workflows/lint.yml b/.github/workflows/lint.yml index d17b2692..5e184cff 100644 --- a/.github/workflows/lint.yml +++ b/.github/workflows/lint.yml @@ -17,10 +17,10 @@ jobs: steps: - name: Checkout code - uses: actions/checkout@v4 + uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - name: Set up Python - uses: actions/setup-python@v5 + uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55 # v5 with: allow-prereleases: true python-version: 3.13 diff --git a/.github/workflows/publish_to_pypi.yml b/.github/workflows/publish_to_pypi.yml index 70581b47..168a06b0 100644 --- a/.github/workflows/publish_to_pypi.yml +++ b/.github/workflows/publish_to_pypi.yml @@ -18,11 +18,11 @@ jobs: steps: - name: Checkout repo - uses: actions/checkout@v4 + uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - name: Set up Python id: setup_python - uses: actions/setup-python@v5 + uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55 # v5 with: python-version: '3.11' @@ -53,4 +53,4 @@ jobs: - name: Publish to PyPi id: publish if: env.should_publish == 'true' - uses: pypa/gh-action-pypi-publish@release/v1 + uses: pypa/gh-action-pypi-publish@76f52bc884231f62b9a034ebfe128415bbaabdfc # release/v1 diff --git a/.github/workflows/release-on-push.yml b/.github/workflows/release-on-push.yml index 1d1a457c..18a47032 100644 --- a/.github/workflows/release-on-push.yml +++ b/.github/workflows/release-on-push.yml @@ -11,7 +11,7 @@ jobs: env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} steps: - - uses: rymndhng/release-on-push-action@v0.28.0 + - uses: rymndhng/release-on-push-action@aebba2bbce07a9474bf95e8710e5ee8a9e922fe2 # v0.28.0 with: bump_version_scheme: norelease use_github_release_notes: true \ No newline at end of file diff --git a/.github/workflows/testing.yml b/.github/workflows/testing.yml index 4d8b337b..b6fc6668 100644 --- a/.github/workflows/testing.yml +++ b/.github/workflows/testing.yml @@ -24,10 +24,10 @@ jobs: steps: - name: Checkout repo - uses: actions/checkout@v4 + uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 - name: Set up Python ${{ matrix.python-version }} - uses: actions/setup-python@v5 + uses: actions/setup-python@8d9ed9ac5c53483de85588cdf95a591a75ab9f55 # v5 with: allow-prereleases: ${{ matrix.python-version == '3.13' }} python-version: ${{ matrix.python-version }}