diff --git a/.github/workflows/cybersandbox-build.yml b/.github/workflows/cybersandbox-build.yml index 4251e82..7c97182 100644 --- a/.github/workflows/cybersandbox-build.yml +++ b/.github/workflows/cybersandbox-build.yml @@ -132,7 +132,7 @@ jobs: } >> "$GITHUB_STEP_SUMMARY" - name: Upload image size artifact - uses: actions/upload-artifact@de65e23aa2b7e23d713bb51fbfcb6d502f8667d8 # v5.0.0 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v5.0.0 with: name: cybersandbox-image-size path: image-size.txt @@ -153,7 +153,7 @@ jobs: - name: Upload Trivy SARIF if: always() - uses: github/codeql-action/upload-sarif@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v4.35.2 + uses: github/codeql-action/upload-sarif@e46ed2cbd01164d986452f91f178727624ae40d7 # v4.35.3 with: sarif_file: trivy-results.sarif category: trivy-container diff --git a/.github/workflows/leaderboard-refresh.yml b/.github/workflows/leaderboard-refresh.yml index cae0d2b..8fd1c36 100644 --- a/.github/workflows/leaderboard-refresh.yml +++ b/.github/workflows/leaderboard-refresh.yml @@ -143,7 +143,7 @@ jobs: ls "${result_dir}/upstream" - name: Upload sidecars - uses: actions/upload-artifact@de65e23aa2b7e23d713bb51fbfcb6d502f8667d8 # v5.0.0 + uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v5.0.0 with: name: sidecars-${{ matrix.target }} path: evaluation/result/ @@ -179,13 +179,13 @@ jobs: # 'upstream' path component as the classification signal, so the layout # round-trips end-to-end. - name: Download cybersandbox sidecars - uses: actions/download-artifact@634f93cb2916e3fdff6788551b99b062d0335ce0 # v5.0.0 + uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c # v8.0.1 with: name: sidecars-cybersandbox path: evaluation/result/ - name: Download upstream sidecars - uses: actions/download-artifact@634f93cb2916e3fdff6788551b99b062d0335ce0 # v5.0.0 + uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c # v8.0.1 with: name: sidecars-upstream path: evaluation/result/