File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 2121 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2222 # Ref: https://github.com/github/codeql-action
2323 - name : Initialize CodeQL
24- uses : github/codeql-action/init@6bb031afdd8eb862ea3fc1848194185e076637e5 # v3.28.11
24+ uses : github/codeql-action/init@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
2525 with :
2626 languages : python
2727 - name : Perform CodeQL Analysis
28- uses : github/codeql-action/analyze@6bb031afdd8eb862ea3fc1848194185e076637e5 # v3.28.11
28+ uses : github/codeql-action/analyze@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
Original file line number Diff line number Diff line change 3333 fetch-depth : 0 # get all commits and tags
3434 token : ${{ secrets.SEMANTIC_RELEASE_TOKEN }}
3535 - name : Create semantic release
36- uses : python-semantic-release/python-semantic-release@26bb37cfab71a5a372e3db0f48a6eac57519a4a6 # v9.21.0
36+ uses : python-semantic-release/python-semantic-release@1a324000f2251a9e722e77b128bf72712653813f # v10.0.2
3737 with :
3838 # allows for python-semantic-release to push to protected main branch
3939 github_token : ${{ secrets.SEMANTIC_RELEASE_TOKEN }}
Original file line number Diff line number Diff line change 3333 uses : extractions/setup-just@e33e0265a09d6d736e2ee1e0eb685ef1de4669ff # v3
3434 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
3535 - name : Set up uv
36- uses : astral-sh/setup-uv@f94ec6bedd8674c4426838e6b50417d36b6ab231 # v5.3.1
36+ uses : astral-sh/setup-uv@f0ec1fc3b38f5e7cd731bb6ce540c5af426746bb # v6.1.0
3737 with :
3838 python-version : ' 3.13'
3939 enable-cache : true
Original file line number Diff line number Diff line change @@ -31,12 +31,12 @@ jobs:
3131 contents : write
3232 steps :
3333 - name : Download package built by build job
34- uses : actions/download-artifact@cc203385981b70ca67e1cc392babf9cc229d5806 # v4.1.9
34+ uses : actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
3535 with :
3636 name : Packages
3737 path : dist
3838 - name : Publish package distributions to GitHub Releases
39- uses : softprops/action-gh-release@c95fe1489396fe8a9eb87c0abf8aa5b2ef267fda # v2.2.1
39+ uses : softprops/action-gh-release@da05d552573ad5aba039eaac05058a918a7bf631 # v2.2.2
4040 with :
4141 files : dist/*
4242
5050 id-token : write
5151 steps :
5252 - name : Download package built by build job
53- uses : actions/download-artifact@cc203385981b70ca67e1cc392babf9cc229d5806 # v4.1.9
53+ uses : actions/download-artifact@d3f86a106a0bac45b974a628896c90dbdf5c8093 # v4.3.0
5454 with :
5555 name : Packages
5656 path : dist
9090 type=pep440,pattern={{major}}.{{minor}}
9191 - name : Build and push image to registry
9292 # Ref: https://github.com/docker/build-push-action?tab=readme-ov-file#customizing
93- uses : docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15 .0
93+ uses : docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18 .0
9494 with :
9595 push : true
9696 build-args : VERSION=${{ github.event.release.name }}
@@ -114,7 +114,7 @@ jobs:
114114 with :
115115 fetch-depth : 0 # fetch all commits and branches
116116 - name : Set up uv
117- uses : astral-sh/setup-uv@f94ec6bedd8674c4426838e6b50417d36b6ab231 # v5.3.1
117+ uses : astral-sh/setup-uv@f0ec1fc3b38f5e7cd731bb6ce540c5af426746bb # v6.1.0
118118 with :
119119 python-version : ' 3.13'
120120 enable-cache : true
Original file line number Diff line number Diff line change 3030 persist-credentials : false
3131 # Ref: https://github.com/ossf/scorecard-action
3232 - name : Run scorecard analysis
33- uses : ossf/scorecard-action@f49aabe0b5af0936a0987cfb85d86b75731b0186 # v2.4.1
33+ uses : ossf/scorecard-action@05b42c624433fc40578a4040d5cf5e36ddca8cde # v2.4.2
3434 with :
3535 results_file : results.sarif
3636 results_format : sarif
3939
4040 # required for Code scanning alerts
4141 - name : Upload SARIF results to code scanning
42- uses : github/codeql-action/upload-sarif@6bb031afdd8eb862ea3fc1848194185e076637e5 # v3.28.11
42+ uses : github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
4343 with :
4444 sarif_file : results.sarif
Original file line number Diff line number Diff line change 2727 uses : extractions/setup-just@e33e0265a09d6d736e2ee1e0eb685ef1de4669ff # v3
2828 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2929 - name : Set up uv
30- uses : astral-sh/setup-uv@f94ec6bedd8674c4426838e6b50417d36b6ab231 # v5.3.1
30+ uses : astral-sh/setup-uv@f0ec1fc3b38f5e7cd731bb6ce540c5af426746bb # v6.1.0
3131 with :
3232 python-version : ${{ matrix.python-version }}
3333 enable-cache : true
8181 uses : extractions/setup-just@e33e0265a09d6d736e2ee1e0eb685ef1de4669ff # v3
8282 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
8383 - name : Set up uv
84- uses : astral-sh/setup-uv@f94ec6bedd8674c4426838e6b50417d36b6ab231 # v5.3.1
84+ uses : astral-sh/setup-uv@f0ec1fc3b38f5e7cd731bb6ce540c5af426746bb # v6.1.0
8585 with :
8686 python-version : ' 3.13'
8787 enable-cache : true
@@ -123,13 +123,13 @@ jobs:
123123 uses : extractions/setup-just@e33e0265a09d6d736e2ee1e0eb685ef1de4669ff # v3
124124 - uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
125125 - name : Set up uv
126- uses : astral-sh/setup-uv@f94ec6bedd8674c4426838e6b50417d36b6ab231 # v5.3.1
126+ uses : astral-sh/setup-uv@f0ec1fc3b38f5e7cd731bb6ce540c5af426746bb # v6.1.0
127127 - name : Get package version
128128 id : package-version
129129 run : echo "version=$(just project-version)" >> $GITHUB_OUTPUT
130130 - uses : docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
131131 - name : Build and push
132- uses : docker/build-push-action@471d1dc4e07e5cdedd4c2171150001c434f0b7a4 # v6.15 .0
132+ uses : docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18 .0
133133 with :
134134 load : true
135135 tags : afuetterer/python-re3data:test
You can’t perform that action at this time.
0 commit comments