Commit 714f436
committed
security: pin GitHub Actions to SHA commit hashes
Pin all GitHub Actions to their specific SHA commit hashes instead of
using floating version tags to prevent supply chain attacks from
malicious package republishing.
Changes:
- actions/checkout: v4 → v4.3.1 (SHA: 34e1148)
- actions/setup-node: v4 → v4.4.0 (SHA: 49933ea)
- pnpm/action-setup: v2 → v2.4.1 (SHA: eae0cfe)
- actions/cache: v3 → v3.5.0 (SHA: 6f8efc2)
- actions/upload-artifact: v3 → v3.2.1-node20 (SHA: c24449f)
- softprops/action-gh-release: v1 → v2.5.0 (SHA: a06a81a)
All actions include inline version comments for easy maintenance and
audit trail.
Also includes INSTALLATION.md updates.
Follows GitHub security best practices for immutable action references.1 parent 8b7a1a4 commit 714f436
3 files changed
Lines changed: 10 additions & 10 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
18 | | - | |
| 18 | + | |
19 | 19 | | |
20 | 20 | | |
21 | | - | |
| 21 | + | |
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
25 | 25 | | |
26 | | - | |
| 26 | + | |
27 | 27 | | |
28 | 28 | | |
29 | 29 | | |
| |||
34 | 34 | | |
35 | 35 | | |
36 | 36 | | |
37 | | - | |
| 37 | + | |
38 | 38 | | |
39 | 39 | | |
40 | 40 | | |
| |||
81 | 81 | | |
82 | 82 | | |
83 | 83 | | |
84 | | - | |
| 84 | + | |
85 | 85 | | |
86 | 86 | | |
87 | 87 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
18 | | - | |
| 18 | + | |
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| |||
25 | 25 | | |
26 | 26 | | |
27 | 27 | | |
28 | | - | |
| 28 | + | |
29 | 29 | | |
30 | 30 | | |
31 | 31 | | |
32 | 32 | | |
33 | | - | |
| 33 | + | |
34 | 34 | | |
35 | 35 | | |
36 | 36 | | |
| |||
99 | 99 | | |
100 | 100 | | |
101 | 101 | | |
102 | | - | |
| 102 | + | |
103 | 103 | | |
104 | 104 | | |
105 | 105 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
40 | 40 | | |
41 | 41 | | |
42 | 42 | | |
43 | | - | |
| 43 | + | |
44 | 44 | | |
45 | 45 | | |
46 | 46 | | |
| |||
0 commit comments