Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

bump ci.yml and cd.yml dependencies #45

Merged
merged 1 commit into from
Jan 19, 2024
Merged

Conversation

professor
Copy link
Contributor

No description provided.

Copy link
Contributor

@alexevanczuk alexevanczuk left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🙌🏼

env:
GITHUB_TOKEN: ${{secrets.GITHUB_TOKEN}}
GIT_EMAIL: ${{secrets.ALEX_GIT_EMAIL}}
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks 🙈

@@ -10,14 +10,14 @@ jobs:
runs-on: ubuntu-latest
if: ${{ github.event.workflow_run.conclusion == 'success' }}
steps:
- uses: actions/checkout@8230315d06ad95c617244d2f265d237a1682d445
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think originally security (JC) requested this be pinned to a specific sha (I think maybe we weren't sure about whether the delivered package for a specific version can be changed once its published). Maybe not an issue anymore, but just want to call out.

@professor professor enabled auto-merge (squash) January 19, 2024 00:36
@professor professor merged commit 7f28586 into main Jan 19, 2024
12 checks passed
@professor professor deleted the ts/bump-github-workflows branch January 19, 2024 01:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants