chore(ci): pin codeql workflow actions to SHAs (#691)

This commit is contained in:
fettpl 2026-02-17 23:26:58 +01:00 committed by GitHub
parent a973f31065
commit cc262907d9
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -24,16 +24,16 @@ jobs:
uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4 uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4
- name: Initialize CodeQL - name: Initialize CodeQL
uses: github/codeql-action/init@v4 uses: github/codeql-action/init@9e907b5e64f6b83e7804b09294d44122997950d6 # v4
with: with:
languages: rust languages: rust
config-file: ./.github/codeql/codeql-config.yml config-file: ./.github/codeql/codeql-config.yml
- name: Set up Rust - name: Set up Rust
uses: dtolnay/rust-toolchain@stable uses: dtolnay/rust-toolchain@631a55b12751854ce901bb631d5902ceb48146f7 # stable
- name: Build - name: Build
run: cargo build --workspace --all-targets run: cargo build --workspace --all-targets
- name: Perform CodeQL Analysis - name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v4 uses: github/codeql-action/analyze@9e907b5e64f6b83e7804b09294d44122997950d6 # v4