zeroclaw/.github/workflows
fettpl d33c2e40f5
fix(ci): pin Blacksmith GitHub Actions to commit SHAs (#511)
Replace floating tag refs (@v1, @v2) with SHA-pinned refs to prevent
supply-chain attacks via tag mutation on third-party Actions.

Pinned:
- useblacksmith/setup-docker-builder@v1 → ef12d5b1
- useblacksmith/build-push-action@v2 → 30c71162

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-17 07:50:07 -05:00
..
auto-response.yml fix(labels): unify issue contributor tiers and managed label metadata 2026-02-17 15:32:49 +08:00
ci.yml ci: add strict delta lint gate for changed rust lines 2026-02-17 15:21:55 +08:00
codeql.yml Standardize security workflow and enhance CodeQL analysis (#479) 2026-02-17 00:10:46 -05:00
docker.yml fix(ci): pin Blacksmith GitHub Actions to commit SHAs (#511) 2026-02-17 07:50:07 -05:00
labeler.yml feat(labels): add manual audit/repair dispatch for managed labels 2026-02-17 16:12:52 +08:00
pr-hygiene.yml Migrate workflows to Blacksmith (#428) 2026-02-16 15:58:54 -05:00
release.yml chore(workflows): complete migration to Blacksmith cloud runners (#435) 2026-02-16 16:40:13 -05:00
security.yml Standardize security workflow and enhance CodeQL analysis (#477) 2026-02-16 23:57:59 -05:00
stale.yml Migrate workflows to Blacksmith (#428) 2026-02-16 15:58:54 -05:00
update-notice.yml ci(workflows): quote shell vars in update-notice for actionlint 2026-02-17 16:15:04 +08:00
workflow-sanity.yml feat(labels): add manual audit/repair dispatch for managed labels 2026-02-17 16:12:52 +08:00